IT Security Newsletter - 8/24/2026
Apollo discloses data breach from ongoing wave of attacks hitting financial sector
Apollo Global Management confirmed it was among several financial institutions impacted by a string of social engineering attacks that hit the sector last month, the company said Friday. Attackers gained unauthorized access to some of the private equity firm's cloud platforms between July 6 and July 10, the company said in a data breach notification filed in California. Apollo did not say when or how it became aware of the intrusion and did not respond to a request for comment. READ MORE...
What we know so far about the hacking campaign against US water systems
Federal and state authorities are investigating a series of coordinated cyberattacks targeting drinking and wastewater treatment facilities across the U.S. Threat groups with suspected links to Iran have targeted vulnerable programmable logic controllers, the devices used to monitor and control various industrial systems, including those of water utilities. Utilities in at least 12 states were impacted by the attacks, including Minnesota, Michigan, Georgia, South Dakota and New Jersey. READ MORE...
Iran-Linked Hackers Shut Down UK Power Plant for Four Days
Iran-linked hackers reportedly managed to shut down a British power plant for four days in July 2026. The story was broken by the Telegraph newspaper on August 22, 2026. That it took so long to become public knowledge immediately says two things. Firstly, it was not a major power plant since the effect would have been immediately noticed, and secondly, the authorities wished to keep news of the attack as low key as possible. READ MORE...
CISA orders urgent patching of actively exploited Zimbra flaw
The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. government agencies to patch an actively exploited vulnerability in Zimbra Collaboration Suite (ZCS) within three days. The Zimbra security team patched the security flaw (tracked as CVE-2026-73570) in version 10.1.20, released on July 20. Successful exploitation allows unauthenticated attackers to gain remote code execution by exploiting a command injection weakness in the SNMP monitoring component. READ MORE...
Hackers poison popular Rust crates to steal developers' credentials
Hackers slipped malware into several popular Rust packages this week, turning routine software builds into a route onto developers' machines. The Rust Security Response Team disclosed the supply chain attack on Thursday after receiving a tip about a crate called proc-macro1. An investigation found that its build script fetched malware from a remote server. The attack extended beyond a single dodgy crate. Someone had published a new version of arrayref, a legitimate and widely used Rust package. READ MORE...
Gunra Ransomware: What You Need to Know
Gunra is a financially-motivated ransomware organization that steals sensitive data from organizations, encrypts it on its victims' computer systems, and threatens to publish it unless a ransom is paid. Having first appeared in April 2025, Gunra had grown by early 2026 in a fully-fledged ransomware-as-a-service (RaaS) operation, with criminal affiliates carry out attacks using its infrastructure in exchange for a share of the profits. READ MORE...
Android car head units infected with proxy botnet malware through built-in software updaters
A newly discovered Android malware, distributed through the built-in updaters in affected Android-based car head units, turns infected devices into ad-fraud tools and nodes in a proxy botnet, Kaspersky has found. According to the researchers, it's the first documented case of malware found on a car head unit with an infection chain specific to that type of device. Kaspersky attributes the operation, with high confidence, to the MoYu Group, an actor linked to the BADBOX botnet. READ MORE...
Hardware Makers Implement Post-Quantum Cryptography as Security Threats Near
Chip makers are baking post-quantum cryptography (PQC) acceleration into hardware as the threat of quantum systems breaking current encryption rises. The technology is still years away from the general market, but defenders are concerned about harvest-now, decrypt-later attacks that could build up stores of data until quantum computing becomes more widely available to exploit it. Security professionals and regulators encourage organizations to begin future-proofing now. READ MORE...
Zombie Card: An expired Visa credit card can be used for purchases
Did you know there is still a good reason to physically destroy your expired credit card? Scientific research found that the expiration date used by payment terminals on some contactless cards was not effectively protected against tampering. University of Massachusetts Amherst researchers Raja Hasnain Anwar, Gerard DeCunha, and Muhammad Taqi Raza tested contactless cards across Visa, Mastercard, Discover, and American Express, using multiple terminals and merchants. READ MORE...
Salesforce gave every org the same free scanner. Attackers already know what it misses.
Roughly 90% of the Fortune 500 runs at least one Salesforce product, and for most of them it holds the customer record the entire commercial operation depends on. That concentration is not a secret. Attackers have read the same statistic you have. What still surprises me is how few security executives can answer one question about it. When a stranger uploads a file to your Experience Cloud portal, what happens to that file, and who owns it if it turns out to be malicious? READ MORE...
Encrypted Prompts Bypass AI Safety Guardrails in Grok and Gemini
Researchers at Adversa AI discovered a new attack technique and named it Cryptographic Context Injection. They reported their findings to xAI on June 3, 2026, and attempted to coordinate disclosure on August 4 and August 10. At the time of writing, they had received no response. They could not disclose to Google since jailbreaks are out of scope for its vulnerability disclosure program. Nevertheless, the success rate for the attack against Gemini had fallen by August. READ MORE...
- ...in 1891, Thomas Edison files a patent for his motion picture camera.
- ...in 1932, Amelia Earhart is the first woman to fly across the US non-stop.
- ...in 1989, baseball commissioner A. Bartlett Giamatti bans Cincinnati Reds manager Pete Rose from baseball for gambling.
- ...in 2006, Pluto is downgraded to a dwarf planet when the International Astronomical Union (IAU) redefines the term "planet."







