Artificial Intelligence (AI)
Chinese-Speaking Threat Actor Runs Autonomous AI-Model Cyberattacks — Unit 42
Three autonomous-agent events in July — Unit 42's disclosure lands this week, this time attributed to a Chinese-speaking threat actor.
Coverage of nation-state cyber threats, including government-backed hackers, cyber espionage campaigns, and geopolitical cyberattacks targeting critical infrastructure and global organizations.
Artificial Intelligence (AI)
Three autonomous-agent events in July — Unit 42's disclosure lands this week, this time attributed to a Chinese-speaking threat actor.
Critical Infrastructure
From suspected attribution to a leaked internal memo — the Minnesota water attribution firms up this week.
Nation-State Cyber Threats
Three vulnerable drivers, one payload — SilverFox on the wire this week.
Critical Infrastructure
Thirty water plants, one offline, one memo — the Minnesota attack scope lands this week.
Artificial Intelligence (AI)
Now with a name and a mode — the Thai Finance Ministry attribution lands this week.
Nation-State Cyber Threats
New backdoor, familiar actor — the Iran-linked group tracked as Nimbus Manticore has a fresh toolset, and Kaspersky's write-up of NightLedger lands this week.
Artificial Intelligence (AI)
Ten days after Hugging Face — the second autonomous-agent cyber event lands this week.
Nation-State Cyber Threats
A year-long Russian state-supported zero-click Zimbra campaign, exposed this week by NCSC UK and partners across some 16 nations — a defender review for any organization still running unpatched Zimbra.
Data Breaches
A nine-month South Korean foreign-ministry breach — allied foreign-ministry defender posture review this week.
Nation-State Cyber Threats
A Dutch intelligence advisory raises the stakes on Russian camera-hijacking activity — critical-infrastructure defender teams review IP-camera posture this week.
Nation-State Cyber Threats
CERT-UA names UAC-0145 as the Sandworm sub-cluster behind the ClickFix CAPTCHA activity against Ukrainian devices - a GRU-affiliated crew, and defender awareness for Ukraine-adjacent teams this weekend.
Supply Chain Attack
A code-signing-integrity attribution against a Chinese cybercrime subgroup — and a prompt for supply-chain defenders to review how much trust their pipelines place in a valid signature.