Cyber security July 2025

This posting is here to collect cyber security news in July 2025.

I post links to security vulnerability news to comments of this article.

You are also free to post related links to comments.

103 Comments

  1. Tomi Engdahl says:

    Incredibly, confirmation of the US military’s “assume breach” alert had to be dragged out of the Department of Defense via Freedom of Information Act requests by a campaigning non-profit called Property of the People.
    https://www.telegraph.co.uk/business/2025/07/28/chinese-hackers-seized-control-how-let-it-happen/
    These developments are the latest stage in an ongoing state-sponsored Chinese campaign, in which hacking has evolved from widespread commercial espionage a decade ago into something far more threatening.

    Reply
  2. Tomi Engdahl says:

    Australia aikoo kieltää alle 16-vuotiailta pääsyn videopalvelu Youtubeen. Asiasta kertoo viestintäministeri Anika Wells. Ministerin mukaan hallinto haluaa suojella lapsia haitallisilta algoritmeilta.

    Australia täräyttää kovan kiellon alle 16-vuotiaille
    https://www.is.fi/digitoday/art-2000011395401.html

    Reply
  3. Tomi Engdahl says:

    Hayden Field / The Verge:
    Anthropic’s Threat Intelligence report for August says Claude was weaponized for sophisticated cybercrimes, including a “vibe-hacking” data extortion scheme

    ‘Vibe-hacking’ is now a top AI threat
    https://www.theverge.com/ai-artificial-intelligence/766435/anthropic-claude-threat-intelligence-report-ai-cybersecurity-hacking

    Anthropic’s new report shows how bad actors are misusing Claude —and, likely, other AI agents.

    “Agentic AI systems are being weaponized.”

    That’s one of the first lines of Anthropic’s new Threat Intelligence report, out today, which details the wide range of cases in which Claude — and likely many other leading AI agents and chatbots — are being abused.

    First up: “Vibe-hacking.” One sophisticated cybercrime ring that Anthropic says it recently disrupted used Claude Code, Anthropic’s AI coding agent, to extort data from at least 17 different organizations around the world within one month. The hacked parties included healthcare organizations, emergency services, religious institutions, and even government entities.

    “If you’re a sophisticated actor, what would have otherwise required maybe a team of sophisticated actors, like the vibe-hacking case, to conduct — now, a single individual can conduct, with the assistance of agentic systems,” Jacob Klein, head of Anthropic’s threat intelligence team, told The Verge in an interview. He added that in this case, Claude was “executing the operation end-to-end.”

    Reply

Leave a Comment

Your email address will not be published. Required fields are marked *

*

*