95 What happens when your VPN meets 200 AI agents Unified access for humans and AI agents needed.
Twitter The New Stack 3h 95 95 ?
What happens when your VPN meets 200 AI agents exposes a unified access architecture.
Unified access must cover humans and agents Identity-first PAM and policy orchestration are key Single policy model reduces overhead Agentic access requires revocation and audit trails Unified access avoids separate human/agent architectures 85 Spanish Police take down €140 million cyber fraud ring, arrest four Madrid: €140m cyber fraud ring dismantled; four arrested
Article BleepingComputer 2h 85 85 ?
Spanish Police Take Down €140 Million Cyber Fraud Ring, Four Arrested in Major Investigation
Ring used sophisticated fraud schemes They laundered funds via networks across Spain and abroad, authorities say today Operation led by the police, Europol involved €140 million figure underscores cross-border crime; four arrests announced by National Police this week Investigations may reveal more suspects and components abroad soon 84 Hacking the Hackers: Can You Still Deceive an AI Attacker? AI attackers betray traps; defenses must rethink deception.
Article horizon3.ai 2h 84 84 ?
Hacking the Hackers: AI-driven attack deception study reshapes security strategy for frontier models
AI attackers bite bait more AI-driven adversaries reveal a recognition-action gap that defeats old traps today easily Honeytokens may warn, not always deter anymore The horizon3.ai study tested 21 AI models across 10 providers and 10k decisions overall Defenders should pivot to detection over misdirection now decisively 83 UK and EU impose first simultaneous cyber sanctions as Poland attack is attributed to the FSB UK-EU sanction Warsaw-linked cyber attack to FSB
Newsletter ComplexDiscovery 1h 83 83 ?
UK and EU impose first simultaneous cyber sanctions as Poland attack is attributed to the FSB
UK and EU act together on cyber sanctions. Attribution links Polish grid attack to FSB Centre 16. Targets span GRU, Lumma Stealer, Rybar networks. Simultaneous action marks a new enforcement norm in Europe. Practitioners should update screening and retention policies. 82 Patchpocalypse Now: Microsoft tops last month's record with 622 Patch Tuesday CVEs Microsoft patches 622 CVEs; active exploits present.
Article The Register - Security 2h 82 82 ?
Patchpocalypse Now: Microsoft tops last month's record with 622 Patch Tuesday CVEs
Microsoft tops last month's CVE count with a 622-entry list. Active exploits include AD FS elevation and SharePoint privilege issues. Edge/Chromium and Office vulnerabilities contribute heavily to the tally. A substantial chunk (58) are critical; some under active exploitation. Patch management remains the recommended first mitigation step for all admins. 81 Patch Tuesday - July 2026 Record July 2026 patches; wild exploits; defensive actions needed
Twitter Rapid7 Blog 50m 81 81 ?
Patch Tuesday July 2026 briefing: 622 vulnerabilities, notable CVEs, and exploitation in the wild
Massive patch event with hundreds of CVEs. Two vulnerabilities exploited in the wild; additional Notable CVEs. SharePoint and AD FS feature critical privilege/escalation paths. Active exploitation tracked via CVE-2026-56155 and related alerts. Defenders should prioritize patching and monitoring for RCE and EoP vectors 81 AI is straining vulnerability disclosure for maintainers AI-churned reports strain vulnerability disclosure and validation.
Article HN - AI/ML Search Feed 2h 81 81 ?
AI is straining vulnerability disclosure for maintainers
AI enables faster, polished reports Over 40% of new reports closed as duplicates Validation work still center-staged for real findings Directus cites 230 reports in 2026 first half Quality over quantity remains the defense against fraud 80 Rewards For Justice offers reward for info on Media Land, ML.Cloud, and three individuals associated with it Rewards for Justice offers $10M for info now.
Article DataBreaches.net 1h 80 80 ?
Rewards For Justice offers a $10M reward for information on Media Land, ML.Cloud, and three associates linked to the Russian hosting firm.
Bounty targets Media Land and ML.Cloud Two companies host illicit content and domains Volosovik, Zatolokin, Pankova named staff Reward set at $10 million with info channels Authorities seek actionable leads and takedown potential 79 Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack Record patch Tuesday with two active-zero days
Article The Hacker News 2h 79 79 ?
Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack
Record patch Tuesday patches a massive 622 CVEs. Two active-exploitation zero-days target SharePoint and AD FS. Patch guidance emphasizes AMSI, RC4 deprecation, and patch timing. Zero-days tied to on-prem SharePoint and AD FS with active attacks. RC4 deprecation reduces login failures but requires careful audit. MS warns about patch timing and KEV/EPSS tracking for prioritization. 79 White House announces ‘Gold Eagle’ AI clearinghouse for cyber vulnerabilities White House launches AI-led vulnerability clearinghouse for remediation
Article nextgov.com 48m 79 79 ?
White House announces ‘Gold Eagle’ AI clearinghouse for cyber vulnerabilities
AI-led vulnerability hub launches Coordinating across agencies and industry to patch flaws Key partners include CISA and Treasury/Defense Anthropic involvement signals private-sector backing and data sharing Remediation timelines and data protections remain unclear 79 Microsoft discloses ‘the mother of all’ vulnerability loads, tripling June’s previous record Record vulnerability load driven by AI-assisted discovery
Article CyberScoop 2h 79 79 ?
Microsoft discloses ‘the mother of all’ vulnerability loads, tripling June’s previous record
Record CVE count tops prior June MDASH AI-scanning raised speed and scale of discovery Two actively exploited zero-days named: CVE-2026-56155, CVE-2026-56164 Patch Tuesday numbers: 416 Windows, 82 Office, 46 Edge; 63 critical Experts warn volume shows detection capability, not necessarily risk to all users 78 SonicWall warns of SMA1000 flaws exploited in zero-day attacks, patch now Two SMA1000 flaws exploited; patch released now urgently.
Article BleepingComputer 1h 78 78 ?
SonicWall warns SMA1000 zero-days exploited in attacks; urges patch rollout to mitigate CVE-2026-15409 and CVE-2026-15410.
Two SMA1000 flaws disclosed publicly. Threat actors are exploiting these CVEs in the wild; patch now please. Update applies to SMA1000 appliances now globally. CVE-2026-15409 and CVE-2026-15410 drive the advisories, with patches available from SonicWall for all customers. Unpatched devices risk exposure until replacements or updates deployed. 78 Defending SaaS-based applications against ShinyHunters OAuth abuse Microsoft reveals ShinyHunters OAuth abuse in SaaS apps.
Article DataBreaches.net 3h 78 78 ?
Defending SaaS-based applications against ShinyHunters OAuth abuse: lessons from Microsoft Security Research for defenders
OAuth abuse targets SaaS apps. Microsoft details ShinyHunters campaigns using vishing and misconfigured guest access in SaaS. OAuth configurations require stricter guest controls now. Salesforce instances faced exposure; the report flags cross-tenant access risks in cloud SaaS environments. Defenders should audit OAuth consent and token lifetimes urgently 75 Meduza asked four experts to sketch three likely futures for VPNs in Russia. The best possible scenario may be the one Russians are already living in. VPNs endure amid tighter blocks, higher costs, uneven effects.
Article Meduza 3h 75 75 ?
Meduza’s experts map three VPN futures for Russia; reality may already resemble the favorable option.
VPNs face rising costs and instability across services Experts outline three futures: mediocre, bad, and potential stabilization White lists and corporate-use limits could shape access Penalties for VPN use may expand; enforcement varies by regime Expect gradual tightening with pockets of resilience and cost pressures 74 Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th) 622 vulns patched; several exploited and critical exposures
Twitter SANS Internet Storm Center 3h 74 74 ?
Microsoft Patch Tuesday July 2026 – The AI Acopolypse is Here
Mass patch Tuesday hits 622 vulns Exploitation seen for AD FS EoP and SharePoint EoP DHCP client/server RCEs enable network attacks RMCAST and BitLocker areas flagged as high risk Patch guidance: update broadly, monitor exploitation guidance 73 Microsoft Patches a Record 570 Security Flaws Microsoft issues record patch batch aided by AI
Article Krebs on Security 3h 73 73 ?
Microsoft patches a record 570 security flaws in July 2026, citing AI-assisted discovery
Record July patch batch amid AI-facilitated flaw discovery CVE-2026-48561 and CVE-2026-50661 highlighted among critical fixes Windows BitLocker bypass risk noted but not actively exploited Copilot remote-code-execution flaw raises Edge prompt risk Exploitability index under scrutiny as AI speeds vulnerability discovery 71 Security Hub adds AI workload protection and multicloud support for Microsoft Azure Security Hub adds AI protection and Azure support.
Article AWS Security Blog 3h 71 71 ?
Security Hub adds AI workload protection and Azure multicloud support across Microsoft Azure
Azure support joins Security Hub. Azure findings align with AWS signals, enabling unified risk prioritization and workflows. AI workload protection for Bedrock and SageMaker. GuardDuty AI Protection detects anomalous model invocations and cost-harvesting attacks across Bedrock and SageMaker. Open OCFS exchange enables cross-signal correlation across tools today. 70 Grok Build was uploading entire Git repositories to xAI’s cloud, including committed secrets Grok Build uploads repos and secrets to cloud
Article thenextweb.com 2h 70 70 ?
Grok Build was uploading entire Git repositories to xAI’s cloud, including committed secrets
Grok Build leaked full repos A researcher demonstrated the data was sent to Google Cloud Storage unnecessarily Privacy toggle failed; data exfiltration documented publicly Google Cloud bucket and Grok Build version 0.2.93 cited in analysis by cereblab publicly Regulators question xAI's zero-data-retention claim amid growing privacy concerns 70 6 GHz Wi-Fi Flaws Could Disrupt Critical Systems Spoofed data disrupts critical frequency coordination systems.
Article Dark Reading 2h 70 70 ?
6 GHz Wi-Fi Flaws Could Disrupt Critical Systems — Automated Frequency Coordination risks location spoofing and traffic disruption
Spoofed data allows attackers to misreport locations Traffic disruption could affect critical services and safety Mitigation requires server-side validation and anomaly detection CVE-like exposure may exist in code paths handling trust Defenders should harden trust boundaries and monitor for mismatch 69 You should probably check on your smart appliances PoW challenges deter mass scraping by bots.
Article Lobsters 48m 69 69 ?
You should probably check on your smart appliances
PoW challenges slow automated scrapers Anubis protects a site by requiring browser proof-of-work JavaScript-enabled flow is central to the defense Fingerprinting headless browsers limits illegitimate access—with caveats Users may face friction if plugins are blocked or disabled 69 Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities Microsoft patches 622 CVEs; 57 critical; some exploited in wild.
Article Cisco Talos 2h 69 69 ?
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities
Microsoft released July 2026 Patch Tuesday with 622 total CVEs. 57 vulnerabilities are marked critical, including several RCEs and EoPs. Several critical flaws are actively exploited or more likely to be exploited. Snort 2 and Snort 3 rules are provided to detect exploitation attempts. Keep systems patched and follow Snort rule updates for detection benefits. 69 Microsoft rolls out massive Windows 11 security update with 416 fixes Patch Tuesday fixes hundreds of CVEs and updates security
Twitter CyberInsider 1h 69 69 ?
Microsoft rolls out massive Windows 11 security update with 416 fixes
Massive security update released now Patch Tuesday fixes 622 CVEs across Microsoft products BitLocker bypass vulnerability addressed in this patch AD FS privilege escalation flaw also patched and mitigated Update requires reboot; back up data before install 69 The ransomware toll road. Ransomware threats to journalists rise; policy and defense respond.
Article The CyberWire 2h 69 69 ?
The ransomware toll road: policy shifts and defensive awareness in journalism cybersecurity
Ransomware risk to media is rising. Policy shifts accompany heightened journalist security efforts. Vendor vulnerabilities and cloud flaws surface in coverage. Media-targeted threats linked to enforcement and awareness campaigns. Defenders should treat journalist data as security-critical. 69 AWS will now watch Microsoft’s cloud for you AWS monitors Azure; multicloud security expands
Twitter The New Stack 3h 69 69 ?
AWS will now watch Microsoft's cloud for you — multicloud security and AI protection expanded
Azure monitoring added Security Hub now cross-cloud; no extra platform fee AI workload protection features highlighted Investigation and AI inventory capabilities expand regionally Security hub aims to unify cross-cloud findings Market context: Wiz and others in multicloud security 67 US unseals indictment against alleged operators of Russian bulletproof hosting service US charges three Russians for bulletproof hosting services
Article The Record from Recorded Future News 3h 67 67 ?
US unseals indictment against alleged operators of Russian bulletproof hosting service
Indictment ties Media Land infrastructure. Three Russians face conspiracy and fraud charges over hosting for cybercriminals globally. Rewards up to ten million dollars announced. Media Land and ML Cloud prosecutors claim unsealed December 2024 indictment details in full. Victims total losses cited at sixty-two million dollars globally.