<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0">
<channel>
  <title>Security News Digest</title>
  <link>https://pngai.freak.net/security-news.html</link>
  <description>Daily static security news digest grouped by AppSec-oriented themes.</description>
  <language>en-us</language>
  <lastBuildDate>Tue, 09 Jun 2026 16:01:47 +0000</lastBuildDate>
  <atom:link xmlns:atom="http://www.w3.org/2005/Atom" href="https://pngai.freak.net/security-news.xml" rel="self" type="application/rss+xml" />
  <item>
    <title>GitHub disables Microsoft repos pushing password-stealing malware</title>
    <link>https://www.bleepingcomputer.com/news/security/github-disables-microsoft-repos-pushing-password-stealing-malware/</link>
    <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/github-disables-microsoft-repos-pushing-password-stealing-malware/</guid>
    <pubDate>Tue, 09 Jun 2026 15:42:40 +0000</pubDate>
    <category>Developer Security</category>
    <description>★ BleepingComputer - Microsoft removed 73 repositories across its Azure, microsoft, Azure-Samples, and MicrosoftDocs organizations on GitHub, disrupting continuous integration pipelines. [...]</description>
  </item>
  <item>
    <title>Russian Attackers Weaponize WinRAR Flaw Against Ukrainian Orgs</title>
    <link>https://www.darkreading.com/vulnerabilities-threats/russian-groups-winrar-flaw-ukrainian-orgs</link>
    <guid isPermaLink="true">https://www.darkreading.com/vulnerabilities-threats/russian-groups-winrar-flaw-ukrainian-orgs</guid>
    <pubDate>Tue, 09 Jun 2026 15:37:02 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>Dark Reading - Two separate campaigns target CVE-2025-8088, fixed last July, to conduct data theft and cyberespionage against military and government targets in Ukraine.</description>
  </item>
  <item>
    <title>Claude Mythos Turns N-Days Into N-Hours With Rapid Exploit Creation</title>
    <link>https://www.securityweek.com/claude-mythos-turns-n-days-into-n-hours-with-rapid-exploit-creation/</link>
    <guid isPermaLink="true">https://www.securityweek.com/claude-mythos-turns-n-days-into-n-hours-with-rapid-exploit-creation/</guid>
    <pubDate>Tue, 09 Jun 2026 15:03:13 +0000</pubDate>
    <category>Developer Security</category>
    <description>SecurityWeek - Public LLM models with safeguards turned off can also build working exploits, increasing patch gap risks.</description>
  </item>
  <item>
    <title>Docker Pass vs Docker Secret: What Is the Difference?</title>
    <link>https://dev.to/sujaypillai/docker-pass-vs-docker-secret-what-is-the-difference-33l7</link>
    <guid isPermaLink="true">https://dev.to/sujaypillai/docker-pass-vs-docker-secret-what-is-the-difference-33l7</guid>
    <pubDate>Tue, 09 Jun 2026 14:33:07 +0000</pubDate>
    <category>Developer Security</category>
    <description>dev.to (security) - If you have been working with Docker secrets locally, you may have noticed two commands that sound...</description>
  </item>
  <item>
    <title>New Veeam vulnerability exposes backup servers to RCE attacks</title>
    <link>https://www.bleepingcomputer.com/news/security/new-veeam-vulnerability-exposes-backup-servers-to-rce-attacks/</link>
    <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/new-veeam-vulnerability-exposes-backup-servers-to-rce-attacks/</guid>
    <pubDate>Tue, 09 Jun 2026 14:27:56 +0000</pubDate>
    <category>Developer Security</category>
    <description>★ BleepingComputer - Veeam has released security updates to patch a critical Backup &amp; Replication security flaw that can be exploited to gain remote code execution (RCE) on domain-joined backup servers. [...]</description>
  </item>
  <item>
    <title>Implementing Forward Secrecy in Rust: A Double Ratchet and Three Storage Formats</title>
    <link>https://dev.to/mdenda/implementing-forward-secrecy-in-rust-a-double-ratchet-and-three-storage-formats-1314</link>
    <guid isPermaLink="true">https://dev.to/mdenda/implementing-forward-secrecy-in-rust-a-double-ratchet-and-three-storage-formats-1314</guid>
    <pubDate>Tue, 09 Jun 2026 14:00:00 +0000</pubDate>
    <category>Developer Security</category>
    <description>dev.to (security) - Per-message key rotation, KDF chains, and the three different ways I ended up storing ephemeral keys because chat and file transfer want different things. Part 4 of the Anyhide series.</description>
  </item>
  <item>
    <title>Hackers pose as women seeking romance to spy on Russian soldiers</title>
    <link>https://therecord.media/hackers-pose-as-women-seeking-romance-russian-military</link>
    <guid isPermaLink="true">https://therecord.media/hackers-pose-as-women-seeking-romance-russian-military</guid>
    <pubDate>Tue, 09 Jun 2026 13:52:00 +0000</pubDate>
    <category>Vulnerabilities &amp; Exploits</category>
    <description>★ The Record - The group, dubbed SiribClone by Russian cybersecurity firm F6, has been active since at least the summer of 2025 and has primarily targeted members of the Russian armed forces stationed in border regions and combat zones.</description>
  </item>
  <item>
    <title>Your Agent Doesn&#x27;t Need That 10,000-Token API Response: Context Offloading with Strands</title>
    <link>https://dev.to/aws/your-agent-doesnt-need-that-10000-token-api-response-context-offloading-with-strands-2imd</link>
    <guid isPermaLink="true">https://dev.to/aws/your-agent-doesnt-need-that-10000-token-api-response-context-offloading-with-strands-2imd</guid>
    <pubDate>Tue, 09 Jun 2026 13:39:59 +0000</pubDate>
    <category>Developer Security</category>
    <description>dev.to (security) - Context engineering matters for two reasons: reliability and cost. If your agent&#x27;s context window is...</description>
  </item>
  <item>
    <title>New Platform Uses Cryptographic Invisibility to Protect AI-Built Applications</title>
    <link>https://www.securityweek.com/new-platform-uses-cryptographic-invisibility-to-protect-ai-built-applications/</link>
    <guid isPermaLink="true">https://www.securityweek.com/new-platform-uses-cryptographic-invisibility-to-protect-ai-built-applications/</guid>
    <pubDate>Tue, 09 Jun 2026 13:00:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SecurityWeek - Atsign’s AI Architect applies cryptographic protections to agentic software development, aiming to prevent attackers from exploiting vulnerabilities by making application identities effectively invisible.</description>
  </item>
  <item>
    <title>Anyone with GitHub issue access can steal your CI/CD secrets. Here&#x27;s why.</title>
    <link>https://dev.to/agentshield/anyone-with-github-issue-access-can-steal-your-cicd-secrets-heres-why-1k97</link>
    <guid isPermaLink="true">https://dev.to/agentshield/anyone-with-github-issue-access-can-steal-your-cicd-secrets-heres-why-1k97</guid>
    <pubDate>Tue, 09 Jun 2026 12:52:05 +0000</pubDate>
    <category>Developer Security</category>
    <description>dev.to (security) - Anyone who can file an issue on your GitHub repo can now leak your CI/CD secrets. No code, no...</description>
  </item>
  <item>
    <title>WinRAR Flaw Exploited by Russia-Aligned Groups to Deploy Stealers in Ukraine</title>
    <link>https://thehackernews.com/2026/06/winrar-flaw-exploited-by-russia-aligned.html</link>
    <guid isPermaLink="true">https://thehackernews.com/2026/06/winrar-flaw-exploited-by-russia-aligned.html</guid>
    <pubDate>Tue, 09 Jun 2026 12:26:10 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ The Hacker News - Two Russia-aligned cyber attack campaigns have continued to exploit a security flaw in WinRAR to target Ukrainian organisations, almost a year after patches for the vulnerability were released. The activity has been attributed by Trend Micro to Earth Dahu (aka Gamaredon) and.</description>
  </item>
  <item>
    <title>SAP Patches Critical NetWeaver, Commerce Vulnerabilities</title>
    <link>https://www.securityweek.com/sap-patches-critical-netweaver-commerce-vulnerabilities/</link>
    <guid isPermaLink="true">https://www.securityweek.com/sap-patches-critical-netweaver-commerce-vulnerabilities/</guid>
    <pubDate>Tue, 09 Jun 2026 12:15:30 +0000</pubDate>
    <category>Vulnerabilities &amp; Exploits</category>
    <description>SecurityWeek - The flaws could lead to the disclosure of sensitive information, memory corruption, and disruption of normal system usage.</description>
  </item>
  <item>
    <title>Researchers Build Self-Replicating AI Worm That Operates Entirely on Local, Open-Weight Models</title>
    <link>https://thehackernews.com/2026/06/researchers-build-self-replicating-ai.html</link>
    <guid isPermaLink="true">https://thehackernews.com/2026/06/researchers-build-self-replicating-ai.html</guid>
    <pubDate>Tue, 09 Jun 2026 11:59:03 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ The Hacker News - University of Toronto researchers have built and tested a proof-of-concept AI-driven computer worm that uses a locally hosted open-weight large language model to reason its way through a network, generate tailored attack strategies for each target it encounters, and replicate itself, all.</description>
  </item>
  <item>
    <title>Chrome V8 Zero-Day CVE-2026-11645 Exploited in the Wild - Patch Now</title>
    <link>https://thehackernews.com/2026/06/chrome-v8-zero-day-cve-2026-11645.html</link>
    <guid isPermaLink="true">https://thehackernews.com/2026/06/chrome-v8-zero-day-cve-2026-11645.html</guid>
    <pubDate>Tue, 09 Jun 2026 11:58:49 +0000</pubDate>
    <category>Vulnerabilities &amp; Exploits</category>
    <description>★ The Hacker News - Google has released security updates to address 74 vulnerabilities, including one that has come under active exploitation in the wild. The high-severity vulnerability, tracked as CVE-2026-11645 (CVSS score: 8.8), has been described as an out-of-bounds memory access in V8, Chrome&#x27;s JavaScript and.</description>
  </item>
  <item>
    <title>Over 100 NPM, PyPI Packages Hit in New Shai-Hulud Supply Chain Attacks</title>
    <link>https://www.securityweek.com/over-100-npm-pypi-packages-hit-in-new-shai-hulud-supply-chain-attacks/</link>
    <guid isPermaLink="true">https://www.securityweek.com/over-100-npm-pypi-packages-hit-in-new-shai-hulud-supply-chain-attacks/</guid>
    <pubDate>Tue, 09 Jun 2026 11:37:11 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SecurityWeek - The most recent variants of the self-propagating attacks are named Miasma and Hades.</description>
  </item>
  <item>
    <title>The Hidden Security Risk in Modern Networks: The Work Between Tools</title>
    <link>https://thehackernews.com/2026/06/the-hidden-security-risk-in-modern.html</link>
    <guid isPermaLink="true">https://thehackernews.com/2026/06/the-hidden-security-risk-in-modern.html</guid>
    <pubDate>Tue, 09 Jun 2026 11:30:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ The Hacker News - Organizations have more visibility than ever. Growing tech stacks provide greater coverage, and network security teams are increasingly adopting AI and automation to help with routine tasks and reduce manual effort.</description>
  </item>
  <item>
    <title>Will AI Kill the Bug Bounty Industry?</title>
    <link>https://www.securityweek.com/will-ai-kill-the-bug-bounty-industry/</link>
    <guid isPermaLink="true">https://www.securityweek.com/will-ai-kill-the-bug-bounty-industry/</guid>
    <pubDate>Tue, 09 Jun 2026 11:00:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SecurityWeek - Anthropic&#x27;s Mythos is accelerating vulnerability discovery to machine speed, forcing the bug bounty industry and offensive security teams to adapt to a future where finding flaws is no longer the hard part.</description>
  </item>
  <item>
    <title>French govt messaging service breached in account hijacking attack</title>
    <link>https://www.bleepingcomputer.com/news/security/french-govt-messaging-service-breached-in-account-hijacking-attack/</link>
    <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/french-govt-messaging-service-breached-in-account-hijacking-attack/</guid>
    <pubDate>Tue, 09 Jun 2026 10:53:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ BleepingComputer - DINUM, the digital affairs directorate of the French government, warned that hackers used a hijacked user account to breach Tchap, the French government&#x27;s encrypted messaging platform. [...]</description>
  </item>
  <item>
    <title>New FROST Attack Lets Websites Track What Sites and Apps You Open via SSD Timing</title>
    <link>https://thehackernews.com/2026/06/new-frost-attack-lets-websites-track.html</link>
    <guid isPermaLink="true">https://thehackernews.com/2026/06/new-frost-attack-lets-websites-track.html</guid>
    <pubDate>Tue, 09 Jun 2026 09:50:41 +0000</pubDate>
    <category>Developer Security</category>
    <description>★ The Hacker News - A malicious website can work out which sites you visit and which apps you open, using nothing but JavaScript and the timing of your SSD. The attack, called FROST, needs no native code, no extension, and no permission prompt.</description>
  </item>
  <item>
    <title>CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day</title>
    <link>https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-check-point-flaw-exploited-by-ransomware-gangs/</link>
    <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-check-point-flaw-exploited-by-ransomware-gangs/</guid>
    <pubDate>Tue, 09 Jun 2026 08:18:39 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ BleepingComputer - CISA has ordered U.S. government agencies to secure their Check Point Remote Access VPN and Mobile Access deployments against a critical vulnerability exploited in zero-day attacks by Qilin ransomware affiliates.</description>
  </item>
  <item>
    <title>Google patches new Chrome zero-day flaw exploited in the wild</title>
    <link>https://www.bleepingcomputer.com/news/security/google-patches-fifth-chrome-zero-day-bug-exploited-in-attacks-this-year/</link>
    <guid isPermaLink="true">https://www.bleepingcomputer.com/news/security/google-patches-fifth-chrome-zero-day-bug-exploited-in-attacks-this-year/</guid>
    <pubDate>Tue, 09 Jun 2026 06:56:27 +0000</pubDate>
    <category>Vulnerabilities &amp; Exploits</category>
    <description>★ BleepingComputer - Google has released emergency updates to patch another Chrome zero-day vulnerability that has been exploited in the wild, the fifth such flaw patched since the start of the year. [...]</description>
  </item>
  <item>
    <title>Silent Ransom Group Hits US Law Firms in Escalating Extortion Attacks</title>
    <link>https://www.darkreading.com/cyberattacks-data-breaches/silent-ransom-us-law-firms-extortion-attacks</link>
    <guid isPermaLink="true">https://www.darkreading.com/cyberattacks-data-breaches/silent-ransom-us-law-firms-extortion-attacks</guid>
    <pubDate>Mon, 08 Jun 2026 20:59:52 +0000</pubDate>
    <category>Critical Infrastructure / OT</category>
    <description>Dark Reading - The financially motivated group is combining vishing, IT impersonation, and in-person office intrusions to steal data and extort victims.</description>
  </item>
  <item>
    <title>Check Point VPN Flaw Exploited Since Early May</title>
    <link>https://www.darkreading.com/vulnerabilities-threats/check-point-vpn-flaw-exploited-early-may</link>
    <guid isPermaLink="true">https://www.darkreading.com/vulnerabilities-threats/check-point-vpn-flaw-exploited-early-may</guid>
    <pubDate>Mon, 08 Jun 2026 20:28:35 +0000</pubDate>
    <category>Vulnerabilities &amp; Exploits</category>
    <description>Dark Reading - A newly discovered, critical zero-day vulnerability is under attack; a Qilin ransomware affiliate has been blamed for at least one incident.</description>
  </item>
  <item>
    <title>UK gives big tech 3 months to create device controls to block nude images of kids</title>
    <link>https://therecord.media/uk-gives-big-tech-3-months-to-create-device-controls-kid-images</link>
    <guid isPermaLink="true">https://therecord.media/uk-gives-big-tech-3-months-to-create-device-controls-kid-images</guid>
    <pubDate>Mon, 08 Jun 2026 20:24:00 +0000</pubDate>
    <category>Policy, Legal &amp; Industry</category>
    <description>★ The Record - The companies “must activate built-in features or implement technical solutions on smartphones and tablets to detect and block nude images for children,” according to a press release from the Home Office. Prime Minister Keir Starmer announced the measure in a speech at.</description>
  </item>
  <item>
    <title>Iran Signed a Ceasefire — Its Hackers Didn&#x27;t</title>
    <link>https://www.darkreading.com/cyberattacks-data-breaches/iran-signed-ceasefire-hackers</link>
    <guid isPermaLink="true">https://www.darkreading.com/cyberattacks-data-breaches/iran-signed-ceasefire-hackers</guid>
    <pubDate>Mon, 08 Jun 2026 19:07:48 +0000</pubDate>
    <category>Supply Chain</category>
    <description>Dark Reading - An extension of the Geneva Conventions could impose restrictions on cyberwarfare under ceasefire conditions and close a major loophole in international conflict.</description>
  </item>
  <item>
    <title>Armenia’s pro-Europe party wins election despite Russia-linked disinformation</title>
    <link>https://therecord.media/armenia-pro-europe-party-wins-election-despite-russia-disinformation</link>
    <guid isPermaLink="true">https://therecord.media/armenia-pro-europe-party-wins-election-despite-russia-disinformation</guid>
    <pubDate>Mon, 08 Jun 2026 17:10:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ The Record - Pashinyan&#x27;s Civil Contract party won nearly 50% of Sunday&#x27;s vote, defeating the pro-Russian Strong Armenia party led by Russian-Armenian billionaire Samvel Karapetyan, which received around 23% of the vote.</description>
  </item>
  <item>
    <title>WhatsApp says NSO targeted users with spearfishing attacks in violation of court order</title>
    <link>https://therecord.media/whatsapp-says-nso-targeted-users-with-attacks-against-court-order</link>
    <guid isPermaLink="true">https://therecord.media/whatsapp-says-nso-targeted-users-with-attacks-against-court-order</guid>
    <pubDate>Mon, 08 Jun 2026 16:51:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ The Record - WhatsApp said it is filing a federal court contempt order against NSO for violating a permanent injunction that bars it from mounting attacks against its users.</description>
  </item>
  <item>
    <title>&#x27;Hades&#x27; Campaign Against PyPI Puts New Spin on Shai-Hulud</title>
    <link>https://www.darkreading.com/application-security/hades-campaign-pypi-shai-hulud</link>
    <guid isPermaLink="true">https://www.darkreading.com/application-security/hades-campaign-pypi-shai-hulud</guid>
    <pubDate>Mon, 08 Jun 2026 16:13:41 +0000</pubDate>
    <category>Developer Security</category>
    <description>Dark Reading - The latest attacks, which hit 37 PyPI wheels and 19 code packages, show a continued evolution of the persistent software supply chain threat.</description>
  </item>
  <item>
    <title>Age verification is coming. Free Software can build it right.</title>
    <link>https://dev.to/phalkmin/age-verification-is-coming-free-software-can-build-it-right-1lh5</link>
    <guid isPermaLink="true">https://dev.to/phalkmin/age-verification-is-coming-free-software-can-build-it-right-1lh5</guid>
    <pubDate>Mon, 08 Jun 2026 14:27:34 +0000</pubDate>
    <category>Developer Security</category>
    <description>dev.to (security) - In December 2025, Australia became the first country to ban under-16s from social media. Ten...</description>
  </item>
  <item>
    <title>Russia upgrades rules for its digital spy system to better track citizens online</title>
    <link>https://therecord.media/russia-upgrades-rules-for-digital-spy-system-sorm</link>
    <guid isPermaLink="true">https://therecord.media/russia-upgrades-rules-for-digital-spy-system-sorm</guid>
    <pubDate>Mon, 08 Jun 2026 14:04:00 +0000</pubDate>
    <category>Policy, Legal &amp; Industry</category>
    <description>★ The Record - New regulations published by Russia&#x27;s Ministry of Digital Development at the end of May updated the technical standards governing SORM, formally known as the System for Operative Investigative Activities.</description>
  </item>
  <item>
    <title>Fuel Tank Monitoring Systems Targeted in Cyberattacks, Warn US Agencies; Mirasvit Flaw Added to KEV with Three-Day Deadline; White House Issues EO on AI and Cyber</title>
    <link>https://www.sans.org/newsletters/newsbites/xxviii-42</link>
    <guid isPermaLink="true">https://www.sans.org/newsletters/newsbites/xxviii-42</guid>
    <pubDate>Fri, 05 Jun 2026 00:00:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SANS NewsBites - Courses Build cyber prowess with training from renowned experts Ways to Train Multiple training options to best fit your schedule and preferred learning style</description>
  </item>
  <item>
    <title>PAN VPN Bug Exploited; US Troops&#x27; Phones Leaking Location Data; CT Data Privacy Law Enhancements</title>
    <link>https://www.sans.org/newsletters/newsbites/xxviii-41</link>
    <guid isPermaLink="true">https://www.sans.org/newsletters/newsbites/xxviii-41</guid>
    <pubDate>Tue, 02 Jun 2026 00:00:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SANS NewsBites - Courses Build cyber prowess with training from renowned experts Ways to Train Multiple training options to best fit your schedule and preferred learning style</description>
  </item>
  <item>
    <title>Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts</title>
    <link>https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accounts/</link>
    <guid isPermaLink="true">https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accounts/</guid>
    <pubDate>Mon, 01 Jun 2026 17:32:50 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ Krebs on Security - The Instagram accounts for the Obama White House and the Chief Master Sergeant of the U.S. Space Force were briefly defaced with pro-Iranian images and messages over the weekend, after instructions began circulating on Telegram showing how to trick Meta&#x27;s &quot;AI support.</description>
  </item>
  <item>
    <title>Exploited Flaws Added to CISA KEV: Drupal SQL Injection; cPanel Plugin Privilege Escalation; Apex One Path Traversal</title>
    <link>https://www.sans.org/newsletters/newsbites/xxviii-40</link>
    <guid isPermaLink="true">https://www.sans.org/newsletters/newsbites/xxviii-40</guid>
    <pubDate>Fri, 29 May 2026 00:00:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SANS NewsBites - Courses Build cyber prowess with training from renowned experts Ways to Train Multiple training options to best fit your schedule and preferred learning style</description>
  </item>
  <item>
    <title>Netherlands Seizes 800 Servers, Arrests 2 for Aiding Cyberattacks</title>
    <link>https://krebsonsecurity.com/2026/05/netherlands-seizes-800-servers-arrests-2-for-aiding-cyberattacks/</link>
    <guid isPermaLink="true">https://krebsonsecurity.com/2026/05/netherlands-seizes-800-servers-arrests-2-for-aiding-cyberattacks/</guid>
    <pubDate>Mon, 25 May 2026 13:21:49 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>★ Krebs on Security - Authorities in the Netherlands have arrested the co-owners of two related Internet hosting companies for operating IT infrastructure used by Russia to carry out cyberattacks, influence operations and disinformation campaigns inside the European Union. The two men were the focus of a.</description>
  </item>
  <item>
    <title>Lawmakers Demand Answers as CISA Tries to Contain Data Leak</title>
    <link>https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/</link>
    <guid isPermaLink="true">https://krebsonsecurity.com/2026/05/lawmakers-demand-answers-as-cisa-tries-to-contain-data-leak/</guid>
    <pubDate>Fri, 22 May 2026 16:34:24 +0000</pubDate>
    <category>Developer Security</category>
    <description>★ Krebs on Security - Lawmakers in both houses of Congress are demanding answers from the U.S. Cybersecurity &amp; Infrastructure Security Agency (CISA) after KrebsOnSecurity reported this week that a CISA contractor intentionally published AWS GovCloud keys and a vast trove of other agency secrets on a.</description>
  </item>
  <item>
    <title>GitHub Breached via VS Code Supply Chain; CISA Secrets Were Stored in Public Repo; Verizon 2026 Data Breach Investigations Report</title>
    <link>https://www.sans.org/newsletters/newsbites/xxviii-39</link>
    <guid isPermaLink="true">https://www.sans.org/newsletters/newsbites/xxviii-39</guid>
    <pubDate>Fri, 22 May 2026 00:00:00 +0000</pubDate>
    <category>Developer Security</category>
    <description>SANS NewsBites - Courses Build cyber prowess with training from renowned experts Ways to Train Multiple training options to best fit your schedule and preferred learning style</description>
  </item>
  <item>
    <title>Alleged Kimwolf Botmaster ‘Dort’ Arrested, Charged in U.S. and Canada</title>
    <link>https://krebsonsecurity.com/2026/05/alleged-kimwolf-botmaster-dort-arrested-charged-in-u-s-and-canada/</link>
    <guid isPermaLink="true">https://krebsonsecurity.com/2026/05/alleged-kimwolf-botmaster-dort-arrested-charged-in-u-s-and-canada/</guid>
    <pubDate>Thu, 21 May 2026 21:50:25 +0000</pubDate>
    <category>Critical Infrastructure / OT</category>
    <description>★ Krebs on Security - Canadian authorities on Wednesday arrested a 23-year-old Ottawa man on suspicion of building and operating Kimwolf, a fast spreading Internet-of-Things botnet that enslaved millions of devices for use in a series of massive distributed denial-of-service (DDoS) attacks over the past six months..</description>
  </item>
  <item>
    <title>AI Speeds Bug Hunters but Slows Bug Bounties; Fast16 Malware Analyzed</title>
    <link>https://www.sans.org/newsletters/newsbites/xxviii-38</link>
    <guid isPermaLink="true">https://www.sans.org/newsletters/newsbites/xxviii-38</guid>
    <pubDate>Tue, 19 May 2026 00:00:00 +0000</pubDate>
    <category>AI &amp; Security</category>
    <description>SANS NewsBites - Courses Build cyber prowess with training from renowned experts Ways to Train Multiple training options to best fit your schedule and preferred learning style</description>
  </item>
  <item>
    <title>CISA Admin Leaked AWS GovCloud Keys on Github</title>
    <link>https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/</link>
    <guid isPermaLink="true">https://krebsonsecurity.com/2026/05/cisa-admin-leaked-aws-govcloud-keys-on-github/</guid>
    <pubDate>Mon, 18 May 2026 20:48:21 +0000</pubDate>
    <category>Developer Security</category>
    <description>★ Krebs on Security - Until this past weekend, a contractor for the Cybersecurity &amp; Infrastructure Security Agency (CISA) maintained a public GitHub repository that exposed credentials to several highly privileged AWS GovCloud accounts and a large number of internal CISA systems. Security experts said the public.</description>
  </item>
</channel>
</rss>
