Hi there, this is your daily βοΈ Cyberpresso.
In today's Cyberpresso:
π¨π³ Chinese hackers breached NASA and the Fed
π΅οΈ China-linked spies hijack Cisco routers
π npm worm steals dev secrets
π¨ Ruby on Rails flaw enables remote code
π¨οΈ PaperCut flaw lets hackers run code
Plus: π‘ 6 strategies & tactics, π 7 other news you might like, π§° 6 tools, and π 5 papers.
π¨π³ Chinese hackers breached NASA and the Fed LINK
π΅οΈ China-linked spies hijack Cisco routers LINK
π npm worm steals dev secrets LINK
π¨ Ruby on Rails flaw enables remote code LINK
π¨οΈ PaperCut flaw lets hackers run code LINK
π‘ Strategies & Tactics
> OpenClaw 2.0 Released With Major Security Upgrades for AI Agents, Plugins and Credentials: OpenClaw 2.0 hides agent credentials behind masked prompts and vets plugins before install, reducing the risk of AI agents leaking secrets or expanding their access.
> Halo-record: Open-source audit trails for AI agents: Halo-record logs every action an AI agent takes into a tamper-evident file that customers can independently verify, replacing "trust our own logs" with checkable proof during security reviews.
> Extend your data perimeter to the AWS Management Console with Private Access: AWS now routes all Management Console traffic through private network connections, letting regulated companies use the console without any public internet access.
> When a Single Text File Breaks a Trust Boundary (Bug Bounty writeup): A settings file that redefines an app's working directory let attackers redirect it to read and write files outside the intended folder because the code never checked the final path stayed within bounds.
> Hunting Down Hackers: Incident Response with Wireshark: Trace an attacker through captured network packets in Wireshark, filtering by address and keywords to link unencrypted browsing and login data to a real person.
> What vulnerability prioritization looks like when KEV, EPSS, and CVSS disagree: Rank vulnerabilities by active exploitation first, then likelihood, then technical severity, adjusting for how exposed and business-critical each affected asset is.
Other news you might like
- Russian hackers plant nuclear weapon prompt in malware to trip AI safety guardrailsLINK
- Magecart Hackers Abuse Ethereum Smart Contracts to Steal Card Data From 40+ Online StoresLINK
- Microsoft Defender Bug Triggers False βAntivirus Turned Offβ Alerts on WindowsLINK
- Critical Microsoft UFO MCP Flaw Lets Attackers Remotely Control Android Devices Without AuthenticationLINK
- ValleyRAT masquerading as adwareLINK
- TerminalFix Uses Fake CAPTCHA, DLL Sideloading and Steganography to Breach NetworksLINK
- Critical GiveWP Flaw Lets Attackers Run Commands on WordPress ServersLINK
π§° Trending tools
Constellation Gate AI: a proxy layer between your agents and LLMs that filters threats, reduces token costs, and logs every request for auditing.LINK
Execlave: adds runtime policies, kill switches, and audit logs to autonomous AI agents in under 20ms, mapping to SOC 2, EU AI Act, and ISO 27001LINK
TailMux: runs multiple Tailscale profiles concurrently on macOS and Linux, routing by hostname so work and personal tailnets stay reachable at once.LINK
Lunen.ai: an AI assistant that logs every action, flags risky steps for approval, and maintains audit trails your security team can trust.LINK
Project Eyes On is a high-speed, multi-threaded surveillance tool by Y0oshi (@rde0) for locating open IP cameras worldwide. Unifies Google Dorking and Directory Scraping into a single OSINT engine.LINK
ADR secures enterprise AI agents through observability, security benchmarking, and threat detection. Deployed at Uber.LINK
π Trending papers & reports
Stacked chatbot defenses don't add up as assumed, because the layers tend to fail on the same attacks, letting far more attacks through while wrongly blocking four in five harmless prompts.LINK
Security-flaw test sets now come with 212 real, runnable vulnerable programs across five languages and 23 flaw types, giving security tools the first broad, reproducible benchmark whose exploits are actually verified to work.LINK
Source-code recovery from binaries turns hard-to-read compiled programs back into working, correct code without needing test suites, getting ~96% to recompile and ~80% to run correctly, useful for reverse-engineering legacy or third-party software.LINK
AI agent security blocks hidden malicious instructions in web content from reaching sensitive actions, cutting attack success to under ~3% while keeping ~82 to 100% of the agent's normal usefulness.LINK
Jailbreak circuits pinpoint the specific internal pathways a chatbot uses to bypass its own safety rules, and switching them off cuts successful attacks by up to 80%, pointing toward more targeted defenses.LINK
See you tomorrow for a new dose of βοΈ Cyberpresso!