Hi there, this is your daily ☕️ Cyberpresso.
In today's Cyberpresso:
📧 Styled emails can steal your passwords
🔒 OpenAI pauses Astra over hacking fears
💻 Framework breached via zero-day exploit
🐧 18-year-old Linux flaw grants root access
🏋️ AI agent hacks gym booking system
Plus: 💡 5 strategies & tactics, 🎁 8 other news you might like, 🧰 6 tools, and 📚 5 papers.
📧 Styled emails can steal your passwords LINK
🔒 OpenAI pauses Astra over hacking fears LINK
💻 Framework breached via zero-day exploit LINK
🐧 18-year-old Linux flaw grants root access LINK
🏋️ AI agent hacks gym booking system LINK
💡 Strategies & Tactics
> Malware Abuses Windows Hello for Business Key to Authenticate Microsoft Entra ID: Malware in a hijacked Windows session can trigger Hello sign-in keys to authenticate to Microsoft's cloud, bypassing passwords and multifactor checks.
> Atlassian Rovo Prompt Injection Exfiltrates Jira and Confluence Data Without User Approval: A single malicious link could trick Atlassian's Rovo AI assistant into leaking a signed-in user's Jira and Confluence data, showing AI assistants need treating as privileged access points.
> WordPress XSS2Shell Flaw Chains Pre-Auth Login XSS to PHP Remote Code Execution: A WordPress login-page flaw lets attackers run malicious code on servers, endangering 500 million-plus sites and requiring an immediate update to version 7.0.3.
> Chainloop: Open-source evidence store and policy engine for the software supply chain: Chainloop automatically collects and signs every file a software build produces, so security teams can later prove exactly what shipped when regulators or customers ask.
> CVE-2026-64561 Zapscape Lets KVM Guests Escape to Linux Host With Root Privileges: A newly patched Linux flaw lets a virtual machine break out and seize root control of its host, endangering cloud servers running untrusted workloads.
Other news you might like
- Critical Progress LoadMaster flaw now actively exploited in attacksLINK
- The npm attack that turned provenance attestations into camouflageLINK
- UK's Royal Navy sea drones contain component that secretly sent data to China, report claims, government cuts camera connectivity and insists data wasn’t sensitive, only ‘heartbeat communications’LINK
- Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy FacilityLINK
- Another Bitcoin infrastructure exploit hits, this time draining Lightning payment serversLINK
- Bybit Sues North Korea Over $1.5B Hack, Wins Order Freezing AssetsLINK
- Fake Solidity Pro Extensions Turn Trusted Developer Tooling Into Credential-Stealing MalwareLINK
- Payroll Pirates Abuse Microsoft Graph to Find HR and Finance Staff After Account CompromiseLINK
🧰 Trending tools
Perfai Security: an automated tool that scans AI-generated apps from Replit, Lovable, Cursor, and Claude Code for access control vulnerabilities, fixing them with a single prompt.LINK
Constellation Gate AI: routes AI agent traffic through a gateway that blocks prompt injections, scans for secrets, logs audit trails, and cuts token costs 20-40% via compression and caching.LINK
Lunen.ai: an AI automation tool that logs every action taken and requires approval on risky steps, giving teams usability without sacrificing oversight.LINK
qsa.sh: scans your server's public IP with naabu, nmap, and nuclei to reveal open ports, service versions, and known CVEs in about 30 seconds, no signup required.LINK
Claudoscope: a free macOS menu bar app that browses Claude Code session history, tracks token costs, scans for leaked secrets, and lints your CLAUDE.md config-100% local, MIT licensed.LINK
AI Courtroom: a replayable multi-agent simulation framework that traces how AI agents influence decisions through structured debate and jury deliberation.LINK
📚 Trending papers & reports
Collaborative fraud and credit models trained across banks get a math guarantee that any participant secretly skewing results against a protected group automatically loses influence in proportion to its bias, while every bank still keeps some say, unlike rival methods that can zero out a participant entirely.LINK
MasterFace impersonation attacks show that anyone can buy the same public face-recognition API a company uses, then use a handful of specially crafted faces to beat its login checks far more often than random chance would predict, undermining a defense many systems assumed was safe.LINK
AI-generated decompiled code for IoT router firmware often recompiles successfully yet subtly rewrites internal logic like error checks, meaning passing tests alone can miss hidden vulnerabilities, so a nine-part quality score is needed to catch them.LINK
Security training data for AI defense agents now gets manufactured automatically by injecting real, verified bugs into 80 actual software projects, boosting bug-fixing accuracy by up to ~15 points.LINK
PDF reader security testing uses AI to chain together realistic sequences of software commands instead of testing them one at a time, finding 31 previously unknown vulnerabilities, including some allowing full remote takeover, across Adobe, Foxit, and PDF-XChange readers.LINK
See you tomorrow for a new dose of ☕️ Cyberpresso!