The FBI has seized seven domains used by Chinese state-sponsored hackers known as Flax Typhoon to operate two hacking tools, MicroScan and FishHub, used in attacks that breached critical infrastructure and other organizations worldwide. The seizures targeted infrastructure supporting the two hacking platforms allegedly operated by China-based Integrity Technology Group (Integrity Tech), which U.S. authorities say has contracts with the Chinese government. READ MORE...
According to Google, attackers compromised infrastructure behind three country-code domain namespaces-.gh (Ghana), .sl (Sierra Leone), and .as (American Samoa)-and used it to obtain unauthorized HTTPS certificates for Google domains and other organizations. These domain endings aren't limited to sites serving those countries, so the risk can extend to users elsewhere. This wasn't a break in encryption, and Google's systems weren't compromised. READ MORE...
The US State Department is offering up to US $10 million for information about the whereabouts of Zhang Yu, a 44-year-old Chinese national who is accused of being a key figure in China's state-sponsored hacking group, Hafnium. Hafnium (also known as Silk Typhoon) is widely believed to be the group that exploited zero day vulnerabilities to breach Microsoft Exchange Server systems in early 2021. READ MORE...
Cisco on Wednesday announced patches for 35 vulnerabilities across its products, including over a dozen critical-severity bugs. A fresh Meraki security hardening release fixes multiple bugs grouped together under seven CVEs, based on the underlying weakness type. The most severe of these is CVE-2026-76464, which covers memory issues such as buffer overflows and out-of-bounds writes. READ MORE...
US authorities have arrested and arraigned a 50-year-old Venezuelan member of the Tren de Aragua (TdA) criminal cartel, Anibal Alexander Canelon Aguirre, on charges related to a "jackpotting" scheme that compromised ATMs with malware and caused them to dispense tens of thousands of dollars in cash. He allegedly then laundered the proceeds through Venezuelan, Mexican, and Colombian cryptocurrency networks, including the decentralized finance trading platform known as TRON. READ MORE...
Hundreds of internet-exposed graphics processing unit (GPU) servers were open to a high-severity flaw in NVIDIA's DCGM Exporter (CVE-2026-47483) that lets unauthenticated attackers crash the monitoring service and may disrupt AI workloads, according to Lava. Lava reported the flaw to NVIDIA, which rated it 8.2 on the CVSS scale and published a security bulletin on July 28, 2026. GPU servers are computers built around GPUs and are used for AI, machine learning and scientific computing workloads. READ MORE...
Attackers are exploiting a maximum-severity vulnerability in SonicWall SMA1000 appliances (CVE-2026-102255) that was patched on Tuesday, three days ago. Tracked as CVE-2026-102255, the flaw affects the Appliance WorkPlace interface on SMA1000 6210, 7210, and 8200v models, but does not affect the SMA 100 Series product line or SSL-VPN running on SonicWall firewalls. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) later linked some of these attacks to ransomware gangs. READ MORE...
Margaret Hamilton, who coined the term "software engineering" and led the development of onboard flight software for NASA's Apollo program in the 1960s, died last week at the age of 90. A recipient of the Presidential Medal of Freedom in 2016, Hamilton was also immortalized as a LEGO minifig the following year-part of the "Women of NASA" set that also included astronauts Mae Jemison and Sally Ride. READ MORE...