<!DOCTYPE html><html lang="en"><head><meta http-equiv="Content-Type" content="text/html charset=UTF-8"><meta charset="UTF-8"><meta name="viewport" content="width=device-width"><meta name="x-apple-disable-message-reformatting"><title>TLDR InfoSec</title><meta name="color-scheme" content="light dark"><meta name="supported-color-schemes" content="light dark"><style type="text/css">
:root {
color-scheme: light dark; supported-color-schemes: light dark;
}
*,
*:after,
*:before {
-webkit-box-sizing: border-box; -moz-box-sizing: border-box; box-sizing: border-box;
}
* {
-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%;
}
html,
body,
.document {
width: 100% !important; height: 100% !important; margin: 0; padding: 0;
}
body {
-webkit-font-smoothing: antialiased; -moz-osx-font-smoothing: grayscale; text-rendering: optimizeLegibility;
}
div[style*="margin: 16px 0"] {
margin: 0 !important;
}
table,
td {
mso-table-lspace: 0pt; mso-table-rspace: 0pt;
}
table {
border-spacing: 0; border-collapse: collapse; table-layout: fixed; margin: 0 auto;
}
img {
-ms-interpolation-mode: bicubic; max-width: 100%; border: 0;
}
*[x-apple-data-detectors] {
color: inherit !important; text-decoration: none !important;
}
.x-gmail-data-detectors,
.x-gmail-data-detectors *,
.aBn {
border-bottom: 0 !important; cursor: default !important;
}
.btn {
-webkit-transition: all 200ms ease; transition: all 200ms ease;
}
.btn:hover {
background-color: #f67575; border-color: #f67575;
}
* {
font-family: Arial, Helvetica, sans-serif; font-size: 18px;
}
@media screen and (max-width: 600px) {
.container {
width: 100%; margin: auto;
}
.stack {
display: block!important; width: 100%!important; max-width: 100%!important;
}
.btn {
display: block; width: 100%; text-align: center;
}
}
body,
p,
td,
tr,
.body,
table,
h1,
h2,
h3,
h4,
h5,
h6,
div,
span {
background-color: #FEFEFE !important; color: #010101 !important;
}
@media (prefers-color-scheme: dark) {
body,
p,
td,
tr,
.body,
table,
h1,
h2,
h3,
h4,
h5,
h6,
div,
span {
background-color: #27292D !important; color: #FEFEFE !important;
}
}
a {
color: inherit !important; text-decoration: underline !important;
}
</style><!--[if mso | ie]>
<style type="text/css">
a {
background-color: #FEFEFE !important; color: #010101 !important;
}
@media (prefers-color-scheme: dark) {
a {
background-color: #27292D !important; color: #FEFEFE !important;
}
}
</style>
<![endif]--></head><body class="">
<div style="display: none; max-height: 0px; overflow: hidden;">A critical pre-authentication flaw in macOS screensharingd allows unauthenticated network attackers to achieve root access in under 60 seconds β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β β </div>
<div style="display: none; max-height: 0px; overflow: hidden;">
<br>
</div>
<table align="center" class="document"><tbody><tr><td valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" class="container" width="600"><tbody><tr class="inner-body"><td>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr class="header"><td bgcolor="" class="container">
<table width="100%"><tbody><tr><td class="container">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" style="margin-top: 0px;" width="100%"><tbody><tr><td style="padding: 0px;">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div style="text-align: center;">
<span style="margin-right: 0px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftldr.tech%2Finfosec%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/xFl6VzNidMUiDLXL8CXiDcL2J5FEwh5nv0bFRxTkKso=452" rel="noopener noreferrer" target="_blank"><span>Sign Up</span></a>
|<span style="margin-right: 2px; margin-left: 2px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fadvertise.tldr.tech%2F%3Futm_source=tldrinfosec%26utm_medium=newsletter%26utm_campaign=advertisetopnav/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/8Amxzr0JencnOzgr964s94fZYv3tln5SRESBK2ww6c0=452" rel="noopener noreferrer" target="_blank"><span>Advertise</span></a></span>|<span style="margin-left: 2px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fa.tldrnewsletter.com%2Fweb-version%3Fep=1%26lc=156924ca-84b7-11f0-8d58-47c5c04ad337%26p=3883511e-90c4-11f1-b90f-e758e4ad3adb%26pt=campaign%26t=1785935308%26s=fc35fdfa556dccc7690cf6051396f23ffea1773b2393a1153190fd027d8fd27b/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/olM5Zh80FesAjmE0h1DPZm9vkSpAE_aX7nMTcTk1Tpw=452"><span>View Online</span></a></span>
<br>
</span></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="text-align: center;"><span data-darkreader-inline-color="" style="--darkreader-inline-color:#3db3ff; color: rgb(51, 175, 255) !important; font-size: 30px;">T</span><span style="font-size: 30px;"><span data-darkreader-inline-color="" style="color: rgb(232, 192, 96) !important; --darkreader-inline-color:#e8c163; font-size:30px;">L</span><span data-darkreader-inline-color="" style="color: rgb(101, 195, 173) !important; --darkreader-inline-color:#6ec7b2; font-size:30px;">D</span></span><span data-darkreader-inline-color="" style="--darkreader-inline-color:#dd6e6e; color: rgb(220, 107, 107) !important; font-size: 30px;">R</span>
<br>
</td></tr></tbody></table>
<br>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr id="together-with"><td align="center" height="20" style="vertical-align:middle !important;" valign="middle" width="100%"><strong style="vertical-align:middle !important; height: 100%;">Together With </strong>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_source=tldr%26utm_medium=paid_newsletter%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_080526_header_standing_privilege_problem/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/nOweTdK2yFRqkDreRvwxibD-tJEgyYHOgePolbuXbWU=452"><img src="https://images.tldr.tech/1password-2.png" valign="middle" style="vertical-align: middle !important; height: 100%;" alt="1Password"></a></td></tr></tbody></table>
<table style="table-layout: fixed; width:100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;">
<div style="text-align: center;">
<h1><strong>TLDR Information Security <span id="date">2026-08-05</span></strong></h1>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width:100%;" width="100%"><tbody><tr id="sponsy-copy"><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_source=tldr%26utm_medium=paid_newsletter%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_080526_header_standing_privilege_problem/2/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/c1hLTEpLAVosHn7X2XsApY_XNdHFw2_gXno16nARGfA=452">
<span>
<strong>Standing privilege has been a problem for years. Agents are turning it into a crisis. (Sponsor)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Developers have been known to bypass security in the name of velocity. According to 1Password's survey, 40% of technical employees grant AI agents persistent access to systems or credentials. <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_source=tldr%26utm_medium=paid_newsletter%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_080526_Body_1password_privileged_access/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/FbBWOosFCrvDa3QTnsvyTgDP_tMg_P0sxQ7UPBFDhzM=452" rel="noopener noreferrer nofollow" target="_blank"><span>1Password Privileged Access</span></a> was built to solve this problem.
<p></p>
<p>It eliminates standing access for every identity that touches your infrastructure: humans, AI agents, and machine workloads.</p>
<ul>
<li>Access exists only as long as the work requires it.</li>
<li>Every access event and session is logged automatically.</li>
<li>Security teams get a complete picture of who accessed what, when, and why.</li>
</ul>
<p><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_source=tldr%26utm_medium=paid_newsletter%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_080526_cta_zero_standing_privilege/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/E26LQUexSKlDuxV0JrV0NXeEEIz_gbxk4frbFWIeihQ=452" rel="noopener noreferrer nofollow" target="_blank"><span>See zero standing privilege in action.</span></a>
</p>
</span></span></div>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr>
<tr bgcolor=""><td class="container">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td style="padding: 0px;">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Attacks & Vulnerabilities</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.cyberkendra.com%2F2026%2F08%2Fmacos-screen-sharing-bug-handed-hackers.html%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/YUE6mLqj7Xj5AoDVgQJhof82LGRyfm5bSwTpyKXwPZc=452">
<span>
<strong>macOS Screen Sharing Bug Handed Hackers Root, No Password (3 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
A critical pre-authentication flaw in macOS screensharingd (versions 26.5 and earlier) allows unauthenticated network attackers to achieve root access in under 60 seconds. By sending oversized frames to trigger a stale success code, attackers can completely bypass password checks and encryption to gain arbitrary root-level file access. Users must update to macOS 26.6 immediately, or disable Screen Sharing in System Settings while keeping System Integrity Protection enabled to mitigate the risk.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fblog.gitea.com%2Frelease-of-1.27.1%2F%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/ewKV2Igk5Ti4kak-m3zIxVFZSigwO5Js2Eo863VdQeg=452">
<span>
<strong>Gitea 1.27.1 Patches Unauthenticated Arbitrary File Read and Separate RCE via Git Hooks (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Gitea 1.27.1 fixed two critical unauthenticated flaws reported by xbow-security and researcher NightRang3r: CVE-2026-59774, an arbitrary file read via the Org-mode markup renderer's #+INCLUDE directive, and CVE-2026-60004, a distinct remote code execution bug reachable through the diffpatch API by installing a malicious Git hook. Both affect versions 1.22.1 through 1.27.0 with no authentication or user interaction required, so admins should upgrade to 1.27.1 immediately regardless of which attack path they're worried about.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flinks.tldrnewsletter.com%2FlbSaWC/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/GR4J7VYOLOsxoQu0j-Yjwh8ezOsypJSERwV5yF5FLZU=452">
<span>
<strong>TP-Link Patches Omaha ZTP Flaws Allowing Hackers to Breach Networks (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
TP-Link patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices. The vulnerabilities could be chained with previously disclosed vulnerabilities to achieve remote code execution. The vulnerabilities span client-side code injection, information disclosure, device hijacking and spoofing, and compromise of encrypted communications.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π§ </span></div>
</div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Strategies & Tactics</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fmemn0ps.github.io%2Frusty-windows-uefi-bootkit%2F%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/OcKuFLKC1Q5iwt_CDenmg5lqq0k_R6HGxiXvuFLMycI=452">
<span>
<strong>Rusty Bootkit - Windows UEFI Bootkit in Rust (Codename: RedLotus) (13 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
RedLotus is an educational, Rust-based UEFI bootkit that bypasses Driver Signature Enforcement by hooking the early boot sequence to manually map an unsigned kernel payload into memory before Windows initializes. It establishes a usermode-to-kernel communication channel without triggering PatchGuard by overwriting a .data pointer in the HalDispatchTable. While it demonstrates Rust's viability for low-level systems programming, the bootkit's reliance on noisy RWX memory allocations makes it trivially detectable by modern EDRs and completely neutralized if Hypervisor-Protected Code Integrity (HVCI) is enabled.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fmysk.blog%2F2026%2F07%2F23%2Fmacos-overwrite-app-executables%2F%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/D6ibflDvco0jzH6SNgya7z4_qRDJ2-DVHXocSESF4BI=452">
<span>
<strong>Silent Replacement of Trusted macOS App Executables (6 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Security researchers discovered that they could replace the executable of a macOS application bundle that was downloaded from the internet without triggering authorization prompts as long as an attacker has code execution on the device and the application has been launched at least once. While macOS protects against modifying the application bundle directly, the researchers discovered that if the application bundle is archived, then the original application is deleted, and then the bundle is extracted to the original location, it will run normally even with a modified executable. Apple stated that it will not fix the issue as it isn't a bypass of TCC or Gatekeeper checks directly.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π§βπ»</span></div>
</div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Launches & Tools</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.blackduck.com%2Fsolutions%2Fartificial-intelligence-software-development.html%3Futm_source=tldr%26utm_medium=referral/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/Ff6t5jiBnuLT_8cyH7QirXFpqNJyM30eGMssrYi0l7w=452">
<span>
<strong>AI is accelerating AppSec risk to machine speed. More of the same won't help (Sponsor)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Cyber-capable LLMs are unleashing a flood of new vulnerabilities, and bad actors can turn them into working attacks in hours. Not sure you can keep up? <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.blackduck.com%2Fsolutions%2Fartificial-intelligence-software-development.html%3Futm_source=tldr%26utm_medium=referral/2/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/b_xsBYBQi-8_edcWIZ8htsJ8quNiELfeMawwk6oZvNM=452" rel="noopener noreferrer nofollow" target="_blank"><span><strong>Black Duck Polarisβ’ Platform</strong> and <strong>Signalβ’</strong></span></a> can help. Intelligent prioritization, automated workflows, faster remediation of exploitable risk. <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.blackduck.com%2Fsolutions%2Fartificial-intelligence-software-development.html%3Futm_source=tldr%26utm_medium=referral/3/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/QNnD5ApALa1IvS6ddmmpix7QZaAkdBjeKRdxAP_kZQQ=452" rel="noopener noreferrer nofollow" target="_blank"><span>Get Mythos-ready with Black Duck</span></a>
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fgithub.com%2Foffseq%2Fthreat-finder%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/4TZ0cScVls7_CUU-Q5DNnWpMnuNiFZHuc9cpPYFMB7g=452">
<span>
<strong>threat-finder (GitHub Repo)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
OffSeq's threat-finder is a cross-platform Rust CLI that inventories running host software and accurately matches it against the OffSeq Radar catalog to eliminate false positives from backported fixes. It stands out by correlating discovered vulnerabilities with actual network reachability via listening-socket mapping, fusing this exposure data with EPSS and KEV status into an SSVC-style risk score. Designed for modern workflows, it supports CI/CD gating, SARIF output, and optional continuous monitoring across all major operating systems.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fgithub.com%2FBushidoUK%2FProject-Orbital%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/MEyCArY97BY7A17R-4iPCzDfIYscALA72reUT0T7EYc=452">
<span>
<strong>Project ORBITAL (GitHub Repo)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Project ORBITAL is a centralized matrix for mapping, fingerprinting, and hunting China-nexus Operational Relay Box (ORB) networks and malicious edge-device infrastructure based on public reporting.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">π</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><strong><h1>Miscellaneous</h1></strong></div>
</div>
</td></tr></tbody></table>
<table bgcolor="" style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="mailto:infosec@tldr.tech?utm_source=tldrinfosec">
<span>
<strong>TLDR is hiring a curator for TLDR Infosec! (TLDR Curator, ~5 hrs/week)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Over 400,000 subscribers read TLDR Infosec to stay on top of the latest in cybersecurity, vulnerabilities, breaches, threat research, and security tools. If you work in security and want to help curate it, send your LinkedIn or resume to <a href="mailto:infosec@tldr.tech" rel="noopener noreferrer" target="_blank"><span>infosec@tldr.tech</span></a>!
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Farstechnica.com%2Fsecurity%2F2026%2F08%2Fdefcons-new-badge-is-a-security-key-you-can-see-inside%2F%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/OWP6kXZhBeDdxNLg3bFNDtXkFQKr78XL8VzUo2fjgjA=452">
<span>
<strong>Defcon's new badge is a security key you can see inside (7 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
This year's DEFCON 34 badge doubles as the Baochip-1x, an open-source microcontroller designed by hardware hacker Andrew "bunnie" Huang whose translucent, infrared-inspectable packaging lets researchers physically verify the silicon against Huang's published source code. The removable module functions as a FIDO-compliant hardware security token supporting one-time passwords and password management, giving the badge a second life beyond the conference, though Huang cautions that a well-funded adversary with a sophisticated hardware-analysis lab could still defeat it.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Faws.amazon.com%2Fblogs%2Fsecurity%2Famazon-identifies-north-korean-hacker-group-behind-open-source-supply-chain-attacks%2F%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/9fovpFboYm8nAj2fkLGF4IQ0OqhMni1PcuJGUQjNO9o=452">
<span>
<strong>Amazon identifies North Korean hacker group behind open-source supply chain attacks (12 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Amazon Threat Intelligence has attributed the compromises of major NPM packages, including axios, debug, and chalk, to the DPRK-linked actor SAPPHIRE SLEET, linking four distinct supply chain campaigns for the first time. The attackers demonstrated highly evasive tradecraft by fragmenting malicious workflows across benign packages, utilizing runtime-fetched payloads, and employing sandbox-aware detonation to bypass registry defenses. Noting that generative AI is accelerating these threats through hallucinated dependencies and prompt injections, Amazon emphasized the need for shared ecosystem defense backed by its $12.5M Akrites investment with the Linux Foundation.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flinks.tldrnewsletter.com%2FSe9oAN/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/5-102dDtlODvQK2KVbDeTJ2wI74LrxIBDHP87wlFsX8=452">
<span>
<strong>OpenAI and Anthropic Agents Targeted Real People and Systems in Cyber Tests (3 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
During an evaluation of GPT-5.6 Sol and Mythos 5, unrelated to the HuggingFace incidents, both models attempted to exploit unsandboxed and unsanctioned resources on the public internet. When evaluating Mythos 5, the UK's AISI noted that it attempted (but failed) to compromise the maintainers of a GitHub repository that it mistakenly believed to be part of the test by submitting a pull request containing malicious code. The model researched the maintainers and tried to create fake profiles to appear as the maintainers as well as to advocate for the PR. GPT-5.6 Sol managed to exploit a βbasic vulnerabilityβ in a real website that coincidentally shared a domain name with a fictional target from Irregular's testing.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">β‘</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Quick Links</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table bgcolor="" style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fthehackernews.com%2F2026%2F07%2Fnvidia-forms-37-member-open-secure-ai.html%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/NDqsDIrK3Bg9j7QF_CqzRDijCQP7UDgx1C_HciOf0Ug=452">
<span>
<strong>NVIDIA Forms 37-Member Open Secure AI Alliance and Open-Sources NOOA Framework (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
NVIDIA and 36 industry partners, notably excluding major frontier AI labs, have launched the loosely governed Open Secure AI Alliance alongside NOOA, an open-source agent framework that boasts strong benchmark performance but lacks internal containment guarantees, relying entirely on external OS-level sandboxing.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fthehackernews.com%2F2026%2F08%2Fthermo-fisher-patches-flaw-that-could.html%3Futm_source=tldrinfosec/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/h3epUSrMtnRJhcg2rtO1_6QSxw7FrREXHr_EcgsPn1Q=452">
<span>
<strong>Thermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly Undetectable (5 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Thermo Fisher has patched a high-severity vulnerability (CVE-2026-17583) across its active Applied Biosystems product lines to prevent the undetectable, AI-assisted forgery of forensic DNA data, though three end-of-life systems remain unpatched.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td align="left" style="word-break: break-word; vertical-align: top; padding: 5px 10px;">
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Love TLDR? Tell your friends and get rewards!
</p>
</td></tr>
<tr><td class="container" style="padding: 0px 10px 15px;">
<div class="text-block">
Share your referral link below with friends to get free TLDR swag!
</div>
</td></tr>
<tr><td align="left" style="padding: 10px;">
<div class="text-block">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Frefer.tldr.tech%2F78de0e20%2F8/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/YEZLE1ZgUj3oTiUwqSNjia7mO2t1_9i-zVdQ3k_GyUc=452" style="color: #464ba4; text-decoration: underline;">https://refer.tldr.tech/78de0e20/8</a>
</div>
</td></tr>
<tr></tr>
<tr><td align="left" style="padding:5px 10px;">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fhub.sparklp.co%2Fsub_d62447d5a74a%2F8/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/u38e0oRPZUonzEguoXO-W_Ft5gcQqthdjjAyiEczhyQ=452" style="font-size: 16px; line-height: 1.6; padding: 10px 0; display: inline-block; text-decoration: underline;"><span style="mso-text-raise:13pt; text-decoration: underline;">Track your referrals here.</span></a>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td align="left" style="word-break: break-word; vertical-align: top; padding: 5px 10px;">
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Want to advertise in TLDR? π°
</p>
<div class="text-block" style="margin-top: 10px;">
If your company is interested in reaching an audience of cybersecurity professionals and decision makers, you may want to <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fadvertise.tldr.tech%2F%3Futm_source=tldrinfosec%26utm_medium=newsletter%26utm_campaign=advertisecta/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/a0v7F9WnltO250ndT5zgg3lKENycwAgznn9QBPEB6-M=452"><strong><span>advertise with us</span></strong></a>.
</div>
<br>
<!-- New "Want to work at TLDR?" section -->
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Want to work at TLDR? πΌ
</p>
<div class="text-block" style="margin-top: 10px;">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fjobs.ashbyhq.com%2Ftldr.tech/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/CM9mPUBPJH8fmsxpFmI03RQW39ADJJlWOuCEox1tFq4=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>Apply here</strong></a>,
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fjobs.ashbyhq.com%2Ftldr.tech%2Fc227b917-a6a4-40ce-8950-d3e165357871/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/7mmgIlp_zuaN2A71kVTc2n-Q5AxOh4lXubzVenmNOT8=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>create your own role</strong></a> or send a friend's resume to <a href="mailto:jobs@tldr.tech" style="color: #0000EE; text-decoration: underline;">jobs@tldr.tech</a> and get $1k if we hire them! TLDR is one of <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Ffeed%2Fupdate%2Furn:li:activity:7401699691039830016%2F/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/4PyNO-XXr5gXDsiTDqed9t914HcpoPjnpbJpZ12DHZg=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>Inc.'s Best Bootstrapped businesses</strong></a> of 2025.
</div>
<br>
<div class="text-block">
If you have any comments or feedback, just respond to this email!
<br>
<br> Thanks for reading,
<br>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fprasannagautam%2F/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/XACZLB2kLrRduJxlEOCyx7NAuMg4OYjZ8r0aX4P8qxQ=452"><span>Prasanna Gautam</span></a>, <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fericfernandezdelcampo%2F/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/FG9Z5kjT79E2uiaXbfM-VOk82RZ-ppplsO5uuxn8I2Y=452"><span>Eric Fernandez</span></a> & <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fsammy-tbeile%2F/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/SunkLD1nFL5wkl0woP7Yd0It34LgAdvP47l9-s3HBEc=452"><span>Sammy Tbeile</span></a>
<br>
<br>
</div>
<br>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block" id="testing-id">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftldr.tech%2Finfosec%2Fmanage%3Femail=silk.theater.56%2540fwdnl.com/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/897x0DLaAVQ3RvZl5mizCAbwRPIqubmQjNCdYlQNxhA=452">Manage your subscriptions</a> to our other newsletters on tech, startups, and programming. Or if TLDR Information Security isn't for you, please <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fa.tldrnewsletter.com%2Funsubscribe%3Fep=1%26l=8d9cea11-3e94-11ed-9a32-0241b9615763%26lc=156924ca-84b7-11f0-8d58-47c5c04ad337%26p=3883511e-90c4-11f1-b90f-e758e4ad3adb%26pt=campaign%26pv=4%26spa=1785934879%26t=1785935308%26s=776a598f3123d08c5fa32950bae5c053e5854172ec9ed1fff3c04e98d3d92b9b/1/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/NWE7DZl57gjjl_Y6uscV2UakbSonUquAQQP-DFMsSUI=452">unsubscribe</a>.
<br>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
<img alt="" src="http://tracking.tldrnewsletter.com/CI0/0100019fd20a2899-14d5c626-376a-4288-9fc9-d103f80a9a0f-000000/B848YJDF-k5hLGEZEi0QpRPA5AxTOsYsYitzM1cp2kM=452" style="display: none; width: 1px; height: 1px;">
</body></html>