Kurz: The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated backdoor called OWAReaper. […]
Anthropic confirms Claude is down worldwide (2026-07-29 21:39 UTC)
Kurz: Claude is down for some users, with Anthropic confirming elevated errors across multiple AI models. The disruption is causing requests to fail with a “529 Overloaded” message, including in Claude and tools that rely on its API. […]
Cisco warns of FMC static credential flaw exploited in zero-day attacks (2026-07-29 21:35 UTC)
Kurz: Cisco is warning that a high-severity Secure Firewall Management Center (FMC) static credential vulnerability, tracked as CVE-2026-20316, was actively exploited in zero-day attacks to gain unauthorized access to vulnerable devices. […]
Russian Hackers Exploit Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation (2026-07-30 07:40 UTC)
Kurz: The Russian threat actors recently linked to the exploitation of a now-patched vulnerability in Zimbra have been observed exploiting another vulnerability, this time in Microsoft Outlook Web Access (OWA), to target U.S. and European governm…
FCC Blocks New Foreign-Produced Robots and Power Inverters Over Cyber Risks (2026-07-30 07:28 UTC)
Kurz: The Federal Communications Commission (FCC) added foreign-produced mobile robots and networked power inverters to its Covered List on July 28. The move generally prevents new models from receiving the equipment authorization required for im…
Amazon Links Debug and Chalk npm Hijack to North Korea’s Sapphire Sleet (2026-07-30 06:05 UTC)
Kurz: Amazon has tied the September 2025 hijack of the npm packages debug and chalk to North Korea. For ten months, the incident sat in the public record as crypto theft: a maintainer phished through a lookalike npm domain and a wallet-draining s…