infosecfollow

daily plain-text briefing: security, markets, business, and pittsburgh

Attackers burrowed deeper into trusted platforms as a new implant ran its command channel entirely inside Microsoft's cloud and researchers showed self-propagating payloads leaping between AI agents.


Emerging Trends and Key Updates

Security

1. AI Agents Weaponized Against Each Other and Their Users

AI Security · [ai, prompt-injection]

Latest developments: Anthropic and Switzerland's EPFL published a preprint on August 10, 2026 demonstrating self-propagating mind-virus payloads that spread between AI agents through the editable system-prompt files agent harnesses use to carry state, while Microsoft revealed the secret input that let attackers hijack Copilot and steal a target's passwords through one link click.

read more

Researchers keep finding that autonomous agents both carry and execute attacker payloads, and Gambit Security separately documented three threat actors using AI to write exploits and hunt valuable files. Defenders must treat agent memory and prompts as untrusted input.

Sources: The Hacker News · Ars Technica Security · Help Net Security · ↑ top

2. Backlash Against Flock License-Plate Surveillance

Policy and Regulation · [surveillance, privacy, policy]

Latest developments: Wired detailed how officer Noel Pichardo drew five internal-affairs investigations in under two years after criticizing his city's Flock cameras, 404 Media reported National Park Service rangers protesting the agency's adoption of Flock readers, and a researcher showed machine-generated patterns that hide a vehicle from Flock's automated license-plate recognition.

read more

Flock's automated license-plate readers are spreading across American streets and now federal parks, drawing dissent from police, rangers, and privacy advocates who warn of misreads and unchecked tracking.

Sources: Wired Security · 404 Media · Graham Cluley · ↑ top

3. TWINLOOT Cloud-Native Implant

Ransomware and Cybercrime · [malware, cloud]

Latest developments: Ontinue disclosed TWINLOOT, a modular, PyArmor-hardened Python implant that runs its entire command-and-control channel through Microsoft SharePoint Online and Teams, steals credentials, and moves laterally while blending into legitimate cloud traffic.

read more

TWINLOOT abuses trusted Microsoft services for tasking and exfiltration, defeating network defenses that wave through SharePoint and Teams traffic. Organizations should monitor cloud-app activity for anomalous automation and rotate exposed credentials.

Sources: Dark Reading · The Hacker News · ↑ top

4. Ransomware Crews Refine Extortion and Face Court

Ransomware and Cybercrime · [ransomware, cybercrime]

Latest developments: Dark Reading described Ransom Busters, a ransomware affiliate that poses as an incident-recovery service to worm into victims and divert their ransom payments, while a Swiss court began trying an unnamed 52-year-old Ukrainian software developer accused of attacking train maker Stadler Rail and other firms, a case that could bring 12 years.

read more

Ransomware operators now experiment with recovery-service disguises even as prosecutors pursue their developers. Victims should verify any inbound recovery offer and preserve evidence for law enforcement.

Sources: Dark Reading · The Record · ↑ top

5. Poisoned Packages and CI Pipelines

Vulnerabilities and Exploits · [supply-chain, malware]

Latest developments: OpenSourceMalware flagged StubMaker, a 16-package typosquatting campaign on RubyGems that drops a Windows infostealer harvesting browser credentials and crypto wallets, and Wiz disclosed a GitHub Actions workflow-injection flaw in Snowflake's snowflakedb/snowflake-connector-net repository that a crafted issue could exploit to run commands and reach internal Jira credentials.

read more

Developer supply chains remain soft targets through look-alike packages and misconfigured CI workflows. Teams should pin dependencies, scrutinize new gems, and lock down Actions triggered by untrusted input.

Sources: The Hacker News · The Hacker News · ↑ top

6. $4.3 Million Digital Arrest Scam

Ransomware and Cybercrime · [fraud, scam]

Latest developments: The Yavapai County Sheriff's Office said an Arizona woman lost $4.3 million over two months to criminals who posed as FBI agents and NYPD officers, convinced her she was under digital surveillance, and held her a virtual hostage in her own home.

read more

Digital arrest scams coerce victims into secrecy and repeated payments by impersonating law enforcement. No real agency conducts arrests or asset seizures by phone, and targets should hang up and call police directly.

Sources: Frank on Fraud · ↑ top

Business and Politics

Global Bond Rout Spreads Into Equities

Latest developments: The sell-off jumped from bond markets into stocks on August 18, dragging the Nasdaq down sharply as investors pinned climbing yields on the flood of debt financing AI data-center construction.

read more

Long-term government borrowing costs in the United States and Germany held at multi-decade highs on August 18, and analysts blamed fiscal deficits, inflation fears, and a wave of hyperscaler bond issuance funding the AI buildout; the pressure sank technology shares and pulled the Nasdaq lower, while Brent crude stayed above $90 amid the unresolved U.S.-Iran fight over the Strait of Hormuz.

Sources: WSJ Markets · FT World · WSJ Markets · ↑ top

Pittsburgh

Weather

Today: Sunny, high 81F.

Tonight: Partly Cloudy, low 63F.

Wednesday: Partly Sunny then Chance Showers And Thunderstorms, high 81F.

Business

Shaler Area Signs Under Armour Apparel Deal

Latest developments: Shaler Area School District announced a five-year partnership on August 18 with Millvale's Greater Pittsburgh Specialty Advertising and Under Armour to outfit its teams and activities.

read more

The Shaler Area School District will receive apparel, uniforms, equipment, and buying benefits for its athletic teams, student activities, and affiliated organizations under a five-year agreement with Millvale-based Greater Pittsburgh Specialty Advertising and Under Armour.

Sources: TribLive · ↑ top

Arnold Palmer Airport Terminal Expansion

Latest developments: An August 18 TribLive letter laid out the scope of the terminal project, a $22 million, 32,000-square-foot expansion that doubles the passenger building.

read more

Arnold Palmer Regional Airport in Westmoreland County is spending $22 million to double its passenger terminal with a 32,000-square-foot expansion, work the airport contracted earlier in 2026 as it manages the revenue hit from Spirit Airlines' departure.

Sources: TribLive · ↑ top

Around Town

Cranberry Special Election for State House Seat

Latest developments: Cranberry Township voters went to the polls August 18 to fill the Pennsylvania House seat Stephenie Scialabba vacated, a race that previews a November rematch against the same opponent.

read more

Cranberry Township in Butler County held a special election on August 18 to fill the Pennsylvania House seat left open by Stephenie Scialabba's departure; the winner holds the seat briefly before facing the same challenger again in the November general election.

Sources: WTAE · ↑ top

Penn State Fraternity Cocaine Ring Charges

Latest developments: The Pennsylvania Office of Attorney General charged 14 people in a cocaine-trafficking operation run through two Penn State fraternity houses, and new court records detail pledges packaging the drugs.

read more

The Pennsylvania Office of Attorney General charged 14 people in a cocaine-distribution ring based at Penn State's Delta Upsilon and Sigma Chi fraternity houses in State College, where court records say pledges packed drugs brought from Philadelphia and New York for sale mainly to students.

Sources: KDKA · ↑ top

Monessen Mold Delays School Opening

Latest developments: Superintendent Robert Motte confirmed on August 18 that air-quality tests found mold in multiple Monessen High School bathrooms, and the district is now scouting alternative locations to house students.

read more

The Monessen City School District delayed the start of its year after a worker found mold during routine maintenance at Monessen High School in late July; testing confirmed varying mold levels in multiple bathrooms, and Superintendent Robert Motte is weighing alternative sites for students.

Sources: KDKA · ↑ top

Sports

Around the Teams

Acrisure Stadium Marks 25 Years

Latest developments: A Post-Gazette feature marked the 25th year of the Steelers' North Shore stadium, opened in 2001 as Heinz Field, tracing its history and coming upgrades.

read more

The Post-Gazette chronicled the Pittsburgh Steelers' home on the North Shore, opened in 2001 as Heinz Field and now Acrisure Stadium, as it reaches 25 years and looks toward its future.

Sources: Post-Gazette Steelers · ↑ top

Pirates Prospect Risers and Fallers

Latest developments: The Post-Gazette's 'MiLB Monday' ranked the biggest risers and fallers among Pirates farmhands since the July MLB Draft.

read more

The Post-Gazette's minor-league roundup assessed which Pittsburgh Pirates prospects have climbed or slipped across the farm system since the 2026 MLB Draft, weighing the organization's most-watched names down the stretch.

Sources: Post-Gazette Pirates · ↑ top

Reading

Markets

weekly average, change vs prior week

S&P 500     7,762.91  ▲ +0.7%
Dow        53,822.10  ▼ -0.2%
Nasdaq     26,634.30  ▲ +1.0%
WTI crude      82.92  ▲ +6.7%
EUR/USD       1.1546  ▲ +0.1%
GBP/USD       1.3511  ▲ +0.4%
USD/JPY       159.28  ▲ +0.9%