infoPulse.biz

25 most recent news stories, from all sources. Ordered from newest to oldest.

Google forced to roll back new AI tool just hours after launch

The tool drew alarm almost immediately, as experts warned about the risks of tampering with satellite imagery

Open original ↗

Coldcard Hardware Wallet Flaw Linked to $70 Million Bitcoin Theft in 41 Minutes

An attacker drained 1,196 Bitcoin addresses in 41 minutes on July 30, taking 1,082.65 BTC worth about $70.2 million at the time. Galaxy Research mapped the sweep and tied it to a firmware flaw in Coldcard, the Bitcoin-only hardware wallet made by Canadian firm Coinkite. A March 2021 firmware integration erro…

Open original ↗

Rails patches critical Active Storage flaw with RCE potential

A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). [...]

Open original ↗

Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments

The funding round was led by SYN Ventures, with participation from existing investors DataTribe and TEDCO. The post Balance Theory Raises $19 Million to Help Enterprises Manage Cybersecurity Investments appeared first on SecurityWeek.

Open original ↗

Ruby on Rails Patches Critical Vulnerability

The flaw can be exploited by unauthenticated attackers to read arbitrary files and potentially achieve remote code execution (RCE). The post Ruby on Rails Patches Critical Vulnerability appeared first on SecurityWeek.

Open original ↗

Hackers Poison Adform Script to Swap Crypto Wallet Addresses Across Customer Sites

Attackers modified a JavaScript file served by advertising technology company Adform, turning it into a browser-side tool that rewrites cryptocurrency wallet addresses. Adform detected the incident on July 27, 2026, removed the malicious code, notified affected clients, and reported it to authorities. Anyone…

Open original ↗

E-mails falsos sobre impostos são usados para infectar empresas no Japão

O grupo de cibercrime Silver Fox, ligado à China, foi identificado conduzindo uma nova campanha de phishing contra uma fabricante japonesa. Os invasores utilizam e-mails altamente personalizados com temas relacionados a impostos, reajustes salariais, mudanças de cargo e planos de participação acionária para…

Open original ↗

Hackers russos exploram falha no Microsoft OWA para manter acesso a e-mails mesmo após troca de senhas

Pesquisadores da Proofpoint identificaram uma campanha de espionagem cibernética em que um grupo ligado à Rússia está explorando uma vulnerabilidade no Microsoft Outlook Web Access (OWA) para manter acesso persistente a caixas de e-mail, mesmo após as vítimas alterarem suas credenciais. A atividade foi atrib…

Open original ↗

73% das empresas admitem não estar preparadas para enfrentar um grande ataque cibernético, aponta relatório

Apesar de a maioria das organizações já possuir planos de resposta a incidentes, ferramentas de segurança e equipes especializadas, 73% reconhecem que não estariam totalmente preparadas para lidar com um grande ataque cibernético caso ele ocorresse hoje. A conclusão faz parte do relatório The State of Incide…

Open original ↗

Phishing Campaigns Targeting AI Solutions Providers, (Sat, Aug 1st)

Most phishing campaigns rely on the fact that the victim is afraid to loose "something": money, access to information, ... Many brands have been impersonated by campaigns but I spotted some phishing emails that focus on AI services like ChatGPT.

Open original ↗

Hijacked Hotel Wi-Fi Pushes Fake Updates to Deliver Surveillance Malware

A fake browser update served over hijacked hotel Wi-Fi has been used to deliver CornFlake, a remote access trojan (RAT) that can capture webcam images, microphone audio, and keystrokes, Microsoft said in its latest report. Researchers track the operation as CaptiveCrunch and attribute it to Storm-2945. It as…

Open original ↗

Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction

Adobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing automation platform, that could result in arbitrary code execution. The vulnerability, tracked as CVE-2026-48449, carries a severity score of 10.0 on the CVSS scoring sy…

Open original ↗

Amgen says cloud data breach exposed patient health, proprietary info

Pharmaceutical company Amgen says it suffered a data breach after threat actors stole corporate data and patient information stored in multiple cloud systems operated by third-party service providers. [...]

Open original ↗

Online ad firm Adform’s script compromised to steal cryptocurrency

Online advertising firm Adform suffered a supply-chain attack that delivered cryptocurrency-stealing scripts to websites using its ad platform, replacing wallet addresses copied to visitors' clipboards with ones controlled by an attacker. [...]

Open original ↗

Arch Linux disables AUR package adoption to stop malware flood

The Arch Linux project has temporarily disabled adoption of Arch User Repository (AUR) packages after a surge in malicious takeovers of existing packages. [...]

Open original ↗

CISA Issues Fresh SBOM Guidance. Did They Get It Right?

A couple-dozen changes to SBOM fields will make them more comprehensive, but some argue that the framework lacks real risk-management improvements.

Open original ↗

Suspected Chinese-Speaking Hackers Target Central Asian Governments With OctLurk and SilkLurk

A Chinese-speaking threat actor is suspected to be behind a fresh wave of cyber attacks targeting government organizations mainly located in Central Asia, including Afghanistan, Kyrgyzstan, Tajikistan, Uzbekistan, Kazakhstan, and the Syrian Arab Republic, since January 2025. These targeted organizations oper…

Open original ↗

LinkedIn set to crack down on posts with AI slop – here’s what to know

AFP/Getty LinkedIn is reportedly testing a new 'seems like AI slop' button - (AFP/Getty)

Open original ↗

OpenAI says its new GPT 5.6 models are becoming more cost-efficient

OpenAI says it has reduced the price of two GPT-5.6 models, cutting Luna's API price by 80% and Terra's by 20% as it works to make its models more efficient. [...]

Open original ↗

HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm

Cybersecurity researchers have shed light on a previously undocumented Go-based loader framework called HollowFrame and a Rust-based malware family tracked as Matryoshka. According to Blackpoint Cyber, the intrusion sequence begins with a spear-phishing message containing a link to an encrypted archive, whic…

Open original ↗

Hacker uses DeepSeek AI to autonomously attack vulnerable servers

A Chinese-speaking threat actor is using the DeepSeek AI model and the open-source Hermes Agent to conduct autonomous cyberattacks on exposed servers with limited human involvement. [...]

Open original ↗

Oregon vet sues AI company saying misdiagnosis of cancer tumor led to 11-year-old dog’s death

The lawsuit alleges Zoetis altered its original report and later admitted in a phone call that similar misidentifications had occurred with other clients

Open original ↗

CISA warns of cyberattacks disrupting U.S. water utilities

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of a significant increase in attacks targeting internet-exposed programmable logic controllers (PLCs) in the water and wastewater systems sector. [...]

Open original ↗

Apple set to lose almost $500 billion in value as shares hit by AI boom

Tim Cook called the shortages ‘very significant’ as Apple dealt with the latest RAMageddon hit

Open original ↗

USN-8620-4: Linux kernel (Intel IoTG) vulnerabilities

Maxim Suhanov discovered that the NTFS file system implementation in the Linux kernel did not properly validate file name length in certain situations, leading to an out-of-bounds read. An attacker could use this to construct a malicious NTFS image that, when mounted and operated on, could expose sensitive i…

Open original ↗