2026-08-02
Population: stories the tracker first saw on this Coordinated Universal Time (UTC) calendar day; publisher date is used only if first-tracked time is unavailable and remains on each item.
- ai security
OpenAI teases Astra, its next major AI model, after it solves 10 long-standing math problems
OpenAI announced Astra, an unreleased artificial intelligence (AI) model intended to handle complex, long-running tasks after an internal version solved ten significant mathematical and theoretical computer science problems.
Why it matters: Security teams should monitor Astra's capabilities and architecture when released, as new large language models introduce novel attack surfaces, prompt injection risks, and potential shifts in threat modeling for AI-dependent systems.
- cloud saas
Google Chrome may soon block New Tab hijacker extensions by default
Google is developing a Chrome security feature to prevent policy-installed extensions from hijacking the New Tab page or modifying the default search engine. The feature aims to restrict malicious or unwanted extension behavior that affects user browsing defaults.
Why it matters: Enterprise administrators and end users relying on Chrome should prepare for stricter extension controls, as this change may affect existing policies managing search engine settings and new tab behavior.
- breaches incidents
A “No-Logs” VPN That Kept 58 Million Connection Logs: Inside the NotVPN / SplitVPN Breach
A threat actor posted a 17 gigabyte database allegedly stolen from SplitVPN, a Russian virtual private network (VPN) service, on the Altenen cybercrime forum. The compromised database contains approximately 58 million connection logs despite the service's advertised no-logs policy. MysteriumVPN's research team obtained and analyzed the data.
Why it matters: Users of SplitVPN and similar services with no-logs claims face exposure of their connection history and IP addresses; practitioners should treat such privacy guarantees with skepticism and verify through technical audits.
- breaches incidents
TN: Sumner County Schools provides limited update on data breach
Sumner County Schools disclosed a network breach on July 21, 2026, that disrupted the start of the 2026-27 school year. The district is continuing to assess the incident and has provided limited details to the public about the scope or nature of the compromise.
Why it matters: School administrators and IT staff need to monitor this breach for impact on student and staff personal data; parents and students in the district should watch for notification of what information may have been exposed.
- identity access
8 Best Password Managers (2026), Tested and Reviewed
This article compares eight password management applications across multiple platforms including desktop operating systems, mobile devices, and web browsers. It presents tested reviews of password managers to help users select appropriate tools for securing their login credentials.
Why it matters: Practitioners should evaluate password managers as foundational controls for reducing credential exposure across their organizations and personal accounts.
- ai security
Week in review: Claude breached three companies during tests, AD CS domain-takeover PoC released
A weekly news roundup covers the release of Nono, an open-source sandbox for artificial intelligence (AI) agents designed to limit their access to sensitive files and production systems. The roundup highlights risks from AI coding agents operating with user-level permissions and the potential for prompt injection or mistakes to cause security incidents.
Why it matters: Security teams and AI practitioners need to evaluate sandboxing tools like Nono to contain AI agent access and reduce blast radius from hallucinations or prompt injection attacks that could expose credentials or systems.
- threat intel
Atomic MacOS (AMOS) stealer infection
A researcher documented an Atomic MacOS (AMOS) stealer infection acquired on July 31, 2026 from a deceptive webpage offering a fake macOS toolkit. The attack distributed malware through a social engineering chain: a malicious webpage directed users to paste a command into Terminal that downloaded shell scripts, which in turn retrieved and installed the AMOS stealer binary that persisted across multiple directories. The analysis includes indicators of compromise, file hashes, command and control server addresses, and network traffic patterns revealing the malware's staged infection process and data exfiltration activities.
Why it matters: macOS administrators and security teams need these indicators of compromise to detect AMOS stealer infections in their environments; the malware targets credentials, browser data, wallets, and messenger applications, making it a direct threat to organizational and personal data security.
- cloud saas
S3 Clones in the Neoclouds
S3 compatible services deployed in alternative cloud environments inherit many security assumptions from the original AWS S3 but introduce new attack surfaces and misconfigurations specific to these alternative implementations. The article examines which traditional S3 security models break down and what risks persist or emerge in neocloud deployments.
Why it matters: Organizations using S3 clones across multiple cloud providers need to understand that security controls and threat models differ from native AWS S3, requiring separate validation and configuration reviews to avoid data exposure.