Skip to content

1010.cx

  • Fake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote Access

    ·

    Cybersecurity researchers have disclosed details of an active, multi-wave campaign that employs social engineering lures themed around Adobe and Zoom software updates, business document reviews, and system maintenance utilities to stealthily deploy Remote Monitoring and Management (RMM) programs like ConnectWise ScreenConnect. The campaign has been codenamed SMOKE#SCREEN by Securonix Threat

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • AI Agent Carried Out A Ransomware Attack Without Any Human Oversight

    ·

    Blogs
    This week in cybersecurity from the editors at Cybercrime Magazine

    Sausalito, Calif. – Aug. 4, 2026

    – Listen to the podcast

    “This wasn’t someone behind the keyboard using AI as a tool to write malware,” says Heather Engel, guest expert on the Cybercrime Magazine Podcast. “The agent was given a target, identified vulnerabilities, chose its own methods, and deployed the attack with zero human intervention from start to finish. The AI was acting as it own threat actor, which really pushes us into a new territory for cybersecurity.”

    Engel is talking about an AI agent that recently carried out a cyberattack without any human oversight for the first time, according to a story in The Independent.

    The AI-powered attack marks a major milestone for both AI and cybersecurity, raising concerns that AI is lowering the barrier for cybercriminals. The fully automated campaign involved an AI agent launching a ransomware attack, where victims are forced to pay a ransom in order to regain access to their data.

    A team from cloud security firm Sysdig said the AI attacker, which they named JADEPUFFER, broke into a vulnerable server, discovered passwords and login credentials, and then encrypted a production database before demanding a bitcoin ransom.

    “Ransomware has had a human at the keyboard, or at least a human writing its script, since it was first established as a category of threat,” Michael Clark, director of threat research at Sysdig, wrote in a blog post.

    Amanda Glassner, deputy Editor at Cybercrime Magazine, asked Engel: “Do you think we’re at the point where we need AI to fight AI?”

    Listen to the Podcast episode


    Cybercrime Magazine · Talking Cyber. First Human-Free AI Cyberattack. Heather Engel, Strategic Cyber Partners. 

    Cybercrime Magazine is Page ONE for Cybersecurity. Go to any of our sections to read the latest:

    • SCAM. The latest schemes, frauds, and social engineering attacks being launched on consumers globally.
    • NEWS. Breaking coverage on cyberattacks and data breaches, and the most recent privacy and security stories.
    • HACK. Another organization gets hacked every day. We tell you who, what, where, when, and why.
    • VC. Cybersecurity venture capital deal flow with the latest investment activity from various sources around the world.
    • M&A. Cybersecurity mergers and acquisitions including big tech, pure cyber, product vendors and professional services.
    • BLOG. What’s happening at Cybercrime Magazine. Plus the stories that don’t make headlines (but maybe they should).
    • PRESS. Cybersecurity industry news and press releases in real time from the editors at Business Wire.
    • PODCAST. New episodes daily on the Cybercrime Magazine Podcast feature victims, law enforcement, vendors, and cybersecurity experts.
    • RADIO. Tune into WCYB Digital Radio at Cybercrime.Radio, the first and only round-the-clock internet radio station devoted to cybersecurity.

    Contact us to send story tips, feedback and suggestions, and for sponsorship opportunities and custom media productions.

    The post AI Agent Carried Out A Ransomware Attack Without Any Human Oversight appeared first on Cybercrime Magazine.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • OpenAI Shuts Down ChatGPT Accounts Powering a Cambodia-Based Scam Factory

    ·

    ChatGPT, cyber security, Cyber Security News, OpenAI

    OpenAI has shut down a coordinated network of ChatGPT accounts that powered a Cambodia-based scam factory running multi-vector fraud and trafficking-linked operations, and has shared indicators with industry peers and authorities to make the network’s reconstitution significantly harder. Earlier in 2026, OpenAI’s threat intelligence team disrupted a scam syndicate that weaponized ChatGPT to drive investment, […]

    The post OpenAI Shuts Down ChatGPT Accounts Powering a Cambodia-Based Scam Factory appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Shai-Hulud Supply Chain Attack Compromises Keyv and Hundreds of npm Packages

    ·

    cyber security, Cyber Security News

    Attackers have compromised the GitHub account of a Keyv maintainer, a widely used JavaScript key-value storage library, to distribute credential-stealing malware via npm packages. This ongoing supply chain attack, known as the Shai-Hulud campaign, has affected Keyv and several related caching libraries, with a combined monthly installation reach in the billions. Aikido Security reported that […]

    The post Shai-Hulud Supply Chain Attack Compromises Keyv and Hundreds of npm Packages appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • OWASP Introduces Subtractive Security Top 10 to Eliminate Attack Paths and Reduce Cyber Risk

    ·

    cyber security, Cyber Security News, OWASP – Top 10

    OWASP has launched the Subtractive Security Top 10 project, a security engineering initiative that shifts the focus from adding more detection controls to removing the architectural conditions that enable cyberattacks. The project, led by Christopher Frenz, promotes a straightforward premise: attackers can only exploit attack paths that exist. Instead of relying primarily on monitoring, alerting, […]

    The post OWASP Introduces Subtractive Security Top 10 to Eliminate Attack Paths and Reduce Cyber Risk appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • CISA Adds Exploited N-able N-central Flaw Enabling Remote Admin Takeover to KEV

    ·

    CVE/vulnerability, cyber security, Cyber Security News, vulnerability

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added CVE-2026-18577, an actively exploited authentication bypass vulnerability in N-able N-central, to its Known Exploited Vulnerabilities (KEV) Catalog. This vulnerability allows unauthenticated attackers to bypass authentication and potentially take over administrative accounts on vulnerable N-central servers. CISA added this flaw to the KEV Catalog on August […]

    The post CISA Adds Exploited N-able N-central Flaw Enabling Remote Admin Takeover to KEV appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • 2026 Cybersecurity Excellence Awards: Community Choice Winners Selected Through 80,000 Votes

    ·

    Press Release
    Las Vegas, Nevada, 4th August 2026, CyberNewswire

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Russian Access Broker Sells Network Access to Ransomware Gangs While Spying on Ukraine

    ·

    cyber security, Cyber Security News, Ransomware

    An exposed server linked to a Russian‑speaking initial access broker (IAB) has revealed a sprawling operation that simultaneously fuels ransomware intrusions worldwide and supports Russian state-aligned intelligence collection against Ukrainian defense and aerospace targets. The artefacts show a mature, high‑volume access brokerage pipeline that industrialises exploitation of internet‑facing appliances, pivots to full Active Directory compromise, […]

    The post Russian Access Broker Sells Network Access to Ransomware Gangs While Spying on Ukraine appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • Thermo Fisher Patches Forensic DNA File Tampering Flaw in Its Software

    ·

    CISA, cybersecurity, Forencis, Security, Thermo Fisher, vulnerability
    Thermo Fisher patched CVE-2026-17583 in five supported DNA analysis products by adding digital signatures that help laboratories detect modified forensic files.

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

  • When Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted

    ·

    The cybersecurity industry has spent decades assuming that offensive capability scales with technical expertise. That assumption is starting to break. Security teams have long estimated risk by ranking attacker sophistication. Nation-state actors sat at one end. Organized criminal groups followed. Inexperienced attackers, dismissed as “script kiddies,” sat at the other end, running public

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

    ¶¶¶¶¶

Previous Page
1 2 3 4 … 1,007
Next Page

1010.cx

cybersecurity / defense / intelligence