Vendors' News

Vendor announcements

BotBase for Operators: A clearer path to joining Cloudflare’s directory of bots and agents 
  

BotBase for Operators: A clearer path to joining Cloudflare’s directory of bots and agents 

Bot operators now have a home in the Cloudflare dashboard to manage submissions. This update adds submission status tracking, submission

Wordfence Argus: Moving Beyond Human Research Capability 
  

Wordfence Argus: Moving Beyond Human Research Capability 

When you create an AI agent that makes a breakthrough that is so difficult to understand that you need to

​​​​​​What’s new in Microsoft Security: August 2026 
  

​​​​​​What’s new in Microsoft Security: August 2026 

This month’s updates provide new capabilities to help organizations gain insights into agent activity, expand security coverage across supported environments,

How we saved 100 terabytes of memory by optimizing 1.1.1.1’s DNS cache 
  

How we saved 100 terabytes of memory by optimizing 1.1.1.1’s DNS cache 

Five Rust-level memory optimizations to the DNS cache layout of Big Pineapple cut per-entry memory by 56%, freeing approximately 100

Wordfence Argus Finds Critical Authentication Bypass in WPMU DEV Dashboard Plugin 
  

Wordfence Argus Finds Critical Authentication Bypass in WPMU DEV Dashboard Plugin 

On August 19th, 2026, during internal research, I discovered an Authentication Bypass vulnerability in WPMU DEV Dashboard, a WordPress plugin

What to do if you find someone else’s bank card | Kaspersky official blog 
  

What to do if you find someone else’s bank card | Kaspersky official blog 

Found a bank card that isn’t yours? Here’s who to reach out to, why you shouldn’t try to track down

Wordfence Intelligence Weekly WordPress Vulnerability Report (August 17, 2026 to August 23, 2026) 
  

Wordfence Intelligence Weekly WordPress Vulnerability Report (August 17, 2026 to August 23, 2026) 

Last week, there were 240 vulnerabilities disclosed in 184 WordPress Plugins and 17 WordPress Themes that have been added to

Threat landscape for industrial automation systems. Q2 2026 
  

Threat landscape for industrial automation systems. Q2 2026 

The report contains statistics on industrial threats for Q2 2026, including ransomware, miners, spyware and other threats that were detected

Carry-On Compromise: TA4922 Packs PackClient 
  

Carry-On Compromise: TA4922 Packs PackClient 

Key Findings Proofpoint identified a command and control (C2) framework called PackClient sold on Telegram. It is being used by

When AI infrastructure becomes the target: Securing gateways and control points 
  

When AI infrastructure becomes the target: Securing gateways and control points 

Microsoft Threat Intelligence examines attacks on exposed AI workloads, including LiteLLM gateway exploitation, credential harvesting, persistence, and cryptomining activity. The

Celebrating excellence: Palo Alto Networks announces the 2026 North America Partner of the Year Awards 
  

Celebrating excellence: Palo Alto Networks announces the 2026 North America Partner of the Year Awards 

At the 2026 Executive Partner Summit, Palo Alto Networks President BJ Jenkins made one thing clear: the AI era is

Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter 
  

Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter 

A new joint study by Tenable and SentinelOne reveals how state and criminal groups converge on the same vulnerable edge

  

Not the Coyote, but the Road Runner: The Reality of Autonomous AI Attacks 

Autonomous AI security threats aren’t novel super-weapons. They’re relentless, low-tech attacks that never stop. Learn why traditional defenses fail.BlogRead More

Latest

This Linux and Windows app makes managing all your documents easier
 

This Linux and Windows app makes managing all your documents easier

If you’re a student, writer, or professional juggling documents, this app can help keep you organized.Latest newsRead More

This Linux and Windows app makes managing all your documents easier

This Linux and Windows app makes managing all your documents easier

If you’re a student, writer, or professional juggling documents, this app can help keep you organized.Latest newsRead More

U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog

U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities

ATF Confirms Cyber Incident After Ransomware Group Claims Attack

The Bureau of Alcohol, Tobacco, Firearms and Explosives has described it as a ‘major incident’ and it’s conducting an investigation

Oracle Linux 8 ELSA-2026-59821 Kernel Bug Fix Important

Oracle Linux 8 ELSA-2026-59821 Kernel Bug Fix Important

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:LinuxSecurity – Security AdvisoriesRead More

Oracle mingw-openssl Low Buffer Overread Fix ELSA-2026-60329-0

Oracle mingw-openssl Low Buffer Overread Fix ELSA-2026-60329-0

The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:LinuxSecurity – Security AdvisoriesRead More

Exploits and vulnerabilities in Q2 2026 
  

Exploits and vulnerabilities in Q2 2026 

This report covers statistics on vulnerabilities, exploits, and C2 frameworks in Q2 2026. For the first time ever, we aggregate

US Finance Under Phishing Pressure: What the SOC Data Reveals? 
  

US Finance Under Phishing Pressure: What the SOC Data Reveals? 

With modern campaigns such as Vercel-hosted RMM attacks, the scale and security impact of phishing in US finance should not

Unit 42 Defends Organizations Against Next-Gen Frontier AI Risks with Anthropic’s Mythos 5 
  

Unit 42 Defends Organizations Against Next-Gen Frontier AI Risks with Anthropic’s Mythos 5 

Frontier AI has compressed attack timelines from weeks to minutes.  For defenders to gain the upper hand, they need to

Wordfence Argus Finds Complex 6 Step Critical RCE in Avada Theme with 1 Million Sales 
  

Wordfence Argus Finds Complex 6 Step Critical RCE in Avada Theme with 1 Million Sales 

A year ago we wrote that we’d put AI to work across the whole company, turning everyone on the team

The patch window is collapsing: Why security needs a new control plane 
  

The patch window is collapsing: Why security needs a new control plane 

Organizations need protection that operates in the gap between discovery and remediation. The post The patch window is collapsing: Why

The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity 
  

The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity 

Discover how early-stage AI yields rapid SOC returns, driving platform consolidation and reducing analyst burnout in this blog post.SentinelOneRead More

400,000 WordPress Sites Affected by Account Takeover Vulnerability in TranslatePress WordPress Plugin 
  

400,000 WordPress Sites Affected by Account Takeover Vulnerability in TranslatePress WordPress Plugin 

On August 11th, 2026, we received a submission for an Unauthenticated Account Takeover vulnerability in TranslatePress, a WordPress plugin with

  

The New Face of Financial Fraud: AI-Powered Brand Abuse 

AI-powered brand abuse is hitting banks hard. Read about the threats, the business impact, and how Akamai Brand Guardian helps

Cisco Launches Sovereign Critical Infrastructure in Canada – Government and Organizations Gain More Choice and Control 
  

Cisco Launches Sovereign Critical Infrastructure in Canada – Government and Organizations Gain More Choice and Control 

Cisco today launched its Sovereign Critical Infrastructure portfolio in Canada, giving greater control and choice over how organizations run their

A Single Canadian Tax Lure Spread into a 46-Country, US-First RMM Campaign 
  

A Single Canadian Tax Lure Spread into a 46-Country, US-First RMM Campaign 

As ANY.RUN analysis shows, a campaign that initially appears to target Canadians with fake Canada Revenue Agency (CRA) T4 tax

The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution 
  

The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution 

Explore Unit 42 research on AI-enabled malware. Learn how existing behavioral detection and endpoint analytics stop AI-authored code before execution.

The Cloudflare Blog – Brought to you by EmDash 
  

The Cloudflare Blog – Brought to you by EmDash 

We migrated the Cloudflare Blog to EmDash to prove our stack at massive scale. Here is how we stress-tested performance,

24th August – Threat Intelligence Report 
  

24th August – Threat Intelligence Report 

For the latest discoveries in cyber research for the week of 24th August, please download our Threat Intelligence Bulletin. TOP

DNS Abuse and Criminal Infrastructure: Beyond Definitions and Blocklists 
  

DNS Abuse and Criminal Infrastructure: Beyond Definitions and Blocklists 

Evidence suggests that criminals may control a substantial share of new gTLD registrations. Although the precise scale remains contested, the

Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain 
  

Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply Chain 

Attackers are targeting CI/CD pipelines and developer tools instead of application code, requiring total SDLC visibility and strict security controls

Say it once: introducing Bot Preference Sync 
  

Say it once: introducing Bot Preference Sync 

Cloudflare’s new Bot Preference Sync automatically aligns your robots.txt file with your AI bot policies for Search, Agent, and Training.

Wordfence Intelligence Weekly WordPress Vulnerability Report (August 10, 2026 to August 16, 2026) 
  

Wordfence Intelligence Weekly WordPress Vulnerability Report (August 10, 2026 to August 16, 2026) 

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were

100,000 WordPress Sites Affected by Privilege Escalation Vulnerability in Pods WordPress Plugin 
  

100,000 WordPress Sites Affected by Privilege Escalation Vulnerability in Pods WordPress Plugin 

On August 10th, 2026, we received a submission for an Unauthenticated Privilege Escalation vulnerability in Pods, a WordPress plugin with

Malware in car infotainment systems: how infection occurs | Kaspersky official blog 
  

Malware in car infotainment systems: how infection occurs | Kaspersky official blog 

Kaspersky experts have discovered a trojan that infects car head units and makes them part of a botnet. Here’s how

CNCMachineRMS C2 Protocol 
  

CNCMachineRMS C2 Protocol 

This post describes the binary command-and-control (C2) protocol used by CNCMachineRMS, a recently identified remote access trojan (RAT). We cover

The Good, the Bad and the Ugly in Cybersecurity – Week 34 
  

The Good, the Bad and the Ugly in Cybersecurity – Week 34 

U.S. indicts Iranian cyber espionage operations, Medusa ransomware breaches 500 organizations, and attackers exploit a critical Windows protocol flaw.SentinelOneRead More

The invisible passenger in your car 
  

The invisible passenger in your car 

Kaspersky expert has discovered new Android malware designed to serve ads and build a proxy botnet. It’s delivered through legitimate

Intelligence Insights: August 2026 
  

Intelligence Insights: August 2026 

Debuts, departures, and danger on the blockchain in this month’s edition of Intelligence Insights.Red CanaryRead More

From all-or-nothing to task-based OAuth consent 
  

From all-or-nothing to task-based OAuth consent 

Cloudflare OAuth now supports optional scopes, giving users more control over what an app can access and helping developers build

Critical Arbitrary File Upload Vulnerability Patched in Elementor Pro WordPress Plugin 
  

Critical Arbitrary File Upload Vulnerability Patched in Elementor Pro WordPress Plugin 

On July 24th, 2026, we received a submission for an Unauthenticated Arbitrary File Upload vulnerability in Elementor Pro, a WordPress

BTR Reforged: Weaponizing Defender’s Remediation Driver as a Kernel Operation Primitive 
  

BTR Reforged: Weaponizing Defender’s Remediation Driver as a Kernel Operation Primitive 

Research by: Jiří Vinopal (@vinopaljiri) Abstract What if a trusted security component could be repurposed into an attacker-controlled kernel primitive?

Identity Abuse Through Trusted Communication Channels 
  

Identity Abuse Through Trusted Communication Channels 

Unit 42 details how attackers exploit enterprise collaboration tools for identity phishing and credential theft. Discover key defense strategies. The

North Korean IT Workers Scheme: Detection IOCs and Tactics for Government and Corporate SOCs 
  

North Korean IT Workers Scheme: Detection IOCs and Tactics for Government and Corporate SOCs 

The infiltration of North Korean IT workers into American and European organizations has evolved into a sophisticated operation that bypasses

  

Identifying Agentic Automation with Behavioral Telemetry 

Learn how Akamai uses Masked Autoencoder Transformer models to detect sparse behavioral telemetry from autonomous AI browser agents, such as

Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026 
  

Microsoft named a Leader in the Frost Radar™: Cloud Workload Protection Platforms, 2026 

Microsoft is named a visionary leader in the 2026 Frost Radar for Cloud Workload Protection Platforms, recognized for unified runtime

How to protect yourself from webcam spying: five simple steps | Kaspersky official blog 
  

How to protect yourself from webcam spying: five simple steps | Kaspersky official blog 

We explain how to avoid becoming a victim of IP camera surveillance at home or while traveling, and how to

A revisit of remote Spectre attacks on Cloudflare Workers 
  

A revisit of remote Spectre attacks on Cloudflare Workers 

In 2024 and 2025, we reassessed remote Spectre attacks on our Workers infrastructure. We share details about the new attack

Hunt Malware & Phishing Threats with ANY.RUN for Proactive Enterprise Security 
  

Hunt Malware & Phishing Threats with ANY.RUN for Proactive Enterprise Security 

One of the biggest challenges for every threat hunter is navigating endless alerts, scattered indicators, behavioral evidence, and infrastructural context.

Hunting MacSync Stealer infrastructure through behavioral pivots 
  

Hunting MacSync Stealer infrastructure through behavioral pivots 

MacSync Stealer rapidly rotates domains to evade detection, but its behavior remains consistent. Learn how Microsoft uncovered 30+ related domains

Why Behavior-Based Detection Is the New Standard 
  

Why Behavior-Based Detection Is the New Standard 

  2 detection techniques that split behavioral analysis 6 common evasion techniques attackers use to evade static detection 6 core

BGP Role model: tracking the adoption of RFC 9234 
  

BGP Role model: tracking the adoption of RFC 9234 

RFC 9234 lets routers reject route leaks on their own, using BGP Roles and the Only to Customer attribute. We

  

Akamai Valkey Managed Database: Real-Time Memory for Enterprise AI 

Introducing Akamai Valkey Managed Database: a low-latency, in-memory data layer to optimize AI inference costs, accelerate RAG, and power real-time

Thousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtect 
  

Thousands of Hacked WordPress Sites, One Operation: Unmasking StopAndProtect 

Research by: Jaromír Hořejší (@JaromirHorejsi) Key points Introduction We first noticed a ransomware family called StopAndProtect in the middle of

From first serve to match point: Inside the technology powering the Cincinnati Open 
  

From first serve to match point: Inside the technology powering the Cincinnati Open 

How a massive digital transformation is turning the Lindner Family Tennis Center into a year-round, hyper-connected destination.More RSS Feeds: https://newsroom.cisco.com/c/r/newsroom/en/us/rss-feeds.htmlCisco

Mirage2FA Hijacks Companies’ Microsoft 365 Sessions, with Over 4K Victims in the US 
  

Mirage2FA Hijacks Companies’ Microsoft 365 Sessions, with Over 4K Victims in the US 

Mirage2FA is an active phishing-as-a-service toolkit built to steal Microsoft 365 credentials and authenticated sessions through Adversary-in-the-Middle (AiTM) attacks. ANY.RUN

600,000 WordPress Sites Affected by Arbitrary File Upload Vulnerability in Forminator Forms WordPress Plugin 
  

600,000 WordPress Sites Affected by Arbitrary File Upload Vulnerability in Forminator Forms WordPress Plugin 

On July 14th, 2026, we received a submission for an Unauthenticated Arbitrary File Upload vulnerability in Forminator Forms, a WordPress

ClickFix on Steam forums: how malicious PowerShell commands install a crypto miner | Kaspersky official blog 
  

ClickFix on Steam forums: how malicious PowerShell commands install a crypto miner | Kaspersky official blog 

Attackers are targeting Steam forums with malicious PowerShell commands disguised as fixes for game launch issues. Here’s how this version

17th August – Threat Intelligence Report 
  

17th August – Threat Intelligence Report 

For the latest discoveries in cyber research for the week of 17th August, please download our Threat Intelligence Bulletin. TOP

40,000 WordPress Sites affected by Authentication Bypass Vulnerability in User Profile Builder WordPress Plugin 
  

40,000 WordPress Sites affected by Authentication Bypass Vulnerability in User Profile Builder WordPress Plugin 

On July 14th, 2026, we received a submission for an Authentication Bypass vulnerability in User Profile Builder, a WordPress plugin

The Good, the Bad and the Ugly in Cybersecurity – Week 33 
  

The Good, the Bad and the Ugly in Cybersecurity – Week 33 

Courts sentence Com member for sextorting 117 minors, joint advisory warns of Gunra ransomware, and ShieldBreak bypasses MS Defender for

Wordfence Intelligence Weekly WordPress Vulnerability Report (August 3, 2026 to August 9, 2026) 
  

Wordfence Intelligence Weekly WordPress Vulnerability Report (August 3, 2026 to August 9, 2026) 

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were

Secure all your internal vibe-coded applications — in one click 
  

Secure all your internal vibe-coded applications — in one click 

Introducing Cloudflare Access for Workers. Attach an Access policy directly to a Worker and it applies everywhere that Worker runs

How Cloudflare detects MCP traffic and helps secure it 
  

How Cloudflare detects MCP traffic and helps secure it 

Cloudflare Gateway identifies MCP requests using protocol-level heuristics. Security teams can use that signal to find shadow MCP traffic, enforce

APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit 
  

APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit 

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network

Deploying IPv6-first EKS on AWS: What Still Doesn’t Work, and What It Saves 
  

Deploying IPv6-first EKS on AWS: What Still Doesn’t Work, and What It Saves 

In this field report on IPv6-first Amazon Elastic Kubernetes Service (EKS), the isp6 team shares which dependencies still drag IPv4

Palo Alto Networks Recognized as the Only Vendor to be Named a 4X Leader in SASE and SSE Gartner Magic Quadrant Reports 
  

Palo Alto Networks Recognized as the Only Vendor to be Named a 4X Leader in SASE and SSE Gartner Magic Quadrant Reports 

As organizations race to deploy agentic AI, legacy network security solutions are ill-equipped to keep up, forcing productivity tradeoffs while

Strengthening Security of AI Coding: Prisma AIRS API Integration with OpenAI Codex 
  

Strengthening Security of AI Coding: Prisma AIRS API Integration with OpenAI Codex 

Palo Alto Networks works closely with OpenAI across our product platform and Unit 42, leveraging advanced frontier model capabilities. Furthermore,

Putting OpenAI Cyber Models to Work for Defenders 
  

Putting OpenAI Cyber Models to Work for Defenders 

Unit 42 is putting the latest frontier cyber models to work across customer environments to find, validate and help remediate

Total eclipse of the Internet: traffic impacts in Iceland, Spain, and Portugal 
  

Total eclipse of the Internet: traffic impacts in Iceland, Spain, and Portugal 

Cloudflare’s data shows a clear impact on Internet traffic from Iceland to Spain and Portugal, following the path of totality

How to tell an AI-written book from an expert’s | Kaspersky official blog 
  

How to tell an AI-written book from an expert’s | Kaspersky official blog 

Why — and for whom — artificial intelligence is now churning out books, how they end up on Amazon, and

The State of Ransomware Q2 2026 
  

The State of Ransomware Q2 2026 

For the past year, the ransomware conversation has centered on concentration: a handful of dominant RaaS operations controlling most of

Certificate Transparency Monitoring is now generally available 
  

Certificate Transparency Monitoring is now generally available 

Cloudflare’s Certificate Transparency Monitoring is now generally available. The biggest change: we no longer email you about certificates Cloudflare issued

  

Keep Your Tech FLAME Alive: Trailblazer Suzanne Wheeler 

In this Akamai FLAME Trailblazer blog post, Suzanne Wheeler describes her journey into cybersecurity and gives advice to women who

Armored Likho expands its cyber-espionage toolkit 
  

Armored Likho expands its cyber-espionage toolkit 

Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still

Why Defensive AI Has a Harder Job Than Offensive AI 
  

Why Defensive AI Has a Harder Job Than Offensive AI 

The post Why Defensive AI Has a Harder Job Than Offensive AI appeared first on Nextron Systems.Nextron SystemsRead More

Multiple LIR Accounts: Looking Back and Thinking Ahead 
  

Multiple LIR Accounts: Looking Back and Thinking Ahead 

Why a feature introduced for a handful of members became one of the RIPE NCC’s most complex operational challenges.RIPE LabsRead

Intelligence-Driven SOC: Modernizing Threat Monitoring and Detection Engineering for Ultimate MTTR Reduction 
  

Intelligence-Driven SOC: Modernizing Threat Monitoring and Detection Engineering for Ultimate MTTR Reduction 

Threat monitoring serves as the vital connective tissue of modern security operations. It ensures that every function from triage to

Deleting the Defenders: A Commodity BYOVD Toolkit That Erases Host Safeguards 
  

Deleting the Defenders: A Commodity BYOVD Toolkit That Erases Host Safeguards 

Threat Intelligence Spotlight Executive Summary VMRay Labs has analyzed a family of malicious WinRAR self-extracting archives that act as droppers.

Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack 
  

Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack 

Key Points Introduction Since early 2026, Check Point Research has tracked a wave of the Operation Dream Job campaign. This wave primarily

What we know about the cryptocurrency theft through Adform ads | Kaspersky official blog 
  

What we know about the cryptocurrency theft through Adform ads | Kaspersky official blog 

The Adform platform was briefly hijacked to distribute a crypto-stealing script. Here’s everything we know about the incident, plus tips

Cloudflare DDoS Threat Report H1 2026: 1 Tbps attacks soar as DNS floods and geopolitical tensions drive a new wave 
  

Cloudflare DDoS Threat Report H1 2026: 1 Tbps attacks soar as DNS floods and geopolitical tensions drive a new wave 

In the first half of 2026, Cloudflare detected a 519% surge in hyper-volumetric DDos attacks across its network. These attacks

Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants 
  

Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver PhantomCore and PhantomGraph to video conference participants 

Kaspersky experts have discovered malicious TrueConf software installers. The Head Mare APT group uses them to deliver the PhantomCore and

Kimwolf v7: An Evolution of the Kimwolf Botnet 
  

Kimwolf v7: An Evolution of the Kimwolf Botnet 

Discover how Kimwolf v7 targets Android IoT devices with HTTP/2 DDoS fingerprinting, Ethereum ENS C2 resolution and Tor backup routing.

Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selection 
  

Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selection 

Project CAV3RN targets Israel with Google Apps Script C2 relays and DNS-based routing. Modular .NET NativeAOT framework blends C2 traffic

Supply Chain Security: How ANY.RUN Helps US and EU Enterprises Prevent Incidents 
  

Supply Chain Security: How ANY.RUN Helps US and EU Enterprises Prevent Incidents 

Supply chain vulnerabilities represent a growing attack surface for US and EU organizations. With advanced threat tactics on the rise,

The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations and Communications 
  

The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations and Communications 

Analysis of the Aeternum botnet loader, a threat leveraging Polygon blockchain smart contracts for decentralized C2 infrastructure and payload execution.

Everything we launched during Agents Week 
  

Everything we launched during Agents Week 

Our latest Agents Week has come to a close. Here’s a recap of all the announcements we made, from Wallets

  

Updated GPG key for signing Firefox and Thunderbird Releases 

Today, we moved to a new GPG signing subkey used to sign certain Firefox and Thunderbird artifacts (namely Linux tarballs,

Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise  
  

Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise  

Microsoft is named a Leader in the 2026 IDC MarketScape for MDR services. Discover how Microsoft Defender Experts MDR combines

DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure 
  

DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure 

Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support

Detection blind spots: polyglot file formats in mass mailings and targeted attacks 
  

Detection blind spots: polyglot file formats in mass mailings and targeted attacks 

How polyglots are built, real-world cyberattack examples, and tips for detecting and preventing this threat.Kaspersky official blogRead More

10th August – Threat Intelligence Report 
  

10th August – Threat Intelligence Report 

For the latest discoveries in cyber research for the week of 10th August, please download our Threat Intelligence Bulletin. TOP

Smile, You’re on Camera. Part 2: Hiring Lazarus APT’s IT Workers in a Fake DeFi Startup 
  

Smile, You’re on Camera. Part 2: Hiring Lazarus APT’s IT Workers in a Fake DeFi Startup 

Editor’s note: This work is a collaboration between Mauro Eldritch from BCA LTD, a company dedicated to threat intelligence and

Serving the most critical missions: Cloudflare for Government achieves FedRAMP Class D (High) Certified status 
  

Serving the most critical missions: Cloudflare for Government achieves FedRAMP Class D (High) Certified status 

Cloudflare for Government achieves FedRAMP Class D (High) Certified status. We also announce our commitment to pursue DoD IL4 authorization.

New in THOR Cloud: SSO, Granular Permissions, and Account API Keys 
  

New in THOR Cloud: SSO, Granular Permissions, and Account API Keys 

The post New in THOR Cloud: SSO, Granular Permissions, and Account API Keys appeared first on Nextron Systems.Nextron SystemsRead More

Every agent needs an oracle: How to trust AI-drafted detection rules 
  

Every agent needs an oracle: How to trust AI-drafted detection rules 

Every Agent Needs an Oracle Detection rules are increasingly drafted by machines rather than by human engineers. An agent reads

IT threat evolution in Q2 2026. Mobile statistics 
  

IT threat evolution in Q2 2026. Mobile statistics 

This report contains mobile threat statistics for Q2 2026, along with noteworthy discoveries and quarterly trends: the Anatsa banker and

IT threat evolution in Q2 2026. Non-mobile statistics 
  

IT threat evolution in Q2 2026. Non-mobile statistics 

The report presents key trends and statistics on malware that targeted personal computers running Windows and macOS, as well as

PSA: Supply Chain Compromise in BdThemes Ecosystem via Poisoned API Response 
  

PSA: Supply Chain Compromise in BdThemes Ecosystem via Poisoned API Response 

The Wordfence Threat Intelligence Team was notified on August 7th, 2026 of a supply chain compromise affecting BdThemes, a WordPress

Wordfence Intelligence Weekly WordPress Vulnerability Report (July 27, 2026 to August 2, 2026) 
  

Wordfence Intelligence Weekly WordPress Vulnerability Report (July 27, 2026 to August 2, 2026) 

Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were

Inside the Modern SOC: The Identity Front Door 
  

Inside the Modern SOC: The Identity Front Door 

Identity-based attacks drive 90% of incidents. Learn how modern attackers exploit identities and what SOC leaders can do to respond.

July 2026 Detection Highlights: 10 New VTIs, 50+ YARA Rules, and 4 Config Extractors 
  

July 2026 Detection Highlights: 10 New VTIs, 50+ YARA Rules, and 4 Config Extractors 

The Labs team at VMRay actively gathers publicly available data to identify any noteworthy malware developments that demand immediate attention.

Unifying Workers AI and AI Gateway into a single AI control plane 
  

Unifying Workers AI and AI Gateway into a single AI control plane 

Cloudflare is unifying AI Gateway and Workers AI into a single control plane, giving developers observability, billing, and dynamic routing

Introducing Radar Researcher: An AI tool for exploring Internet data in plain language 
  

Introducing Radar Researcher: An AI tool for exploring Internet data in plain language 

Cloudflare Radar Researcher is a new AI-powered tool that lets you explore global Internet trends and traffic data using plain

Announcing Cloudflare Ambassadors, Community Engineers, and another $1M in open-source funding 
  

Announcing Cloudflare Ambassadors, Community Engineers, and another $1M in open-source funding 

We are launching updated community programs, including Cloudflare Ambassadors and Community Engineers, backed by $1M in open-source funding. Learn how

Unveiling good and bad behaviors on the Agentic Internet 
  

Unveiling good and bad behaviors on the Agentic Internet 

Cloudflare is shifting bot mitigation from point-in-time Risk assessment to continuous Trust evaluation. Learn how new good and bad behaviors