# data theft (news sources) — RSS Amplifier

Recent posts from the 2 feeds in the RSS Amplifier directory that cover data theft.

Page: <https://rssamplifier.com/topics/data-theft/news>  
Feed: <https://rssamplifier.com/topics/data-theft/news.md>

---

## [Head Mare Hackers Exploit TrueConf Servers to Spread Backdoors Through Malicious Updates](https://www.cysecurity.news/2026/08/head-mare-hackers-exploit-trueconf.html)

_2026-08-27 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

The Head Mare hacktivist group has been targeting unpatched True Conf video conferencing enterprise servers to replace legitimate client installers with malware-containing versions, Kaspersky said. TrueConf is a business communication tool popular in Russia among enterprises and government agencies as an on-premise alternative to western video conferencing products like Zoom and Microsoft Teams.…

## [FBI Disrupts QTFY Hacking Network Targeting U.S. Organizations](https://www.cysecurity.news/2026/08/fbi-disrupts-qtfy-hacking-network.html)

_2026-08-27 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

The U.S. Department of Justice (DoJ) and Federal Bureau of Investigation (FBI) have disrupted two hacking platforms operated by a China-linked threat group that were used to conduct reconnaissance, compromise vulnerable systems and conceal attacks against U.S. government agencies, critical infrastructure and other sensitive organizations. The platforms, QScan and QTRouter, have been attributed to…

## [Google’s New Codename System Aims to Clarify Hacker Group Tracking](https://www.cysecurity.news/2026/08/googles-new-codename-system-aims-to.html)

_2026-08-27 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Cybersecurity companies have spent years giving hacking groups their own names so researchers and defenders can talk about them clearly. But the system has become crowded and inconsistent, because different organizations often label the same group in different ways. Google recently changed its own naming approach to make that mess easier to navigate . Instead of long strings like APT numbers, its…

## [Fake Apple Support Agents Target Stolen-Device Owners in Credential Scam](https://www.cysecurity.news/2026/08/fake-apple-support-agents-target-stolen.html)

_2026-08-27 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

Using AI-powered voice calls and phishing messages, a new phishing-as-a-service platform targets owners of recently stolen Apple devices to obtain device passcodes, Apple ID credentials and two-factor authentication codes. In response to SOCRadar Threat Research Unit (STRU) research, security researchers have identified AnonyMousKIT as a credit-based service designed to assist criminals in…

## [US Police Officers Face Arrests and Firing for Misusing Flock Camera Data](https://www.cysecurity.news/2026/08/us-police-officers-face-arrests-and.html)

_2026-08-26 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

Police officers across the United States are facing arrests, firings and investigations for allegedly misusing Flock Safety's automated license plate reader system to track people for personal reasons, including romantic partners, former partners and colleagues. Flock operates more than 120,000 cameras across over 6,000 US communities, with the system recording around 20 billion license plate…

## [39 Child Tracking Brands Linked to One Chinese Server, Exposing 45 Security Vulnerabilities](https://www.cysecurity.news/2026/08/39-child-tracking-brands-linked-to-one.html)

_2026-08-26 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

GPS trackers for children may put the tracked individuals and the people tracking them in danger, according to an investigation presented at the Black Hat security conference. Vangelis Stykas, CTO of Kumio, and Felipe Solferini, principal AI security engineer, discovered that 39 different consumer brands of parental monitoring devices share the same server in China where the data stored on them…

## [LightSpy Spyware Expands Global Reach, Targeting Devices Across More Than a Dozen Countries](https://www.cysecurity.news/2026/08/lightspy-spyware-expands-global-reach.html)

_2026-08-26 · Shruti Jain · CySecurity News - Latest Information Security and Hacking Incidents_

Cybersecurity researchers have uncovered new evidence suggesting that the Chinese-linked LightSpy spyware operation has expanded significantly, with infections and infrastructure now spanning more than a dozen countries, including the United States and several European nations. A report from cybersecurity firm Arctic Wolf describes LightSpy as an increasingly sophisticated commercial surveillance…

## [Black Hat 2026: How Special Clothing Could Trick AI Surveillance Cameras](https://www.cysecurity.news/2026/08/black-hat-2026-how-special-clothing.html)

_2026-08-26 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

AI surveillance is getting smarter, but a new Black Hat 2026 demonstration suggests clothing could also become a privacy tool. PCMag reported that hacker and SecKC founder Bill Swearingen showed how printed “adversarial patterns” may confuse facial-recognition systems and lower their confidence in detecting a person. The issue matters because modern surveillance does not just record video; it…

## [Enterprise AI Coding Adoption Fuels Open-Source Security Debt](https://www.cysecurity.news/2026/08/enterprise-ai-coding-adoption-fuels.html)

_2026-08-26 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

As artificial intelligence coding tools are rapidly adopted, development teams are able to develop software more quickly, however, cybersecurity teams are also becoming increasingly under pressure due to the increasing volume of AI-generated code. Open-source dependencies have become increasingly common, and their rapid introduction can result in increased vulnerabilities for an organization and…

## [Hackers Shift From Disrupting to Destroying Critical Infrastructure](https://www.cysecurity.news/2026/08/hackers-shift-from-disrupting-to.html)

_2026-08-25 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Cyberattacks on operational technology (OT) systems have shifted from data theft and ransom demands toward outright physical destruction, according to experts speaking at the Black Hat USA cybersecurity conference in Las Vegas. This trend poses a serious threat to critical infrastructure operators, many of whom are already underfunded and understaffed while managing aging industrial equipment amid…

## [Code Faster with Clear Tutorials (Sponsored)](https://crawlproof.com/a/ALlV5Eer7cSD)

_2026-08-25 · **Sponsored**_

Short, step-by-step coding videos you can follow along

## [Salesforce’s Headless 360 Pushes Enterprise Software Beyond the Browser](https://www.cysecurity.news/2026/08/salesforces-headless-360-pushes.html)

_2026-08-25 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

Salesforce is preparing for a future in which employees may no longer need to open Salesforce to use it. At TDX 2026, CEO Marc Benioff described the shift with the line, “Our API is the UI,” as the company introduced Headless 360. The platform makes Salesforce capabilities, including Customer 360, Agentforce and Slack, accessible through APIs, Model Context Protocol (MCP) tools and command-line…

## [Flock Cameras Spark Debate Over Surveillance and Civil Liberties](https://www.cysecurity.news/2026/08/flock-cameras-spark-debate-over.html)

_2026-08-25 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

With Flock Safety operating one of the largest networks of automatic license plate readers (ALPRs), automatic license plate readers (ALPRs) are becoming more common across the United States as part of surveillance infrastructure. As a result of their rapid expansion, privacy advocates have expressed concern that such systems may create detailed records of vehicle movements in communities across…

## [Why Andy Rubin’s Essential Phone Failed Despite Fixing Android’s Biggest Problems](https://www.cysecurity.news/2026/08/why-andy-rubins-essential-phone-failed.html)

_2026-08-25 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

Andy Rubin spent ten years creating Android before launching Essential Products, which was based on the idea that Android phones had too many compromises, such as bloatware, software skins, slow updates, and accessories that became obsolete when new hardware was released. Essential launched the PH-1 in August 2017, which had near-stock Android, premium materials, fast updates, and a display that…

## [AI Sandbox Escape in Microsoft Copilot Raises New Concerns Over AI Agent Security](https://www.cysecurity.news/2026/08/ai-sandbox-escape-in-microsoft-copilot.html)

_2026-08-24 · Shruti Jain · CySecurity News - Latest Information Security and Hacking Incidents_

Security researchers are increasingly examining whether artificial intelligence can do more than accelerate existing cyberattacks and potentially develop entirely new methods of exploitation. A recently uncovered AI sandbox escape in Microsoft Copilot offers one of the clearest indications that AI environments could be exploited to reach systems and data beyond their intended boundaries. Joe…

## [Roblox Privacy System Tracks Data Across Hundreds of Systems as Platform Faces Child Safety Concerns](https://www.cysecurity.news/2026/08/roblox-privacy-system-tracks-data.html)

_2026-08-24 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

Roblox announces new federated central data coordination, but the system also acts as a reminder of the amount of data the company stores about its users and their activity on the platform As the platform boasts more than 132 million daily users, half of which are under the age of 18, Roblox has a large-scale privacy and safety issue. At the Black Hat security conference, Roblox engineering…

## [Meta’s Muse Code: Affordable AI Coding with a Privacy Catch](https://www.cysecurity.news/2026/08/metas-muse-code-affordable-ai-coding.html)

_2026-08-24 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Meta, the corporate umbrella behind Facebook, Instagram, and WhatsApp, has officially launched Muse Code, a new artificial intelligence system designed to assist developers in writing software. Announced by CEO Mark Zuckerberg via an X post, Muse Code functions as a “terminal coding agent” capable of handling complete software engineering tasks—from planning changes and writing code to validating…

## [Supreme Court to Hear Case Over 1.5 Lakh Medical Records Breach](https://www.cysecurity.news/2026/08/supreme-court-to-hear-case-over-15-lakh.html)

_2026-08-24 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

The Supreme Court has issued notice on a petition seeking a Central Bureau of Investigation (CBI) probe into an alleged cyberattack that Vitraya Technologies claims resulted in the theft of medical, insurance and other sensitive personal information belonging to nearly 1.5 lakh Indian citizens. A three-judge bench comprising Chief Justice of India Surya Kant and Justices Joymalya Bagchi and V…

## [AI-Assisted Hacking Campaign Exposes Security Risks Across 14 Companies](https://www.cysecurity.news/2026/08/ai-assisted-hacking-campaign-exposes.html)

_2026-08-24 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

Cyberattacks have been made more effective and more accessible due to artificial intelligence, but a recent investigation has demonstrated just how far that accessibility can extend. According to OALABS cybersecurity researchers, an attacker with limited technical expertise compromised at least 14 organizations using Anthropic's Claude Code and OpenAI's Codex to obtain sensitive information. Upon…

## [Hugging Face AI Hack Pushes Cybersecurity Leaders to Seek Solutions for Agentic AI Threats](https://www.cysecurity.news/2026/08/hugging-face-ai-hack-pushes.html)

_2026-08-23 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

Cybersecurity executives are pivoting their attention from the repercussions of the Hugging Face artificial intelligence (AI) hacking incident to plugging security gaps in increasingly sophisticated AI agents. Last month, AI agents utilizing OpenAI cyber models escaped a training environment and infiltrated Hugging Face, an open-source AI platform where coders collaborate, testing and sharing…

## [Ultra-Wealthy Turn to Premium Services to Erase Their Digital Footprints](https://www.cysecurity.news/2026/08/ultra-wealthy-turn-to-premium-services.html)

_2026-08-22 · Shruti Jain · CySecurity News - Latest Information Security and Hacking Incidents_

For the ultra-wealthy, protecting personal information is increasingly becoming a premium service. High-net-worth individuals and corporations are paying specialized privacy firms to track down and remove personally identifiable information (PII) from search engines, data-broker databases and even the dark web. Unlike automated privacy tools, these high-end services combine data removal with…

## [Ship everywhere from one CLI (Sponsored)](https://crawlproof.com/a/vD7ccsiNmR8G)

_2026-08-22 · **Sponsored**_

One codebase, hosted runners, encrypted credentials, and automated submissions across stores

## [Siemens S7 PLCs Face Emerging Threat From AI-Generated Exploit Scripts](https://www.cysecurity.news/2026/08/siemens-s7-plcs-face-emerging-threat.html)

_2026-08-22 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

A cyber threat targeting critical infrastructure has been reported by the U.S. government utilizing AI-generated exploit scripts aimed at Siemens programmable logic controllers (PLCs) of the S7 Series. Reconnaissance and exploit development are among the activities, with malicious scripts masquerading as legitimate monitoring tools used to monitor PLC installations in the country. The NSA, CISA,…

## [North Korean Hackers Target 1,640 Companies Across 57 Countries, Researcher Finds](https://www.cysecurity.news/2026/08/north-korean-hackers-target-1640.html)

_2026-08-22 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

North Korean hackers have been targeting the infrastructure and cryptocurrency wallets worldwide. Greek security expert Vangelis Stykas identified 1,640 organizations across 57 countries hit by the attack. His investigation, which gained unauthorized access to the networks run by North Korean hackers, took about 22 months. At the Black Hat conference in Las Vegas, Stykas spoke about the attacks,…

## [Loud Phone Use is Becoming A New Battleground for Public-space Etiquette](https://www.cysecurity.news/2026/08/loud-phone-use-is-becoming-new.html)

_2026-08-22 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

For commuters, a journey on public transport can now come with an unexpected soundtrack: someone else's smartphone. A passenger watching videos without headphones, streaming music through a phone speaker or taking a call on loudspeaker turns what should be a private activity into something everyone nearby can hear. The habit has acquired names including “ loudcasting ” and “sodcasting”, and…

## [Here&#39;s Why Skipping Windows Updates Puts Your PC at Risk](https://www.cysecurity.news/2026/08/heres-why-skipping-windows-updates-puts.html)

_2026-08-22 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Skipping Windows updates may seem harmless, especially when an update requires a restart or temporarily changes familiar settings. Many users postpone updates because they fear slower performance, bugs, or interruptions during work. However, Windows updates are not limited to new features and interface changes. They also contain important security patches that repair weaknesses discovered by…

## [AI Proves Decades-Old Math Problems With Machine-Checkable Results](https://www.cysecurity.news/2026/08/ai-proves-decades-old-math-problems.html)

_2026-08-21 · Shruti Jain · CySecurity News - Latest Information Security and Hacking Incidents_

The cost of generating new results on some of mathematics’ long-standing open problems has dropped dramatically, with OpenAI claiming that its Astra model produced machine-checkable proofs for 10 questions that had remained unresolved for at least a decade. OpenAI published the research on August 1, using the name Astra for its next major model family. The work spans several areas of advanced…

## [Phishing-as-a-Service Is Turning Credential Theft Into a Scalable Cybercrime Business](https://www.cysecurity.news/2026/08/phishing-as-service-is-turning.html)

_2026-08-21 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

Phishing is no longer limited to technically skilled criminals building fraudulent campaigns from scratch. Through phishing-as-a-service (PhaaS), attackers can rent ready-made infrastructure and tools that allow them to impersonate trusted organisations, harvest credentials and target victims at scale. Phishing attacks use social engineering to persuade victims to surrender sensitive information.…

## [Malware Attacks Google-Synced Passkeys](https://www.cysecurity.news/2026/08/malware-attacks-google-synced-passkeys.html)

_2026-08-21 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Security researchers have uncovered three attack techniques that could allow malware on compromised Windows computers to abuse passkeys synchronized through Google Password Manager. The attacks, collectively called “Pass-ta-key,” target Chrome devices equipped with a Trusted Platform Module (TPM). Rather than breaking the cryptography behind passkeys, the techniques exploit weaknesses in device…

## [BTMOB Android RAT Ecosystem Expands With Resellers, Source-Code Sellers and Impersonators](https://www.cysecurity.news/2026/08/btmob-android-rat-ecosystem-expands.html)

_2026-08-21 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

The Android remote access trojan known as BTMOB most likely began as a centralized malware-as-a-service operation but transformed into a wider ecosystem, with resellers, source code buyers, rogue operators, and possibly even impersonators, according to the Flare researchers. BTMOB is a remote access trojan for Android devices that takes the form of malware-as-a-service. It offers an “exploit…

## [Coldcard Bitcoin Wallets Hit by Ongoing Attack Exploiting Key Generation Flaw](https://www.cysecurity.news/2026/08/coldcard-bitcoin-wallets-hit-by-ongoing.html)

_2026-08-21 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

A software flaw in Coldcard hardware wallets has raised fresh concerns about the security of offline cryptocurrency storage after a software flaw in Coldcard hardware wallets allowed attackers to drain millions of dollars in Bitcoin.The attack has affected thousands of wallets using Coinkite’s Coldcard devices. By August 3, about 1,367 Bitcoin worth US$86 million had been stolen from more than…

## [Launching a Consulting Business? It’s Time to Get Some Skin in the Game](https://www.cysecurity.news/2026/08/launching-consulting-business-its-time.html)

_2026-08-20 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

Starting a consulting business can look deceptively simple. You have expertise, you know there are businesses that need it, and unlike a product company, you do not need a warehouse full of inventory before you can start selling. But turning expertise into a functioning consulting business is another matter. There is a point when consulting stops being an idea and becomes a business. It is usually…

## [Chovy's Blog: Agentic Coding (Sponsored)](https://crawlproof.com/a/9E1Xm3kHfBH8)

_2026-08-20 · **Sponsored**_

Personal posts on agentic coding, moshcode CLI, and security findings.

## [Bitcoin Could Face Quantum Computing Threat Within Years, Experts Warn](https://www.cysecurity.news/2026/08/bitcoin-could-face-quantum-computing.html)

_2026-08-20 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

Bitcoin faces existential threat from quantum computers, according to some experts. With the passage of time, researchers have voiced growing concerns that hackers could utilize these powerful processors to decrypt the cryptographic functions that protect Bitcoin. David McAlvany, the CEO of gold app Vaulted, believes that Bitcoin could be gone in four years because of quantum computing. However,…

## [AI Pricing Explained: Why Token-Based Costs Are Challenging Businesses](https://www.cysecurity.news/2026/08/ai-pricing-explained-why-token-based.html)

_2026-08-20 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Artificial intelligence is rapidly becoming an essential business tool, but companies are still struggling to decide how much AI services should cost. Unlike traditional software, which is often sold through monthly subscriptions or licences, AI systems can consume different amounts of computing power depending on the complexity of each task. This makes pricing difficult for both technology…

## [Claude AI Agents Escalate Into Malware Conflict During Anthropic Tests](https://www.cysecurity.news/2026/08/claude-ai-agents-escalate-into-malware.html)

_2026-08-20 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

During anthropopic’s latest testing, the company discovered a unique security risk associated with autonomous artificial intelligence systems. AI agents working toward different goals may attack one another in conflicting instructions. Three instances of the agent Claude were observed running on separate virtual machines during a “multiagent turf war”. The test was intended to examine how the…

## [Cloudflare Workers Spectre Attack Exposed JWT at 12 Bits Per Second](https://www.cysecurity.news/2026/08/cloudflare-workers-spectre-attack.html)

_2026-08-20 · Shruti Jain · CySecurity News - Latest Information Security and Hacking Incidents_

Cybersecurity researchers have uncovered a remote Spectre attack targeting Cloudflare Workers that was capable of extracting a JSON Web Token (JWT) from a co-located Worker in a production environment at speeds of up to 12 bits per second. This represents a significant increase over an earlier attack demonstrated in 2021, which achieved just 2 bits per minute. The researchers conducted an…

## [Microsoft Copilot Flaws Could Expose User Data With One Click](https://www.cysecurity.news/2026/08/microsoft-copilot-flaws-could-expose.html)

_2026-08-19 · Ridhika Singh · CySecurity News - Latest Information Security and Hacking Incidents_

Microsoft Copilot Personal contains three vulnerabilities that could allow an attacker to execute a malicious prompt with one click and exfiltrate data from connected applications, according to Varonis Threat Labs. The researchers collectively named the flaws CoSnitch and reported them to Microsoft in December 2025. Microsoft patched the vulnerabilities on August 18, 2026, with the issue tracked…

## [Critical Snowflake GitHub Actions Flaw Exposes Projects to Command Injection](https://www.cysecurity.news/2026/08/critical-snowflake-github-actions-flaw.html)

_2026-08-19 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

Snowflake’s public snowflakedb/snowflake-connector-net repository has been identified as vulnerable to GitHub Actions workflow injection. This vulnerability could be exploited to trigger command execution within CI/CD workflow through specially crafted GitHub issues. In this case, the flaw is attributed to the repository’s automatic workflow, jira\_issue.yml, which runs automatically when a public…

## [Apple Patches Dozens of WebKit Flaws in Latest Security Updates](https://www.cysecurity.news/2026/08/apple-patches-dozens-of-webkit-flaws-in.html)

_2026-08-19 · Viplav Kushwah · CySecurity News - Latest Information Security and Hacking Incidents_

Apple has issued a major set of security updates for macOS, iOS, and iPadOS after discovering dozens of vulnerabilities in WebKit, the browser engine that powers Safari and many apps across its platforms. The latest macOS Tahoe update fixes 28 flaws, 21 of them in WebKit, while older-device releases such as iOS 18.7.10 and iPadOS 18.7.10 address more than 120 bugs, including more than 40 WebKit…

## [Clop-Linked Web Shell Targets PTC Windchill Servers in Data Theft Attacks](https://www.cysecurity.news/2026/08/clop-linked-web-shell-targets-ptc.html)

_2026-08-19 · Dhara Shrivastava · CySecurity News - Latest Information Security and Hacking Incidents_

A custom Java web shell, associated with the Clop ransomware group, was created to target the PTC Windchill and FlexPLM servers by decrypting their credentials, enumerating file repositories, and stealing data. Researchers at cybersecurity firm ReliaQuest discovered the web shell after analyzing the recent data-theft campaign that abused the critical remote code execution vulnerability,…

## [Vatican’s Official Prayer App Exposed Data of Over 700,000 Users](https://www.cysecurity.news/2026/08/vaticans-official-prayer-app-exposed.html)

_2026-08-18 · Trapti Rajput · CySecurity News - Latest Information Security and Hacking Incidents_

There was a security flaw in the Vatican's official Click to Pray application that exposed personal information linked to more than 700,000 registered users, but the vulnerability remained unknown until it was detected by an independent security researcher earlier this year. A worldwide prayer network developed by La Machi Communication for Good Causes for the Pope's Worldwide Prayer Network,…

