Categories Breaking News

Breaking News – Cyber Threats – 2026-07-24 08:00 PDT

Breaking News – Cyber Threats (last 6h)

Generated: 2026-07-24 08:00 PDT

  • Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller
    The Hacker News • 2026-07-24 07:15 • thehackernews.com
    Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain a certificate for a Domain Controller and authenticate as that machine.

    They codenamed the flaw Certighost. Because Domain Controller accounts carry directory replication rights, the resulting Kerberos credential can retrieve the krbtgt secret through DCSync.
    https://thehackernews.com/2026/07/certighost-exploit-lets-low-privileged.html

  • Chick-fil-A data breach affects more than 13,000 customers
    BleepingComputer • 2026-07-24 07:04 • www.bleepingcomputer.com
    Chick-fil-A has confirmed that over 13,000 customers had their accounts breached in a wave of credential stuffing attacks targeting its website and mobile app between June 17 and June 19. […]
    https://www.bleepingcomputer.com/news/security/chick-fil-a-data-breach-affects-more-than-13-000-customers/
  • Slopsquatting, Phantom Domains, and HalluSquatting Are the Same AI Attack
    BleepingComputer • 2026-07-24 07:01 • www.bleepingcomputer.com
    Slopsquatting, phantom squatting, and HalluSquatting all exploit the same late-binding attack pattern, where AI coding agents trust hallucinated package, repo, or domain names. ActiveState explains how pre-fetch verification and governed dependency management can help stop these attacks before malicious code enters the pipeline. […]
    https://www.bleepingcomputer.com/news/security/slopsquatting-phantom-domains-and-hallusquatting-are-the-same-ai-attack/
  • Europol flags 4,340 URLs for removal in 'The Com' crackdown
    BleepingComputer • 2026-07-24 05:56 • www.bleepingcomputer.com
    Europol has flagged 4,340 URLs for removal during a multi-week operation targeting online content linked to “The Com,” a loosely organized network of nihilistic violent extremist groups. […]
    https://www.bleepingcomputer.com/news/security/europol-flags-4-340-urls-for-removal-in-the-com-crackdown/
  • ChatGPT AgentForger Flaw Could Deploy Rogue Workspace Agents via a Phishing Link
    The Hacker News • 2026-07-24 04:53 • thehackernews.com
    Cybersecurity researchers have disclosed a critical vulnerability in OpenAI’s ChatGPT Workspace Agents that could have allowed a single phishing link to stealthily build, authorize, and deploy an autonomous artificial intelligence (AI) agent inside a victim’s organization.

    The vulnerability has been codenamed AgentForger by Zenity Labs. The issue has since been addressed by OpenAI as of June 8,
    https://thehackernews.com/2026/07/chatgpt-agentforger-flaw-could-deploy.html

  • Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers
    The Hacker News • 2026-07-24 04:45 • thehackernews.com
    A crafted SVG submitted to Bing’s image search ran commands as NT AUTHORITY\SYSTEM on Microsoft’s production image-processing workers, and as root on the Linux machines in the same fleet.

    XBOW’s testing got the same result on workers across different hosts and network ranges, so the problem sat in Bing’s image tier, not on one bad machine. Microsoft issued two critical CVEs, CVE-2026-32194 and
    https://thehackernews.com/2026/07/bing-images-flaws-let-crafted-svgs-run.html

  • Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do
    The Hacker News • 2026-07-24 04:30 • thehackernews.com
    AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we’ve collectively discovered is that enforcing least privilege for AI agents is harder than we ever imagined. This is why there are so many approaches, from prompt filtering to identity-layer access controls. Where we’ve collectively landed is that understanding the intent of
    https://thehackernews.com/2026/07/seeing-ai-agents-is-not-enough-security.html
  • Man gets six years for hacking 750 women's Snapchat accounts
    BleepingComputer • 2026-07-24 04:17 • www.bleepingcomputer.com
    An Illinois man was sentenced on Tuesday to 76 months in prison and three years of supervised release for hacking the Snapchat accounts of over 750 women to steal nude photos. […]
    https://www.bleepingcomputer.com/news/security/man-gets-six-years-for-hacking-750-womens-snapchat-accounts/
  • Why AI Needs a “Genie Coefficient”
    Schneier on Security • 2026-07-24 04:03 • www.schneier.com

    This essay was written with Barath Raghavan, and originally appeared in The Guardian.

    Major benchmarks measure what AI can do. None measure whether it does what you mean: the distance between what you ask an AI to do and the unspoken assumptions about how you want the AI to do it. We propose a new metric: the Genie coefficient.

    There’s often a gap between one person’s request and another’s understanding. Most of the time, we bridge it using general knowledge. For example, if you ask a frie…
    https://www.schneier.com/blog/archives/2026/07/why-ai-needs-a-genie-coefficient.html

  • Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry
    The Hacker News • 2026-07-24 03:15 • thehackernews.com
    Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky commands, and pointed it at Thailand’s Ministry of Finance, which runs the country’s treasury and tax collection.

    The agent then worked through the ministry’s network on its own, checking hosts for ways to gain root access, hunting through file systems, and
    https://thehackernews.com/2026/07/hacker-runs-hermes-ai-agent-unattended.html

  • Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
    The Hacker News • 2026-07-24 03:09 • thehackernews.com
    The threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new malware families, indicating that the operators are showing no signs of stopping despite extensive public disclosures into their inner workings.

    The malware families in question are: TinyEgg, ChonkyChicken, a modularized variant of ChonkyChicken, and a modified web browser credential
    https://thehackernews.com/2026/07/golden-chickens-resurfaces-with-four.html

Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.

Written By

More From Author

You May Also Like