Apollo Global Management confirmed it was among several financial institutions impacted by a string of social engineering attacks that hit the sector last month, the company said Friday. Attackers gained unauthorized access to some of the private equity firm's cloud platforms between July 6 and July 10, the company said in a data breach notification filed in California. Apollo did not say when or how it became aware of the intrusion and did not respond to a request for comment. READ MORE...
Federal and state authorities are investigating a series of coordinated cyberattacks targeting drinking and wastewater treatment facilities across the U.S. Threat groups with suspected links to Iran have targeted vulnerable programmable logic controllers, the devices used to monitor and control various industrial systems, including those of water utilities. Utilities in at least 12 states were impacted by the attacks, including Minnesota, Michigan, Georgia, South Dakota and New Jersey. READ MORE...
Iran-linked hackers reportedly managed to shut down a British power plant for four days in July 2026. The story was broken by the Telegraph newspaper on August 22, 2026. That it took so long to become public knowledge immediately says two things. Firstly, it was not a major power plant since the effect would have been immediately noticed, and secondly, the authorities wished to keep news of the attack as low key as possible. READ MORE...
The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. government agencies to patch an actively exploited vulnerability in Zimbra Collaboration Suite (ZCS) within three days. The Zimbra security team patched the security flaw (tracked as CVE-2026-73570) in version 10.1.20, released on July 20. Successful exploitation allows unauthenticated attackers to gain remote code execution by exploiting a command injection weakness in the SNMP monitoring component. READ MORE...
Hackers slipped malware into several popular Rust packages this week, turning routine software builds into a route onto developers' machines. The Rust Security Response Team disclosed the supply chain attack on Thursday after receiving a tip about a crate called proc-macro1. An investigation found that its build script fetched malware from a remote server. The attack extended beyond a single dodgy crate. Someone had published a new version of arrayref, a legitimate and widely used Rust package. READ MORE...
Gunra is a financially-motivated ransomware organization that steals sensitive data from organizations, encrypts it on its victims' computer systems, and threatens to publish it unless a ransom is paid. Having first appeared in April 2025, Gunra had grown by early 2026 in a fully-fledged ransomware-as-a-service (RaaS) operation, with criminal affiliates carry out attacks using its infrastructure in exchange for a share of the profits. READ MORE...
A newly discovered Android malware, distributed through the built-in updaters in affected Android-based car head units, turns infected devices into ad-fraud tools and nodes in a proxy botnet, Kaspersky has found. According to the researchers, it's the first documented case of malware found on a car head unit with an infection chain specific to that type of device. Kaspersky attributes the operation, with high confidence, to the MoYu Group, an actor linked to the BADBOX botnet. READ MORE...
Chip makers are baking post-quantum cryptography (PQC) acceleration into hardware as the threat of quantum systems breaking current encryption rises. The technology is still years away from the general market, but defenders are concerned about harvest-now, decrypt-later attacks that could build up stores of data until quantum computing becomes more widely available to exploit it. Security professionals and regulators encourage organizations to begin future-proofing now. READ MORE...
Did you know there is still a good reason to physically destroy your expired credit card? Scientific research found that the expiration date used by payment terminals on some contactless cards was not effectively protected against tampering. University of Massachusetts Amherst researchers Raja Hasnain Anwar, Gerard DeCunha, and Muhammad Taqi Raza tested contactless cards across Visa, Mastercard, Discover, and American Express, using multiple terminals and merchants. READ MORE...
Roughly 90% of the Fortune 500 runs at least one Salesforce product, and for most of them it holds the customer record the entire commercial operation depends on. That concentration is not a secret. Attackers have read the same statistic you have. What still surprises me is how few security executives can answer one question about it. When a stranger uploads a file to your Experience Cloud portal, what happens to that file, and who owns it if it turns out to be malicious? READ MORE...
Researchers at Adversa AI discovered a new attack technique and named it Cryptographic Context Injection. They reported their findings to xAI on June 3, 2026, and attempted to coordinate disclosure on August 4 and August 10. At the time of writing, they had received no response. They could not disclose to Google since jailbreaks are out of scope for its vulnerability disclosure program. Nevertheless, the success rate for the attack against Gemini had fallen by August. READ MORE...