<!DOCTYPE html><html lang="en"><head><meta http-equiv="Content-Type" content="text/html charset=UTF-8"><meta charset="UTF-8"><meta name="viewport" content="width=device-width"><meta name="x-apple-disable-message-reformatting"><title>TLDR InfoSec</title><meta name="color-scheme" content="light dark"><meta name="supported-color-schemes" content="light dark"><style type="text/css">
:root {
color-scheme: light dark; supported-color-schemes: light dark;
}
*,
*:after,
*:before {
-webkit-box-sizing: border-box; -moz-box-sizing: border-box; box-sizing: border-box;
}
* {
-ms-text-size-adjust: 100%; -webkit-text-size-adjust: 100%;
}
html,
body,
.document {
width: 100% !important; height: 100% !important; margin: 0; padding: 0;
}
body {
-webkit-font-smoothing: antialiased; -moz-osx-font-smoothing: grayscale; text-rendering: optimizeLegibility;
}
div[style*="margin: 16px 0"] {
margin: 0 !important;
}
table,
td {
mso-table-lspace: 0pt; mso-table-rspace: 0pt;
}
table {
border-spacing: 0; border-collapse: collapse; table-layout: fixed; margin: 0 auto;
}
img {
-ms-interpolation-mode: bicubic; max-width: 100%; border: 0;
}
*[x-apple-data-detectors] {
color: inherit !important; text-decoration: none !important;
}
.x-gmail-data-detectors,
.x-gmail-data-detectors *,
.aBn {
border-bottom: 0 !important; cursor: default !important;
}
.btn {
-webkit-transition: all 200ms ease; transition: all 200ms ease;
}
.btn:hover {
background-color: #f67575; border-color: #f67575;
}
* {
font-family: Arial, Helvetica, sans-serif; font-size: 18px;
}
@media screen and (max-width: 600px) {
.container {
width: 100%; margin: auto;
}
.stack {
display: block!important; width: 100%!important; max-width: 100%!important;
}
.btn {
display: block; width: 100%; text-align: center;
}
}
body,
p,
td,
tr,
.body,
table,
h1,
h2,
h3,
h4,
h5,
h6,
div,
span {
background-color: #FEFEFE !important; color: #010101 !important;
}
@media (prefers-color-scheme: dark) {
body,
p,
td,
tr,
.body,
table,
h1,
h2,
h3,
h4,
h5,
h6,
div,
span {
background-color: #27292D !important; color: #FEFEFE !important;
}
}
a {
color: inherit !important; text-decoration: underline !important;
}
</style><!--[if mso | ie]>
<style type="text/css">
a {
background-color: #FEFEFE !important; color: #010101 !important;
}
@media (prefers-color-scheme: dark) {
a {
background-color: #27292D !important; color: #FEFEFE !important;
}
}
</style>
<![endif]--></head><body class="">
<div style="display: none; max-height: 0px; overflow: hidden;">The UK's Royal Navy spy drones were revealed to be covertly transmitting data to China. The Ministry of Defense stated that their investigation </div>
<div style="display: none; max-height: 0px; overflow: hidden;">
<br>
</div>
<table align="center" class="document"><tbody><tr><td valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" class="container" width="600"><tbody><tr class="inner-body"><td>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr class="header"><td bgcolor="" class="container">
<table width="100%"><tbody><tr><td class="container">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" style="margin-top: 0px;" width="100%"><tbody><tr><td style="padding: 0px;">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div style="text-align: center;">
<span style="margin-right: 0px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftldr.tech%2Finfosec%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/zofPn7ywZGvvAZTrn7h1NbT9JmYMu_I_LWAtNNJNwOU=452" rel="noopener noreferrer" target="_blank"><span>Sign Up</span></a>
|<span style="margin-right: 2px; margin-left: 2px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fadvertise.tldr.tech%2F%3Futm_source=tldrinfosec%26utm_medium=newsletter%26utm_campaign=advertisetopnav/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/DSTr_iH7_EoPPhxzhPUcIL8g10zp6NRSgTv-U700ky0=452" rel="noopener noreferrer" target="_blank"><span>Advertise</span></a></span>|<span style="margin-left: 2px;"><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fa.tldrnewsletter.com%2Fweb-version%3Fep=1%26lc=156924ca-84b7-11f0-8d58-47c5c04ad337%26p=e1557ec4-9575-11f1-a7d2-0d8a227617ee%26pt=campaign%26t=1786453750%26s=040ba263b70161cb3a32e2ced2900815d89f5122b4d3c5a6f80842416cdd5f1e/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/VuIK4R455HJbcY41iFZRExpS0D1U4UeUNlG_21kRwEI=452"><span>View Online</span></a></span>
<br>
</span></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="text-align: center;"><span data-darkreader-inline-color="" style="--darkreader-inline-color:#3db3ff; color: rgb(51, 175, 255) !important; font-size: 30px;">T</span><span style="font-size: 30px;"><span data-darkreader-inline-color="" style="color: rgb(232, 192, 96) !important; --darkreader-inline-color:#e8c163; font-size:30px;">L</span><span data-darkreader-inline-color="" style="color: rgb(101, 195, 173) !important; --darkreader-inline-color:#6ec7b2; font-size:30px;">D</span></span><span data-darkreader-inline-color="" style="--darkreader-inline-color:#dd6e6e; color: rgb(220, 107, 107) !important; font-size: 30px;">R</span>
<br>
</td></tr></tbody></table>
<br>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody></tbody></table>
<table style="table-layout: fixed; width:100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;">
<div style="text-align: center;">
<h1><strong>TLDR Information Security <span id="date">2026-08-11</span></strong></h1>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width:100%;" width="100%"><tbody></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr>
<tr bgcolor=""><td class="container">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td style="padding: 0px;">
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">🔓</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Attacks & Vulnerabilities</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.telegraph.co.uk%2Fnews%2F2026%2F08%2F09%2Fspy-cameras-on-navy-drones-secretly-sent-data-to-china%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/LR1wIebgb-7wMH-30Okg9ZrW_lfLLbT5g1WS_nliQVQ=452">
<span>
<strong>Spy Cameras on Navy Drones Secretly Sent Data to China (4 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
The UK's Royal Navy spy drones were revealed to be covertly transmitting data to China. The Ministry of Defense stated that their investigation revealed that no sensitive data had been transmitted to China and that the drones were only sending heartbeat communications. The UK's Tory party is calling on the government to audit equipment for Chinese footprints.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.digitaltrends.com%2Fcool-tech%2Femail-security-flaw-corporate-secrets-domains%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/F8U8LoHoD2f-B5Bmg7zFKm2xR09l3u0_Z8Wd3jz5hZI=452">
<span>
<strong>This Bizarre Email Flaw is Leaking Corporate Secrets to Anyone Who Buys the Right Domain (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Security researchers discovered that seemingly harmless addresses such as noreply and deleteduser could leak sensitive corporate information via unintended emails. The researchers realized that domains such as noreply[.]net and noreply[.]us were receiving huge volumes of emails. WIRED reported that noreply[.]net received more than 400k messages over a year and a half, including more than 28k attachments.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fcybersecuritynews.com%2Fgym-api-exploited-by-ai-agent%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/1reEGxVCizBpxsHa8AY1R9iRpW1rFjBAneSsAL4eET4=452">
<span>
<strong>Claude-Powered OpenClaw AI Agent Exploits Gym API to Steal Workout Slots (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
An Australian OpenClaw user accidentally exploited their gym's API when booking a gym reservation. The user's Claude-powered OpenClaw first discovered a vulnerability that allowed it to book reservations beyond the allowed period, but then when the user asked OpenClaw to try and move their reservation from fourth on the list to the top, it discovered that the API allowed for canceling arbitrary users' appointments and, unprompted, canceled the first appointment. The user contacted the gym via OpenClaw to disclose the vulnerability.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">🧠</span></div>
</div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Strategies & Tactics</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Flinks.tldrnewsletter.com%2Fs2UqJi/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/rY9ivZ16D325StZFjhfnMamyNz03agQ9GkNNhjL2DQY=452">
<span>
<strong>GitHub Actions and Vault by HashiCorp (11 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
This article provides a tutorial on how to use OIDC to authenticate GitHub Actions with HashiCorp Vault to retrieve secrets. Vault can be configured to require a set of custom claims in the identity tokens that GitHub uses, allowing for fine-grained policy controls. This can allow GitHub Actions workflows to retrieve secrets without needing to store a long-lived secret or other API key.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fblog.himanshuanand.com%2F2026%2F08%2Fi-found-a-vm-escape-bug-in-kvm-and-someone-else-got-there-first%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/CKLkh3kO5grAY60CRu3YSeETqd8y0ZEz5fOMUbL5WvI=452">
<span>
<strong>I found a VM escape bug in KVM and someone else got there first (23 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
A malicious VM could trigger a repeatable heap out-of-bounds read/write escape in KVM's SEV-SNP Page State Change handler due to a bounds check that validated against a protocol constant rather than the actual, guest-controlled scratch buffer size. This flaw yielded five powerful primitives, including a failure oracle, a GFN leak, and guest-controlled slab selection. Tracked as CVE-2026-53360, the vulnerability affects kernels since v6.10 and was ultimately mitigated in versions v7.0.12, v6.18.35, and v6.12.93 by rejecting external scratch allocations entirely and adding READ_ONCE() to close a TOCTOU window, underscoring the need to validate against actual allocation sizes rather than protocol maximums.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Famibeingpwned.com%2Fblog%2F8-in-10-banks-in-belgium%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/74Te868g3JHtdRti9wChCfOJj1QFBW7gFvw4ELs92ac=452">
<span>
<strong>8 out of 10 Banks in Belgium HATE This One Weird eID RCE (14 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Researchers discovered critical vulnerabilities in Connective's eID signing extension, used by most Belgian banks and government agencies, that allowed malicious sites to silently extract smart card data and recover eID PINs due to missing origin binding. Furthermore, the extension's GET_READERS command permitted arbitrary relative DLL loading, enabling drive-by remote code execution if a victim simply downloaded a disguised PDF/DLL polyglot. Nitro fully mitigated these flaws by July 22. Defenders should verify all deployed Connective clients are updated past this date to enforce origin checks and block vulnerable library commands.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">🧑💻</span></div>
</div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Launches & Tools</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_medium=paid_newsletter%26utm_source=tldr%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_081126/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/GK5icZS4OqbDdwvLOKtKm3rAr2AsnbqwNh7n7H20Yhs=452">
<span>
<strong>Prompt injection attacks have impacted 47% of developers (Sponsor)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
In a 1Password survey, 47% of developers reported seeing one of their agents take an unintended action after following instructions embedded in untrusted content.<p></p><p>Learn how <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_medium=paid_newsletter%26utm_source=tldr%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_081126/2/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/1MeRN_4mIH9mQyCNU8lv-DA3WLee7ngiYsmXJfR1Unw=452" rel="noopener noreferrer nofollow" target="_blank"><span>1Password Privileged Access</span></a> helps you secure agentic access.</p>
<p><a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2F1password.com%2Fproduct%2Fprivileged-access%3Futm_medium=paid_newsletter%26utm_source=tldr%26utm_campaign=2026q3_blackhat_lp_privileged-access_sa%26utm_content=newsletter_infosec_081126/3/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/suYpH0qXegjY-Zkxn-DOEyCHd92jfUaEfIXRD-0cm6w=452" rel="noopener noreferrer nofollow" target="_blank"><span>See just-in-time access in action</span></a>
</p>
</span></span></div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fruntimewire.com%2Farticle%2Fopenai-gpt-5-6-cyber-daybreak-red%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/o6Z6BR3UgJzMTASwRzvRlgYOpBLswLiBdIkv9h5Y3Gc=452">
<span>
<strong>OpenAI Launches GPT-5.6-Cyber with Fewer Refusals for Exploit Research (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
OpenAI launched Daybreak Red and Blue to provide access to GPT-5.6 Sol with fewer guardrails for offensive and defensive security practitioners respectively. Daybreak Blue is meant for most security practitioners and has guardrails calibrated for vulnerability discovery, secure code review, malware analysis, incident response, and patch validation. Daybreak Red goes further by providing access to GPT-5.6-Cyber, which was trained to reduce refusals for authorized vulnerability research, exploit-chain development, and other high-risk security tasks.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fblog.google%2Fsecurity%2Ffrom-finding-to-fixing-reducing-maintainer-burden-with-automated-patches%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/tZRiKpPVM4nSu1bek8O07_GGcx_g-VaVtEushsEfEKk=452">
<span>
<strong>From Finding to Fixing: Reducing maintainer burden with automated patches (3 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Google now pairs OSS-Fuzz with CodeMender, DeepMind's AI code security agent, so the pipeline moves beyond reporting crashes to performing root-cause analysis and generating validated patches for C/C++ memory safety bugs. Each patch is tested in isolation to confirm it compiles, fixes the crash, and avoids regressions, with Google engineers manually reviewing submissions during this beta phase, and projects that restrict AI-generated code are automatically excluded. Enrolled OSS-Fuzz projects receive these patches by default and can opt out through their existing configuration.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fblog.sentry.security%2Fbeyond-prompt-injection-hacking-apples-private-cloud-compute%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/AMpRDERBg-XNyhrCBBgE_1gzTAIyGWG_mUVQf5lSFRg=452">
<span>
<strong>Beyond Prompt Injection: Hacking Apple's Private Cloud Compute (10 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Researcher Drinor Selmanaj discovered a path traversal vulnerability (CVE-2026-20685) in darwin-init that allowed attackers to write persistent files to the writable data volume on Apple's Private Cloud Compute nodes. By hijacking the splunkloggingd process, the exploit successfully redirected node telemetry to an attacker-controlled server, exposing sensitive job metadata and inference token counts. Apple's attestation chain only measures installed software and ignores writable-volume states, so this persistent tampering went entirely undetected, ultimately earning the researcher a $150,000 bounty and prompting a patch in PCC release 5E290.3.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">🎁</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><strong><h1>Miscellaneous</h1></strong></div>
</div>
</td></tr></tbody></table>
<table bgcolor="" style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftradersunion.com%2Fnews%2Ffinancial-news%2Fshow%2F2943387-turkey-cyber-law-digital-oversight%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/4bVrsGZ4ssHXCO9fei4e7UM8rYqfe-NU3LyF2oFH6CA=452">
<span>
<strong>Turkey's Cyber Law Shifts Sweeping Powers to the Presidency (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Turkey has enacted new legislation that centralizes digital oversight under the Cybersecurity Directorate. The government argues that this is necessary for national security reasons. However, critics worry about this new legislation being abused by the government for censorship.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fblog.cloudflare.com%2Ffedramp-class-d-certification%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/yeyaXKlcynOR1rfjl_np_r203ayZvsOPyxeCF-_TMEo=452">
<span>
<strong>Serving the most critical missions: Cloudflare for Government achieves FedRAMP Class D (High) Certified status (4 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Cloudflare for Government achieved FedRAMP Class D (High) certification, sponsored by NIST, clearing the standard for the nation's most sensitive unclassified data covering law enforcement, emergency services, financial systems, and national security. The company built its High offering on the same global network and software stack running its commercial platform rather than an isolated environment, using its Data Localization Suite to confine FedRAMP High traffic processing to US data centers. Cloudflare is now pursuing DoD Impact Level 4 authorization on the same underlying systems.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.dugganusa.com%2Fpost%2Fthis-iranian-malware-has-no-c2-server-to-block-the-command-channel-is-a-meeting-invite-in-your-own%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/uy7ql2Q8lNDk8EXCTPYSxMuCxoautX9Sten0ImVT8Bk=452">
<span>
<strong>This Iranian Malware Has No C2 Server to Block. The Command Channel Is a Meeting Invite in Your Own Calendar (5 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
HollowGraph is an Iranian-nexus malware tied to the Cavern backdoor framework that runs no command-and-control infrastructure at all and instead reads orders from and writes stolen data into a victim's own Microsoft 365 calendar over the legitimate Graph API. The implant encrypted its traffic with a hybrid RSA plus AES-256-GCM scheme using separate key pairs per direction and exfiltrated Entra ID credentials via DNS tunneling. Group-IB counted twelve infected Israeli systems active between June 3 and July 9. It linked the malware to the Lyceum espionage cluster, and Check Point separately documented the same Cavern framework this month under the name Cavern Manticore.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;"><span style="font-size: 36px;">⚡</span></div></div>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding-top: 0px; padding-bottom: 0px;">
<div class="text-block">
<div style="text-align: center;">
<h1><strong>Quick Links</strong></h1>
</div>
</div>
</td></tr></tbody></table>
<table bgcolor="" style="table-layout: fixed; width: 100%;" width="100%"><tbody><tr><td style="padding:0;border-collapse:collapse;border-spacing:0;margin:0;" valign="top">
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.csoonline.com%2Farticle%2F4207306%2Fone-click-flaw-in-atlassian-rovo-exposed-enterprise-data-via-prompt-injection-attack.html%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/E3H57jqnMu2GTAjGFQp3gdr3_dPr3oLLHRGHrw-hxEU=452">
<span>
<strong>One-click flaw in Atlassian Rovo exposed enterprise data via prompt injection attack (3 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
Atlassian has patched "RovoBlast," a single-click prompt injection vulnerability in Rovo's rovoChatPrompt parameter discovered by Varonis that allowed attackers to hijack the AI's autonomous agents and silently exfiltrate enterprise data across more than 50 connected platforms without requiring credential compromise.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fcyberscoop.com%2Fus-south-korea-gunra-ransomware-warning%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/gmHof0l6S9TbjB44057hXHTm9WEW0NeGLw2vaYw8AzQ=452">
<span>
<strong>US, South Korean government agencies caution to be on lookout for Gunra ransomware gang (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
CISA, the FBI, NSA, Secret Service, and South Korea's National Police Agency warned that the Gunra ransomware-as-a-service gang has hit government and critical infrastructure targets across five continents.
</span>
</span>
</div>
</td></tr></tbody></table>
<table align="center" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block">
<span>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fcyberscoop.com%2Fuk-justin-swaddle-the-com-sentenced%2F%3Futm_source=tldrinfosec/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/2_90dnKJDLq1Q8YO2JhthY7UVnKnKexSH91c6EVUAI8=452">
<span>
<strong>UK man tied to The Com sentenced for abusing 117 victims (2 minute read)</strong>
</span>
</a>
<br>
<br>
<span style="font-family: "Helvetica Neue", Helvetica, Arial, Verdana, sans-serif;">
A 20-year-old UK man was sentenced to two years and ordered to register as a sex offender after admitting to child sexual abuse and blackmail offenses tied to The Com, a sprawling online network of minors and young adults.
</span>
</span>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td align="left" style="word-break: break-word; vertical-align: top; padding: 5px 10px;">
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Love TLDR? Tell your friends and get rewards!
</p>
</td></tr>
<tr><td class="container" style="padding: 0px 10px 15px;">
<div class="text-block">
Share your referral link below with friends to get free TLDR swag!
</div>
</td></tr>
<tr><td align="left" style="padding: 10px;">
<div class="text-block">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Frefer.tldr.tech%2F78de0e20%2F8/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/0X50avCEgQNnv3I9GIa1Jn3mzT5ZCVgccYYqGKICBNQ=452" style="color: #464ba4; text-decoration: underline;">https://refer.tldr.tech/78de0e20/8</a>
</div>
</td></tr>
<tr></tr>
<tr><td align="left" style="padding:5px 10px;">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fhub.sparklp.co%2Fsub_d62447d5a74a%2F8/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/bLUYs8yyp-DTWogcHNU_mS3ZTgz-gSh5Knj5LbsjriU=452" style="font-size: 16px; line-height: 1.6; padding: 10px 0; display: inline-block; text-decoration: underline;"><span style="mso-text-raise:13pt; text-decoration: underline;">Track your referrals here.</span></a>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td align="left" style="word-break: break-word; vertical-align: top; padding: 5px 10px;">
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Want to advertise in TLDR? 📰
</p>
<div class="text-block" style="margin-top: 10px;">
If your company is interested in reaching an audience of cybersecurity professionals and decision makers, you may want to <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fadvertise.tldr.tech%2F%3Futm_source=tldrinfosec%26utm_medium=newsletter%26utm_campaign=advertisecta/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/EewB8f4lSizpkZvFAWN8P3hWOkjVpXGElQqLKPJF-t4=452"><strong><span>advertise with us</span></strong></a>.
</div>
<br>
<!-- New "Want to work at TLDR?" section -->
<p style="padding: 0; margin: 0; font-size: 22px; color: #000000; line-height: 1.6; font-weight: bold;">
Want to work at TLDR? 💼
</p>
<div class="text-block" style="margin-top: 10px;">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fjobs.ashbyhq.com%2Ftldr.tech/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/KGOrECu_PADDUjK0no6r2z9lM_R5RVpdYgJPoJVpgbQ=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>Apply here</strong></a>,
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fjobs.ashbyhq.com%2Ftldr.tech%2Fc227b917-a6a4-40ce-8950-d3e165357871/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/TbwplUkIo_BLll6hw56Sz2kJcxVW6j6udj4TZee1Vbs=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>create your own role</strong></a> or send a friend's resume to <a href="mailto:jobs@tldr.tech" style="color: #0000EE; text-decoration: underline;">jobs@tldr.tech</a> and get $1k if we hire them! TLDR is one of <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Ffeed%2Fupdate%2Furn:li:activity:7401699691039830016%2F/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/EgnqcdJgP5BfwnvZzQBOPb-Gny4lpTjuQ2ouYzh7o58=452" rel="noopener noreferrer" style="color: #0000EE; text-decoration: underline;" target="_blank"><strong>Inc.'s Best Bootstrapped businesses</strong></a> of 2025.
</div>
<br>
<div class="text-block">
If you have any comments or feedback, just respond to this email!
<br>
<br> Thanks for reading,
<br>
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fprasannagautam%2F/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/k-WXeE0779Yz1tG2K6OZSHDEwRs9xFm6GSAZDVf3S4o=452"><span>Prasanna Gautam</span></a>, <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fericfernandezdelcampo%2F/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/1JSx3V6sY6JkJqrpQZ0Ti2IndF3Nes4K1p61F8lsQrM=452"><span>Eric Fernandez</span></a> & <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fwww.linkedin.com%2Fin%2Fsammy-tbeile%2F/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/IJEaeXqcefvRthtOnVNGP6fNiMKuqY4e39iELfDt2fQ=452"><span>Sammy Tbeile</span></a>
<br>
<br>
</div>
<br>
</td></tr></tbody></table>
<table align="center" bgcolor="" border="0" cellpadding="0" cellspacing="0" width="100%"><tbody><tr><td class="container" style="padding: 15px 15px;">
<div class="text-block" id="testing-id">
<a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Ftldr.tech%2Finfosec%2Fmanage%3Femail=silk.theater.56%2540fwdnl.com/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/8Hf_cZbuGFqLUbALHFt6KuNeliyMBFciyU0ut9UDkcI=452">Manage your subscriptions</a> to our other newsletters on tech, startups, and programming. Or if TLDR Information Security isn't for you, please <a href="https://tracking.tldrnewsletter.com/CL0/https:%2F%2Fa.tldrnewsletter.com%2Funsubscribe%3Fep=1%26l=8d9cea11-3e94-11ed-9a32-0241b9615763%26lc=156924ca-84b7-11f0-8d58-47c5c04ad337%26p=e1557ec4-9575-11f1-a7d2-0d8a227617ee%26pt=campaign%26pv=4%26spa=1786453332%26t=1786453750%26s=b132d672375378a1fa5e554de84864e5967413d77bffd9b0c9336cf004de9422/1/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/x-btXasU1sxD2rsaa3R1ve5Omt1F-TTKxn2EqyAUQa0=452">unsubscribe</a>.
<br>
</div>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
</td></tr></tbody></table>
<img alt="" src="http://tracking.tldrnewsletter.com/CI0/0100019ff0f0f250-f3861c25-9114-452c-a765-0027cd584eee-000000/Ixx_wWNTpoXdOcdc8-wZahrMDa3uA9yAGvBxJlB6Ws4=452" style="display: none; width: 1px; height: 1px;">
</body></html>