Canadian Man Pleads Guilty in Snowflake Extortions - A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider Snowflake . Connor Riley Moucka , of Kitchener, Ontario,...
Smashing Security podcast #479: How a fake police officer nearly stole Graham’s cryptocurrency - Graham gets a phone call from the police. Well, someone who sounds convincingly like the police. There's just one small problem: what they really want is the 24-word seed key to Graham's cryptocurrency wallet. Meanwhile, if you've stayed in a hotel recently, the free Wi-Fi you connected to might have...
Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People - Connor Riley Moucka pleaded guilty in Seattle federal court on Wednesday to computer fraud, wire fraud, aggravated identity theft and a related conspiracy over the 2024 breaches of Snowflake customer accounts . The intrusions reached at least 165 organizations and exposed records belonging to at least...
Trojanized npm Packages Decode C2 IP From Ethereum Recipient Addresses - Cybersecurity researchers have flagged an evolution of the EtherHiding blockchain-based command-and-control (C2) technique that conceals the C2 server IP address inside a made-up destination address of a completely empty Ethereum transfer. The new dead drop resolver approach, observed in two trojanized...
TP-Link patches Omada ZTP flaws allowing hackers to breach networks - TP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could be chained with previously disclosed flaws to achieve remote code execution (RCE).
Secure Agent Harness Execution: Preventing Escape - At CrowdStrike, we conduct extensive red-team testing of agentic systems using diverse models, tools, and adversarial evaluation harnesses designed to probe for containment failures. To date, none of […]
Chrome for Android Update - Hi, everyone! We've just released Chrome 151 (151.0.7922.108) for Android. It'll become available on Google Play over the next few days.
Meta AI model hacked a company during misconfigured cyber test - Meta has become the latest AI company to confirm that one of its models hacked a real organization during cybersecurity testing, as similar incidents continue to emerge following OpenAI'sOpenAI's initial disclosure that its agents breached Hugging Face.
AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory - A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard feature built into almost every major AI assistant: pre-filled deep links. We observed production websites embedding hidden prompt injection...
Canadian pleads guilty to Snowflake cloud data-theft attacks - A Canadian man pleaded guilty today to his role in accessing company accounts at cloud storage provider Snowflake and stealing data from at least 165 organizations in a scheme to extort millions of dollars from victims.
Poison Claude Sells Discounted Claude Access While Its Operator Sees Every Customer Prompt - Cybersecurity researchers have discovered more than half-a-dozen services advertisements for illegal access to artificial intelligence (AI) models on underground cybercrime forums and messaging platforms. One such service, Poison Claude, claims to offer access to Anthropic's large language models (LLMs),...
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts - Zapscape , a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isolation and execute code on the host. The risk applies when nested virtualization is exposed to untrusted guests. The flaw is tracked as CVE-2026-64561 and...
News Alert: Pulse Security AI’s research reveals C-suite, board confidence gap on cyber exposures - LAS VEGAS, Aug. 5, 2026, CyberNewswire – Boards of directors believe they understand their company’s security posture and what it means for the business. The security leaders presenting to them are far less sure. Only 12.5% of security leaders are very confident their board walks away understanding...
CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited - The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities ( KEV ) catalog, citing evidence of active exploitation in the wild. The list of vulnerabilities is as follows - CVE-2026-9198 (CVSS score: 9.8) - A code injection...