Cybersecurity
Curated coverage and analysis in this editorial area.

DecryptAds Exposes the Invisible: The Ad Supply Chain Under the Microscope
DecryptAds parses ads.txt and sellers.json files, revealing hidden links between mainstream sites, data brokers, and geopolitical acto…

Interrupt Injection: MIT Attack Bypasses Spectre v2 Defenses on Intel and AMD
MIT CSAIL researchers Daniël Trujillo and Mengjia Yan presented the Interrupt Injection technique at Black Hat USA 2026, demonstrating…

Unisoc VoLTE Video-Call Exploit Chain Reaches Android Kernel — No Patch, No CVE
SSD Secure Disclosure details a two-stage exploit chain on Unisoc chipsets that starts with a malicious VoLTE video call and ends with…

DGFiP Data Breach Exposes 678,000 French Taxpayers; CNIL Weighs Enforcement
The French Finance Ministry confirmed on August 17, 2026, that the DGFiP suffered a breach exposing sensitive tax data for 678,000 ind…

Lumma Stealer Hides in Pirated 'The Odyssey' Downloads: The Hidden Extension Trick
Cybercriminals are distributing Lumma Stealer via Windows executables disguised as pirated copies of The Odyssey (2026) on torrent tra…

RingCentral Breach Exposes 1.6 Million Records via Vishing Call
ShinyHunters compromised RingCentral with a single phone call, exposing 1.6 million records and leaking 280 GB of data. The real-time…

Copilot Autofix Introduces Vulnerability in Snowflake CI/CD, Then an AI Agent Finds It
GitHub Copilot Autofix introduced a script injection flaw into a Snowflake GitHub Actions workflow. Five days later, Wiz's autonomous…

Evooo1Bot: The Botnet Turning Routers and Edge Devices into SOCKS5 Proxies
Fortinet discovers Evooo1Bot, a modular Mirai-based Linux botnet active since July 2026 that exploits 10 known CVEs to build a distrib…

Mustang Panda Arms CoolClient with Signed Rootkit: EDR in the Kernel Crosshairs
HoneyMyte deploys msagent.sys, a kernel-mode rootkit driver signed with an expired 2013 certificate. It hides processes, files, and C2…

ShieldBreak: Zero-Day Exploit Targets Windows Defender for SYSTEM Privilege Escalation
Nightmare Eclipse released ShieldBreak, a zero-day exploit achieving SYSTEM privileges on fully patched Windows via Microsoft Defender…

WordPress 7.0.3 Fixes Login XSS That Can Lead to RCE via Social Engineering
CVE-2026-64638 is a pre-authentication reflected XSS in the WordPress login screen, discovered by pwn.ai using AI-assisted systems. Ex…

dnsmasq: DNSSEC Bug Enables Unauthenticated Remote DoS
A vulnerability in dnsmasq's NSEC/NSEC3 DNSSEC record parsing allows remote denial-of-service attacks without authentication. The flaw…