<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 8/3/2026

SHARE

Top News

US Water Cyberattacks Extend Beyond Minnesota to at Least 6 Other States

The recent cyber campaign targeting the water and wastewater sector in the United States has hit at least seven states as more information has come to light regarding Iran's connection to the hacker attacks. Minnesota reported last week that operational technology (OT) systems at more than 30 water and wastewater facilities were targeted in a cyberattack on July 26 and 27. Only a handful of cities issued public statements about the attack. READ MORE...

Hacking

Russian State APT Linked to Recent Public Wi-Fi Gateway Hacking

A Russian state-sponsored APT is behind a recent credential theft campaign mounted via hacked public Wi-Fi gateway appliances at organizations running captive portal networks, Microsoft reports. The campaign was flagged roughly a week ago by ReliaQuest, which noticed that hackers had modified the DNS configurations of compromised small office/home office (SOHO) routers to redirect users to attacker-controlled infrastructure. READ MORE...


Hacker uses DeepSeek AI to autonomously attack vulnerable servers

A Chinese-speaking threat actor is using the DeepSeek AI model and the open-source Hermes Agent to conduct autonomous cyberattacks on exposed servers with limited human involvement. The activity was discovered by Palo Alto Networks' Unit 42 researchers after Hermes accidentally created a web server from its home directory, exposing the attacker's environment, including API keys, exploit scripts, target lists, shell history, and AI attack logs. READ MORE...

Software Updates

Chrome may get faster updates with no restart required

With Chrome, Google pioneered the rapid release model for browser security. Now, Google says updates may need to change in the face of AI security analysis. According to the company, the number of bug fixes in Chrome releases has skyrocketed in recent months because AI is detecting so many flaws. We could be looking at more frequent updates soon, but Google is also working on ways to get those updates rolled out without bothering you as much. READ MORE...

Malware

Anthropic says human error let Claude AI models escape test environment and hack third parties

Versions of Anthropic's Claude AI model broke out of their testing environments and hacked into other organizations on three separate occasions, Anthropic said on Thursday. Versions of Anthropic's Claude AI model broke out of their testing environments and hacked into other organizations on three separate occasions, Anthropic said on Thursday. In the three incidents that Anthropic disclosed, Claude conducted the intrusions while believing that it was participating in a capture-the-flag exercise. READ MORE...

Information Security

Bruce Schneier: The OpenAI Hack Shows the Genie Is Out of the Bottle

Earlier this month, two of OpenAI's models broke out of their containment sandbox and attacked another AI company. The story is kind of wild. OpenAI was running security tests on two of its models: GPT-5.6 Sol and an unreleased model that is almost certainly GPT-6. In particular, it was running the ExploitGym benchmark, which measures how good a model is at turning security vulnerabilities into working exploits: basically, offensive cyberattacks. READ MORE...


CrowdStrike: AI is now both the weapon and the target in cyberattacks

While AI is supposed to help defenders, it's now creating more than twice as much noise as human-triggered incidents CrowdStrike detects as potentially malicious. The company's threat hunting team and systems triaged an average of 14 million detection leads daily, resulting in about 36,000 customer alerts during the one-year period ending in June. "AI agent-driven behaviors have surged past human triggers," said Adam Meyers, senior vice president of counter adversary operations at CrowdStrike. READ MORE...

Exploits/Vulnerabilities

Max-severity Exchange server flaw under active exploitation by Kremlin hackers

Russian state hackers are using a maximum-severity vulnerability in Microsoft Outlook's Exchange Server to backdoor unpatched machines and steal credentials and other confidential information from them, security researchers said Thursday. Proofpoint and the National Security Agency jointly warned last week that the group, also tracked as Laundry Bear and Void Blizzard, had been carrying out similar attacks by exploiting a zero-day vulnerability in an email service from Zimbra. READ MORE...

On This Date

  • ...in 1492, Christopher Columbus leaves Spain on his voyage to the new world.
  • ...in 1807, former Vice President Aaron Burr is put on trial for treason, after leading a secessionist plot to take over the western territories.
  • ...in 1958, the first nuclear submarine, USS Nautilus, passes under the North Pole.
  • ...in 1977, Tandy unveils the TRS-80 PC, which with Apple and Commodore would form the "1977 Trinity" of affordable home computers.