AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure

20/08/2026 0 Comments 0 tags

The U.S. government on Wednesday warned of an “active threat” targeting critical infrastructure organizations in the country using artificial intelligence (AI)-generated exploit scripts. The activity is targeting Siemens S7 SeriesProgrammable

New Cryptographic Context Injection Attack Could Let Web Pages Steal Grok Chat Data

20/08/2026 0 Comments 0 tags

Adversa AI has disclosed an attack technique that it says can cause xAI’s Grok chatbot to send a user’s name, approximate location, subscription tier, and the prompts from the ongoing

Attackers Exploit Zimbra SNMP Flaw for Unauthenticated Remote Code Execution

20/08/2026 0 Comments 0 tags

A now-patched security flaw impacting Zimbra Collaboration (ZCS) has come under active exploitation in the wild, according to the Polish Computer Emergency Response Team (CERT Polska). The vulnerability in question

Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers

20/08/2026 0 Comments 0 tags

Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical-severity authentication bypass vulnerability. According to the cloud computing and virtualization technology

Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE

20/08/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed a critical security flaw in isolated-vm, a popular open-source sandbox with more than 2,900 stars and 190 forks on GitHub, that could allow attackers to escape

Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices

20/08/2026 0 Comments 0 tags

A new Android threat codenamed Manic has been observed actively targeting Ukrainian banks, government and identity services, and messaging applications, as well as Russian and European financial institutions, global fintech

CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification

20/08/2026 0 Comments 0 tags

Cybersecurity researchers have disclosed two denial-of-service (DoS) attacks that exploit how major content delivery networks (CDNs) convert client-facing HTTP/3 traffic into HTTP/1.1 requests to the websites they front, amplifying a

Why “Shady AI” is Security’s Next Big Governance Problem

20/08/2026 0 Comments 0 tags

In March 2026, an internal AI agent at Meta triggered a “Sev 1” incident after sensitive company and user data was exposed to employees who weren’t authorized to access it. 

Zombie Card Attack Can Revive Expired Visa Cards for Contactless Payments

20/08/2026 0 Comments 0 tags

Researchers at the University of Massachusetts Amherst have demonstrated an attack that revives expired Visa contactless credit cards for real in-store purchases by rewriting the expiration date a point-of-sale (POS)

40 Malicious Firefox Extensions Pose as Web3 Products to Steal Wallet Secrets

20/08/2026 0 Comments 0 tags

A set of 40 Mozilla Firefox extensions has been found to engage in cryptocurrency wallet theft by masquerading as OKX, Rabby Wallet, TronLink, and other Web3 products. According to the