The Federal Communications Commission (FCC) added foreign-produced mobile robots and networked power inverters to its Covered List on July 28. The move generally prevents new models from receiving the equipment authorization required for import, marketing, or sale in the US. Previously authorized models can still be sold, and devices people already own are unaffected.
Amazon has tied the September 2025 hijack of the npm packages debug and chalk to North Korea. For ten months, the incident sat in the public record as crypto theft: a maintainer phished through a lookalike npm domain and a wallet-draining script pushed into at least 18 packages carrying more than 2 billion weekly downloads between them. The original Aikido and Wiz reports did not attribute the
Crisis ID: 9dbfdbe8-b760-4880-ad20-d09bf5c97dab · Last updated Jul 30, 2026, 9:06 AM
Although not connected to the Internet, smartphones are becoming increasingly popular in North Korea, demonstrating the country's technological progress.
Pyongyang, July 27 (KCNA). Kim Jong Un, General Secretary of the Workers' Party of Korea and President of the State Affairs of the Democratic People's Republic of Korea, visited the Cemetery of the Fallen Soldiers of the Chinese People's Volunteers in Hoechang County of South Phyongan Province on July 26 on the occasion of the 73rd anniversary of the victory in the Fatherland Liberation War and paid high tribute to the fallen soldiers. The post Kim Jong Un Visits Cemetery of CPV Fallen Soldiers on Occasion of 73rd Anniversary of Victory in Fatherland Liberation War appeared first on Khmer Times .
You've been headhunted for a great job in cryptocurrency. All you have to do is complete a short online assessment - with your webcam on, of course, so they can verify who you really are. Which is ironic, because the person recruiting you doesn't exist.
PoliticalSouth China Morning Post· Jul 29, 2026, 10:00 PM3MODERATE
Donald Trump’s demands that American allies in the Asia-Pacific region share more of the defensive burden have renewed questions about how far they can rely on the United States to help deter the likes of China and North Korea. Such concerns have led to an increasing focus on developing their own defence industries – but analysts have said that may eventually weaken American dominance in the global arms trade. Questions over Washington’s commitment In the National Security Strategy released in...
Security researchers have linked a North Korea-backed hacking group to four cyber intrusions, indicating a more extensive operation than previously understood.
Learn how better questions, trusted AI, and human judgment help security leaders make confident decisions and build resilient systems. The post Better security starts with better questions appeared first on Microsoft Security Blog .
Cybersecurity researchers have flagged a maximum-severity security flaw in Ruflo, an open-source agent meta-harness for Anthropic Claude Code and OpenAI Codex, that could result in unauthenticated remote code execution. The vulnerability, tracked as CVE-2026-59726 (CVSS score: 10.0), impacts all versions of the project before version 3.16.3. It has been codenamed RufRoot by Noma Security's
MilitaryEl País English· Jul 29, 2026, 2:10 PM3MODERATE
Moscow and Pyongyang are finalizing construction of their first direct road link while Volodymyr Zelenskiy says the Kremlin plans to bring another 30,000 North Korean troops to fight in Ukraine
AI is compressing exploit timelines. The real question isn't whether your vulnerability management playbook needs to change, it's which part of it you've been getting wrong all along. The conversation happening in security circles right now goes something like this: Mythos is here.
OpenAI on Tuesday revealed the rogue artificial intelligence (AI) agent that escaped its sealed evaluation environment and broke into Hugging Face's production environment, and also hacked multiple third-party accounts and services as part of the attack. The latest disclosure shows that the security incident, which stemmed from an internal security test, was more extensive in scope than
PoliticalEl País (Spanish)· Jul 29, 2026, 3:30 AM3LOW
Moscow and Pyongyang finalize the construction of their first direct road connection. Zelenski assures that the Kremlin plans the arrival of another 30,000 North Korean soldiers to fight against Ukraine
# Translation
The North Korean authorities have annulled previously issued permits to government agencies and trading enterprises for sending workers abroad and are reviewing the profitability of existing contracts, Daily NK reports citing a source familiar with the country's foreign economic activities. Pyongyang now intends to approve only those agreements that guarantee the state sufficient foreign currency inflows. When evaluating, officials take into account the final price of goods produced by North Korean workers and the profits of foreign employers.
A new Mirai-derived botnet called Tengu can use a compromised Linux device's hardware watchdog to trigger a reboot when defenders kill its main process. If that happens, Tengu's other persistence mechanisms get another chance to relaunch it. Nozomi Networks Labs observed the dropper reaching its honeypots through Telnet credential brute force.
Several countries blocked YouTube, with bans rooted in censorship, politics, and religion; China, North Korea, Iran, and Russia enforced lasting restrictions.
# Translation
The first automobile bridge between Russia and North Korea across the Tumen River could become a key artery for military supplies to the war in Ukraine. This was reported by The Guardian newspaper citing an investigation by the Ukrainian organization Truth Hounds. Preparations for the bridge's opening have already been completed on the North Korean side.
# Translation
The American delegation at the UN Security Council left the meeting in protest during a speech by their colleagues from France. This was preceded by a diplomatic conflict between the sides: they accused each other of disregarding human rights. This is reported by the Associated Press.
France's Mission to the United Nations in Geneva compared, on Friday on social media, the United States to North Korea and Russia regarding a vote organized on human rights.
North Korea’s renewed ballistic missile exports are helping Russia sustain its campaign in Ukraine while accelerating weapons development and military learning that may ultimately reverberate across Northeast Asia. This month, multiple media outlets reported that North Korea has resumed shipments of KN-23 and KN-24 tactical ballistic missiles and mobile launcher units to Russia to replenish […] The post North Korea’s missile pipeline to Russia paying strategic dividends appeared first on Asia Times .
The United States left a UN Security Council meeting on Monday to, according to them, denounce "hypocritical" comments from France. Paris compared Washington to North Korea and Russia regarding a vote related to human rights, according to an American representative.
The powerful sister of North Korean leader Kim Jong Un yesterday attacked the bloc of Southeast Asian nations for seeking a denuclearised Korean peninsula, blasting the position as “stupid and foolish.” The post Kim’s sister lambasts ASEAN over denuclearisation call appeared first on Khmer Times .
NVIDIA and 36 other organizations have formed the Open Secure AI Alliance to develop and share open technologies, techniques, and tools for securing software and artificial intelligence (AI) agents. The 37-member group spans cloud, security, enterprise software, and AI companies, including Microsoft, Cisco, Cloudflare, CrowdStrike, Hugging Face, IBM, Palo Alto Networks, Red Hat, and the Linux
Why security needs a new Cyber Stack — Introducing Project Perception The physics of cybersecurity are changing. Autonomous systems can now reason, adapt and operate continuously. At the same time, the cost of offense is falling, while the volume, velocity and complexity of what must be secured continues to grow. The post Rethinking security for the age of AI appeared first on Microsoft Security Blog .
Microsoft's External Red Team Alliance (EXTRA) is a global AI security initiative designed to advance AI safety research and red teaming. By partnering with universities, researchers, and regional experts, EXTRA helps identify emerging AI risks, improve security testing, and strengthen the resilience of frontier AI systems. The post Enhancing AI security through global AI red teaming appeared first on Microsoft Security Blog .
MilitaryDeník N (Czech Republic)· Jul 27, 2026, 1:36 PM8CRITICAL
Ukrainian President Zelensky claims 30,000 North Korean soldiers are preparing to join the fighting in Ukraine, after North Korean leader Kim Jong-un and the Russian defense minister were photographed toasting over the deaths of North Koreans already killed in the war.
PoliticalSouth China Morning Post· Jul 27, 2026, 1:17 PM3LOW
A rare rebuke of Asean by the powerful sister of North Korean ruler Kim Jong-un signals the bloc’s waning relevance to the nuclear-armed state, analysts say. Kim Yo-jong on Monday condemned a call by the Association of Southeast Asian Nations for the country’s denuclearisation, saying the statement “distorted the essence of the situation in the Korean peninsula”. At the annual Asean Regional Forum held in the Philippines last Thursday, Asean expressed “grave concern” over the ongoing development...
President Volodymyr Zelenskyy has pointed out that Iran and North Korea have already attacked Ukraine by supplying Russia with weapons, military technology and troops.
Former South Korean President Yoon Suk Yeol was sentenced to an additional 18 months in prison for electoral law violations related to false statements made during his 2022 campaign, adding to his existing life sentence for rebellion and other ongoing legal cases stemming from his failed martial law declaration in 2024.
Kim Yo Jong stressed that North Korea’s status as a nuclear state, enshrined in the constitution, cannot be changed by "a single document that has no legally binding force whatsoever," referring to a document by the Chairman of the ASEAN Regional Forum
MilitarySouth China Morning Post· Jul 27, 2026, 4:46 AM5MODERATE
North Korea is rumoured to be sending tens of thousands more troops to Russia in support of its war in Ukraine, marking a deepening of the two countries’ defence ties and a major escalation of Pyongyang’s involvement in the conflict, if confirmed. Late on Saturday, Ukrainian President Volodymyr Zelensky revealed that preparations had been under way in Russia’s Voronezh region to receive another 30,000 North Korean troops since last month. He also claimed Pyongyang was planning to send additional...
North and South Korea remain divided by one of the world's most heavily fortified borders, a legacy of the 1950-53 Korean War which ended with an armistice rather than a peace treaty, leaving both nations technically still at war more than seven decades later.
Ukrainian President Volodymyr Zelensky has stated that approximately 30,000 additional North Korean soldiers are expected to reinforce Russian troops in the Voronezh region, southwest of Ukraine. Neither Moscow nor Pyongyang has confirmed these claims, while Kiev is seeking assistance from its allies.
MilitarySouth China Morning Post· Jul 26, 2026, 12:30 PM5MODERATE
Each year on July 27, North Korea commemorates “Victory Day”, marking what it presents as its triumph in the Korean war. While few outside the country accept that characterisation, the date underscores a reality: the war never formally ended. The 1953 agreement was an armistice that left the peninsula in a state of suspended conflict.
Ukrainian President Volodymyr Zelensky announced that Russia is preparing to receive an additional 30,000 North Korean troops to bolster its military efforts in Ukraine, highlighting a growing military alliance between Moscow and Pyongyang.
PoliticalDenník N Slovakia· Jul 26, 2026, 10:26 AM3MODERATE
North Korean leader Kim Jong-un relaxed by a pool in casual clothing, smiling for cameras while wearing a badge honoring his father and grandfather, in a staged propaganda display.
Zelenski ha afirmado que Moscú está "ayudando" a Pyongyang a "aprender cómo hacer la guerra, mejorar sus armas y adquirir experiencia real de combate en su uso".
North Korea has been experiencing what international experts call a 'subsistence crisis' for decades, according to a report published on July 26, 2026.
Ukrainian President Zelensky claims Russia is attempting to recruit approximately 30,000 North Korean soldiers to bolster its forces in the Ukraine conflict, marking a potential expansion of the war beyond European borders. The allegation comes amid reported deaths in Zaporizhzhia and Russia's extension of its gasoline export ban through year-end.
Ukrainian President Volodymyr Zelenskyy has alleged that Russia is preparing to deploy nearly 30,000 North Korean soldiers into the war in Ukraine, with preparations reportedly underway in Russia's Voronezh region since June. He also claimed North Korea is preparing to send new ballistic missile launchers to Russia, and that North Korean troops previously fought alongside Russian forces in the Kursk region in 2024. The deepening military cooperation between Moscow and Pyongyang, formalized under a mutual defense treaty signed in June 2024, represents a significant escalation in the conflict.
MilitarySouth China Morning Post· Jul 26, 2026, 7:11 AM5ELEVATED
Ukraine’s President Volodymyr Zelensky has said that Russia has sought an extra 30,000 troops and missile launchers from North Korea to fight his country. Preparations for the extra troops are being made in Russia’s Voronezh region near the frontier with Ukraine, Zelensky said in a social media post late Saturday. North Korea sent thousands of troops to help Russia fight off a Ukrainian counteroffensive in the Kursk region in 2024.
Ukraine's President Volodymyr Zelensky has said that Russia has sought an extra 30,000 troops and missile launchers from North Korea to fight his country. The post Zelensky says Russia seeks 30,000 extra N.Korea troops for Ukraine war appeared first on Vanguard News .
Ukrainian President Volodymyr Zelenskyy claimed on social media that North Korea is preparing to transfer additional ballistic missile launchers to Russia, with military preparations reportedly ongoing since June in Russia's Voronezh Oblast.
PoliticalEl País América (Spanish)· Jul 26, 2026, 4:00 AM3MODERATE
A political commentary compares Nicaraguan President Daniel Ortega's governance model to authoritarian regimes like North Korea and Cuba, arguing that while elections exist formally, they do not serve as a real mechanism for disputing power.
Ukrainian President Volodimir Zelenski stated that Ukraine has solid intelligence reports on Russia's plans to mobilize new soldiers this autumn, and claimed that Russia is cooperating with North Korea to receive additional military support.
Russian President Vladimir Putin is preparing the conditions for a broader mobilization campaign, while Russia also plans to recruit another 30,000 military personnel from North Korea, Ukrainian President Volodymyr Zelensky said.
Ukrainian President Volodymyr Zelenskyy says Russia is preparing to receive another 30,000 troops from North Korea, as well as new launchers for ballistic missiles.
Activist Sonam Wangchuk ended his 26-day hunger strike after the Indian government agreed in writing not to file cases against peaceful protesters and to discuss examination system reforms in Parliament. Wangchuk, who joined a nationwide agitation over alleged NEET exam irregularities, said he prioritized protecting students from legal action over securing the resignation of Education Minister Dharmendra Pradhan.
The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found to operate an active phishing kit to impersonate the videoconferencing platforms in social engineering campaigns designed to deliver malware. "BlueNoroff has operationalised trust abuse by combining compromised industry contacts, social engineering, wallet
Cybersecurity researchers have disclosed a critical vulnerability in OpenAI's ChatGPT Workspace Agents that could have allowed a single phishing link to stealthily build, authorize, and deploy an autonomous artificial intelligence (AI) agent inside a victim's organization. The vulnerability has been codenamed AgentForger by Zenity Labs. The issue has since been addressed by OpenAI as of June 8,
Eight security flaws in NodeBB went public on Wednesday, along with the code to exploit them. Aikido Security rates all eight as high severity and says its AI pentest agents found them in a six-hour review of the forum software's source code. Every version before 4.14.0 is affected.
MilitarySouth China Morning Post· Jul 24, 2026, 2:37 AM4MODERATE
Typhoon Noul is expected to come closest to Hong Kong between Saturday night and Sunday morning, according to the city’s weather forecaster, which will issue the No 1 warning signal on Friday evening. The Hong Kong Observatory said that signal would be issued at 8.40pm. The tropical storm near the Philippines was officially named Typhoon Noul.
A nine-member North Korean family defected to South Korea, citing the country's harsh lockdown measures during the coronavirus pandemic and witnessing public executions as their primary motivations. Despite facing difficulties in their new life, the family affirms that their escape was the correct decision.
PoliticalDeník N (Czech Republic)· Jul 23, 2026, 1:57 PM4MODERATE
The International Children's Camp Songdowon in North Korea has reopened, hosting children from Russia and China. The report also mentions sanctions against Russia concerning the alleged abduction of Ukrainian children.
Cybersecurity researchers have uncovered a sandbox escape vulnerability in Anthropic's Claude Cowork that makes it possible to break out of the confines of a Linux virtual machine (VM) within which the agent runs to read or write files anywhere on the Mac. Accomplish AI, which shared details of the vulnerability with The Hacker News ahead of publication, said about 500,000 macOS users running
South Korea is shifting its policy towards North Korea, abandoning the 'denuclearization first' approach in favor of a 'peace first' principle. Unification Minister Chon Dong-yeon announced the change, also proposing to refer to North Korea as 'Chosun.' This new strategy aims to freeze the DPRK's nuclear program rather than demand immediate abandonment, as previous conditions yielded no dialogue. The North has also amended its constitution, removing references to reunification.
South Korean authorities have detained the cargo vessel Prada on suspicion of violating UN sanctions against North Korea. The vessel, which had previously called at ports including Vladivostok, Russia, Zhenjiang and Jiangyin in China, the Moluccas Islands in Indonesia, and Kuala Lumpur in Malaysia, was apprehended in the South Korean port of Pyeongtaek. Seoul's action is based on information that the vessel engaged in activities violating UN Security Council resolutions, specifically related to the trade of coal or iron ore while manipulating its location data to conceal its presence in North Korean waters. A former UN expert group member described the action as extremely significant, emphasizing the ongoing obligation of UN member states to enforce sanctions.
Security leaders who build fast, visible paths to AI adoption are becoming the most valued partners in their organizations. AI governance done right gives security teams the visibility they need, employees the tools they want, and CISOs the strategic influence they have earned. According to McKinsey's State of AI report, 76 percent of employees now use AI in some capacity at work, up from 55
The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today, AI-equipped attackers are simply outpacing defenses.
Cybersecurity researchers have discovered a NuGet typosquat that's unlike the typical information-stealing malware distributed via package registries: usual info-stealers: it's designed to rig live game results on Digitain. The package, named "Newtonsoftt.Json.Net," masquerades as the Newtonsoft.Json library and is a trojanized fork. Seven versions of the package have been published to the
A single invisible comment in an Azure DevOps pull request can turn a reviewer's own AI coding agent against them, driving it into projects the attacker has no rights to reach and quietly leaking what it finds. The flaw is in Microsoft's official Azure DevOps MCP server, and it works because one of its tools returns pull request descriptions without a prompt-injection guardrail the company had
Hidden text on a web page was enough to make Kiro, AWS's agentic coding IDE, rewrite its own configuration file and run an attacker's code on a developer's machine, with no approval step able to stop it. Intezer, in research with Kodem Security, found that a request as ordinary as asking Kiro to summarize a page could end in remote code execution. AWS has patched the issue and says it is
Google's DeepMind on Tuesday announced the release of Gemini 3.5 Flash Cyber, a specialized artificial intelligence (AI) model built atop 3.5 Flash that's designed to discover, validate, and patch vulnerabilities quickly and efficiently. According to the tech giant, the model will be exclusively available to governments and trusted partners via CodeMender as part of a limited-access pilot
Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability as an entry point to deploy Qilin (aka Agenda) ransomware on victim environments. Arctic Wolf Labs said it investigated multiple intrusions in June 2026 that began with the exploitation of CVE-2026-0257 (CVSS score: 7.8), an authentication bypass flaw affecting the portal and gateway
An Android app that can draw over other windows and write to shared storage can slip instructions to the AI agent driving that phone, in text no human eye will ever see. Two more steps, and the same app is running commands on the PC driving the agent. Researchers demonstrated that chain, plus six other attacks, against five open-source mobile agent frameworks: AppAgent, AppAgentX,
PoliticalDeník N (Czech Republic)· Jul 20, 2026, 3:20 PM3LOW
An analysis piece examines what North Korean propaganda reveals about internal regime dynamics, noting that the regime uses threats related to South Korean cultural content and labor camp references as control mechanisms, while observing that Putin's political position remains stable for now.
The industry spent the initial months after Anthropic's April 7 Mythos reveal focused on volume. How many new CVEs would Mythos add to an already overloaded pipeline? How quickly would the flood of AI-driven discovery overwhelm triage capabilities?
A Go botnet called NadMesh turned up in early July hunting exposed AI services, and the operator's own dashboard claims 3,811 unique AWS keys. A Shodan harvester keeps the scan queue stocked with ComfyUI, Ollama, n8n, Open WebUI, Langflow, and Gradio: the image generators, local model runners, and workflow builders that teams stand up fast and firewall late. The intel feed behind that counter
North Korean threat actors linked to the Contagious Interview campaign have been observed employing steganography in SVG image files to conceal malicious payloads as part of a campaign using fake job postings and coding challenges. "Any user who ran the project ended up with a four-stage payload aligned with OTTERCOOKIE: a browser credential and crypto wallet stealer, a file stealer, a
Ask an AI agent to summarize the reviews on a product page, and a single planted review can make it click "Buy Now" instead. Ask a coding assistant to apply a maintainer's fix from a GitHub thread, and a fake comment can make it run a stranger's command on your computer. Neither trick hijacks the agent's task.
A half-billion-dollar ammunition factory in Texas built to produce 30,000 artillery shells monthly has sat idle for two years without producing a single compliant component, leaving the U.S. Army unable to meet its ammunition production goals despite drawing down reserves by 3.6 million rounds, over 3 million of which went to Ukraine.
Mozilla has released updates to address two critical flaws in Firefox for which it warned that exploit code has been published. The vulnerabilities are listed below - CVE-2026-15718, an invalid pointer in the JavaScript: WebAssembly component CVE-2026-15719, a site isolation in the DOM: Navigation component "We are aware that exploit code for this is public, however we are not aware of
For years, routing traffic through cloud proxies was good enough. Then work moved to the browser, AI entered the workflow, and the inspection model stopped keeping up. Enterprise workflows now live across SaaS applications, browsers, and an expanding ecosystem of generative AI tools, unsanctioned browser extensions, and autonomous agents.
Cybersecurity researchers have disclosed details of two access control-related flaws impacting the RabbitMQ message broker service that could allow attackers to leak OAuth client secrets, expose enterprise messaging infrastructure to takeover risks, and bypass tenant boundaries. Miggo's security team, which discovered and reported the flaws, said one "leaks the broker's confidential OAuth
SEOUL, July 12 (Reuters) – South Korea’s unification ministry is seeking North Korea’s help to find a missing seaman near the two countries’ border on the east coast, it said on Sunday....
SEOUL, July 12 - South Korea's unification ministry is seeking North Korea's help to find a missing seaman near the two countries' border on the east coast, it said on Sunday.
South Korean authorities have asked North Korea to assist in searching for a missing naval soldier who is suspected to have drifted across the maritime border.
North Korea has condemned the recent NATO summit, saying that nuclear disarmament should begin with countries allied with the United States. Reuters reported on Saturday, July 11, that North Korea’s Foreign Ministry accused the United States and its allies of strengthening military alliances and escalating an arms race following the NATO summit. According to the […] The post North Korea Condemns NATO Summit and Calls for Nuclear Disarmament of US Allies appeared first on Hasht-e Subh .
MilitaryDaily Times (Pakistan)· Jul 12, 2026, 12:37 AM4MODERATE
North Korea has said North Korea nuclear disarmament should begin with U.S. allies rather than Pyongyang, while strongly criticizing the recent NATO summit. The country’s Foreign Ministry argued that nations participating in NATO’s nuclear-sharing arrangements should take the first steps toward reducing nuclear weapons.
MilitaryDaily Times (Pakistan)· Jul 11, 2026, 2:25 PM3MODERATE
North Korea on Saturday condemned the United States and its allies following this week’s NATO summit, accusing the alliance of expanding military blocs and increasing arms spending. Pyongyang also argued that denuclearisation efforts should first focus on US allies rather than North Korea. The remarks underscore growing security tensions in Europe and the Asia-Pacific region.
North Korea and Russia are connected by a difficult 17-kilometer border, which may be possible to cross by car for the first time as early as late summer.
North Korea's Central Military Commission met on July 9, announcing plans to further develop its military capabilities, with a particular focus on strengthening its nuclear capacity.
Microsoft released its July 2026 progress report on the Secure Future Initiative, detailing advancements in secure foundations, AI-powered defense, and future-ready cybersecurity.
According to the Chinese leader, Beijing and Pyongyang must make sure that their interstate and inter-party relations always develop in a direction that contributes to strengthening the socialist cause and modernization for each side
BEIJING/SEOUL, July 10 - China's President Xi Jinping met with North Korea's Premier Pak Thae Song in Beijing on Friday, Chinese state broadcaster CCTV reported.
A 41-year-old former ransomware negotiator has been sentenced to nearly six years (i.e., 70 months) in prison in the U.S. for their role in conspiring with the now-defunct BlackCat ransomware operators to extort multiple victims and working with two other cybersecurity professionals to target additional victims in 2023. In a sentencing memorandum, federal prosecutors described Martino as a "
PoliticalSouth China Morning Post· Jul 10, 2026, 8:00 AM3MODERATE
North Korean Premier Pak Thae-song has begun his three-day trip to China, as Beijing offers rare praise for its socialist neighbour’s economic achievements. Pak, a member of the Politburo Presidium of the ruling Workers’ Party of Korea, landed at Beijing Capital International Airport on Friday morning accompanied by a joint party and government delegation. He is expected to attend an event marking the 65th anniversary of the signing of Beijing’s only formal defence pact, the China-North Korea...
Depuis 2023, la Corée du Nord et la Russie ont effectué un rapprochement éclair. Kim Jong-un et Vladimir Poutine multiplient les rencontres et les échanges entre Moscou et Pyongyang s’intensifient. Une proximité matérialisée par l’apparition d’un pont routier entre les deux pays, mais dont la mise en service se fait toujours attendre.
North Korea will strengthen its nuclear force "both in quality and quantity" and expand the role of its military intelligence agency focused on South Korea, state media said Friday.
North Korea plans to boost its nuclear force “both in quality and quantity”, state media reported on Friday, citing a decision from a military commission meeting. The country also plans to bolster its spying activities in South Korea “in a radical way”.
AI has changed how fast attacks move. Work that once took an attacker days now takes minutes. Using models like Mythos, attackers write tailored bait, pick targets, test what lands, and jump to the next host before your team clears the first alert.
Chinese Foreign Ministry Spokesperson Mao Ning noted that this year marks the 65th anniversary of the signing of the Treaty of friendship, cooperation and mutual assistance between China and North Korea
Cybersecurity researchers have flagged a new ransomware family called GodDamn that employs the PoisonX kernel driver to neutralize security software as part of its defense evasion strategy. According to a new report published by the Threat Hunter Team from Symantec, the ransomware was first publicly spotted in the wild on May 21, 2026. It's assessed to be a rebrand of the Beast ransomware,
PoliticalSouth China Morning Post· Jul 9, 2026, 9:22 AM3MODERATE
North Korean Premier Pak Thae-song will arrive in China on Friday for a three-day trip to mark the anniversary of a friendship treaty between the two countries, in another sign of improving ties between the two traditional allies. This year is the 65th anniversary of the signing of the China-North Korea Treaty of Friendship, Cooperation, and Mutual Assistance, Beijing’s only formal defence pact, and Pak will be at the head of a party and government delegation. “China and North Korea are...
Meta has announced that its new artificial intelligence (AI) model Muse Image lets people use public Instagram posts and reels to generate AI content, and it's enabled by default. "You can also @-mention Instagram accounts in the Meta AI app to bring specific Instagram profiles right into your images," the social media giant said in a post. "Whether you want to design a custom event invitation
Ask an AI coding agent to scan open-source code for security holes, and it might run the attacker's code on your own machine instead. That is the finding in a proof-of-concept published Wednesday by the AI Now Institute, an attack it calls "Friendly Fire." It works against Anthropic's Claude Code and OpenAI's Codex when either is running in an autonomous mode that approves its own
Researchers at Wiz found that a flaw in six popular AI coding assistants lets a booby-trapped code project quietly take control of a developer's computer. The assistant asks permission to edit one harmless-looking file, but the write lands on a sensitive one instead. The affected tools are Amazon Q Developer, Anthropic's Claude Code, Augment, Cursor, Google Antigravity, and Windsurf.
At Microsoft we encompass these security requirements, along with threat knowledge, and operational frameworks in our Secure Future Initiative (SFI), to guide what a well-defended cloud service looks like. But defining the requirements is only the start. Meeting the requirements means continuously evaluating our live services against them, at AI speed.
AI coding assistants have a habit of making things up. Ask one to fetch a popular tool, and it will sometimes hand back a real-sounding name for a project that does not exist. New research, which its authors call HalluSquatting, turns that habit into an attack: work out the fake names an AI reliably invents, register them first, and wait for the assistant to fetch your trap on a user's
Ubiquiti has shipped updates to address multiple critical security flaws impacting UniFi Connect, UniFi Talk, UniFi Access, UniFi Protect, and UniFi OS that could result in privilege escalation and arbitrary command execution. The list of vulnerabilities is as follows - CVE-2026-50746 (CVSS score: 10.0) - An improper access control vulnerability in UniFi Connect Application that an attacker
An AI coding assistant that refuses to answer a dangerous request in its chat box can answer it anyway if the same request is broken into small, ordinary-looking steps inside a code editor. That is the finding of a new study of GitHub Copilot by researchers Abhishek Kumar and Carsten Maple. The models they tested through Copilot, Claude from Anthropic, and Gemini from Google, refused
According to the report, Kim and the other participants in the ceremony laid flower baskets at the statues of Kim Il Sung and the current North Korean leader’s father, Kim Jong Il, as they also paid tribute to the two late leaders
U.S. prosecutors linked an alleged Scattered Spider hacker to a break-in at a luxury jewelry retailer using a persistent Windows device ID, according to a newly unsealed federal complaint. Microsoft records tied that ID first to the account the attackers used to keep access during the May 2025 intrusion, then to online accounts prosecutors say belong to 19-year-old Peter Stokes.
Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could result in cross-tenant compromise. The one-click vulnerability has been codenamed WriteOut by the Sand Security Research team. "An outsider could go from having no access to taking over any Writer AI
MilitarySouth China Morning Post· Jul 7, 2026, 12:14 AM4MODERATE
Kim Jong-un stood on a cliff top and watched his navy come of age. As the North Korean leader looked on, 10 cruise missiles tore off the deck of the Kang Kon in rapid succession in a display of naval power Pyongyang could once only dream of staging. Analysts say the weapons test on Friday was no accident of timing – coming just days before Russia and China would begin their Joint Sea 2026 maritime exercise off Qingdao – and North Korea wanted to make sure everyone was watching.
A use-after-free bug in Linux's KVM hypervisor can be triggered from a guest virtual machine to corrupt the shadow-page state of the host kernel that runs it. Dubbed 'Januscape' and tracked as CVE-2026-53359, the flaw sits in the shadow MMU code that KVM shares across both Intel and AMD. The public proof-of-concept panics the host; the researcher claims that a separate, unreleased exploit
Threat actors have been observed attempting to exploit a recently patched critical security flaw in Gitea Docker images, according to Sysdig. The vulnerability in question is CVE-2026-20896 (CVSS score: 9.8), a vulnerability that stems from the DevOps platform trusting the "X-WEBAUTH-USER" header from any source IP address, effectively allowing an unauthenticated internet client to get elevated
The PolinRider campaign has compromised more than 100 legitimate open source packages and repositories to deliver a backdoor and information stealer to developers. The post North Korean Hackers Target Open Source Developers in Supply Chain Attacks appeared first on SecurityWeek .
SEOUL, July 5 (Reuters) – North Korean leader Kim Jong Un observed the test firing of a strategic cruise missile and evaluations of anti-ship, anti-submarine and air defense systems aboard the naval...
A U.S. government entity paid about $1 million to keep stolen files from being leaked, according to a new case study by Rakesh Krishnan for Ransom-ISAC, built on a leaked negotiation chat and the blockchain trail the payment left. The odd part: the group that took the money calls itself Kairos, but it may not be a ransomware gang at all.
The North Korean threat actors linked to the Contagious Interview campaign have been observed publishing 108 unique packages and web browser extensions spanning npm, Packagist, Go, and Google Chrome as part of an ongoing activity referred to as PolinRider. "The campaign remains active, and new malicious packages are likely to continue appearing as threat actors compromise maintainer accounts,
EconomicOFAC SDN List· Jul 4, 2026, 10:25 AM8CRITICAL
The U.S. Treasury Department's Office of Foreign Assets Control has designated Korea Ryongwang Trading Corporation, a North Korean entity, to its Specially Designated Nationals list for involvement in proliferation activities related to weapons of mass destruction.
A newly disclosed Linux kernel flaw called Bad Epoll (CVE-2026-46242) lets an ordinary user with no special access take full control of a machine as root. It affects Linux desktops, servers, and Android, and a fix is out. Bad Epoll sits in the same small stretch of kernel code where Anthropic's most powerful AI model, Mythos, recently found a different bug.
Threat actors with ties to North Korea have been linked to a fresh set of malicious npm packages that masquerade as Rollup polyfill tooling to facilitate remote access and data theft. According to JFrog, the packages "rollup-packages-polyfill-core" and "rollup-runtime-polyfill-core" mimic the legitimate "rollup-plugin-polyfill-node" project, down to the description, repository metadata, and
Google has significantly degraded NetNut, one of the biggest networks that turns home devices into rented relays for other people's traffic. Working with the FBI, Lumen, and others, Google's Threat Intelligence Group (GTIG) said this week it had reduced the network's pool of usable devices by millions. Google identifies NetNut, also tracked as Popa, as a network spread across home
Security firm Sysdig says it has found what it believes is the first ransomware attack run from start to finish by an AI agent. Its Threat Research Team calls the operator JADEPUFFER and says a large language model handled the whole job: breaking in, stealing credentials, moving deeper into the network, then encrypting and wiping a company's production database. Ransomware has always
The recently discovered financially-motivated FortiBleed campaign has been attributed to INC and Lynx ransomware operations, indicating that the verified, stolen credentials were intended for follow-on intrusions. "An operator tied to FortiBleed's infrastructure was found actively working negotiation panels for both groups, tying mass FortiGate credential theft directly to ransomware deployment
EconomicOFAC SDN List· Jul 2, 2026, 7:31 AM8CRITICAL
Sanctioned entity: KOREA MINING DEVELOPMENT TRADING CORPORATION. Aliases: NORTH KOREAN MINING DEVELOPMENT TRADING CORPORATION, KOMID, CHANGGWANG SINYONG CORPORATION, EXTERNAL TECHNOLOGY GENERAL CORPORATION, KOREA KUMRYONG TRADING COMPANY, DPRKN MINING DEVELOPMENT TRADING COOPERATION, KOREAN MINING AND INDUSTRIAL DEVELOPMENT CORPORATION. Program: NPWMD, DPRK2.
Attackers are hiding a data-stealing trojan inside fake exploit code aimed at the people who hunt bugs for a living. The malware, called ChocoPoC, travels in Python proof-of-concept (PoC) repositories on GitHub that claim to exploit hot new CVEs. Run one, and it quietly lifts your saved passwords, browser cookies, and files, then hands the attacker a shell on your machine. YesWeHack and
Two flaws in Cursor, an AI code editor, could let a single, ordinary-looking prompt break out of the editor's safety sandbox and run any command on a developer's computer. There is no click to fall for and no approval box to ignore. Cato AI Labs found the pair and named them DuneSlide.
Cybersecurity researchers have flagged a new malware artifact generated using DeepSeek that constructed a novel attack path combining "unrealistic browser-malware concepts with a real browser capability" to turn it into a working ransomware technique that runs entirely inside the browser on both Windows and Android devices. "This is the first documented case where a frontier AI model
The 850-meter bridge, which will connect to Russia's highway system, was agreed to during Russian President Vladimir Putin's visit to Pyongyang in June 2024.
Large language models keep inventing web addresses that do not exist. Attackers have started buying those made-up domains before anyone else can, then hosting phishing pages on them to catch traffic that AI tools point their way. Palo Alto Networks' Unit 42 calls the trick phantom squatting, and its new research shows it is already happening in the wild.
PoliticalAsia Times· Jun 30, 2026, 7:38 PM3MODERATE
The dust has now settled on the ostentatious June summit between Chinese President Xi Jinping and North Korean leader Kim Jong Un in Pyongyang. But perhaps the biggest takeaway was what was left unsaid. Chinese readouts from the summit conspicuously excluded any mention of denuclearization in North Korea (meaning North Korea giving up its nuclear […] The post What’s next after the failure to end North Korea’s nukes program appeared first on Asia Times .
MilitaryThe Hacker News· Jun 30, 2026, 5:46 PM4MODERATE
New Microsoft research shows how attackers can hijack AI agents that act on a user's behalf, using nothing more than a poisoned tool description to make the agent quietly hand over company data to an outsider. The trick is that the agent never breaks a rule. Every step looks routine, so in a default setup no alarm may fire.
PoliticalMicrosoft Security Blog· Jun 30, 2026, 4:00 PM3LOW
This month’s updates help security and IT teams strengthen identity and multicloud foundations, protect data wherever it lives, and secure the developer workflows powering AI innovation. The post What’s new in Microsoft Security: June 2026 appeared first on Microsoft Security Blog .
PoliticalThe Hacker News· Jun 30, 2026, 2:26 PM3LOW
The safety check that is supposed to stop an AI coding agent from running a dangerous command can be walked straight past using a shell trick that has been public for decades. New research from Adversa AI, which is named the bypass GuardFall, found it works against ten of the eleven popular open-source coding and computer-use agents the firm tested. Only one, "Continue," was built to
PoliticalThe Hacker News· Jun 30, 2026, 1:49 PM3LOW
Researchers tested 444 AI chatbot apps for iPhone and found that 282 of them, nearly two-thirds, exposed paid AI access through their network traffic. In many cases, the path in was visible just by watching what the app sent: a plaintext API key, a reusable token, or a backend server that accepted requests with no key at all. Whoever grabs it can send model requests on the developer's account,