Categories Breaking News

Breaking News – Cyber Threats – 2026-07-28 13:00 PDT

Breaking News – Cyber Threats (last 6h)

Generated: 2026-07-28 13:00 PDT

  • Claude AI Just Cracked a Post-Quantum Test Scheme and Found a Faster 7-Round AES Attack
    The Hacker News • 2026-07-28 11:59 • thehackernews.com
    Anthropic says Claude Mythos Preview helped derive an end-to-end key-recovery attack against HAWK-256 and a 200- to 800-fold speedup for an attack on seven-round AES-128.

    The HAWK attack exploits a previously unused symmetry in the lattice behind the signature scheme. Anthropic’s released implementation gives an expected end-to-end runtime of about three hours and 42 minutes on a 96-core server
    https://thehackernews.com/2026/07/claude-ai-just-cracked-post-quantum.html

  • CISA shares advice on isolating vital systems during cyberattacks
    BleepingComputer • 2026-07-28 11:41 • www.bleepingcomputer.com
    The U.S. and Australian governments have released new guidance urging critical infrastructure organizations to prepare to isolate vital operational technology systems in the event of a cyberattack or other major disruptions. […]
    https://www.bleepingcomputer.com/news/security/cisa-shares-advice-on-isolating-vital-systems-during-cyberattacks/
  • vBulletin fixes critical pre-auth RCE flaw with public exploit
    BleepingComputer • 2026-07-28 11:08 • www.bleepingcomputer.com
    A critical vulnerability in the vBulletin forum software allows unauthenticated attackers to execute arbitrary PHP code through template rendering. […]
    https://www.bleepingcomputer.com/news/security/vbulletin-fixes-critical-pre-auth-rce-flaw-with-public-exploit/
  • Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process
    The Hacker News • 2026-07-28 08:01 • thehackernews.com
    A new Mirai-derived botnet called Tengu can use a compromised Linux device’s hardware watchdog to trigger a reboot when defenders kill its main process.

    If that happens, Tengu’s other persistence mechanisms get another chance to relaunch it. Nozomi Networks Labs observed the dropper reaching its honeypots through Telnet credential brute force.

    Tengu supports 25 distributed denial-of-service (
    https://thehackernews.com/2026/07/tengu-botnet-reboots-compromised-linux.html

  • 24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login
    The Hacker News • 2026-07-28 07:41 • thehackernews.com
    Cybersecurity researchers have sounded an alert after finding more than 36,000 Baseboard Management Controller (BMC) management interfaces exposing Intelligent Platform Management Interface (IPMI) protocol to the public internet.

    Of the 36,872 internet-exposed server-management interfaces running IPMI, 24,650 have been found to disclose password-derived authentication hashes before login due to
    https://thehackernews.com/2026/07/24650-internet-exposed-bmcs-disclose.html

  • Is Your SSO Protected Against Modern Credential Attacks?
    BleepingComputer • 2026-07-28 07:00 • www.bleepingcomputer.com
    A compromised SSO login can provide attackers with access to multiple enterprise applications and services. Specops Software explains how stronger passwords, phishing-resistant MFA, and identity hardening help secure modern SSO environments and the applications they protect. […]
    https://www.bleepingcomputer.com/news/security/is-your-sso-protected-against-modern-credential-attacks/

Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.

Written By

More From Author

You May Also Like