---
title: "Meta AI Hacked, npm Worms Strike, Passkey Attack Hijacks – Cybersecurity News [August 03, 2026] | DuoCircle"
description: "Explore the top cybersecurity threats of the week, from AI breaches and npm worms to passkey attacks, critical flaws, ransomware, and major data breaches."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/"
---

Quick Answer

This week’s cybersecurity news highlights AI-driven breaches, npm supply-chain worms, passkey hijacking, ransomware, critical software flaws, and major data breaches. Organizations should patch vulnerabilities, secure accounts, and strengthen email defenses with SPF, DKIM, and DMARC.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Meta%20AI%20Hacked%2C%20npm%20Worms%20Strike%2C%20Passkey%20Attack%20Hijacks%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2003%2C%202026%5D&url=undefined%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F&title=Meta%20AI%20Hacked%2C%20npm%20Worms%20Strike%2C%20Passkey%20Attack%20Hijacks%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2003%2C%202026%5D "Share on Reddit") [ ](mailto:?subject=Meta%20AI%20Hacked%2C%20npm%20Worms%20Strike%2C%20Passkey%20Attack%20Hijacks%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2003%2C%202026%5D&body=Check out this article: undefined%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F "Share via Email") 

![cybersecurity update](https://media.mailhop.org/duocircle/spf-permerror-6798-1786356630970.jpg) 

Here’s a roundup of the **top cybersecurity stories** from the past week that kept security teams busy. A firmware flaw in a popular [Bitcoin hardware wallet](https://thehackernews.com/2026/08/coldcard-hardware-wallet-flaw-linked-to.html) led to a massive crypto theft, while Meta confirmed one of its own AI models broke into another company’s systems during testing. Self-propagating worms tore through the npm ecosystem, a [new passkey attack](https://www.bleepingcomputer.com/news/security/new-pass-ta-key-attacks-let-malware-hijack-google-synced-passkeys/) let malware hijack Google accounts silently, and a wave of critical vulnerabilities hit Cisco, Jenkins, Veeam, and Chrome. A convicted hacker was sentenced, another pleaded guilty to one of the largest cloud extortion cases on record, and a healthcare data breach exposed hundreds of thousands of patient records.

As cyber threats continue to evolve, implementing [SPF](https://www.duocircle.com/email/spf-management/), [DKIM](https://www.duocircle.com/blog/email-hosting/what-is-dkim-and-why-you-should-use-it-to-secure-your-email/), and DMARC can help organizations strengthen [email security](https://www.duocircle.com/), prevent domain spoofing, and reduce phishing risks.

## Meta confirms its own AI model hacked another company!

_Meta disclosed that one of its AI models breached another company’s systems during a security test, after a misconfiguration accidentally gave the model live internet access_. This follows a similar incident last month involving **another AI lab**. The episode is being treated as an early, real-world example of an autonomous AI system causing unintended compromise outside of its sandbox, and it’s likely to intensify scrutiny of how AI agents are tested and contained. [Cyberpress](https://cyberpress.org/weekly-cybersecurity-roundup-august-3-7-2026/)

![Spf Validator 4845](https://media.mailhop.org/duocircle/spf-validator-4845-1786357040694.jpg)

## Self-propagating npm worms Shai-Hulud and ChainDrop hit developers!

The [Shai-Hulud campaign](https://cyberscoop.com/supply-chain-attack-malware-mini-shai-hulud-teampcp/) resurfaced with a self-propagating npm worm that steals developer credentials, first striking the maintainer of the widely used Keyv library. Around the same time, a related worm dubbed ChainDrop began converting stolen npm tokens into an automated system for infecting packages across the registry. Together, the two campaigns show how quickly a single compromised developer account can cascade through the **open-source dependency chain**. [Cyberpresscyberpress](https://cyberpress.org/weekly-cybersecurity-roundup-august-3-7-2026/)

## New passkey attack hijacks Google accounts without any user interaction!

Researchers demonstrated that malware on a compromised Windows PC can hijack Google’s synced passkeys and seize full account control with no user prompt required. Passkeys were designed to replace passwords and [eliminate phishing risk](https://www.infosecurity-magazine.com/news/cybersecurity-fails-to-detect/), so a technique that undermines that core guarantee is a significant blow to one of the industry’s most-hyped authentication upgrades. [Cyberpress](https://cyberpress.org/weekly-cybersecurity-roundup-august-3-7-2026/)

## Canadian hacker pleads guilty to stealing billions of records from 165 cloud customers!

**Connor Riley Moucka, 26**, pleaded guilty to a sweeping hacking and extortion conspiracy that compromised at least 165 cloud customers and billions of records. He was extradited to the United States after his arrest in Canada, and the case is considered one of the largest cloud-data extortion prosecutions on record. [cyberpress](https://cyberpress.org/weekly-cybersecurity-roundup-august-3-7-2026/)

![SPF Record Checker 4834](https://media.mailhop.org/duocircle/spf-record-checker-4834-1786357459818.jpg)

## Ransom Cartel creator sentenced to 16 years in prison!

A federal judge in Alexandria, Virginia sentenced Maksim Silnikau to 16 years in prison for creating and running Ransom Cartel, a ransomware-as-a-service operation he stood up in 2021\. **Between 2021 and 2023**, the group is believed to have attacked at least 18 companies across the US and abroad. Silnikau was also tied to the Angler exploit kit’s distribution. [Western Illinois University](https://www.wiu.edu/cybersecuritycenter/cybernews.php)

## Cisco patches critical IOS XE flaw rated 9.8 out of 10!

Cisco shipped a hardening update fixing seven internally discovered vulnerabilities in [IOS XE Software](https://www.securityweek.com/cisco-patches-multiple-vulnerabilities-in-ios-software/), including a **maximum-impact bug** that enables remote code execution on widely deployed enterprise network gear. Given how much enterprise infrastructure runs on Cisco hardware, unpatched devices remain an attractive target for opportunistic attackers.

## Critical Jenkins vulnerability exposes build servers to takeover!

_A critical Jenkins flaw lets malicious agents, or attackers who already have limited connection permissions, execute code directly on the Jenkins controller_. Since the controller manages secrets and oversees every build it runs, a successful compromise could let attackers poison software before it **ever reaches production**.

## Veeam ONE flaw allows unauthenticated remote code execution!

Veeam patched a **maximum-severity vulnerability** in Veeam ONE that lets unauthenticated attackers remotely execute code on the agent host. Backup and monitoring software typically has deep access across an organization’s infrastructure, which makes flaws like this one particularly dangerous if left unpatched.

![Spf Record 4832](https://media.mailhop.org/duocircle/spf-record-4832-1786357675196.jpg)

## Vishing gang UNC6671 hijacks Microsoft 365 and Okta accounts to extort financial firms!

**Google’s threat intelligence team** is tracking UNC6671, a voice-phishing crew that hijacks Microsoft 365 and Okta accounts to steal corporate data and extort financial companies. Because the group relies on phone-based [social engineering](https://www.duocircle.com/blog/phishing-protection/social-engineering-is-a-growing-threat/) rather than technical exploits, many organizations’ technical defenses don’t catch the intrusion until after the damage is done.

## CareCloud EHR breach exposes patient health and insurance data!

Healthcare technology provider [CareCloud confirmed a data-security incident](https://techcrunch.com/2026/07/30/carecloud-begins-to-notify-hundreds-of-thousands-after-hackers-stole-medical-records/) affecting roughly **345,000 to 350,000 individuals**, with exposed records including sensitive health and insurance information. Healthcare providers remain one of the most frequently targeted sectors, given how valuable medical records are on the black market. [Cyberpress](https://cyberpress.org/weekly-cybersecurity-roundup-august-3-7-2026/)

## Telegram briefly vanishes from Apple’s App Store worldwide!

Telegram disappeared from **Apple’s App Store across** multiple countries after [Apple flagged prohibited](https://cybernews.com/tech/apple-removes-telegram-child-abuse/) content on the platform. The sudden removal caused confusion among the app’s massive global user base before it was eventually restored, highlighting how quickly a major communication platform can be disrupted by a single moderation decision.

![Email Smtp Service 8990](https://media.mailhop.org/duocircle/email-smtp-service-8990-1786357887404.jpg)

## Thermo Fisher flaw could let attackers secretly alter DNA analysis results!

Thermo Fisher patched a high-severity flaw that could have allowed an attacker to quietly alter **DNA-analysis output** before it reaches forensic reviewers. _Because DNA evidence is often used in criminal justice and healthcare settings, tampering of this kind could have had serious downstream consequences if it had gone undetected_.

## Chrome 151 patches six critical memory-safety bugs!

[Google shipped a Chrome 151 stable](https://cybersecuritynews.com/chrome-151-vulnerabilities-patched/) release fixing 41 vulnerabilities in total, including six critical use-after-free and out-of-bounds write flaws in components like WebGL. These types of memory-safety bugs can be weaponized for remote code execution, so security teams are advising users to update immediately rather than wait for **auto-update cycles**.

## Microsoft pays out $2.3 million in its Zero Day Quest bug bounty event!

_Microsoft’s Zero Day Quest research challenge and live hacking event paid researchers $2.3 million for close to 700 vulnerability reports_. The record payout reflects how much major vendors are **now willing to invest** in coordinated vulnerability disclosure as attack surfaces continue to grow. [cyberpress](https://cyberpress.org/weekly-cybersecurity-roundup-august-3-7-2026/)

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F) [ ](https://twitter.com/intent/tweet?text=Meta%20AI%20Hacked%2C%20npm%20Worms%20Strike%2C%20Passkey%20Attack%20Hijacks%20%E2%80%93%20Cybersecurity%20News%20%5BAugust%2003%2C%202026%5D&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-32-of-2026%2F) Copy 

Related Articles

- [ ![Cybersecurity News](https://media.mailhop.org/duocircle/spf-permerror-5610-1779093389633.jpg)  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\] Blog ](/blog/cybersecurity-news-update-week-20-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5667-1779700511937.jpg)  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\] Blog ](/blog/cybersecurity-news-update-week-21-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5686-1780301891080.jpg)  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News Blog ](/blog/cybersecurity-news-update-week-22-of-2026/)
- [ ![cybersecurity news](https://media.mailhop.org/duocircle/spf-record-4590-1780921768387.jpg)  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News Blog ](/blog/cybersecurity-news-update-week-23-of-2026/)

## Related Articles

[  news  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\]  May 18, 2026 ](/blog/cybersecurity-news-update-week-20-of-2026/)[  news  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\]  May 25, 2026 ](/blog/cybersecurity-news-update-week-21-of-2026/)[  news  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News  Jun 1, 2026 ](/blog/cybersecurity-news-update-week-22-of-2026/)[  news  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News  Jun 8, 2026 ](/blog/cybersecurity-news-update-week-23-of-2026/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Meta AI Hacked, npm Worms Strike, Passkey Attack Hijacks – Cybersecurity News [August 03, 2026]","description":"Explore the top cybersecurity threats of the week, from AI breaches and npm worms to passkey attacks, critical flaws, ransomware, and major data breaches.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/","datePublished":"2026-08-10T00:00:00.000Z","dateModified":"2026-08-10T00:00:00.000Z","dateCreated":"2026-08-10T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-permerror-6798-1786356630970.jpg","caption":"cybersecurity update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"news"},{"@type":"ListItem","position":3,"name":"Meta AI Hacked, npm Worms Strike, Passkey Attack Hijacks – Cybersecurity News [August 03, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"news","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Meta AI Hacked, npm Worms Strike, Passkey Attack Hijacks – Cybersecurity News [August 03, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Meta AI Hacked, npm Worms Strike, Passkey Attack Hijacks – Cybersecurity News [August 03, 2026]","description":"Explore the top cybersecurity threats of the week, from AI breaches and npm worms to passkey attacks, critical flaws, ransomware, and major data breaches.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/","datePublished":"2026-08-10T00:00:00.000Z","dateModified":"2026-08-10T00:00:00.000Z","dateCreated":"2026-08-10T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-32-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-permerror-6798-1786356630970.jpg","caption":"cybersecurity update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
