<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 8/4/2026

SHARE

Hacking

Fake IRS letters target cryptocurrency holders

Do you hold cryptocurrency? Have you received a letter telling you that you must register with a so-called "Digital Asset Compliance Portal"? If so, it's time to hit the brakes, because it sounds like someone is trying to scam you. The IRS has issued a fraud alert after it was found that scammers are sending official-looking letters to people with cryptocurrency holdings, directing victims to a website designed to steal personal details and digital assets. READ MORE...

Trends

AI makes costly spearphishing attacks easier, cyber insurer says

Ransomware extortion caused roughly three-quarters of business losses in the first half of 2026, the cyber insurance firm Resilience said in a recent report. At the same time, ransomware accounted for less than 6% of the incidents for which Resilience customers submitted claims, which the company said highlighted how "disproportionately costly" they are. Other data in the report highlight the importance of proper employee training and vigilant adherence to protocols such as regular backups. READ MORE...

Malware

Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts

Microsoft has linked a global campaign targeting hospitality Wi-Fi networks to the Russian threat actor Midnight Blizzard, also known as APT29. The activity was previously disclosed in a report from cybersecurity company ReliaQuest, which detailed how the attacker changed DNS settings on Wi-Fi devices to steal Microsoft 365 accounts. Besides attributing the campaign to Russian hackers tracked as Storm-2945, Microsoft identified two malware families called CornFlake and ChocoShell. READ MORE...

Information Security

New Tool Traces AI Videos Back to Their Source

The next applicant appears on the screen, ready for the interview. Questions go smoothly, they seem to have all the right answers, and their background has already been vetted. So, they're hired as the latest remote IT worker. Weeks later, the company discovers it was all a sham. The face on the video call was manipulated using deepfake technology, and even the voice was altered with artificial intelligence (AI). The person they hired doesn't exist. READ MORE...

Exploits/Vulnerabilities

Gemini Agent-to-Agent Attack Method Exposed Secrets, Enabled Pull Request Tampering

Pillar Security discovered an agent-to-agent attack method in Google's Agent Development Kit for Python that could lead to secret exposure and pull request (PR) poisoning. The google/adk-python repository had two classes of automated AI agents, namely low-privileged ones open to user interaction, and high-privileged ones accessible only to maintainers. An attacker could manipulate the low-privileged agent to pass a prompt to the high-privileged one, gaining access to restricted capabilities. READ MORE...


Decades-Old BMC Vulnerability Exposes Thousands of Data Centers to Attacks

Thousands of data centers are at risk of compromise due to a 22-year-old vulnerability in Baseboard Management Controller (BMC) management processors, data center security firm Lava reports. Found in most server platforms, BMCs enable server management operations even without a working operating system and typically represent some of the most privileged control points in a data center. READ MORE...


Attackers exploit N-able N-central flaw to reach managed endpoints (CVE-2026-18577)

Attackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) in N-able N-central, a remote monitoring and management (RMM) solution widely used by managed service providers, to gain access to managed endpoints. "On July 31, 2026, N-able saw an increase in licensing issues for our on-premises N-central customers. Licensing issues are not uncommon, but the volume was high and the engineering and security teams were engaged," N-able shared. READ MORE...


AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls

A popular AI notetaker is allowing hackers to spy on any of its users' conference calls. Tl,dv (Too Long, Didn't View) is a meeting assistant that automatically joins, records, and transcribes video calls, unless its users specify otherwise. Its website boasts that it's trusted by more than two million users worldwide, including at brand name companies like Salesforce, Forbes, and Cloudflare. In fact, its marketing may be modest. READ MORE...

On This Date

  • ...in 1914, President Woodrow Wilson and the U.S. declare neutrality in World War I.
  • ...in 1977, President Jimmy Carter signs legislation creating the US Department of Energy.
  • ...in 2007, NASA launches the Phoenix Mars probe to investigate the Martian surface for evidence of water and microbial life.
  • ...in 2011, Paul McCartney performs a live concert at Great American Ball Park in Cincinnati, Ohio.