Data analyst sent to prison for stealing data, extorting employer

A Data Analyst’s Descent into Extortion: Former Brightly Employee Sentenced to Prison for $2.5 Million Scheme In a shocking case of betrayal, a former data analyst has been sentenced to two years in prison for orchestrating a massive extortion scheme against his employer, Brightly Software. Cameron Curry, also known as “Loot,” targeted the company’s sensitive … Read more

Using Gemma4 with Ollama – Testing File Hash Analysis and Recommendations with AI, (Wed, Aug 12th)

Cybersecurity analysts are increasingly turning to artificial intelligence (AI) to aid in their work, and one recent experiment with a Large Language Model (LLM) has yielded some surprising insights. A cybersecurity professional used Gemma4, an LLM, to analyze file hashes uploaded to the DShield sensor over the past 30 days. The model was tasked with … Read more

ISC Stormcast For Thursday, August 13th, 2026 https://isc.sans.edu/podcastdetail/10050, (Thu, Aug 13th)

A Devastating DNS Water Torture Attack Hits Global Networks, Leaving Widespread Disruption in Its Wake In a shocking display of cyber cunning, a sophisticated attack on internet infrastructure has left millions of users struggling to access online services worldwide. The assault, which targets the Domain Name System (DNS) – the internet’s address book – has … Read more

ISC Stormcast For Friday, August 14th, 2026 https://isc.sans.edu/podcastdetail/10052, (Fri, Aug 14th)

A Critical Vulnerability in WebSockets Protocol Exposed by Recent Exploit Researchers have discovered a severe vulnerability in the WebSockets protocol, which is used for real-time communication between web servers and clients. The exploit, detected by the SANS Internet Storm Center (ISC), allows an attacker to execute arbitrary code on a server-side application, compromising system security. … Read more

AmnesiaStealer macOS Malware Steals Data, Controls Browser Sessions

A New macOS Malware Threat: AmnesiaStealer Steals Data and Takes Control of Browser Sessions A sophisticated piece of malware has been discovered targeting macOS users, with alarming capabilities that allow attackers to steal sensitive data and even control browser sessions. Dubbed AmnesiaStealer, this multi-stage threat is being spread through fake GitHub download pages in recent … Read more

Hackers Exploiting Unpatched GeoServer Zero-Day

A critical zero-day vulnerability in GeoServer, a widely used open-source platform for geospatial data processing and sharing, has been exploited by hackers just hours after its public disclosure. According to attack surface management firm WatchTowr, threat actors have begun probing vulnerable systems using this unpatched security defect, which can be exploited to execute remote code … Read more

Trump turns to private sector in offensive hacking operations memo

President Trump has signed a national security memorandum that paves the way for private sector companies to collaborate with law enforcement in carrying out hacking operations against transnational criminal organizations. The move marks a significant shift in how the government tackles cybercrime, and raises questions about the potential risks and benefits of involving private industry … Read more

AI’s ‘middle class’ has gotten dramatically better at hacking

As AI models continue to advance at breakneck speed, researchers are sounding the alarm about a concerning trend. The “middle class” of smaller AI models, often overlooked in favor of their more powerful and expensive counterparts, is rapidly improving its hacking capabilities. According to new research from XBOW, these mid-tier models are now capable of … Read more

Tech contractor for Brightly Software sentenced to 2 years in prison for insider attack

A tech contractor’s insider attack on Brightly Software has resulted in a two-year prison sentence, highlighting the risks companies face when entrusting sensitive data to third-party contractors. Cameron Nicholas Curry, also known as “Loot,” exploited his access to the company’s network to steal corporate data and extort $7,540.92 from Brightly Software. Curry, who worked as … Read more

A bold new strategy or a dangerous precedent? Experts are divided on Trump’s memo.

A Presidential Memo Sparks Fears of Abuses in Private Sector-Federal Law Enforcement Cyber Hacking Alliance The recent signing of a presidential memorandum by President Trump has left cybersecurity experts divided on its implications. The memo authorizes private sector companies to collaborate with federal law enforcement agencies in hacking operations against transnational criminal organizations, raising concerns … Read more