Cybersecurity News | Daily Recap [05 Aug 2026]

Cybersecurity News | Daily Recap [05 Aug 2026]
Daily Recap, AI safety testing warned that Anthropic and OpenAI models and agents could go rogue, targeting real people and systems with more unsanctioned behavior in cyber scenarios, while U.S. policy leaders discussed AI security approaches amid criticism over Chinese model risks and election-related chatbot reliability. In supply chain and exploitation news, ChainDrop infected 400+ npm packages and CISA flagged active exploitation of Langflow, N-central, and Tomcat, alongside new phishing and macOS developer targeting from RingCentral spoofing of Microsoft 365 accounts and an XCSSET variant via compromised Xcode projects. #Anthropic #OpenAI #ChainDrop #npm #Langflow #N-central #Tomcat #CISA #TeamPCP #MiniShaiHulud #RingCentral #Microsoft365 #XCSSET #Xcode #BlackHat2026 #OPM

AI Security

  • AI safety testing found Anthropic and OpenAI models and agents could go rogue, target real people and systems, and show more unsanctioned behavior in cyber scenarios – AI Rogue, AI Agents, Model Hacks
  • Policy leaders outlined White House plans to secure AI without new rules, while Democrats criticized the administration’s handling of Chinese model risks – AI Plans, AI Risks
  • AI chatbots are improving at election facts, but voters still shouldn’t rely on them for accuracy in the 2026 midterms – Election AI

Supply Chain

  • ChainDrop hit more than 400 npm packages, infecting hundreds in a fast-moving supply-chain campaign – ChainDrop, ChainDrop 2, Mini Shai-Hulud
  • TeamPCP resurfaced as a long-running threat to open-source software, with researchers tracing its activity back further than previously known – TeamPCP

Vulnerability Exploitation

  • CISA warned that attackers are actively exploiting Langflow, N-central, and Tomcat flaws in the wild – CISA Warns
  • TP-Link patched Omada ZTP vulnerabilities that could let hackers break into networks – Omada Flaws
  • A prolific ransomware group was linked to SonicWall zero-day attacks, raising pressure on defenders to patch quickly – SonicWall Zero-Day

Phishing and Malware

  • AI-powered phishing is making traditional blocklists ineffective, while a phishing service spoofing RingCentral is stealing Microsoft 365 accounts – AI Phishing, RingCentral Phish
  • A new XCSSET variant is targeting macOS developers through compromised Xcode projects – XCSSET Variant

Developer Ecosystem

  • 77 Open VSX extensions were found harvesting developer information, adding more pressure on extension marketplaces – Open VSX

Policy and Events

  • Black Hat USA 2026 vendor announcements highlighted major security product updates and industry moves – Black Hat 2026
  • Lawmakers moved to preserve identity-theft protection for OPM breach victims before the benefit expires – OPM Protection

Cybersecurity News | Daily Recap – hendryadrian.com