← Back to Blog
Security News
Security News — 11 August 2026
A daily, automatically-compiled digest of the cyber security stories that broke in the last 24 hours, drawn from 8 trusted feeds. Each entry is a short excerpt — follow the link to read the full article at its original publisher. Compiled 11 August 2026 · 19 items.
Government & Critical Vulnerability Advisories
CISA Cybersecurity Advisories10 Aug
Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organ…
Read at source →
Primary Threat Research & Vendor Intelligence
Palo Alto Unit 4210 Aug
Analysis of the Aeternum botnet loader, a threat leveraging Polygon blockchain smart contracts for decentralized C2 infrastructure and payload execution. The post The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations an…
Read at source →
Microsoft Security Blog10 Aug
Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines AI, threat intelligence, and human expertise. The post Microsoft named a Leader in the 2026 IDC MarketScape for…
Read at source →
Microsoft Security Blog10 Aug
Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support victim communications, negotiations, and data leak operations along…
Read at source →
Independent Investigative Journalism & Breaking News
BleepingComputer10 Aug
Hackers breached a heat-and-power plant facility in Poland, which supplies heat to about 50,000 residents, using a private APN (Access Point Name) to access an OT (Operational Technology) network. [...]
Read at source →
Dark Reading10 Aug
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents.
Read at source →
Dark Reading10 Aug
Attacks targeting water systems just keep flowing across a dozen states, against ill-secured, Internet-exposed PLCs.
Read at source →
BleepingComputer10 Aug
A threat actor compromised the upstream infrastructure of BdThemes, a developer of premium WordPress web-design tools, and modified a remote JSON feed delivered to administrators' browsers to create rogue admin accounts. [...]
Read at source →
Dark Reading10 Aug
The maximum-severity vulnerability, which still has no CVE, allows malicious, remote administrator access to the business-analytics platform and its downstream users.
Read at source →
BleepingComputer10 Aug
OpenAI has developed a new model called "GPT 5.6 Cyber," designed for vulnerability research, penetration testing, incident response, and remediation. [...]
Read at source →
Dark Reading10 Aug
It's time to turn from CVSS-backed patching to choke-point patching focused on breaking chains to critical assets.
Read at source →
BleepingComputer10 Aug
A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. [...]
Read at source →
The Hacker News10 Aug
AI is helping development teams produce far more code, far faster. But security teams still have to review vulnerabilities, manage dependencies, prioritize fixes, and control risk at human speed. When software output jumps 10 to 50 times,…
Read at source →
The Hacker News10 Aug
Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain called StormEncryptor. The use of StormEncryptor marks a shift from the adversary's pre…
Read at source →
The Hacker News10 Aug
A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call. Leaving a box exposed. Trusting the default. That pretty much covers the mood this week. Old bugs are back, supply chain…
Read at source →
The Hacker News10 Aug
North Korea's state hackers are no longer content to type prompts into public chatbots. One of the country's main espionage groups has begun running artificial intelligence (AI) offline on its own servers, connecting document-search tools…
Read at source →
Blue Team, Incident Response & Detection Engineering
SANS Internet Storm Center (Handler Diary)10 Aug
Solana is a crypto platform known for speed. Developers like it to develop distributed applications or to implement crypto payments. To interact with the blockchain, APIs are provided for developers. These APIs will either "speak" JSON or…
Read at source →
SANS Internet Storm Center (Handler Diary)10 Aug
Read at source →
Security Executive, Architecture & Policy
Schneier on Security10 Aug
This is good : Post-quantum cryptography is now one pip-install away for the entire Python ecosystem. With funding from the Sovereign Tech Agency , we implemented support for ML-KEM, the NIST-standard key-establishment primitive, and ML-DS…
Read at source →