2026-08-29
Population: stories first tracked on this archive day in America/New_York; publisher date is used only if first-tracked time is unavailable and remains on each item.
- breaches incidents
McKesson discloses breach after ShinyHunters claims patient data theft
McKesson disclosed unauthorized access to third-party applications and data theft. The ShinyHunters extortion group claims to have stolen 284 million patient data records from the healthcare and pharmaceutical distribution company.
Why it matters: Healthcare providers, insurers, and patients affected by McKesson's services face identity theft and fraud risk; practitioners should audit access logs for third-party applications and prepare breach notification procedures.
- ai security
Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety
Researchers demonstrate that safety refusals in large language models (LLMs) concentrate in a narrow neural layer, revealing potential fragility in how these systems reject harmful requests. The findings underscore that model-level protections alone are insufficient and that organizations must implement external security controls.
Why it matters: Security teams deploying LLMs need to understand that built-in safety mechanisms may be brittle; practitioners should implement defense-in-depth strategies including monitoring, content filtering, and rate limiting at the application layer.
- breaches incidents
Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network
Berlin's state government confirmed it is targeted by extortion demands following an August compromise of its state administrative network and declined to pay. Forensic investigation identified additional data exfiltration from the Senate Department for Mobility, Transport, Climate Protection and Environment.
Why it matters: Government IT teams and data controllers in Berlin face potential data exposure and ongoing extortion pressure; departments handling environmental and transport data should assess what information was accessed and prepare for possible public disclosure.
- vulnerabilities
Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable
Cosmos Labs disclosed a critical balance-handling vulnerability (GHSA-7g4w-cg88-2cq2) in its shared EVM module that was exploited between August 20 and August 25, 2026 to drain funds from six blockchains. The advisory lacked a CVE identifier, weakness classification, or CVSS score. Affected versions are below 0.6.2.
Why it matters: Operators of any blockchain running the affected Cosmos EVM module versions must upgrade immediately to 0.6.2 or later to prevent fund drainage and further exploitation.
- ransomware
ATF confirms cyberattack hit system containing info on its investigation targets
The Bureau of Alcohol, Tobacco, Firearms and Explosives disclosed a cyberattack targeting a standalone system containing information on investigation targets. The financially-motivated ransomware group Qilin claimed responsibility, though the agency has not independently confirmed the claim or provided details on when the breach occurred. ATF stated the affected system was isolated from other agency infrastructure and that operational capabilities remain unimpaired.
Why it matters: Law enforcement and federal agencies must assess the risk of their own investigation infrastructure being exposed to threat actors, and security teams should review whether similar isolated systems in their organizations are adequately segmented and monitored.
- vulnerabilities
PaperCut releases second emergency patch for exploited flaws
PaperCut released a second emergency security update to address actively exploited vulnerabilities in PaperCut NG and MF after researchers identified bypass methods for the initial patches. The company addressed two flaws in its print management software following continued security research.
Why it matters: Organizations running PaperCut NG or MF need to apply this second patch immediately, as the original fixes were proven bypassable and attacks are already in the wild.