Archive snapshot

Thu, Jul 23 · 12:00 PM CDT

Archived briefing content rendered inside the ACSP site experience.

Archived briefing

Snapshot overview

Generated Thu, Jul 23 · 12:00 PM CDTWindow last 6 hours

Top line

Coverage now updates on a rolling 6-hour window, while NVD entries come from the live API using a last-24-hours modified window and are sorted by severity.

Fast take

News stays on the current 6-hour slice, videos now use the last 24 hours, and NVD uses the API instead of the traditional feed to better match the live site behavior.

Top stories
5
Worth skimming
5
Tracked videos
1
NVD vulnerabilities
25

Top stories

Thu, Jul 23 · 12:00 PM CDT

Russian Hackers Exploit New ‘Zero-Click’ Attack Against Western Organizations

9.8/10 · Must read/watch
Infosecurity Magazinevulnai

Summary
Collected from the Infosecurity Magazine news page during the latest run.

Thu, 23 Jul 2026 18:41:09 +0530

Chaos Ransomware Uses msaRAT to Route C2 Traffic Through Headless Chrome and Edge

9.5/10 · Must read/watch
The Hacker Newsmalwareai

Summary
The Chaos ransomware group ran its command-and-control through the victim's own browser. Cisco Talos on Thursday detailed msaRAT, the Rust implant behind it, found on a compromised Windows machine ahead of the encryptor. The implant never opens an outbound con

Thu, Jul 23 · 12:00 PM CDT

Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness

9.4/10 · Must read/watch
Infosecurity Magazinemalwareai

Summary
Collected from the Infosecurity Magazine news page during the latest run.

Thu, Jul 23 · 11:00 AM CDT

Show HN: OneCLI – OSS credential gateway that keeps secrets out of AI agents

9.3/10 · Must read/watch
Hacker Newsaiidentity

Summary
Surfaced from Hacker News front page during collection run. Freshness on HN: 1 hour ago.

Thu, Jul 23 · 12:00 PM CDT

AI Agents Now the Enterprises Fastest Growing Exposed Attack Surface

9.1/10 · Must read/watch
Infosecurity Magazineai

Summary
Collected from the Infosecurity Magazine news page during the latest run.

Worth skimming

Thu, 23 Jul 2026 20:32:07 +0530

ThreatsDay: Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories

9.1/10 · Must read/watch
The Hacker Newsai

Summary
Most of this week's trouble came dressed as something useful. A package stole data. A fake extension opened remote access. A safety app became spyware. An image gave hidden orders to an AI agent. Other threats hid in open systems, weak code, and normal network

Thu, 23 Jul 2026 18:57:59 +0530

Claude Cowork Flaw Could Let AI Agent Escape Its VM and Access Mac Files

9.0/10 · Must read/watch
The Hacker Newsvulnai

Summary
Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic's Claude Cowork that makes it possible to break out of the confines of a Linux virtual machine (VM) within which the agent runs to read or write files anywhere on the Mac. Acc

Thu, 23 Jul 2026 16:58:54 +0530

Attackers Weaponize GitHub Actions Runners to Target cPanel and WHM Servers

8.9/10 · Worth your time
The Hacker Newssupply-chainai

Summary
Cybersecurity researchers have shed light on a large-scale campaign that has turned compromised GitHub repositories into distributed attack infrastructure designed to target cPanel and WebHost Manager (WHM) instances. The activity involves malicious Packagist

Thu, 23 Jul 2026 17:15:00 +0530

How Synthetic Identity Fraud is Coming for Machine Identities

8.8/10 · Worth your time
The Hacker Newsidentity

Summary
Most people understand identity theft as an attacker stealing a real person's sensitive information and impersonating them. Synthetic identity fraud is much harder to catch. Instead of stealing a real identity, the attacker manufactures a new one, frankenstein

Thu, Jul 23 · 12:00 PM CDT

New Dolphin X Stealer Employs AI Profiling to Prioritize Targets

8.2/10 · Worth your time
Infosecurity Magazineai

Summary
Collected from the Infosecurity Magazine news page during the latest run.