If you’ve been affected by a crypto-related scam or can no longer access your funds, don’t ignore it or give up too early.
Professional guidance and recovery support are available.
DM open for consultations & case reviews.#CryptoRecovery#CryptoScam#FundsRecovery#InvestmentScam
❗️❗️❗️Hugging Face disclosed this week that it detected and contained a production infrastructure intrusion, driven end-to-end by an autonomous AI agent system, and defended against it using its own AI-based forensic analysis.
The attackers exploited two code-execution flaws in Hugging Face’s dataset processing pipeline: a remote-code dataset loader and a template-injection vulnerability in dataset configuration.
Once inside a processing worker, the actor escalated to node-level access, harvested cloud and cluster credentials, and moved laterally across several internal clusters over a single weekend.
❗️❗️A macOS information-stealing malware is turning stolen Telegram desktop data into immediate account access. Instead of guessing passwords or breaking two-factor authentication, it copies the local files that prove a user has already logged in.
When those files are restored on another Mac, Telegram can open and synchronize chats without showing its usual login screen.
The operation reaches well beyond Telegram. The malware collects macOS Keychain data, browser credentials and cookies, Apple Notes, and cryptocurrency wallet databases, then uses fake password prompts to obtain working system passwords.
This broad approach resembles other macOS-focused threats that seek browser and Keychain material before sending stolen data to an operator.
Two Hackers Jailed for Hacking 148 TfL Systems, Forcing Password Reset for 27,000 Staff |
Source: https://t.co/KIOGgjuhII
Two young members of the Scattered Spider cybercrime group have been jailed for a 2024 attack that knocked out 148 Transport for London (TfL) systems, forced all 27,000 staff to reset passwords in person, and cost the organization about £29 million.
All 27,000 TfL employees had to visit an office for password resets. Critical systems needed manual workarounds. Data from the Oyster refunds system was accessed, leaving some customers waiting longer for money. TfL reported the incident to City of London Police’s Report Fraud service.
#cybersecuritynews
MICHAEL SAYLOR:
“SOON EVERY BILLIONAIRE WILL BUY $1 BILLION OF BITCOIN.
THE SUPPLY SHOCK WILL BE SO GREAT THAT WE WILL STOP MEASURING BTC IN TERMS OF FIAT.”
BREAKING: 🇺🇸 FINAL #BITCOIN AND CRYPTO CLARITY ACT TEXT WILL BE RELEASED TONIGHT – POLITICO CONFIRMS
PRESIDENT TRUMP WILL PERSONALLY APPROVE THE FINAL TEXT
THE NEGOTIATIONS ARE OVER. WE ARE AT THE FINISH LINE.
A VOTE WILL HAPPEN SOON
HERE WE GO 🚀🚀
Hackers Using Vibe-Coded Generated PowerShell Script to Enumerate Active Directory Accounts
Source: https://t.co/ryhn33iOt5
Threat actors have started weaponizing AI-generated PowerShell code to map Active Directory (AD) environments, marking a notable shift from off-the-shelf hacking tools to bespoke, “vibe-coded” malware.
The reconstructed one such script, dubbed Untitled1.ps1, from an incident on June 3, 2026. Vibe coding refers to writing software by iteratively prompting an AI with natural language rather than manually typing code, until the output matches the desired function.
#cybersecuritynews
Just hit $150K on my trading account. 📈
Still doubting?
If you’re ready to start with a small investment and explore opportunities in the market, send me a DM.
Limited spots available. Serious investors only.
🚨 MICHAEL SAYLOR'S "NEVER SELL" ERA IS OFFICIALLY OVER.
Strategy just sold 3,588 Bitcoin, its largest BTC sale ever.
The scary part?
The company's $1.25 billion Bitcoin selling program hasn't even started yet.
Strategy is now selling Bitcoin below its own average purchase price just to fund dividend payments.
If Bitcoin stays here, these sales may only be the beginning.
Microsoft Releases Patch for RoguePlanet Defender Zero-Day Vulnerability
Source: https://t.co/gb3UHHcyXa
Microsoft has released security updates to address a newly disclosed zero-day vulnerability in Microsoft Defender, publicly referred to as “RoguePlanet.” The flaw, tracked as CVE-2026-50656, affects the Microsoft Malware Protection Engine and could allow attackers to gain elevated privileges on vulnerable systems.
The issue specifically affects versions of the Microsoft Malware Protection Engine before 1.1.26060.3008. Systems running version 1.1.26050.11 or earlier are considered vulnerable. Microsoft has addressed the flaw in the updated engine version 1.1.26060.3008, which was released as part of routine security updates.
#cybersecuritynews
Cyber AI Agents Like Claude Code, GPT-5.5, Can Be Hijacked to Run Malicious Code Remotely
Source: https://t.co/2VASMRUBLV
A new exploit called "Friendly Fire" hijacks Anthropic's Claude Code CLI and OpenAI's Codex CLI to execute attacker-controlled binaries during routine security reviews of third-party code.
The attack targets Claude Sonnet 4.6, Sonnet 5, and Opus 4.8, as well as GPT-5.5, using nothing more than the default "auto-mode" or "auto-review" configurations.
The exploit requires no hooks, plugins, MCP servers, or configuration files; instead, it hides prompt injections directly inside a third-party open-source library's documentation and source files.
#cybersecuritynews
Build the foundation for your future in tech.
Explore INE #Fundamentals Annual and gain access to training across Cybersecurity, Cloud, Networking, and IT: ⤵️ https://t.co/qal42r8Mvp
Plus, receive a certification voucher for either the eJPT or ICCA to validate your skills.
Success on the #CCIE Security exam comes from hands-on practice, not memorization.
Build confidence with expert-led training, structured learning paths, and real-world labs in INE Premium.
Start your journey: 👉 https://t.co/A9Y4Vmo5A9
🚨 The CTF Arena challenge is live.
Investigate the NimbusStack breach and reconstruct the complete attack path from an exposed webhook to production.
Five chained flags. One continuous investigation.
Think you can solve the incident? 👀 ⤵️
https://t.co/VsEZWSjdvs
Microsoft Edge Vulnerability Allows Remote Attacker to Execute Arbitrary Code
Source: https://t.co/qMRNWck0Ah
Microsoft has disclosed a new security vulnerability in Microsoft Edge (Chromium-based) that could allow a remote attacker to execute arbitrary code on affected systems. Tracked as CVE-2026-57992, the flaw stems from a Use-After-Free (UAF) memory corruption issue and carries a CVSS score of 7.5 (High).
As of publication, there is no available patch or public proof-of-concept exploit. CVE-2026-57992 is classified as a critical Use-After-Free vulnerability affecting Microsoft Edge’s Chromium engine. The flaw allows an unauthorized attacker to execute code over a network by tricking a user into visiting a specially crafted webpage.
#cybersecuritynews