
The feds flip the script.
The U.S. disrupts a Chinese hacking operation blamed for intrusions at several sensitive government agencies. CISA says more than 100 water systems were targeted in July. Attackers exploit a critical Gitea flaw, while malicious pages masquerade as Cloudflare verification screens. Cyber insurance claims get costlier, and AI agents break out of their sandboxes. Boston Scientific battles a cyber incident. Plus, a new standard tracks AI agent activity, criminals target stolen iPhones, and an alleged money mule is charged in a $7.5 million scam. Our guest is Stephen Hilt, Sr. Threat Researcher at TrendAI, on the risks facing data centers. Some breach data doesn’t quite measure up.
Remember to leave us a 5-star rating and review in your favorite podcast app.
Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you’ll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn.
CyberWire Guest
On today’s Industry Voices, we are joined by Stephen Hilt, Sr. Threat Researcher at TrendAI discussing the cybersecurity risks facing data centers and the thousands of internet-exposed industrial control systems that could leave them vulnerable to attack. And if you enjoyed this conversation, be sure to check out the full interview here.
If you’d like to hear more on this topic from TrendAI, you can check out this recent episode of the AI Security Brief podcast that focuses on data center security. Guest Mark Houpt, CISO at DataBank, joined hosts Johnny Hand and Dustin Childs to explain why securing the AI era starts with protecting the physical data centers that power it—and why proven security fundamentals still matter against rapidly evolving threats. AI Security Brief podcast publishes every other Thursday on the N2K CyberWire network. Subscribe today!
Selected Reading
China-sponsored hacking platforms seized by US, Justice Department says (Reuters)
CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks (SecurityWeek)
Hackers now exploit critical Gitea flaw in code injection attacks (Bleeping Computer)
Hackers abuse npm mirrors to host phishing redirect pages (Bleeping Computer)
Average Cyber Insurance Losses Increase Despite Fewer Claims (Infosecurity Magazine)
VMs won't contain cyber-capable agents (Trail of Bits)
Boston Scientific hit by cyberattack, global operations affected (Reuters)
Linux Foundation Introduces TRACE Standard for AI Runtime Evidence (Infosecurity Magazine)
AnonyMousKIT PhaaS uses voice AI agents to phish iPhone passcodes (Bleeping Computer)
Indian man who fled US arrested on charges he helped scammers siphon $7.5 million from the elderly (The Record)
Trump signs memo to help drastically boost US commercial space launches (Reuters)
A Cautionary Tale About Data Breach Claims, Verification and Carhartt (Troy Hunt)
Share your feedback.
What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show.
Want to hear your company in the show?
N2K CyberWire helps you reach the industry’s most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com.
The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc.


