Critical

Def Con Attendees Targeted by Persistent Phishing Campaign

Infosecurity Magazine
Actively Exploited

Overview

After attending the Def Con hacking conference, participants found themselves at the center of a sophisticated phishing campaign. Researchers from Huntress reported receiving targeted emails that attempted to deceive them into revealing sensitive information. These phishing attempts were not just random; they were persistent and tailored to exploit the knowledge and skills of conference attendees. This incident serves as a reminder of the ongoing risks faced by cybersecurity professionals, especially after major events where attackers may leverage the excitement and connections made during the conference. The implications are significant, as such attacks can lead to data breaches or identity theft if successful.

Key Takeaways

  • Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
  • Action Required: Users should be vigilant about unsolicited emails and verify the sender's identity before clicking links or providing personal information.
  • Timeline: Ongoing since August 2023

Original Article Summary

Huntress researcher explains how they were targeted by an elaborate and persistent phishing scam following Def Con

Impact

Not specified

Exploitation Status

This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.

Timeline

Ongoing since August 2023

Remediation

Users should be vigilant about unsolicited emails and verify the sender's identity before clicking links or providing personal information. Implementing multi-factor authentication can provide an additional layer of security.

Additional Information

This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.

Related Topics: This incident relates to Phishing, Exploit.

Related Coverage

Managing the cyber risk of agentic AI

All Feed

The article discusses the importance of managing cyber risks associated with autonomous systems, particularly those powered by agentic AI. It emphasizes the need for safeguards, sandboxing, and active oversight to prevent unintended actions by these technologies. As AI systems become more autonomous, there's a growing concern about their potential to operate outside of intended parameters, which could lead to security vulnerabilities or harmful outcomes. By implementing these protective measures, organizations can harness the benefits of AI while minimizing risks to their operations and data security. This is increasingly relevant as more sectors integrate autonomous systems into their workflows.

Aug 20, 2026

AI-Assisted Tool Helped Secure Satellite Communication System After 2022 Russian Hacking

SecurityWeek

After a significant hacking incident attributed to Russian attackers in 2022, Viasat’s satellite communications network faced serious security challenges. To enhance the resilience of this system, Atalanta's Argo product has been deployed. This AI-assisted tool is designed to assess and prove the security strength of Viasat’s communications infrastructure. The use of such technology is crucial, especially considering the ongoing risks to satellite systems that are vital for various sectors, including military and civilian operations. By implementing this tool, Viasat aims to bolster its defenses against future cyber threats, ensuring the reliability of its services.

Aug 20, 2026

NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands

The Hacker News

Security researchers from Cycode have discovered significant vulnerabilities in the AIT-GUI, which is NASA's browser-based operator console for the AMMOS Instrument Toolkit. These flaws allow unauthenticated attackers to send arbitrary commands to spacecraft and instrument command buses. The vulnerabilities, assigned the identifier GHSA-p9r8-2q67-fp86, have a high severity rating of 9.4 on the CVSS scale, indicating they pose a serious risk. This situation is alarming as it could potentially allow unauthorized access to critical spacecraft operations, which could disrupt missions or lead to unintended consequences. Organizations using AIT-GUI should prioritize addressing these vulnerabilities to safeguard their systems.

Aug 20, 2026

ICS Operators Warned of AI-Driven Attacks on Siemens PLCs

Infosecurity Magazine

A recent advisory from the US government has alerted industrial control system (ICS) operators to a new type of threat targeting Siemens S7 Series programmable logic controllers (PLCs). According to the advisory, attackers are using AI-generated scripts to exploit vulnerabilities in these exposed systems. This raises significant concerns for industries relying on these PLCs, as the potential for disruption or damage to critical infrastructure is high. Siemens PLCs are widely used in manufacturing and utilities, making them attractive targets for cybercriminals. Operators are urged to assess their security measures and ensure that their systems are properly protected against these AI-driven attacks.

Aug 20, 2026

New Manic Android malware can exfiltrate data through nearby devices

BleepingComputer

A new Android malware called Manic has emerged, targeting users across several European countries. This malware is particularly concerning because it can exfiltrate data not just through traditional means, but also by leveraging nearby infected devices. This makes it more difficult for users to detect and defend against. Researchers have identified the malware's ability to communicate with other compromised devices, potentially allowing attackers to gather sensitive information from a wider network of victims. This situation raises alarms about the security of Android devices and the need for users to be vigilant about app permissions and device security.

Aug 20, 2026

Police Are Hiding Their Use of Flock Surveillance Cameras

Schneier on Security

In Wapello County, Iowa, a policy regarding the use of Flock license plate reader cameras has come to light, revealing that police are instructed to keep their usage a secret from the public. The policy explicitly directs officers not to mention the Automated License Plate Recognition (ALPR) technology to individuals during stops or in their reports unless absolutely necessary. This raises concerns about transparency and accountability in law enforcement practices. The use of such surveillance tools without public awareness parallels past incidents involving IMSI-catchers, which were similarly concealed. The implications of this secrecy affect public trust and raise questions about the balance between security and individual rights.

Aug 20, 2026