🛡️ Cybersecurity & Technology News
BleepingComputer
Anthropic confirms Claude is down in major outage affecting multiple services
Claude is experiencing a major outage, with users reporting login problems and degraded performance across several Anthropic services. [...]
Large-scale DDoS attacks disrupted Threema secure messaging service
Multiple distributed denial-of-service (DDoS) attacks targeted the Threema secure messaging service earlier this week, causing severe disruptions to communications. [...]
New AmnesiaStealer macOS malware hijacks browser sessions via remote control
A new information-stealing malware called AmnesiaStealer, which targets macOS users via ClickFix attacks, includes a streaming module that allows the attacker to interactively control the victim's web browser. [...]
New Evooo1Bot Linux botnet turns routers into traffic relay nodes
A new Mirai-based modular Linux botnet malware called Evooo1Bot has been targeting internet-facing gateway devices, turning them into SOCKS5 traffic relay nodes. [...]
How Anthropic plans to watermark Claude's AI-generated text
It could soon become easier to identify AI-generated content, even if it's not the usual "It's Not X, it's Y" type of post you'd come across on LinkedIn and other socials. [...]
Hackers arrested over €30M bank fraud exploiting service provider flaw
Four cybercriminals were arrested in Brazil, and three others were charged in Europe over allegations that they exploited a vulnerability at a service provider, allowing them to withdraw funds from Commerzbank customers' bank accounts. [...]
Hackers exploit macOS Screen Sharing flaw to deploy Monero miner
The Netherlands' National Cyber Security Centre (NCSC) is warning that hackers are actively exploiting a macOS authentication bypass vulnerability after public exploit code emerged. [...]
The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI
Google Workspace attacks do not always begin with phishing. Stolen OAuth tokens can provide another path into Gmail, Drive, and connected systems. Material Security explains why organizations need defenses that cover the entire Workspace attack...
Max severity SAP Commerce Cloud flaw now targeted in attacks
A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. [...]
Shell investigates 'potential incident' after Clop data theft claims
Oil giant Shell has confirmed it is investigating a potential security incident after the Clop ransomware gang claimed it stole 89GB of data. [...]
RingCentral data breach exposed info of 1.6 million accounts
The ShinyHunters extortion group stole personal information from 1.6 million RingCentral accounts after hacking the company in July, according to the data breach notification service Have I Been Pwned. [...]
Data analyst sent to prison for stealing data, extorting employer
A former data analyst contractor for Brightly Software has been sentenced to two years in prison for targeting his employer in a $2.5 million extortion scheme. [...]
Apple sends new ‘Threat Notification’ alerts over mercenary spyware attacks
You're not alone if you just received an "Apple Threat Notification" saying it detected a "mercenary spyware attack targeted at your iPhone." [...]
Ukraine shuts down 94 fraudulent call centers, seize millions in cash
Authorities in Ukraine shut down 94 fraudulent call centers across the country that lured people into investment scams or tried to obtain access to bank accounts. [...]
Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt
An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine into Safe Mode with Networking. [...]
TechCrunch (All)
Stripe will reportedly acquire AI gateway startup OpenRouter for $7B+
OpenRouter's CEO recently described the startup as Stripe for AI.
Why people aren’t buying Mark Zuckerberg’s AI future
On the latest episode of Equity podcast, we discuss why not everyone is buying Zuckerberg’s vision.
Anthropic CEO says AI backlash is ‘fundamentally a crisis of trust’
Dario Amodei is pushing back against the idea that he's been painting an overly pessimistic picture of AI.
TechCrunch Mobility: The shifting flight path of electric air taxis
Welcome back to TechCrunch Mobility — your central hub for news and insights on the future of transportation.
Woman claims her stepfather used Grok to transform childhood photo into explicit imagery
The woman claimed that AI tools are "taking everyday life and turning it into child sexual abuse."
Anthropic shares more details about how Claude’s new watermarks will work
How will the watermarking actually work? Can it be hidden with editing? And how does this affect code?
SpaceX officially closes its Cursor acquisition
AI coding startup Cursor is now officially a part of SpaceX.
How to tell if your AI platforms’ accounts have been hacked
A guide on how to check if hackers have broken into your accounts on the most popular AI platforms.
Every fusion startup that has raised over $100M
Fusion startups have raised $7.1 billion to date, with the majority of it going to a handful of companies.
Talks to sell PayPal to Stripe and Advent are heating up
PayPal is still reportedly negotiating a potential sale to Stripe and private equity firm Advent, as the fintech firm's new CEO attempts to turn the company around.
Self-driving trucks are officially testing on California highways
Aurora Innovation and Kodiak AI, two companies developing self-driving trucks, have received permits from the California Department of Motor Vehicles.
Thrive’s Joshua Kushner chides Silicon Valley VCs over AI euphoria
The AI opportunity is huge, but "it would also be a grave error in our minds to let excitement weaken our investment discipline," Kushner warns in his first-ever investment letter.
What we know about the alleged Iranian hacks on US water utilities
Over the last couple of weeks, hackers have targeted and broken into the systems of several water plants in the United States. Here’s what we know and don’t know about this wave of attacks allegedly carried out by the Iranian government.
Read-it-later app Pocket shut down — here are the best alternatives
Pocket users have until October 8, 2025, to export their saved articles and other items, including lists, archives, favorites, notes, and highlights.
Unforgetful is a new reminders app for people who can’t stop hitting snooze
Unforgetful, the latest app from longtime indie developer Marco Arment, is designed to make reminders harder to ignore — or accidentally dismiss.
Google will now allow users to remove visible watermark from its AI generations
Turning off this setting won't affect invisible benchmarks used to identify an AI generated file.
Does Mark Zuckerberg really believe AI is ‘for everyone’?
Meta released Glimmer this week, an open-weight AI model anyone can download and run on their own hardware — a contrast to Muse Spark, the company’s more powerful model that stays locked behind its own APIs. The release...
Apple proposes to take a 15% cut of purchases made outside the App Store
Apple is asking a federal judge to allow it to charge commissions of up to 15% on purchases made through external links in iOS apps.
Kog is going deeper to squeeze more inference out of GPUs
The idea that GPUs are poorly suited for agentic workflows may be a misconception, according to French startup Kog.
Hyperscalers might regret embracing natural gas if new forecast proves correct
Natural gas prices could triple in some parts of the U.S., which could saddle hyperscalers with massive bills to power their AI data centers.
How-to-Geek
3 exciting Netflix thrillers to watch this week (August 17-23)
If you like IP, then you'll appreciate these thrillers from recongizable franchises.
The 2027 Toyota Tundra Trailhunter solves an off-roader's biggest warranty headache
Factory-built overlanding setup that's ready for the trail without any aftermarket work.
Virtual desktops, docks, and tabbed windows—Linux had them first
These '90s experiments were so good even Windows copied them.
4 iconic Prime Video movies to watch this week (August 17-23)
his week's Prime Video movie lineup includes a Nolan epic, a Coen masterpiece, a Dennis Hopper cult classic, and a Triple Lindy.
The 32-year-old Windows placeholder that Microsoft says is now a permanent feature
A “stopgap” solution that has outlived many other Windows features.
I used Claude to build Anki flashcards—and it's the future of learning
How I use Claude to build personalized Anki flashcards based on my own study material, in minutes.
I get 300 notifications a day on Android—here's my system for taming them
Take control of your notification panel
5 ways to repurpose an old Nintendo Wii Remote
It's a good thing you kept those old Wii Remotes this whole time.
I turned off one Samsung setting and my Galaxy stopped overheating while charging
Your Samsung phone's fast charging is slowly killing its battery—here's how to stop it.
5 ways to combine your 3D printer and smart home that you've never thought of
Custom enclosures, controls, and mounts are only a print away.
This Week In 4n6
Week 33 – 2026
At Triangle Wave Security we wanted to automatically hook our spreadsheet of doom into IOC feeds and sandbox results as the incident unfolded. Bulk copy-and-paste just didn’t have the juice and there are already enough dedicated year-old...
Week 32 – 2026
At Triangle Wave Security we wanted to automatically hook our spreadsheet of doom into IOC feeds and sandbox results as the incident unfolded. Bulk copy-and-paste just didn’t have the juice and there are already enough dedicated year-old...
Week 31 – 2026
At Triangle Wave Security we wanted to automatically hook our spreadsheet of doom into IOC feeds and sandbox results as the incident unfolded. Bulk copy-and-paste just didn’t have the juice and there are already enough dedicated year-old...
Week 30 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Week 29 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Week 28 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Week 27 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Week 26 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Week 25 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Week 24 – 2026
If your organisation is interested in sponsoring an upcoming post then reach out via the contact form! No sponsor this week
Reddit RSS
```CVEfeed.io
CVE-2026-19957 - graphlit graphlit-mcp-server ssrf-test Endpoint tools.ts fetch server-side request forgery
<strong>CVE ID :</strong>CVE-2026-19957 <br /> <strong>Published :</strong> Aug. 16, 2026, 10:16 p.m. | 19 minutes ago <br /> <strong>Description :</strong>A vulnerability was identified in graphlit graphlit-mcp-server 1.0.1. This affects...
CVE-2026-19958 - iatsiuk pptr-mcp execute Tool vm-executor.ts executeCode code injection
<strong>CVE ID :</strong>CVE-2026-19958 <br /> <strong>Published :</strong> Aug. 16, 2026, 10:15 p.m. | 20 minutes ago <br /> <strong>Description :</strong>A security flaw has been discovered in iatsiuk pptr-mcp up to 0.2.7. The impacted...
CVE-2026-19956 - gomarble-ai facebook-ads-mcp-server server.py fetch_pagination_url server-side request forgery
<strong>CVE ID :</strong>CVE-2026-19956 <br /> <strong>Published :</strong> Aug. 16, 2026, 9:16 p.m. | 1 hour, 19 minutes ago <br /> <strong>Description :</strong>A vulnerability has been found in gomarble-ai facebook-ads-mcp-server...
CVE-2026-19955 - TrailDB TOC Validation tdb.c tdb_open out-of-bounds
<strong>CVE ID :</strong>CVE-2026-19955 <br /> <strong>Published :</strong> Aug. 16, 2026, 8:16 p.m. | 2 hours, 19 minutes ago <br /> <strong>Description :</strong>A vulnerability was detected in TrailDB 0.6. Impacted is the function...
CVE-2026-74797 - OpenTofu before 1.11.4 Denial of Service via malicious zip
<strong>CVE ID :</strong>CVE-2026-74797 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>OpenTofu versions before 1.11.4 contain a denial of service vulnerability...
CVE-2026-74796 - OpenTofu before 1.11.7 Symlink Following Path Traversal
<strong>CVE ID :</strong>CVE-2026-74796 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>OpenTofu before 1.11.7 fails to validate existing symlinks in the provider...
CVE-2026-74795 - Scriban before 6.6.0 Denial of Service via Uncontrolled Recursion
<strong>CVE ID :</strong>CVE-2026-74795 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 6.6.0 contains an uncontrolled recursion vulnerability in...
CVE-2026-74794 - Scriban before 6.6.0 Denial of Service via Infinite Recursion
<strong>CVE ID :</strong>CVE-2026-74794 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 6.6.0 contains an infinite recursion vulnerability in...
CVE-2026-74792 - Scriban before 7.0.0 Stack Overflow via nested array initializers
<strong>CVE ID :</strong>CVE-2026-74792 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 (affected versions <= 6.6.0) contains a stack...
CVE-2026-74791 - Scriban before 7.0.0 Authorization Bypass via Stale Include Cache
<strong>CVE ID :</strong>CVE-2026-74791 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 fails to clear the CachedTemplates dictionary when...
CVE-2026-74790 - Scriban before 7.0.0 MemberFilter Bypass via TemplateContext Cache
<strong>CVE ID :</strong>CVE-2026-74790 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 caches TypedObjectAccessor by Type only without...
CVE-2026-74789 - Scriban before 7.0.0 LoopLimit Bypass via Built-in Operations
<strong>CVE ID :</strong>CVE-2026-74789 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 (affected <= 6.6.0) applies its LoopLimit constraint...
CVE-2026-74788 - Scriban before 7.0.0 Denial of Service via string.pad_left/pad_right
<strong>CVE ID :</strong>CVE-2026-74788 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled...
CVE-2026-74787 - Scriban before 7.0.0 Uncontrolled Recursion via object.to_json
<strong>CVE ID :</strong>CVE-2026-74787 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in...
CVE-2026-74786 - Scriban before 7.0.0 Denial of Service via Unbounded Template Output
<strong>CVE ID :</strong>CVE-2026-74786 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 (affected versions <= 6.6.0) contains a...
CVE-2026-74785 - Scriban before 7.0.0 Denial of Service via Unbounded Resource Consumption
<strong>CVE ID :</strong>CVE-2026-74785 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.0.0 contains three distinct denial-of-service...
CVE-2026-74784 - Scriban before 7.2.0 Denial of Service via array.insert_at
<strong>CVE ID :</strong>CVE-2026-74784 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.2.0 contains a denial of service vulnerability in the...
CVE-2026-74783 - Scriban 6.6.0 through 7.2.0 Parser Recursion Denial of Service
<strong>CVE ID :</strong>CVE-2026-74783 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban versions 6.6.0 through 7.2.0 contain a non-enforcing...
CVE-2026-73062 - Scriban 3.0.0 through 7.2.0 Denial of Service via Array Multiplication
<strong>CVE ID :</strong>CVE-2026-73062 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban versions 3.0.0 through 7.2.0 contain a denial of service...
CVE-2026-73061 - Scriban before 7.2.2 Arbitrary Property Write via TypedObjectAccessor
<strong>CVE ID :</strong>CVE-2026-73061 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban before 7.2.2 contains an access-modifier bypass vulnerability in...
CVE-2026-73060 - Scriban 3.0.0 through 7.2.5 Denial of Service via ScriptRange.Multiply
<strong>CVE ID :</strong>CVE-2026-73060 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>Scriban versions from 3.0.0 through 7.2.5 contain a denial of service...
CVE-2026-73059 - stoatchat before 0.15.0 Permission Bypass via message_fetch
<strong>CVE ID :</strong>CVE-2026-73059 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>stoatchat before 0.15.0 contains a permission bypass vulnerability in the...
CVE-2026-73058 - stoatchat before 0.15.0 SSRF via IPv6 unspecified address bypass
<strong>CVE ID :</strong>CVE-2026-73058 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>stoatchat versions before 0.15.0 fail to block the IPv6 unspecified...
CVE-2026-73057 - stoatchat before 0.15.0 Uncapped SVG Rendering Denial of Service
<strong>CVE ID :</strong>CVE-2026-73057 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>stoatchat before 0.15.0 fails to validate SVG viewBox dimensions in the...
CVE-2026-73056 - SiYuan kernel before 3.7.4 Unthrottled Brute-Force via API Token
<strong>CVE ID :</strong>CVE-2026-73056 <br /> <strong>Published :</strong> Aug. 16, 2026, 2:16 p.m. | 8 hours, 19 minutes ago <br /> <strong>Description :</strong>SiYuan kernel versions before 3.7.4 contain an improper restriction of...