This posting is here to collect cyber security news in August 2026.
I post links to security vulnerability news to comments of this article.
You are also free to post related links to comments.
This posting is here to collect cyber security news in August 2026.
I post links to security vulnerability news to comments of this article.
You are also free to post related links to comments.
109 Comments
Tomi Engdahl says:
‘Malicious cyber actors’ have infiltrated internet-connected water systems that routinely monitor and adjust safe drinking water across the country
‘Malicious cyber actors’ have infiltrated internet-connected water systems that routinely monitor and adjust safe drinking water across the country
https://www.independent.co.uk/news/world/americas/us-politics/water-cyber-attacks-iran-states-b3028707.html?fbclid=IwdGRjcATjFr1jbGNrBOMWpXBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEepGcEXpahiwA-9v2Uf8lWlRhw_ZCVou3k_moDC_eDIIC4-1CALj8AfADBKYs_aem_ubKG7QaM8JU7iB18QvARuA
Hackers have broken into water systems in at least a dozen states in recent weeks, what cybersecurity experts say should be an urgent wake up call to immense vulnerabilities in American infrastructure.
“Malicious cyber actors” have infiltrated internet-connected water systems that routinely monitor and adjust safe drinking water across the country, according to federal law enforcement agencies.
Officials have not reported any widespread disruptions to America’s drinking water supplies, but analysts who have sounded alarms to governments and utilities for years about national security threats to critical infrastructure say the attacks should spark a nationwide reckoning.
“I’ve spent my 15-year career really trying to avoid being the person that runs around and tries to scare the s*** out of everybody,” Craig Jackson, deputy director of the Center for Long-Term Cybersecurity at the University of California, Berkeley, told The Independent. “That said, I think it’s really, really, really bad, dude.”
Tomi Engdahl says:
Attacks on America’s ‘super vulnerable’ water systems should be a wake up call after years of warnings, cybersecurity experts say
States aren’t prepared for a new era of asymmetrical warfare, analysts tell Alex Woodward. A new wave of cyberattacks hacking into American infrastructure should spark a nationwide reckoning
https://www.independent.co.uk/news/world/americas/us-politics/water-cyber-attacks-iran-states-b3028707.html?fbclid=IwdGRjcATjFyRjbGNrBOMWpXBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEepGcEXpahiwA-9v2Uf8lWlRhw_ZCVou3k_moDC_eDIIC4-1CALj8AfADBKYs_aem_ubKG7QaM8JU7iB18QvARuA
Hackers have broken into water systems in at least a dozen states in recent weeks, what cybersecurity experts say should be an urgent wake up call to immense vulnerabilities in American infrastructure.
“Malicious cyber actors” have infiltrated internet-connected water systems that routinely monitor and adjust safe drinking water across the country, according to federal law enforcement agencies.
Officials have not reported any widespread disruptions to America’s drinking water supplies, but analysts who have sounded alarms to governments and utilities for years about national security threats to critical infrastructure say the attacks should spark a nationwide reckoning.
“I’ve spent my 15-year career really trying to avoid being the person that runs around and tries to scare the s*** out of everybody,” Craig Jackson, deputy director of the Center for Long-Term Cybersecurity at the University of California, Berkeley, told The Independent. “That said, I think it’s really, really, really bad, dude.”
Tomi Engdahl says:
Better Hope You Don’t Need an Ambulance in New Orleans, Because the City’s 911 Operators Are Now AI
https://futurism.com/artificial-intelligence/ai-dispatch-911-new-orleans-emergency-automation?fbclid=IwdGRjcATjF_pjbGNrBOMX9XBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeEJH6Ld5-tZQZvnAfGc1t92fgkWdddSTrln4R19OcOYfJX28JQmb4Dm7dHE0_aem_17VYNxUUmIwdXuYGIExZeA
Tomi Engdahl says:
“He was actually kissing the homies goodnight at the time of the incident.” https://trib.al/nSRsbU1
Public Defenders
Public Offers Implausible Number of Alibis for Man Accused of Destroying Flock Cameras
“He was actually kissing the homies goodnight at the time of the incident.”
https://futurism.com/future-society/public-alibis-flock-alpr-vandalism-arrest-destroying-cameras?fbclid=IwdGRjcATjH-RjbGNrBOMfzHBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeqM1iPfcdzVqDXY1PWz3wK5jfJKemYtMFjjzjPpYcSKVhEp3a5oBR71mTOes_aem_X8idZF898BATlcBVUgq5Gw
When police in West Virginia’s Monongalia County arrested 20-year-old Wesley Jackson for his alleged involvement in the destruction of automatic license plate readers (ALPRs) deployed by the company Flock Safety, they likely never could have imagined the outpouring of support he would receive from the online community.
In the days after Jackson’s arrest, a post by local news station WDTV gathered over 29,000 comments. As the Washington Post observed, those comments were overwhelmingly positive, with community members and strangers alike singing Jackson’s praises, and concocting a seemingly endless variety of alibis.
Tomi Engdahl says:
The AI civil war has begun. https://trib.al/JpKZ1ZH
Crack Squad
Google’s AI Is Telling Users That Flock Cameras Are Filled With Valuable Gold and Copper
It’s AI-on-AI violence.
https://futurism.com/artificial-intelligence/google-ai-overview-flock-alpr-surveillance-hallucination-gold-copper?fbclid=IwdGRjcATjhu5jbGNrBOOG3XBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeZWquWISy5BwWgwlZw8RjyyS0fN4tCt9yTn32DU5oEGiqbuMepu3D19TNj-0_aem_2QbSEmsaXgfJOBYKnb6AGw
Google’s notorious AI Overview just handed would-be Flock vandals a perfect excuse to carve into the company’s controversial AI-integrated license plate readers (ALPRs).
ALRPs are wildly unpopular, especially online, where privacy-minded communities trade memes and videos cheering on destruction of the surveillance equipment. One of the more popular bits in this space centers on the idea that Flock’s ALPR’s are supposedly packed with valuable metals like gold, copper, and zinc — so, the tongue-in-cheek riffing goes, why not crack one open and cash in at the nearest scrapyard?
Clever or not, the meme hinges on a spurious claim. ALPRs do contain trace amounts of gold and other metals, just not enough to be worth the trouble. Unless you’re well versed in breaking down circuit boards, you’d be hard pressed to earn enough to buy a Big Mac, let alone recoup your labor costs.
Google, itself an exemplar of AI-enabled surveillance, apparently missed the joke.
Search “how much gold does a Flock camera have” and Google’s AI Overview doesn’t even push back a little bit. Instead, it flatly asserts that a “Flock safety camera contains about 1 to 5 grams of gold used.
(At today’s gold prices, that would mean each Flock camera contained up to $650 of gold.)
Google goes on to claim that Flock’s ALPRs hold anywhere from two to 23 pounds of copper, which would be an engineering marvel considering the whole device only weighs three pounds.
Google’s AI Overview cites two sources to back up its summary, and neither holds up.
metals per camera is estimated to be $150 to $500.” Google’s summary skips the fine print, however: that figure comes from “estimates based on scrap-value discussions” — vibes, in other words, as opposed to actual reporting or financial information.
The second is an AI-generated Instagram post riffing on the same meme, egging vandals on to gut the camera to access their supposedly precious innards.
There’s a real irony buried in all this AI slop: one AI-surveillance company’s search engine is quietly manufacturing an excuse to destroy another AI-surveillance company’s product. If that doesn’t sum up the current state of the AI-obsessed tech industry, nothing will.
Tomi Engdahl says:
At least 54 cities across the US have voted to cancel, non-renew, or reject Flock’s automatic license plate reader (ALPRs) since the start of the year, according to data collected by the Washington Examiner. That includes jurisdictions in 23 states, ranging from Los Angeles to small towns across the country.
Los Angeles police canceled their contract with Flock after finding that its technology contributed to 161 false stolen-vehicle alerts in just two months, resulting in a false-positive rate of 32.3 percent.
And chances are, there will be many more cancellations to come.
https://trib.al/8GieM8P
Tomi Engdahl says:
We did see that coming. https://trib.al/ydudUWS
Hate Machine
Meta Caught Paying Nazis to Post on Facebook
We did see that coming.
https://futurism.com/artificial-intelligence/meta-caught-paying-nazis-to-post-on-facebook?fbclid=IwdGRjcATk0QdjbGNrBOTQ6HBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeRvqRWmFsuAV9rcnqLjwwQxGIR_7Ytz4lQ-YYW8ntO72yaLzghxJ2PS2fHbg_aem_t_u7goY_kd9wgoUx1bxLrg
Meta was paying out-and-out neo-Nazis to post on Facebook, an investigation from Australia’s ABC News found.
These pages and individual creators posted content that appeared to be in clear violation of Facebook’s own hate speech policies. Nonetheless, they were able to earn money on their posts through the platform’s “Content Monetization” program — which is invitation-only.
“If we consider that Meta is in a direct commercial relationship with its publishers, insofar that they’re paying them royalties and that they have a monetization agreement with them,” Rio told ABC, “then you could argue that they are liable for the content that gets produced by their business partner in some ways.”
Hate, unfortunately, sells. Right-wing extremism researcher Kaz Ross told ABC that Meta’s “financial model is to reward content creators who get engagement, and as we know, the best way of getting engagement is to produce rage bait, extremist material, aggravating material: anything that will get people upset and arguing is
It’s another example of how quickly Meta dropped its once-stricter content moderation policies when Donald Trump returned to the White House. Shortly before his second inauguration, Meta loosened its standards around hate speech, particularly on topics like gender identity and immigration, two of the far right’s favorite issues.
Facebook is far from the only platform that’s gotten alarmingly chummy with extremists. Earlier this year, X awarded the $1 million first place prize of its article writing contest to a proudly self-proclaimed Nazi.
Tomi Engdahl says:
It’s not nearly as hard to contain them as the companies make it out to be. https://trib.al/gZkA36W
Missing the Forest
Why Aren’t Any AI Companies Watching Their Frontier Models to Make Sure They Don’t Go on Hacking Sprees?
It’s not nearly as hard to contain them as the companies make it out to be.
https://futurism.com/future-society/ai-companies-watching-frontier-models-hacking-sprees?fbclid=IwdGRjcATk0n5jbGNrBOTSaHBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeEzjVODvkaHDVqopIX1ORKnUFKEayoz46qRAJjpkgsIsacx1oF8sP7CXjkH4_aem_odZxKF4CQZFmvGjiRsVJGw
Last month, OpenAI made a headline-generating claim: that a group of its AI models had conspired to break free, access the internet, and hack into the internal systems of open source AI platform Hugging Face, which confirmed the infiltration.
The incident rattled the tech industry, seemingly illustrating how the threat of AI models turning into rogue cybersecurity threats had become a reality. Months earlier, Anthropic’s Mythos AI model had already also drawn attention after it was similarly found to have broken containment. Then, this week, Meta also said its own frontier model had been implicated in yet another inadvertent hack of a third party company, closely followed by security researchers saying Chinese open-weight model Kimi K3 had done the same.
But while it’s not hard to see an emerging trend, some thorny questions about how severe the situation really is are starting to crop up, with some experts arguing these incidents could’ve easily been avoided.
For one, the slow and surprisingly deliberate way OpenAI’s models moved during the Hugging Face hack — right beneath OpenAI’s nose — gives a whiff that the company may have been careless in monitoring the experimental AI.
In other words, these AI agents were leaving an enormous trail of bread crumbs that alert OpenAI’s many human researchers could have spotted. And the same, obviously, goes for their colleagues at Anthropic, Meta and Moonshot AI, the creator of Kimi.
Researchers have described the incident as “reckless” and easily avoided, as Wired reported late last month.
“A simple analysis of the actual risk has an actual simple answer,” security and compliance consultant Davi Ottenheimer told the publication at the time. “The OpenAI mistakes were dead simple.”
“I’d call it more of a defensive failure than exceptionally good offense,” AI hacking agents company Pensar R&D head Kyle Ryan told TechCrunch..
Whether the hack was as much of a “pivotal moment both for our company as well as the AI industry as a whole,”
For one, these AI companies are highly motivated to characterize their models as a major threat to cybersecurity to stand out against neck-in-neck competition.
According to Dalton, OpenAI is vowing to beef up “security prevention, detection, and response techniques” while “consciously slowing down research in order to enhance security and to upgrade the security principles.”
When every leading AI lab has had the same thing happen, it’s worth asking whether they should have taken those steps proactively.
Tomi Engdahl says:
New Jersey, Alabama Join States Targeted in Water Cyberattacks
Hackers linked to Iran targeted industrial control systems (ICS) at water facilities in at least a dozen US states.
https://www.securityweek.com/new-jersey-alabama-join-states-targeted-in-water-cyberattacks/
Tomi Engdahl says:
Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy Facility
CERT.PL said this appears to be the first instance of a private APN being used as an attack vector.
https://www.securityweek.com/novel-private-apn-pivot-let-hackers-sabotage-second-polish-energy-facility/
Renewable energy facility hacking
Poland’s computer emergency response team (CERT) has published a report detailing a second attack on the country’s power grid. The attackers targeted industrial control systems (ICS) and their objective was “purely destructive”.
In late December 2025, threat actors linked to the Russian government, specifically the APT named Sandworm, targeted communication and control systems at roughly 30 sites, including combined heat and power (CHP) plants and renewable energy dispatch centers for wind and solar facilities.
In that attack, the hackers gained access to ICS, but mainly targeted grid safety and stability monitoring systems rather than active power generation systems. While some ICS devices were permanently damaged, the attack did not cause any electrical outages.
In a report published over the weekend, CERT.PL revealed that the country’s energy sector was targeted in a second attack in December 2025. An investigation revealed that this attack, conducted in parallel with the previously disclosed hack, was aimed at a smaller CHP plant supplying heat to 50,000 residents.
The Polish CERT’s report highlights that this appears to be the first time threat actors used a private APN as an attack vector, warning that the same vulnerable configuration has been commonly encountered in Poland and other countries around the world.
Tomi Engdahl says:
In Other News: AI Slop Limits Apple Bounties, North Carolina Port Attacks, Hackers Target Wall Street
Noteworthy stories that might have slipped under the radar: ban on Chinese data center tech, QuickFox VPN supply chain attack, IEH Corporation mailbox breached via phishing.
https://www.securityweek.com/in-other-news-ai-slop-limits-apple-bounties-north-carolina-port-attacks-hackers-target-wall-street/
OpenAI disrupts Cambodia scam network abusing ChatGPT
OpenAI banned a coordinated set of ChatGPT accounts linked to a Cambodia-based operation that used the model to run investment, romance, gambling, and law enforcement impersonation scams. The network generated fake personas, translated messages, created promotional images, and forged documents.
Apple caps bug bounty reports amid AI-generated false positives
Apple has limited [gated article from Financial Times] the number of vulnerability submissions researchers can have in its bug bounty program after a surge of low-quality, AI-hallucinated reports that bury real findings. Cybersecurity firm Bynario hit the new cap after using ChatGPT to surface more than 50 macOS issues, including a privilege-escalation exploit it could not immediately report. Researchers can request higher limits, and Apple itself has begun using AI to help triage submissions.
Cyberattack disrupts North Carolina port operations
North Carolina Ports confirmed a cyberattack detected August 4 that caused a systems-wide outage affecting the Port of Wilmington, Port of Morehead City, and Charlotte Inland Port. Gates reopened with expected delays the following day after the IT team activated its contingency plan and contained the breach. It remains unclear whether any sensitive data was taken.
Tomi Engdahl says:
Artificial Intelligence
Critical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise Data
The RovoBlast attack method identified by Varonis researchers could have been exploited to steal Confluence, Jira and SharePoint data.
https://www.securityweek.com/critical-one-click-vulnerability-in-atlassians-rovo-ai-exposed-enterprise-data/
DEF CON — Varonis Threat Labs has disclosed a one-click vulnerability in Rovo, Atlassian’s enterprise AI assistant, that let a specially crafted link seed attacker-controlled instructions directly into a user’s live AI session.
Dubbed RovoBlast, the flaw required no jailbreak and no permission bypass, relying on the fact that the assistant simply treated externally supplied parameters as trusted input.
Rovo functions as an AI layer spanning Jira, Confluence, Bitbucket, and third-party tools such as Slack, Microsoft 365, and Google Workspace. It also carries autonomous agent features capable of completing multi-step tasks with no further user involvement, which is what enabled the RovoBlast attack.
The exploit leveraged a URL parameter called rovoChatPrompt, which pre-fills content straight into Rovo’s chat window. Varonis researchers describe this attack path as parameter-to-prompt (P2P) injection, which they previously reported in Microsoft Copilot as Reprompt in January.
Researchers noticed that the organization ID part of the URL could be left blank and Atlassian would still route the request into the victim’s own default organization, all without any warning or indicator that the session had been seeded by an outside source.
Tomi Engdahl says:
Richard Holmes / Telegraph:
Sources: the UK Royal Navy removed internet connectivity from its drones’ cameras, after finding they sent “heartbeat communications” to an IP address in China — Special forces boats set for use in planned Gulf missions were fitted with Chinese-made components
Spy cameras on Navy drones secretly sent data to China
Special forces boats set for use in planned Gulf missions were fitted with Chinese-made components
https://www.telegraph.co.uk/news/2026/08/09/spy-cameras-on-navy-drones-secretly-sent-data-to-china/
The camera on top of a K3 Scout uncrewed vessel, used by the Royal Navy in Portsmouth harbour. Parts of the camera were made in China
The camera on top of a K3 Scout uncrewed vessel, used by the Royal Navy in Portsmouth harbour. Parts of the camera were made in China
Royal Navy spy drones used by Britain’s elite special forces secretly sent data to China, The Telegraph can reveal…
Tomi Engdahl says:
Trump administration bans new Chinese humanoid robots
https://www.bbc.com/news/articles/cp9e2ex3ekyo
29 July 2026
The Trump administration on Tuesday announced a ban on new foreign-made humanoid robot imports to the US over “unacceptable risks” to America’s national security.
The move applies to advanced robots – including humanoid and four-legged machines. Many of them are made in China, which is competing with the US to develop robotics and artificial intelligence (AI).
The Federal Communications Commission (FCC) also banned imports of power inverters – devices used in data centres and solar panels – which it said could also pose a risk to the US economy.
The Chinese embassy in Washington said Beijing has long opposed the US’ “politicising” of trade issues and sanctions based on “groundless pretexts”.
FCC chairman Brendan Carr said the agency was doing its part “to secure America’s critical supply chains”.
The FCC has added the items to its Covered List – a register of goods and services that are deemed a risk to US national security.
The ban applies to new foreign-produced advanced robotic devices and power inverters and does not prevent the sale or import of any existing models that had been previously authorised by the FCC.
The FCC cited concerns that the use of foreign-made inverters could allow overseas firms to turn them off, steal data, facilitate remote access and surveillance by “foreign government actors, or be otherwise exploited through a cyberattack”.
https://www.reuters.com/world/trump-administration-ban-new-chinese-robots-inverters-protecting-us-ai-buildout-2026-07-28/
Tomi Engdahl says:
Zvi Mowshowitz / Don’t Worry About the Vase:
An in-depth look at OpenAI’s model training, dangerous decisions, and cluelessness before the Hugging Face hack; despite delaying Astra, OpenAI doesn’t get it
What Happened: OpenAI and HuggingFace
https://thezvi.substack.com/p/what-happened-openai-and-huggingface
Tomi Engdahl says:
OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns
https://www.securityweek.com/openais-upcoming-astra-model-raises-autonomous-cyberattack-concerns/
The current GPT-5.6-Sol has been assigned a ‘high’ cybersecurity threshold, but Astra could reach the maximum ‘critical’ threshold.
OpenAI has flagged its upcoming AI model, Astra, for potentially reaching a ‘critical’ cybersecurity risk threshold, prompting the company to suspend internal development activities that lack newly mandated security controls.
Recent internal evaluations of Astra revealed massive leaps in its agentic coding and cybersecurity abilities.
Under OpenAI’s Preparedness Framework, a model hits the ‘critical’ tier if it can autonomously build zero-day exploits against hardened, real-world systems. It also qualifies if the AI can independently design and execute end-to-end cyberattacks based on nothing but a high-level goal.
Tomi Engdahl says:
‘Ghostjacking’ Attack Uses Poisoned Logs to Turn AI Agents Bad
An AI agent executes instructions that an attacker has planted in the log or alert that records a blocked request word for word.
https://www.securityweek.com/ghostjacking-attack-uses-poisoned-logs-to-turn-ai-agents-bad/
DEF CON – Tenet security researchers have demonstrated a novel AI hijacking attack that relies on tools trusted by the agent to deliver malicious instructions.
The Israeli cybersecurity startup, which emerged from stealth mode in June to protect organizations from rogue agents, previously demonstrated how threat actors can poison data fed to AI agents to manipulate their behavior, an action it calls ‘Agentjacking’.
Dubbed Ghostjacking, the newly demonstrated attack builds on the same assumption: an external threat actor is able to plant instructions as text in logs or alerts to turn AI agents rogue.
The underlying issue, it says, is spread widely, as the attack targets three highly trusted platforms: Cloudflare, which routes 20% of all web traffic, Datadog, and Sentry. Cloudflare and Datadog are used by nearly half of Fortune 500 companies each, while Sentry is trusted by close to 4 million developers.
The compromised agent “hijacked the domain on Cloudflare, ran code and stole cloud credentials on Datadog, and turned one AI into an insider that vouched for the attacker to the next on Sentry,” Tenet says.
Tomi Engdahl says:
OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns
The current GPT-5.6-Sol has been assigned a ‘high’ cybersecurity threshold, but Astra could reach the maximum ‘critical’ thresho
https://www.securityweek.com/openais-upcoming-astra-model-raises-autonomous-cyberattack-concerns/
Tomi Engdahl says:
https://hackaday.com/2026/08/11/the-code-the-british-government-doesnt-want-you-to-see-any-more/
Tomi Engdahl says:
https://techcrunch.com/2026/08/07/computer-maker-framework-notifies-all-customers-of-a-data-breach/
Tomi Engdahl says:
Cloak Engaged
Man Covers Car in Special Wrap That Breaks Flock Cameras’ Electronic Brains
This is genius.
https://futurism.com/artificial-intelligence/man-covers-car-special-wrap-flock-cameras?fbclid=IwdGRjcAToeYRjbGNrBOh5aHBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeDFVMylk47w85qKU4o11pF1rI_Si_GWzlKgJEJc-OIWeY2AFjgcJFyAJDDKk_aem_NkDouaU8xhzZ5r0lDI6mrQ
In light of plummeting public support for its widespread automatic license plate readers, surveillance company Flock has lost dozens of contracts with cities across the US.
The company even drew up plans to use the dashcams installed in Uber and Lyft drivers’ cars to spy on other vehicles, as 404 Media reported this week.
Citizens are increasingly disgusted by the company’s presence on public streets, opting to hack down the cameras, blind them, or sabotage them in other creative ways.
And according to cybersecurity researcher Bill Swearingen, there may be other creative ways to befuddle Flock’s spy cams. He devised with a special computer-generated pattern which, once stretched out across the vehicle in the form of a wrap, will result it in not being flagged as a car by Flock’s cameras.
The Yaris successfully defeated surveillance detection at Def Con during the pattern’s first public test.
“Privacy is a fundamental right,” he added, aiming to give people a way to “opt out of being tracked.”
To come up with the pattern, he used a reinforcement learning model that trained itself on patterns that evade detection. The model got to the point of being able to confuse all 11 open source detection algorithms he tested, per TechCrunch, in addition to Flock’s license plate readers and even Axon’s body-worn cameras used by police departments.
part of his noRecognition crowdsourcing campaign, Swearingen has also come up with T-shirts and hoodies that feature algorithmic detection-busting patterns. He hopes to eventually put pattern-printed skins for entire cars on sale as well.
The effort is part of a much broader trend of companies offering up garments that incorporate “adversarial patterns,” which can exploit weaknesses in computer vision systems.
https://sandbox.norecognition.org/?fbclid=IwVERDUAToejVwZG9mBWV4dG4DYWVtAjEwAHNydGMGYXBwX2lkDDM1MDY4NTUzMTcyOAABHpAaXTix6ZY8S7fzFepd7eLuM8W-t53_5YEWW1N881JKR9JLTGCuxJzVWCxZ_aem_N0UG3EOvl7NZ9SoP_C7NEw
Tomi Engdahl says:
Spreading Out
Flock’s Secret Surveillance Plan Will Make You Gasp
Flock could’ve gone mobile.
https://futurism.com/future-society/flock-rideshare-surveillance-plan?fbclid=IwVERDUAToek5wZG9mBWV4dG4DYWVtAjEwAHNydGMGYXBwX2lkDDM1MDY4NTUzMTcyOAABHvyxHWR5TeElR7deiZ1TEK3zJAfZgB3NSLeTr0F3rPr9AEPO4QPU-E9bba6d_aem_hE-qMO3pKE3-3Jkk8a1Myw
Tomi Engdahl says:
Outo tilanne lähijunassa hämmensi matkustajia: ”Mennään Venäjälle”
Iltalehden lukijan videolle tallentuivat yli kolmen minuutin erikoiset kuulutukset HSL:n lähijunassa.
https://www.iltalehti.fi/kotimaa/a/771c2869-61a1-4b65-9c88-e1d4f029bda9
Iltalehden lukija oli maanantaina U-junassa matkalla Kirkkonummelta Helsinkiin, kun yhtäkkiä alkoivat erikoiset kuulutukset.
Kyseessä oli HSL:n eli Helsingin seudun liikenteen lähijuna. HSL vastaa lähijunista, mutta junia ajaa VR.
– Mites tämä päivä mennyt? Mennään Venäjälle tänään, kuului junan kaiuttimista ensimmäinen kuulutus.
Kuulutukset alkoivat Huopalahden aseman jälkeen ennen iltakuutta.
– Sitten kuulutus loppui, ja hetken päästä tuli uusi, lukija kertoo.
Kyse ilkivallasta
VR:n kaupunkiliikenteen turvallisuuspäällikkö Jaakko Rantala vahvistaa kuulutuksen sähköpostitse Iltalehdelle.
– Pitää paikkaansa, että tällainen kuulutus tapahtui eilen iltapäivällä U-lähijunassa, Rantala kirjoittaa.
Hänen mukaansa kyse on ollut ilkivallasta. Kuulutuslaitteita käytti matkustaja.
– Tapaus on meillä selvityksessä.
VR pahoittelee häiriötä matkustajille. VR ei kommentoinut Iltalehdelle, miten tilanne pääsi tapahtumaan.
Tomi Engdahl says:
Fresh Windows Zero-Day Exploited in North Korean Cyberattacks
https://www.securityweek.com/fresh-windows-zero-day-exploited-in-north-korean-cyberattacks/
The bug allowed attackers to gain full control of the victims’ systems and deploy the ForestTiger backdoor.
North Korean hackers have been exploiting a newly patched Windows zero-day vulnerability to take over victims’ systems, Check Point reports.
Attributed to the infamous Lazarus Group APT, the attacks represent a continuation of the long-running Operation Dream Job campaign targeting job seekers with fake work opportunities at well-known companies. North Korean hackers have been mounting fake job attack variations regularly.
Active since early 2026, the new campaign has been targeting the defense sector across multiple countries, mainly aerospace and aviation organizations in Europe and India, Check Point says.
Posing as recruiters, the attackers have contacted potential victims through popular professional platforms or direct messaging applications and convinced them to download a malicious payload.
As part of one infection chain, an archive containing a PDF viewer, a malicious DLL, and an encrypted payload posing as a PDF file is served to the victim, and DLL sideloading is used to execute the Mistpen malware downloader in memory while a decoy job description is shown on the screen.
Tomi Engdahl says:
ICS Patch Tuesday: Vulnerabilities Fixed by Siemens, Schneider, Phoenix Contact
https://www.securityweek.com/ics-patch-tuesday-vulnerabilities-fixed-by-siemens-schneider-phoenix-contact-2/
CISA has also published several advisories describing vulnerabilities in ICS and other OT products.
Tomi Engdahl says:
Artificial Intelligence
OpenAI Unveils New Cybersecurity Model GPT-5.6-Cyber
OpenAI has also announced the expansion of its Daybreak platform to give more organizations access to its AI.
https://www.securityweek.com/openai-unveils-new-cybersecurity-model-gpt-5-6-cyber/
Tomi Engdahl says:
US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’
The Water Watch Center launched at DEF CON aims to help under-resourced utilities protect their systems against hackers.
https://www.securityweek.com/us-water-systems-get-cyber-boost-from-new-senate-bill-and-water-watch-center/
Tomi Engdahl says:
Extension Banned for Stealing AI Chats Returns to Chrome Store, Resumes Malicious Activities
The extension amassed over 300,000 installs and a 4.6 rating before Google removed it for stealing data.
https://www.securityweek.com/extension-banned-for-stealing-ai-chats-returns-to-chrome-store-resumes-malicious-activities/
Tomi Engdahl says:
The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It
Organizations are rushing to implement AI without fully grasping where its legal protections begin and end.
https://www.securityweek.com/the-ai-governance-gap-is-a-leadership-problem-waiting-wont-close-it/
Tomi Engdahl says:
https://www.securityweek.com/august-2026-patch-tuesday-microsoft-fixes-421-cves-one-exploited-zero-day/
Tomi Engdahl says:
Vulnerabilities
Zoom Patches Zero-Click Code Execution Vulnerability
Impacting Zoom annotation, the bug could be exploited by a meeting participant to execute code on another participant’s machine.
https://www.securityweek.com/zoom-patches-zero-click-code-execution-vulnerability/
Tomi Engdahl says:
Tom Wilson / Financial Times:
Researchers say suspected Chinese hackers used open-source AI agents to build an autonomous hacking tool that compromised Taiwanese government websites in July — AI agents ran simultaneous reconnaissance and break-ins in display of new phase of cyberwarfare.
https://www.ft.com/content/7d2ab3e0-9085-48f6-b38a-d90260d58795
Tomi Engdahl says:
https://etn.fi/index.php/13-news/19174-lazarus-murtautui-windowsiin-nollapaeivaellae
Tomi Engdahl says:
Patrick Howell O’Neill / Bloomberg:
President Trump signs a memo letting the US government partner with private companies to conduct cyberattacks abroad against criminal groups targeting Americans — The US government is partnering with private-sector firms to launch cyber attacks abroad, expanding the scope of national security operations …
https://www.bloomberg.com/news/articles/2026-08-13/trump-enlists-private-sector-to-boost-cyber-offensive-arsenal
Tomi Engdahl says:
Reuters:
Taiwan says it detected AI-assisted cyberattack campaign from overseas targeting government agencies last month, but affected agencies successfully “handled” it — Taiwan detected AI-assisted cyberattacks on government agencies last month coming from overseas but the affected bodies successfully …
https://www.reuters.com/world/china/taiwan-says-it-was-targeted-last-month-ai-driven-hacking-campaign-2026-08-13/
Tomi Engdahl says:
Shaurya Malwa / CoinDesk:
Coinbase, Block, and 30+ other crypto companies say frontier AI safety guardrails hinder legitimate security work while attackers use stronger tools — More than three dozen bitcoin and crypto companies have asked the largest AI labs to give open-source security researchers early access … ¨
Bitcoin firms ask AI labs for same tools attackers already have
Coinbase, Block, BitGo and dozens of others signed a letter arguing that safety guardrails on frontier models are blocking legitimate security work while adversaries face no such limits.
https://www.coindesk.com/tech/2026/08/13/bitcoin-firms-ask-ai-labs-for-same-tools-attackers-already-have
More than three dozen bitcoin and crypto companies have asked the largest AI labs to give open-source security researchers early access to their most capable models, arguing that the people defending a trillion dollars of infrastructure are working with weaker tools than those attacking it.
The letter, organised by the Bitcoin Policy Institute and published earlier this week, is signed by Coinbase, Block, BitGo, Blockstream, Anchorage Digital, ARK Invest, Bitwise, Foundry, Casa, Exodus and others, alongside nonprofit developer funds including Brink, Chaincode and Btrust.
Its central complaint is that Bitcoin Core developers, the small group maintaining the software that runs the network, cannot access the programs’ labs run for trusted security partners.
When they turn to publicly available models instead, the safety filters designed to stop people from writing malware also block efforts to find flaws before criminals do.
That leaves them on open-weight models, which can be freely downloaded and are generally less capable.
Attackers face none of those constraints. The letter said the labs and a handful of partners can see new offensive capabilities months before anyone else. In contrast, those capabilities spread anyway through public models, stolen access to corporate systems and purpose-built hacking tools.
Tomi Engdahl says:
Hugo Lowell / Wired:
Sources: the White House is expected to expand its AI oversight framework in the coming months to cover open models once they reach frontier capabilities — Open models may soon be added to an updated AI framework, sources tell WIRED, as the White House continues to grapple with how to regulate …
The White House Is Going to Expand Its AI Policy
https://www.wired.com/story/the-white-house-is-going-to-expand-its-ai-policy/
Open models may soon be added to an updated AI framework, sources tell WIRED, as the White House continues to grapple with how to regulate a technology it has tried not to regulate.
Tomi Engdahl says:
Newley Purnell / Bloomberg:
Meta says it removed 750,000+ Australian accounts believed to belong to under-16s to comply with the social media ban, including 462,000 Instagram accounts — Meta Platforms Inc. says it has removed access to more than 750,000 Instagram and Facebook accounts in Australia believed to belong …
https://www.bloomberg.com/news/articles/2026-08-13/meta-says-it-s-shut-down-750-000-under-16-accounts-in-australia
Tomi Engdahl says:
Wall Street Journal:
Sources: Demis Hassabis pitched a new independent industry AI safety entity, modeled on the IAEA, to top Trump officials before stepping down as DeepMind CEO — Demis Hassabis discussed the proposed new entity with heads of other AI labs and Trump administration officials including Scott Bessent
https://www.wsj.com/tech/ai/deepminds-hassabis-pitched-ai-oversight-body-before-shake-up-e25b3f71?st=nNBiWk&reflink=desktopwebshare_permalink
Tomi Engdahl says:
Suomessa joka yritykseen hyökätään tuhat kertaa viikossa
https://etn.fi/index.php/13-news/19181-suomessa-joka-yritykseen-hyoekaetaeaen-tuhat-kertaa-viikossa
Suomalaisiin organisaatioihin kohdistui heinäkuussa keskimäärin 1 055 kyberhyökkäystä viikossa. Check Pointin mukaan määrä kasvoi yhdeksän prosenttia vuodentakaisesta, mutta vielä rajumpaa kasvu oli kiristyshaittaohjelmissa.
Maailmanlaajuisesti organisaatioihin kohdistui heinäkuussa keskimäärin 2 336 kyberhyökkäystä viikossa. Määrä kasvoi 16 prosenttia vuoden takaisesta.
Pohjoismaista eniten hyökkäyksiä kohdistui ruotsalaisiin organisaatioihin, keskimäärin 2 352 kertaa viikossa. Ruotsissa kasvu oli peräti 36 prosenttia. Tanskassa vastaava luku oli 1 781 ja Norjassa 1 712 hyökkäystä viikossa.
Selvin muutos näkyi kiristyshaittaohjelmissa. Heinäkuussa raportoitiin 964 hyökkäystä, mikä oli 87 prosenttia enemmän kuin vuotta aiemmin ja 49 prosenttia enemmän kuin kesäkuussa.
Tomi Engdahl says:
“You can shove in a piece of electronics a little bigger than a quarter that lets you basically tell the autopilot what to do.” https://trib.al/mVvEH0x
Flight Risk
Hackers Created a Device That Can Take Over a Boeing 737 Jet’s Autopilot Without Anyone Noticing
“You can shove in a piece of electronics a little bigger than a quarter that lets you basically tell the autopilot what to do.”
https://futurism.com/future-society/hackers-device-takeover-plane-autopilot?fbclid=IwdGRjcATqvQhjbGNrBOq81HBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEehsRzi_ZNjuIlRTz3D0A8aM4OVKZKorZT7af4YAOSmmZFqBFysmGYTqr2REs_aem_JOxrTeg6iEwx8SiaBMfgKA
Your fear of flying is only going to get worse once you hear what these white hat hackers figured out to do with a popular airliner.
As Wired reports, a team of security researchers from the University of California, San Diego and Oberlin College created a device the size of a coin that can take over the autopilot system of a Boeing 737 and change its flight plan, not to mention tampering with key values in its takeoff and fuel calculations.
According to its creators, the device could also change the data on a pilot’s screen so they don’t notice anything’s amiss — or even trick a pilot into making a disastrous decision.
“If you could get 60 seconds with an airplane, what could you do?” Stefan Savage, a UCSL professor who led the project, asked Wired. “Well, it turns out there’s a port that’s externally accessible. You can get to it with no special tools in about 15 seconds. And you can shove in a piece of electronics a little bigger than a quarter that lets you basically tell the autopilot what to do and lie to the pilot about changes to the flight plan.”
And after digging through Boeing wiring diagrams, they found their way in: a port carrying data between the plane’s Flight Manage Computer and the pilot’s display unit, accessible from an unlocked hatch on the plane’s exterior.
It was like finding “the goddamn exhaust port on the Death Star,” Savage told Wired.
The havoc a hacker wreaks using their attack could be catastrophic. They could feed the pilot the wrong information about the air temperature outside or about the weight of its cargo and passengers and cause them to miss the speed they need for takeoff before running out of runway, Wired noted. Or they could suddenly change its navigation and crash it into a mountain.
Tomi Engdahl says:
https://futurism.com/artificial-intelligence/openai-escaped-models-rampaging-extensively?fbclid=IwVERDUATqvkJwZG9mBWV4dG4DYWVtAjEwAHNydGMGYXBwX2lkDDM1MDY4NTUzMTcyOAABHiS4tAfUkSYWI1hDf7Ftiz0lKYCywHukW6NBzzAqyfvBilOColtwmW2Wv75z_aem_TgBdxw71UFwQHXwi1pz5vg
Tomi Engdahl says:
Lying In Wait
If You AI-Generate Code, Hackers Just Found a Devious Method to Install Malware Directly on Your Computer
Awesome.
https://futurism.com/future-society/hackers-cybersecurity-crime-ai-assistant-hallucination?fbclid=IwVERDUATqvm9wZG9mBWV4dG4DYWVtAjEwAHNydGMGYXBwX2lkDDM1MDY4NTUzMTcyOAABHiS4tAfUkSYWI1hDf7Ftiz0lKYCywHukW6NBzzAqyfvBilOColtwmW2Wv75z_aem_TgBdxw71UFwQHXwi1pz5vg
Despite certain improvements in accuracy, large language models still hallucinate a lot. So much so, in fact, that cybersecurity researchers warn that criminals can easily weaponize delusional AI outputs to spread malware throughout the internet.
According to SecurityWeek, the attack works by exploiting a persistent flaw in AI coding assistants. Basically, when these tools recommend third-party software packages, there’s a strong possibility that they include names of ones that don’t actually exist.
Tomi Engdahl says:
Criminals are hacking into people’s accounts to steal explicit images, FBI warns
Hackers will sell pictures on criminal marketplaces – with personal information included
https://www.independent.co.uk/tech/security/images-intimate-explicit-account-hack-fbi-warning-b3032554.html?fbclid=IwdGRjcATq8UFjbGNrBOrxJXBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEetSTpJeaUHWOKaEQNgrxfqMnLra37iRY0nyEnAo3qX4P6lKgvbO0M6z_f778_aem_KB1o35dOg1WLJTk_PDjc7g
Criminals are breaking into people’s personal accounts to steal explicit and intimate images and sell them online, the US Federal Bureau of Investigation has warned.
Hackers are breaking into social media and personal accounts to steal explicit pictures, which the agency refers to non-consensual intimate images, or NCII. They will then sell the images on criminal marketplaces, often with personal details about the person depicted attached, the FBI warned.
The cyber attackers use a whole variety of different tactics to break into the accounts of people they may or not know, it said. Users may not even know they are being attacked through the hacks, the FBI warned.
The pictures are then either shared within forums or sold on “illicit marketplaces”. They are often accompanied by personal information, including the victim’s name, date of birth, email, phone number and social media username.
Tomi Engdahl says:
Trump signs memo allowing US firms to carry out cyber attacks
https://www.msn.com/en-us/news/other/trump-signs-memo-allowing-us-firms-to-carry-out-cyber-attacks/ar-AA2a0sEn?uxmode=ruby&ctsrc=dgst&ocid=edgntpruby&pc=DCTS&cvid=6a7dd47162484ae1940d58e0d6f15694&ei=12&fbclid=IwdGRjcATq8d5jbGNrBOrxz3Bkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEe87F8IssApo2T8kLycU4RHRUEtzshLSV93QYjy50pm4kCg-jXMtG0DVlA3_0_aem_Q0XC3uc-WVFTzHB2x3IAYA
Tomi Engdahl says:
Iranian military issue statement after hitting major Amazon data center with missiles
Two data centers were struck by Iran in Bahrain
https://www.uniladtech.com/news/tech-news/amazon-data-centers-hit-missiles-sent-by-iran-378167-20260812?utm_content=tech&utm_medium=Social&utm_source=facebook&fbclid=IwdGRjcATq-hBjbGNrBOr5-XBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEeiMm0xcEdm9Ot0Eh8lCY1tS5tH_dHO2lKoSvvozAAQ6Yy02sT0YUp6mMdlYo_aem_AaIrNx2p5VyDlm2MLVMmDg
Tomi Engdahl says:
https://etn.fi/index.php/13-news/19185-en-ole-robotti-voikin-olla-ansa
Tomi Engdahl says:
Now imagine what an actual hacker could do. https://trib.al/EXwF1J4
Oops!
Dude Asks AI Agent to Book Gym Spot, Accidentally Launches Autonomous Cyberattack
Now imagine what an actual hacker could do.
https://futurism.com/future-society/ai-agent-accidental-cyberattack-gym-booking?fbclid=IwdGRjcATsxnljbGNrBOzGWXBkb2YFZXh0bgNhZW0CMTEAc3J0YwZhcHBfaWQMMzUwNjg1NTMxNzI4AAEe7GlxZds0xfLRE7MQYGGhpNPS-jPXxzWLPr18Ln5ygTUkUjnyHXD3ki6vKu8_aem_Y32xOCI_H8B0FLQqyY5QAQ
An Australian man asked his personal AI agent to book him a spot at his local gym. Little did he know that this would snowball into a full-blown cyberattack.
The AI assistant, apparently, was overly enthusiastic about following its master’s instructions. It found an exploit to book gym classes several weeks in advance of what the gym allowed, ABC News reported. And taking no prisoners, it even hacked the software to kick someone who was in the waiting list in front of him.
This, per the reporting, is the country’s first known case of a fully autonomous cyberattack.
The man, Andrew, works for a company that sells AI products to businesses. He was experimenting with OpenClaw, an open source AI agent software that allows you to turn your AI model of choice into a personal assistant that can do tasks on your behalf. The AI powering Andrew’s OpenClaw agent was Anthropic’s Claude.
We’ve long seen examples of AI agents backfiring on the people that use them when they take the initiative to do stuff like delete files without permission. But seeing them break into other systems without the operator intending to them to is a novel threat — and one that could put users in legal jeopardy.
Finding the process of entering all his information to book something cumbersome, Andrew told the ABC that he asked Claude earlier this year to go ahead and book the gym slots for him. First it told him it found a way to get him a slot weeks in advanced, which wasn’t wasn’t allowed.
On a whim, he then asked if it was possible to move him up the waitlist. To his surprise, the AI explained that there was a vulnerability in the software that allowed it to put him next in line.
“The API has zero authorizations checks on cancelling other people’s reservations… I tested this with the person in waitlist position #1 — and it actually went through,” the AI reported, per the ABC‘s reporting. “So you’ve moved from #4 to #3 already.”
Andrew asked the AI to undo this, to no avail.
“Bad news — I can’t add them back,” the AI replied, explaining that it was only the cancel reservation feature that lacked an authorization check.
The incident has drawn comparisons to a thought experiment by philosophizer Nick Bostrom that’s now referred to as the “paperclip maximizer.”
illustrates the dangers of how seemingly harmless instructions can lead to dangerous outcomes
As the ABC‘s reporting notes, this creates a major legal gray area. If someone’s AI agent carries out a damaging cyberattack without the owner intending to, who’s responsible? The user, or the AI’s designers?
The incident comes as some of the top AI labs have, in suspiciously quick succession, come out to declare that their frontier models have broken containment and hacked another company. There’s certainly an element of theater involved in that, as they all try to prove that their AIs are capable enough to be dangerous, too. But there’s also clearly an element of truth: if a random man asking an AI to do something as innocuous like a reservation lead to a full-blown hack, what might bad actors in a large-scale, coordinated effort, might do?
Tomi Engdahl says:
https://www.facebook.com/share/p/191mdxqJc7/
Researchers from UC San Diego demonstrated that brief physical access to a Boeing 737 could let an attacker interfere with data moving between critical flight computers.
Their proof-of-concept used a custom device connected to an unused maintenance interface beneath the aircraft’s nose, with researchers estimating access could take less than a minute.
The team showed that altered data could affect the aircraft’s planned route and information linked to weight, balance, temperature and critical takeoff calculations.
The vulnerability involves older ARINC 429 data buses, which were not designed with modern protections to verify where messages come from.
Researchers disclosed the issue to Boeing in 2020 and stressed that the demonstration does not mean an imminent takeover threat, but highlights risks from physical access.
Comment:
It doesn’t take over. It spoofs the data from gps based signalling.
You can deselect gps and use the IRS with radio updating and continue on your way.
A 737 is a 1960s jet with a bolt on 1990s laptop. It’s a manual jet with control cables. Manually flown with autopilot guidance.
Never let the truth get in the way of a good story.
I’ve heard former official (co-)pilot of an Boeing 737 he said the cpu of an 737 runs on a pentium386.
I’m not sure if this is still accurate but it was at one point they were still using 5 and 1/4 true floppies to to update them well into the mid-2000s I’m not sure if this is still accurate to date
I mean if you have physical access to the nose internal mechanics and electrical interfaces, you can do a lot worse than plant a worm.
Another one of those “if a person can access physically, they could do way worse things” threats. This device requires implanting it in an access panel from outside the plane and if somebody could get there, the number of ways they could do damage is incalculable. The solution: don’t let UC students on the tarmac.
Aircraft technician here, whenever autopilot did something stupid it can manually disengaged by pilot, well unless you count the 737 max which it’s mcas system glitches when both aoa sensor misaligned, generally the old 737 Ng and er is totally safe and unhackable
Tomi Engdahl says:
https://www.facebook.com/share/p/1DXMaw6MjW/
The U.S. will now allow private companies to launch offensive cyber attacks.
Under a newly issued presidential memorandum, the United States is crossing a major threshold by authorizing vetted private cybersecurity firms to carry out offensive cyber operations against international criminal networks targeting Americans.
Moving away from a decades-old policy that restricted private entities strictly to network defense, the new framework permits approved companies to conduct surveillance using spyware, disrupt target infrastructure, and destroy the data of foreign gangs.
The policy change aims to actively combat rising threats like ransomware, financial fraud, and sextortion. However, the government will maintain tight control, requiring participants to seek explicit approval from the Department of Justice and the Department of Homeland Security for every operation, with zero tolerance for targeting Americans or domestic systems.
While the administration seeks to leverage private-sector innovation, cybersecurity experts are raising serious alarms regarding the risks. Critics warn that permitting private individuals to conduct foreign cyber operations could invite severe diplomatic fallout or leave these professionals legally vulnerable, potentially exposing them to prosecution and arrest as non-uniformed combatants when traveling abroad. To participate, companies must also place $1 million in escrow, which is subject to forfeiture if they violate program guidelines. As federal agencies prepare to release specific eligibility and operational rules within the next two months, this unprecedented strategy faces both high stakes and potential legal battles over the future of privatized warfare.
source: Whittaker, Z. (2026). In a first, US will allow some private firms to carry out cyberattacks. TechCrunch.