Cyber Security News
Start. Stay. Grow.
Curated daily. The latest hacks, breaches, and cyber trends—humanized.
Daily cyber brief
Hacking Editorial Brief — September 7, 2026
Liquid Network Loses $320 Million in Bitcoin Theft
The Bitcoin-based Liquid Network has halted transactions following the theft of approximately $320 million in cryptocurrency from its Federation wallet. Attackers withdrew around 4,000 of the 4,200 bitcoin held in the network's multisignature wallet, with the organization stating that "purported white-hat hackers" were responsible for the withdrawal. The incident adds to an escalating series of cryptocurrency platform compromises in recent months. The Liquid Network, used by several crypto exchanges as a sidechain for faster Bitcoin transactions, has not disclosed the attack vector or provided attribution. The breach represents one of the largest cryptocurrency thefts of 2026 and raises continued questions about custodial security in blockchain infrastructure.
Active Exploitation Campaigns Target MikroTik Routers and PaperCut Systems
Attackers are actively exploiting a vulnerability chain in MikroTik RouterOS devices to gain full administrative control without authentication. CERT Polska confirmed that threat actors are chaining CVE-2026-67276 and CVE-2026-86060—collectively dubbed "MikroTrick"—to compromise internet-exposed routers via SSH, with active exploitation confirmed since September 2. Security researcher Costin Raiu provided technical indicators of compromise, including the presence of an SSH user named "-2" as evidence of successful exploitation. Separately, threat actors continue coordinated attacks against U.S. and European educational institutions by exploiting newly disclosed PaperCut vulnerabilities CVE-2026-81578 and CVE-2026-82078 to steal credentials and achieve remote code execution. Both campaigns demonstrate ongoing opportunistic targeting of known vulnerabilities in enterprise and network infrastructure.
North Korean Kimsuky Group Leverages AI Coding Tools in Operations
The North Korea-linked threat group Kimsuky has been observed using AI coding agents to create decoy documents and tooling for social engineering campaigns. The group's adoption of AI-assisted development represents an evolution in state-sponsored threat actor tradecraft, enabling more efficient creation of lures and potentially more sophisticated attack infrastructure. No specific AI platforms or technical implementation details have been disclosed.
Sources: Reuters · Bloomberg · The Hacker News · Security Affairs · Yonhap News Agency
Around the Web
Last Updated: N/A

Hacks + Heists
Hackers Demand $2 Million in Bitcoin from Germany. Berlin Refuses to Pay - Yahoo
Berlin's state government refused a 30 Bitcoin ransom, and the hackers behind the attack published 5.7 terabytes of stolen data on the dark web.
Read more →Anthropic Warns State-Linked Actor Abused Its AI Tool in Sophisticated Espionage Campaign
Anthropic disclosed that a Chinese state-sponsored threat actor (GTG-1002) manipulated its Claude Code tool to conduct an AI-orchestrated espionage ca...
Read more →Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
Google released security updates to patch 12 vulnerabilities in Chrome, including CVE-2026-85046, a high-severity type-confusion bug in the V8 engine ...
Read more →$320 million bitcoin exploit hits Liquid Network - CoinDesk
Hackers claim they're the 'good guys'. Liquid Network, a settlement layer used by exchanges, halted all transactions after losing $320 million ...
Read more →US officials revise claims that government agencies were hacked by Chinese, now say they ...
The distinction matters because it narrows the scope of confirmed breaches in what the DOJ described as a years-long Chinese cyber-espionage campaign ...
Read more →
Big Cyber
Winona County paid $128K ransom after cyberattack; then was attacked again - MPR News
The report indicates that 269 public entities and government contractors in Minnesota reported possible cybersecurity incidents last year. Rochester ....
Read more →Reports: FBI investigates alleged cybersecurity breach at ID verification company
The FBI is investigating reports of a cybersecurity breach that may have exposed millions of driver's license scans, according to media reports.
Read more →Vitalik Buterin optimistic about Bitcoin's resilience against cybersecurity threats
In an earlier essay published on May 18, Buterin explored AI's dual role in cybersecurity. On one hand, AI creates new categories of sophisticated ...
Read more →'ChatNoir,' the 18-year-old behind the hacking of a French tax website - Le Monde
Cybersecurity Cybersecurity Cybersecurity. 'ChatNoir,' the 18-year-old behind the hacking of a French tax website. A suspect was indicted on August .....
Read more →
Hard Tech
React2Shell (CVE-2025-55182)
A 10.0 critical severity vulnerablility affecting server-side use of React.js, tracked as CVE-2025-55182 in React.js and CVE-2025-66478 specifically f...
Read more →Breaking Into a Brother (MFC-J1010DW): Three Security Flaws in a Seemingly Innocent Printer
We discovered three vulnerabilities that when chained together, allow for complete remote compromise:
Read more →Check Point - Wrong Check Point (CVE-2024-24919)
Gather round, gather round - it’s time for another blogpost tearing open an SSLVPN appliance and laying bare a recent in-the-wild exploited bug. This ...
Read more →Backdoor in XZ Utils allows RCE: everything you need to know - CVE-2024-3094
Detect and mitigate CVE-2024-3094, a critical supply chain compromise, affecting XZ Utils Data compression library. Organizations should patch urgentl...
Read more →Loading...
The Cybersecurity Chronicles
‘The Cybersecurity Chronicles: 2024‘ pulls back the curtain on the digital threats that shaped our world last year, revealing the human stories behind the headlines. From art galleries frozen by ransomware to prison tablets hacked with a minus sign, from British Library archivists racing to protect centuries of knowledge to Spotify users meticulously curating their digital identities – these stories illuminate how cybersecurity touches every aspect of modern life.
Author Mark Nole weaves together intimate portraits of the people on all sides of the digital battlefield: the defenders working through sleepless nights to protect critical infrastructure, the victims grappling with stolen identities and lost savings, and even the attackers themselves, operating from nondescript offices with project management software and performance metrics.
Through detailed reporting and narrative storytelling, Nole reveals how 2024 became the year when cybersecurity stopped being just a technical problem and emerged as a fundamentally human challenge. Whether you’re a security professional or simply someone trying to understand our increasingly digital world, these chronicles offer an unprecedented look at how technology shapes – and sometimes betrays – our trust, our privacy, and our lives.

Stay Updated with Cyber Security News
Get the latest cybersecurity headlines, breaking news, and expert insights delivered directly to your inbox. Stay ahead of threats and informed about the digital landscape.
Join thousands of cybersecurity professionals and enthusiasts. No spam, just valuable insights.