Security Feed Digest (2026-07-21)
Hacker News: Best
- OpenAI and Hugging Face address security incident during model evaluation — Tue, 21 Jul 2026 20:09:52 +0000
- ‘VPNs are lawful technical tools,’ says EU Court in landmark copyright ruling — Tue, 21 Jul 2026 19:43:59 +0000
- FreeInk: Open ecosystem for e-readers — Tue, 21 Jul 2026 18:39:06 +0000
- Long presumed dead, a thriving coral reef is discovered in West Africa — Tue, 21 Jul 2026 15:41:51 +0000
- Gemini 3.6 Flash, 3.5 Flash-Lite, and 3.5 Flash Cyber — Tue, 21 Jul 2026 15:17:16 +0000
- Apple defeats liability for not scanning iCloud for CSAM — Tue, 21 Jul 2026 14:31:41 +0000
- Qwen-Image-3.0: Rich Content, Authentic Details, Deep Knowledge — Tue, 21 Jul 2026 08:44:23 +0000
- Five US tech giants’ hidden debts soar to $1.65T on opaque AI funding — Tue, 21 Jul 2026 03:56:03 +0000
- Incremental – A library for incremental computations — Tue, 21 Jul 2026 03:50:53 +0000
- Flock Credibility Lost as It Repeatedly Lies to City Councils, Police, & Public — Tue, 21 Jul 2026 00:33:53 +0000
- Jellyfin founder Andrew leaves team — Mon, 20 Jul 2026 23:15:41 +0000
- Human mathematicians are being outcounterexampled — Mon, 20 Jul 2026 19:03:37 +0000
- Nativ: Run frontier open models locally on your Mac — Mon, 20 Jul 2026 18:16:08 +0000
- I Stopped “Creating Content” — Mon, 20 Jul 2026 15:47:28 +0000
- Perfection is not over-engineering — Mon, 20 Jul 2026 14:10:30 +0000
- Shinjuku Station in 3D — Mon, 20 Jul 2026 13:43:10 +0000
- Who’s afraid of Chinese models? — Mon, 20 Jul 2026 11:05:58 +0000
- I found a WordPress RCEs with GPT5.6 and $25 — Mon, 20 Jul 2026 08:13:36 +0000
BleepingComputer
- Police dismantle Kratos phishing platform, arrest developer — Tue, 21 Jul 2026 19:07:33 -0400
- FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malware — Tue, 21 Jul 2026 18:34:17 -0400
- Critical SharePoint RCE flaw exploited to steal machine keys — Tue, 21 Jul 2026 16:06:55 -0400
- Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak — Tue, 21 Jul 2026 14:50:54 -0400
- Critical wp2shell WordPress flaws exploited to install webshells — Tue, 21 Jul 2026 12:41:50 -0400
- Closing the Identity Gaps in Critical Infrastructure Security — Tue, 21 Jul 2026 10:00:10 -0400
- US seizes over 1,000 websites in FIFA World Cup piracy crackdown — Tue, 21 Jul 2026 07:07:07 -0400
- Critical Palo Alto VPN bug now exploited by Qilin ransomware gang — Tue, 21 Jul 2026 06:12:24 -0400
- Microsoft shares manual fix for WSUS sync delays and timeouts — Tue, 21 Jul 2026 05:05:50 -0400
- Windows LegacyHive zero-day flaw gets free, unofficial patches — Tue, 21 Jul 2026 04:06:26 -0400
Darkreading
- Ransomware Is Accelerating, But It’s Not Because of AI — Tue, 21 Jul 2026 21:48:05 GMT
- Using LLMs to Find and Prioritize Vulnerabilities Is No Easy Task — Tue, 21 Jul 2026 21:27:37 GMT
- Hacker Turns AI Jailbreaks Into Offensive Attack Platform — Tue, 21 Jul 2026 18:38:52 GMT
- Choose Wisely: AI-Generated Coding Risk Varies, a Lot — Tue, 21 Jul 2026 13:00:00 GMT
- 25 Years After Code Red: What the Worm Era Can Teach Us About AI Security — Mon, 20 Jul 2026 19:32:04 GMT
The Hacker News
- Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail Logs — Wed, 22 Jul 2026 00:16:32 +0530
- AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code — Tue, 21 Jul 2026 21:36:12 +0530
- Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities — Tue, 21 Jul 2026 20:39:28 +0530
- Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC — Tue, 21 Jul 2026 20:27:51 +0530
- Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access — Tue, 21 Jul 2026 19:34:57 +0530
- Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities — Tue, 21 Jul 2026 18:48:31 +0530
- Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs — Tue, 21 Jul 2026 17:28:00 +0530
- N-day is Becoming N-Hour. Patching Faster Won’t Save You. — Tue, 21 Jul 2026 17:12:23 +0530
- New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit — Tue, 21 Jul 2026 16:54:50 +0530
- WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning — Tue, 21 Jul 2026 14:29:30 +0530
- New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack — Tue, 21 Jul 2026 13:04:32 +0530
- Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution — Tue, 21 Jul 2026 11:59:26 +0530
데일리시큐 - 최근인기기사
- 엔진엑스 치명적 취약점 공개…인증 없이 서버 원격 장악 가능 — 2026-07-21 08:56:58
- 소닉월 SMA 1000 제로데이 연쇄 공격…인증 없이 VPN 장비 ‘루트 권한’ 탈취 — 2026-07-21 09:09:05
- [단독] 카카오스타일, 코드 저장소 또는 개발·배포 환경 침해 정황…KISA “침해 여부 조사중” — 2026-07-21 16:53:23
- 인도 최대 원전 협력사 해킹, 한국 기업 자료도 2,432건 노출…공급망 타고 번진 정보유출 — 2026-07-21 18:01:07
- 오스티움, 가격 조작 공격에 2,375만 달러 탈취…오프체인 인프라 뚫렸다 — 2026-07-21 10:43:27
- 러시아 정보기관, 유럽 CCTV까지 침투…군 수송로·우크라 병력 실시간 감시 — 2026-07-21 15:16:56
- 금융보안원, 김태수 MS 부사장 초청 ‘AI 사이버 위협 대응’ 특강 개최 — 2026-07-21 14:42:02
- 제33회 해킹캠프, 8월 22~23일 개최…참가자·동아리·발표자 모집 진행 중 — 2026-07-21 17:13:02
- 국립외교원 서버 10개월간 해킹…외교관·재외공관 인력 정보 최대 1만건 노출 가능 — 2026-07-21 23:28:07
- 파수 AI, 리안헤어와 손잡고 ‘AI 뷰티 플랫폼’ 구축 — 2026-07-21 12:41:50
보안뉴스 > SECURITY
- [ISEC 2026 미리보기] 노조미 네트웍스, AI로 진화하는 OT 보안 ‘밴티지 IQ’ 선보여 — Wed, 22 Jul 2026 08:09:00 +0900
- [ISEC 2026 미리보기] 넷앤드, 우회접근통제·쿠버네티스·시큐어키’ 탑재 차세대 통합 IAM 공개 — Wed, 22 Jul 2026 08:08:00 +0900
- [속담으로 배우는 100가지 보안 습관 70] 아는 길도 물어가라(10)-공공기관 사칭 메시지, 왜 속을까 — Wed, 22 Jul 2026 08:05:00 +0900
- AI에게 레드티밍 맡겨보니… KB국민은행, 사례 공유 — Wed, 22 Jul 2026 08:02:00 +0900
- [부고] 한규돈 레코디드퓨쳐 지사장 부친상 — Tue, 21 Jul 2026 19:06:00 +0900
- AI가 바꾼 사이버 위협…금융보안원, 글로벌 AI 보안 전략 점검 — Tue, 21 Jul 2026 16:56:00 +0900
- [ISEC 2026 미리보기] 그룹아이비, “공격 시작 후엔 늦어”… 예방 중심 보안 구현 — Tue, 21 Jul 2026 15:34:00 +0900
- [ISEC 2026 미리보기] 시큐리티스코어카드, 공급망 회복탄력의 전환 ‘위협 기반 TPRM’ 플랫폼 — Tue, 21 Jul 2026 15:31:00 +0900
- 김소정 사이버안보비서관 “AI 전환, 기존 보안체계 강화와 별개 아냐”… 제155차 CISO 포럼 — Tue, 21 Jul 2026 15:27:00 +0900
- 런던 교통 시스템 마비시킨 스캐터드 스파이더 해커 2명, 징역 5년 6개월 선고 — Tue, 21 Jul 2026 15:20:00 +0900