Infosecurity Magazine (RSS)
infosec-magazine · C · active
https://www.infosecurity-magazine.com/rss/news/
Industry news (added 2026-05-08). Feed returned 5 dated items 2026-05-07/08. | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → feed https://www.infosecurity-magazine.com/rss/news/ 5 (listing) then webfetch the per-article URL for the body. AVOID: Nothing to avoid — RSS and article WebFetch both work.. | 2026-07-05 admiralty audit: C — reputable trade press, mostly re-reporting with some original interviews; corroborate before acting. MEDIUM->C, stays active.
Cited in 20 entries
Citation cadence
Citation days per ISO week (13 weeks of coverage span, total 14).
- Talos analyses threat actors' own AI coding-assistant prompt logs: guardrails fell to unverified permission claims, and the operator's skill — not model access — decided what got built2026-08-05
- JADEPUFFER returns with ENCFORGE — a Go ransomware built to destroy AI/ML model artifacts, not just extort data2026-07-21
- HOLLOWGRAPH: a Cavern-framework backdoor that turns a compromised Microsoft 365 calendar into a Graph-API dead-drop C22026-07-21
- AI-accelerated exploit dev: GPT5.6 autonomously rediscovers and weaponises the WP2Shell WordPress RCE chain in ~10h for ~$252026-07-21
- Cruciferra: a crypter-as-a-service using kernel-aware process ghosting and BYOVD EDR termination, tied to China-nexus TA49222026-07-21
- The Gentlemen (Storm-2697) status: ReliaQuest's Q2 2026 numbers put it ahead of Qilin on the ransomware leaderboard, and a European public-transport victim (Metro Mondego) landed this week2026-07-19
- NHS England issues insider-access controls after staff 'snooping' on high-profile patients' records2026-07-11
- GodDamn ransomware (Beast/Monster rebrand) blinds EDR with 'PoisonX', a malicious kernel driver Microsoft signed2026-07-11
- GigaWiper: a Golang backdoor that folds a disk wiper, fake-ransomware encryptor and secure-wipe module into one modular implant2026-07-11
- 'Friendly Fire': prompt injection hijacks AI coding agents' defensive auto-review into remote code execution2026-07-11
- KDDI third-party email platform breach exposes up to 14.22 million credentials across six Japanese ISPs2026-06-29
- UK Cyber Monitoring Centre publishes sector review of the Canvas/Instructure LMS breach — 160 universities, ShinyHunters extortion, ransom paid2026-06-27
- macOS.Gaslight — a DPRK-aligned Rust backdoor that targets the LLM-assisted analyst2026-06-26
- UK ICO issues criminal caution to London Clinic insider over Princess of Wales medical-record access2026-06-19
- 15 malicious JetBrains Marketplace plugins exfiltrate AI provider API keys on "Apply"2026-06-18
- Sekoia consolidates Gamaredon tooling under GammaPhish / GammaWorm, details an NTFS-ADS USB+network worm2026-06-02
- ESET APT Activity Report Q4 2025–Q1 2026: Sandworm strikes NATO energy, Lazarus targets EU drone sector, UNC5221 pivots to Ivanti SPAWN toolset2026-05-30
- ESET APT Activity Report Q4 2025–Q1 2026 — three state programmes converging on EU energy, defence and edge appliances2026-05-25
- TeamPCP / Mini Shai-Hulud campaign — GitHub itself breached (~3,800 internal repos via poisoned VS Code extension), Microsoft durabletask PyPI worm propagates via AWS SSM and kubectl exec, Grafana confirms missed-token-rotation root cause2026-05-21
- Instructure (Canvas LMS) — ransom paid to ShinyHunters with "shred logs"; second intrusion confirmed; per-institution leak deadline reset to today2026-05-12