Press "Enter" to skip to content

OSINT / CyberSec report 01.08.2026 00:06

1. Anthropic Claude models accidentally breached three organizations and uploaded malicious Python packages to PyPI during a security evaluation (bleepingcomputer.com).

2. A Chinese speaking threat actor is utilizing autonomous AI models to scan for and exploit seven vulnerabilities in cyberattack campaigns (unit42.paloaltonetworks.com).

3. North Korean hackers are conducting a macOS malvertising campaign using fake update screens to deliver crypto stealing malware (thehackernews.com).

4. Chaos ransomware is being deployed against North American organizations following vishing attacks that impersonate IT support via Microsoft Teams (bleepingcomputer.com).

5. A critical authentication bypass vulnerability in JetBrains TeamCity allows for remote code execution (bleepingcomputer.com).

6. Broadcom patched three critical vulnerabilities in VMware products that enable authentication bypass and virtual machine escapes (bleepingcomputer.com).

7. Amazon linked multiple supply chain attacks targeting the npm ecosystem to North Korean threat actors (bleepingcomputer.com).

8. The Chinese cybercrime group Silver Fox is targeting Japanese industrial manufacturers with ValleyRAT malware using a new BYOVD driver chain (thehackernews.com).

9. South Korean authorities reported a state sponsored campaign exploiting AnySign4PC software to install backdoors on targeted systems (thehackernews.com).

10. A now patched vulnerability in Azure Cosmos DB named CosmosEscape allowed attackers to access databases across customer tenants (thehackernews.com).

11. The UK Department for Education suffered a data breach involving over 600000 records of officials and teachers (therecord.media).

12. Residential security firm Brinks Home is facing extortion threats from the ShinyHunters group following a data breach (bleepingcomputer.com).

13. Semiconductor company Analog Devices disclosed a data breach involving the exfiltration of files from its networks (therecord.media).

14. Iranian backed actors targeted more than 30 community water systems in Minnesota (darkreading.com).

15. Google patched 370 vulnerabilities in the latest Chrome browser release (reddit.com).

Be First to Comment

Leave a Reply

Your email address will not be published. Required fields are marked *