The FBI is investigating suspicious cyber activity affecting an internal system that stores sensitive information tied to surveillance operations and investigations. Details remain limited, but the incident underscores the exposure of high-value law enforcement data stores and the need for strict access controls, segmentation, and continuous monitoring around such systems.
Source: Security Affairs
Over 100 GitHub Repositories Distributing BoryptGrab Stealer
Security researchers have identified more than 100 GitHub repositories pushing the BoryptGrab information stealer. The malware targets browser and cryptocurrency wallet data, system information, and user files, highlighting ongoing threats from typosquatted and trojanized open-source projects and the need for rigorous repository vetting and code provenance checks.
Source: SecurityWeek
Iran-Linked Hackers Target IP Cameras Across Israel and Gulf States
Researchers observed Iran-linked actors targeting IP cameras throughout Israel and Gulf countries, likely to support military intelligence and battle damage assessment. The campaign spotlights how ubiquitous, often poorly secured IoT devices can be co-opted into strategic surveillance networks and reinforces the need to harden camera deployments with firmware updates, unique credentials, and network isolation.
Source: Security Affairs
Anthropic-Assisted Review Uncovers 22 Firefox Vulnerabilities
Anthropic said its Claude Opus 4.6 model helped identify 22 security vulnerabilities in Firefox as part of a partnership with Mozilla. Fourteen issues were rated high, seven moderate, and one low; all were addressed in Firefox 148 released late last month, illustrating how AI-assisted analysis can accelerate vulnerability discovery and remediation.
Source: TheHackerNews
OpenAI Launches Codex Security; Scan Finds 10,561 High-Severity Issues
OpenAI began rolling out Codex Security, an AI-powered agent that finds, validates, and proposes fixes for software vulnerabilities, available in research preview to ChatGPT Pro, Enterprise, Business, and Edu customers. In testing, the system scanned 1.2 million commits and flagged 10,561 high-severity issues, signaling growing momentum behind AI-augmented secure development workflows.
Source: TheHackerNews
US Cyber Strategy Targets Adversaries, Critical Infrastructure, and Emerging Tech
The White House’s cyber strategy calls for stronger deterrence against adversaries, modernization of federal networks, enhanced protection of critical infrastructure, and investment in technologies including AI and post-quantum cryptography. The document outlines priorities intended to bolster resilience while sharpening the nation’s defensive and offensive cyber posture.
Source: SecurityWeek
New Social Security Scam Uses Fake Tax Docs and RMM to Hijack PCs
A widespread phishing campaign in the US is impersonating the Social Security Administration and luring victims with fake 2025/2026 tax statements. Attackers reportedly deploy Datto RMM to gain remote access and exfiltrate data, emphasizing the importance of scrutinizing unsolicited tax-related emails and monitoring for misuse of remote management tools.
Source: HackRead
You May Also Be Interested In...
Hackers Spread Fake Red Alert Rocket Alert App to Spy on Israeli Users
CBP Used Online Ad Data to Track Phone Locations
Pentagon’s Chief Tech Officer Says He Clashed With AI Company Anthropic Over Autonomous Warfare