Cybersecurity news from across the internet
Cybersecurity news from across the internet
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

New details about the July attack on Hugging Face reveal that hundreds of AI agents driven by OpenAI's internal IM1 model coordinated the compromise through an unauthorized message board. [...]




What’s new in Microsoft Security: August 2026
BlueDelta Targets Defense and Diplomacy with HOOKEDGE
FD - Half-click unauthenticated remote code execution on Horde Groupware IMP (from a stored XSS)
[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File
ISC Stormcast For Friday, August 28th, 2026 https://isc.sans.edu/podcastdetail/10072, (Fri, Aug 28th)
Back to the Future: Why Agentic AI Needs a Strong Identity Foundation
CISA Adds Three Known Exploited Vulnerabilities to Catalog
A polymorphic phishing page (that occasionally breaks itself), (Thu, Aug 27th)
Voice Phishing Attacks Target Hedge Fund Employees
Flock wants privacy to meet surveillance halfway
Fake listings can turn trusted platforms into scam springboards
Warning: Malicious AI Tools Are Spreading in the Criminal Underground