I added hover over text, it messed up some of the formatting. But whatever, I gotta go write my TPS report.

Krebs on Security

2026-06-10 - Who Runs the Ransomware Group ‘The Gentlemen?’
2026-06-09 - A Record-Breaking Patch Tuesday for June 2026

Dark Reading

The Hacker News [ THN ] - Best Security Blog

2026-06-13 - Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication
2026-06-13 - U.S. Orders Anthropic to Suspend Fable 5 and Mythos 5 Access for Foreign Nationals
2026-06-13 - Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit
2026-06-13 - Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing
2026-06-12 - China-Linked Hackers Backdoored Linux Login Software to Hide for Nearly a Decade
2026-06-12 - Agentjacking Attack Tricks AI Coding Agents Into Running Malicious Code
2026-06-12 - Rethinking MDR as Attackers and Defenders Embrace AI
2026-06-12 - LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution
2026-06-12 - INTERPOL Operation Takes Down Sniper Dz Phishing Platform, Arrests Administrator
2026-06-12 - Europol Disrupts AudiA6 Crypto Laundering Service Used by Ransomware Gangs
2026-06-12 - ShinyHunters Exploits Oracle PeopleSoft Zero-Day (CVE-2026-35273) to Breach Universities
2026-06-11 - New Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets
2026-06-11 - New GreatXML Exploit Bypasses Windows BitLocker via Recovery Partition XML Files
2026-06-11 - The Gentlemen Ransomware Claims 478 Victims, Can Spread Like a Worm
2026-06-11 - Cybersecurity Stars Awards 2026: Winners Announced Across 95 Categories
2026-06-11 - ThreatsDay Bulletin: Worm Code Leaked, AI Agent Phished, Claude Code Patch + 28 New Stories
2026-06-11 - AI Broke Vulnerability Management. That's Why CISOs Are Moving Budget to BAS.
2026-06-11 - OceanLotus Hits Vietnam Investors With SPECTRALVIPER in FireAnt Attack
2026-06-11 - GitHub to Disable npm Install Scripts by Default to Stop Supply Chain Attacks
2026-06-10 - China-Linked JDY Botnet Expands to 1,500+ Devices for Cyber Reconnaissance
2026-06-10 - Ivanti, Fortinet, and SAP Release Patches for Multiple Critical Vulnerabilities
2026-06-10 - Langflow Vulnerability CVE-2026-5027 Exploited for Unauthenticated RCE
2026-06-10 - CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation
2026-06-10 - Your Automated Pentest Looks Clean. See What It Missed in This Expert Webinar
2026-06-10 - Microsoft Patches Record 206 Flaws, Including Three Zero-Days and Critical RCE Bugs
2026-06-10 - Anthropic Releases Claude Fable 5, Its Most Powerful AI Yet, With Cyber Safeguards
2026-06-10 - ServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances
2026-06-10 - Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows
2026-06-10 - Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS
2026-06-09 - Meta to Use Off-Site Business Data for Feed and AI Personalization
2026-06-09 - Veeam Backup & Replication RCE Flaw Lets Domain Users Run Remote Code
2026-06-09 - Microsoft Restores Some GitHub Repos, Keeps Others Offline as Miasma Probe Continues
2026-06-09 - WinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in Ukraine
2026-06-09 - Researchers Build Self-Replicating AI Worm That Operates Entirely on Local, Open-Weight Models
2026-06-09 - Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now
2026-06-09 - The Hidden Security Risk in Modern Networks: The Work Between Tools
2026-06-09 - New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing
2026-06-09 - Hades PyPI Attack: 19 Packages Poisoned to Auto-Run Bun Credential Stealer
2026-06-09 - LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE
2026-06-09 - One-Character Linux Kernel Flaw Enables Local Root Access, Exploits Now Public

Schneier on Security

2026-06-12 - inspired by the way squids propel themselves through the water.

As usual, you can also use this squid post to talk about the security stories in the news that I haven’t covered.

Blog moderation policy.

">Friday Squid Blogging: Squid-Inspired Fluid Pump
2026-06-12 - asked: “Will the future of humanity be determined by a handful of billionaires who have promoted and developed AI, with virtually no democratic input, who stand to become even richer and more powerful than they are today?”

We agree entirely that this is one of the most potent questions facing global democracy today. Our book, Rewiring Democracy, surveys the emerging uses for and impacts of AI in democracy around the world and reaches the same conclusion: that the most urgent risk posed by AI is the ...

">Bernie Sanders’ AI Sovereign Wealth Fund Plan
2026-06-11 - more data:

A surveillance company plans to add sensors to automatic license plate readers (ALPRs) that would mean the devices, as well as capture the license plate of passing vehicles, would also sweep up unique identifiers of mobile phones, wearables, and other Bluetooth-enabled devices in those cars, potentially letting law enforcement identify specific drivers or passengers.

The technology, called SignalTrace, would turn ALPR cameras from devices focused on tracking cars to ones that can more readily track the location of particular people. ALPR cameras have become a commonly deployed technology all across the U.S.; SignalTrace would make some of those cameras capable of collecting much more data...

">Enhanced License Plate Tracking
2026-06-10 - caught the NSO Group phishing its users, in violation of a court order.

">NSO Group Hacking WhatsApp Despite Court Order
2026-06-09 - This is interesting:

The U.S. military has likely been quietly broadcasting codes for its global encryption network using public GPS for nearly 20 years, turning each satellite into a hidden “numbers station,” according to Steven Murdoch…

That means every device that uses GPS has been receiving hidden government information for years, and nobody outside the military knew it until now.

[…]

Murdoch discovered that this particular sentinel was transmitted by all 31 operational satellites within a window of a few hours on May 26, 2011, potentially heralding the activation of a new operational system. He confirmed that this timeline coincided with the rollout of the military’s Over-the-Air Distribution (OTAD) and the Over-the-Air Rekeying (OTAR) by cross-referencing declassified documents, including a 2015 presentation about the dates of the operation...

">GPS As a Key Distribution Platform

ThreatPost

Sydney Morning Herald

New York Times

2026-06-12 - SpaceX’s Unlikely Journey From Far-Out Idea to $2 Trillion Juggernaut
2026-06-12 - SpaceX Stock Rises 11% in Largest IPO Ever
2026-06-12 - Elon Musk Becomes World’s First Trillionaire as SpaceX Stock Begins Trading
2026-06-12 - What the SpaceX I.P.O. Means for OpenAI and Anthropic
2026-06-13 - Anthropic Blocks Foreigners From Using Mythos and Fable AI
2026-06-12 - If You Have a 401(k), How Much SpaceX Stock Will You Own?
2026-06-12 - ‘Hard Fork’ Live, Part 1: Satya Nadella and Cindy Cohn
2026-06-12 - Google Sues to Stop Chinese Cybercrime Group from Using Its A.I.
2026-06-12 - SpaceX IPO: How Our Reporters Assess the Sky-High Valuation and Potential Economic Impact
2026-06-12 - SpaceX Finalizes IPO Price at $135 a Share in World’s Largest Public Offering
2026-06-11 - Skeptics Question Whether SpaceX Is Worth $1.77 Trillion
2026-06-11 - Jeff Bezos Wants to Build an ‘Artificial General Engineer’
2026-06-11 - How Tesla’s Stock Listing in 2010 Enabled SpaceX’s I.P.O.
2026-06-11 - Microsoft C.E.O. Satya Nadella Says ‘Everyone Is a Stakeholder’ in A.I.
2026-06-10 - Trump Muses About Government Taking a Piece of A.I. Companies
2026-06-11 - Britain Is Weighing a Social Media Ban for Children. How Did It Get Here?
2026-06-10 - Antonio Gracias, Elon Musk’s Friend, Is Set to Reap Billions From SpaceX’s IPO
2026-06-10 - They Tried To Catch a Child Predator on a Livestream. They Trapped Themselves Instead.
2026-06-12 - SpaceX’s IPO Could Turn 4,400 Employees Into Millionaires
2026-06-10 - How to Remove Apps You Never Use (or at Least Hide Them)
2026-06-09 - G.M. Plans to Develop Energy Storage Batteries as E.V. Sales Flag
2026-06-10 - Meta A.I. Bug Allowed Hackers to Take Over Instagram Accounts
2026-06-09 - Anthropic Releases ‘Safe’ Version of Its Mythos A.I. Technology
2026-06-09 - Dutch Authorities Block $115 Million Deal by a U.S. Tech Company
2026-06-09 - Why Apple’s A.I. Upgrade for Siri Won’t Be Available in Europe
2026-06-09 - In the Hybrid A.I.-Human Work Force, Who Will Actually Thrive?
2026-06-09 - The Iran War is Forcing Energy-Importing Countries to Turn Inward

Wall Street Journal

BBC

2026-06-12 - Elon Musk's stratospheric rise to trillionaire status - in charts
2026-06-12 - Who is Elon Musk and what is his net worth?
2026-06-11 - Social media on trial: Four important cases to watch
2026-06-09 - Kalshi to make some users reveal job details to tackle insider trading
2026-06-09 - Version of AI tool 'too powerful for public' released to public
2026-06-09 - Farage says Reform has contacted X 'to highest level' over fake AI ads
2026-06-09 - EU orders Meta to open WhatsApp to rival AI chatbots
2026-06-09 - AI giants' race to raise funds heats up as ChatGPT-owner plans stock market debut
2026-06-09 - Tech Life

SecurityBrief AU

ITNews AU

2026-06-12 - AudiA6 crypto launderers arrested, network taken down by police
2026-06-12 - US charges suspected Russian hacker with facilitating cyber campaign
2026-06-12 - Gov looks for upstream threat blocking by telcos, cloud operators
2026-06-12 - Federal Parliamentary Computer Network set for its "most significant" upgrade
2026-06-11 - Marathon OAIC investigation finds Optus breached 51,000 customers' privacy
2026-06-11 - US gov shortens cyber fix window to three days
2026-06-10 - Anthropic releases Mythos-class model for public use
2026-06-09 - Apple bumps up security in fresh operating system releases
2026-06-09 - Meta accuses NSO Group of violating court order by WhatsApp spear phishing

BleepingComputer

2026-06-13 - Ex-school district employee jailed for hacks on former employer
2026-06-13 - Chinese hackers hijack auth flow, spy on isolated network for a decade
2026-06-13 - US Gov asks Anthropic to ban 'foreign national' access to Fable, Mythos
2026-06-12 - Maine disables data breach notification portal after fake disclosures
2026-06-12 - phpBB forum fixes auth bypass bug lurking for a decade
2026-06-12 - Ukrainian national pleads guilty to role in Conti ransomware operation
2026-06-12 - Over 400 Arch Linux packages compromised to push rootkit, infostealer
2026-06-12 - Early Warning Signs of Supply-Chain Attacks Live in the Dark Web
2026-06-12 - Microsoft fixes Windows update failures linked to WUSA installer
2026-06-12 - Pharma giant Novo Nordisk discloses breach of clinical trials data
2026-06-12 - CISA orders feds to patch actively exploited Ivanti flaw by Sunday
2026-06-12 - Over 73,000 French govt employees affected in Tchap messenger breach
2026-06-11 - Japanese energy firm loses drive with data of 10.9 million clients
2026-06-11 - Maine breach portal abused to publish fake data breach disclosures
2026-06-11 - Oracle mitigates PeopleSoft zero-day exploited in data theft attacks

/r/NetSec

2026-06-13 -

In my blog article I analyze how random numbers in older PHP versions were generated. It turns out you can, under certain circumstances, derive the id of the process which generated a random number!

While it has exactly 0 practical application, it was super fun to dig into the php's source code.

submitted by
/u/DrAdalbbert
[link] [comments]">Getting the PID from random numbers in PHP
2026-06-13 -

Using Claude Code to find and weaponise an XSS in MeshCentral using a rogue client, resulting in RCE.

submitted by
/u/kev-thehermit
[link] [comments]">MeshCentral: From XSS to RCE
2026-06-12 - /u/dx7r__
[link] [comments]">Why Use App-Level Auth When Every Database Has Auth? (Splunk Enterprise CVE-2026-20253 Pre-Auth RCE) - watchTowr Labs
2026-06-13 - /u/GapLimp8396
[link] [comments]">The Axios npm compromise was visible in registry metadata before anyone ran npm install
2026-06-12 - /u/lefterispanos
[link] [comments]">Old Passwords Die Hard: Abusing CREDHIST for offline credential recovery
2026-06-12 -

The MCP authorization specification (November 2025) mandates OAuth 2.1 with PKCE for remote MCP servers. In practice, this security model is only achievable if MCP clients implement the OAuth refresh_token grant.

Most major vendors have been lagging with support, but more progress is finally being made!

As of June 2026, the ecosystem has made progress since our initial April survey, with Gemini CLI achieving full support and several clients upgrading from "not implemented" to partial.

submitted by
/u/mhat
[link] [comments]">Major AI Clients Shipping With Broken OAuth Implementations (JUNE 2026 UPDATE)
2026-06-12 - /u/dx7r__
[link] [comments]">Marking Your Own Homework (Check Point Remote Access VPN IKEv1 Authentication Bypass CVE-2026-50751) - watchTowr Labs
2026-06-11 -

Despite all the hype around Mythos, Claude Fable 5 returned pretty mid-tier results on coding tasks: 59.8% passing functional solves and just 19.0% passing security solves on a benchmark of 200 real-world tasks.

submitted by
/u/bugvader25
[link] [comments]">Claude Fable 5: mid-tier results on coding tasks
2026-06-11 - /u/rockin-Musicien49
[link] [comments]">Hacking Google with A.I. for $500,000
2026-06-12 - /u/tracebit
[link] [comments]">Free Compromise Detection for GitHub Repos - Tracebit Community Edition
2026-06-11 - /u/GrapefruitCool2078
[link] [comments]">Prompt injection: attacking the analyst's AI
2026-06-11 - /u/TheAlphaBravo
[link] [comments]">Detecting AI-specific threats in Claude Enterprise from the Compliance API: a prefilter + LLM-as-judge pipeline with Sigma rules
2026-06-10 - /u/Sumsub_Insights
[link] [comments]">How Fraudsters Bypass Facial Recognition and Stay Hidden in 2026
2026-06-10 - /u/dx7r__
[link] [comments]">More Evidence That Words Don't Mean What We Thought They Meant (Ivanti Sentry Pre-Auth OS Command Injection CVE-2026-10520) - watchTowr Labs
2026-06-10 - /u/AnimalStrange
[link] [comments]">Jupyter Enterprise Gateway - From Notebook to Kubernetes Cluster Admin - elttam
2026-06-10 -

certSIGN seems to have revoked a commonly-used intermediate cert. At least their CRL seems to say that.

submitted by
/u/treenaks
[link] [comments]">certSIGN: Inconsistent revocation status (CRL "revoked" vs OCSP "good") for intermediate CA "certSIGN Web CA"
2026-06-09 -

I scanned Chrome extension manifests for chrome_settings_overrides and found 23 extensions silently routing 758,000 users' searches through hidden monetization networks.

The pattern: install a free extension (satellite imagery, maps, news reader), your default search gets quietly replaced and every query goes through the operator's middleware before reaching a search network, generating affiliate revenue you never consented to.

Key findings:

The `hspart` parameter in the final search redirect URL is the clustering key. One value maps an entire broker network regardless of extension name, domain, or publisher identity.

Full report: https://malext.io/reports/SearchJack/

submitted by /u/Huge-Skirt-6990
[link] [comments]">I found 23 Chrome extensions hijacking 758,000 users' searches for affiliate revenue
2026-06-09 - /u/feross
[link] [comments]">Apple’s Siri-AI, or more shouting into the void about “private” agents
2026-06-09 - /u/User_Deprecated
[link] [comments]">AI Agents May Always Fall for Prompt Injections
2026-06-09 - /u/netbiosX
[link] [comments]">WinGet - Code Execution, Persistence and Detection Strategies

/r/InfoSecNews