Stop Your Legacy Infrastructure from Hijacking Your AI Agents

22/06/2026 0 Comments 0 tags

Earlier this month, I spoke at the Gartner Security & Risk Management Summit about a blind spot most security programs are still not accounting for – how attackers are circumventing

Canada’s Spy Agency Used First-of-Its-Kind Warrant to Clean Botnet-Infected Devices

22/06/2026 0 Comments 0 tags

Canada’s spy service got a judge’s permission to reach into infected servers, home routers, and IoT gear sitting on Canadian soil and neutralize two foreign-run botnets. The Federal Court released a

AryStinger Malware Infects 4,300 Legacy Routers to Build Reconnaissance Proxy Network

22/06/2026 0 Comments 0 tags

A new malware family is turning forgotten home routers into a distributed reconnaissance and proxy network, not the DDoS botnet these devices usually end up in. QiAnXin’s XLab calls it AryStinger and

INTERPOL Warns Phishing, Ransomware, and AI Scams Are Rising Across Asia-Pacific

22/06/2026 0 Comments 0 tags

A new report from INTERPOL has revealed a “dramatic increase” in cybercrime in Asia and the South Pacific, fueled by rapid digitalization, internet penetration, new technologies, organized criminal networks, and

Hackers Exploit Gravity SMTP WordPress Plugin Bug to Expose API Keys

20/06/2026 0 Comments 0 tags

Threat actors are exploiting a recently patched security flaw impacting Gravity SMTP, a WordPress plugin that’s installed on about 100,000 sites. The vulnerability, tracked as CVE-2026-4020 (CVSS score: 5.3), is

The Gentlemen RaaS Uses GentleKiller EDR Framework Targeting 400 Security Processes

19/06/2026 0 Comments 0 tags

The Gentlemen ransomware-as-a-service (RaaS) operation is actively developing and maintaining a suite of endpoint detection and response (EDR) killers that it hands out to affiliates for impairing system defenses before

Unpatchable ‘usbliter8’ Exploit Breaks Apple A12 and A13 SecureROM Boot Chain

19/06/2026 0 Comments 0 tags

Security researchers at Paradigm Shift have published a working exploit, dubbed usbliter8, that achieves arbitrary code execution inside the SecureROM of Apple’s A12 and A13 chips. That code is burned into the silicon

AutoJack Attack Lets One Web Page Hijack AI Agent for Host Code Execution

19/06/2026 0 Comments 0 tags

Microsoft researchers have detailed an exploit chain, named AutoJack, that turns an AI browsing agent into a delivery vehicle for remote code execution. Steer the agent to load an attacker’s web

Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites

19/06/2026 0 Comments 0 tags

Dutch law enforcement authorities, along with counterparts from Canada , Germany, and the U.S., have disrupted malicious infrastructure associated with SocGholish and cleaned up nearly 15,000 infected WordPress websites. “With

CISA Warns Fortinet Customers as FortiBleed Hits 86,644 FortiGate Devices

19/06/2026 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday urged Fortinet customers with FortiGate appliances to take steps to secure against ongoing malicious activity aimed at thousands of internet-accessible