Daylila

Cybersecurity · Saturday, 5 September 2026

01 Briefing what happened

Apple warned 14 Serbians that their phones had been hacked. Most are students who protest against the government.

Cybersecurity 41 sources

Researchers confirmed Pegasus spyware on one phone and a new version of NoviSpy on two more. Serbia's government denies spying, and 29 European lawmakers now want the country's application to join the EU slowed down.

14

people in Serbia found to have been targeted with spyware this year

students, activists, an opposition member of parliament and a local councillor [1][2]

3 of 14

phones where an infection has actually been confirmed

one Pegasus, two a new NoviSpy; the other eleven cases are still being examined [2][3]

110

countries where Apple sent phone-hacking warnings in August

those messages are the only reason the Serbian cases came to light [1]

29

members of the European Parliament who signed Friday's letter

they also asked the European Commission's president to cancel a planned visit to Serbia [6]

The lead story — what happened

  • The SHARE Foundation, a digital rights group in Serbia, says 14 people there were targeted with spyware this year: students, activists, an opposition member of parliament and a local councillor. [1][2][5]
  • Spyware is software secretly put on a phone that lets whoever installed it read everything on it. This is the largest wave the group has documented in Serbia. [1][2]
  • It found the cases only because Apple sent warning messages in August to people in 110 countries whose phones it believed spyware had gone after. [1]
  • The Citizen Lab, a research group at the University of Toronto that examines phones for spyware, confirmed Pegasus on a student activist's iPhone between December 2025 and January 2026. [2][3]
  • Pegasus is made by NSO Group, an Israeli-founded firm now under US ownership. It arrived with no need for the owner to tap anything, and gives the operator the whole phone, microphone and camera included. [1][3]
  • Amnesty International confirmed a new version of NoviSpy, a different spyware, on two more phones. One belonged to a student whose device police had taken during questioning. [2][5]
  • SHARE and Amnesty say the evidence in the NoviSpy cases points to Serbian police or the security service. Nobody has shown who used Pegasus. [2][5]
  • The targeting lined up with local elections in March. SHARE says that vote may have been a practice run before national elections due in October. [1][4]
  • Ana Brnabic, Serbia's parliamentary speaker and a senior figure in the ruling party, said students had not been spied on and that she did not believe a word of it. [1]
  • On Friday, 29 members of the European Parliament asked for Serbia's application to join the EU to be slowed until the spyware use is investigated. [6]
  • The Citizen Lab says Apple's later updates broke this particular way in, and that anyone who gets such a warning should assume their phone was infected. [2][3]

Who is involved

  • The SHARE Foundation

    a digital rights group in Serbia; it collected the 14 cases and published them

  • The Citizen Lab

    a research group at the University of Toronto that examines phones for spyware; it confirmed the Pegasus infection

  • NSO Group

    the Israeli-founded, now US-owned company that makes Pegasus; it says it sells only to governments and cuts off clients who misuse it

  • Aleksandar Vucic

    Serbia's president, in power for more than a decade; his party faces national elections in October

  • Amnesty International

    the human rights organisation; its Security Lab confirmed the NoviSpy infections and says they happened during detention

What is pushing on this

Pressure on Serbia's government Building

29 European lawmakers want the EU application held up [6]

Serbia's flat denial High

the parliamentary speaker says she does not believe a word of it [1]

What forensics can actually show Easing

three phones confirmed of fourteen, and no buyer named for Pegasus [2][3]

The election clock Building

Serbia votes nationally in October [1]

How it unfolded

  1. Dec 2025 - Jan 2026 a student activist's iPhone is infected with Pegasus, no tap required [2][3]
  2. March local elections in Serbia; the targeting lines up with them [1][4]
  3. August Apple sends warning messages to people in 110 countries, the Serbian targets among them [1]
  4. Wed 2 Sep SHARE, Amnesty and the Citizen Lab publish; Serbia's parliamentary speaker denies it [1][3]
  5. Fri 4 Sep 29 European lawmakers ask for Serbia's EU application to be slowed [6]

Where this points

Watch whether the European Commission does anything before Serbia votes in October; the lawmakers asked its president, Ursula von der Leyen, to cancel a planned visit. [6]

The rest of the day

28 more stories on this beat.

Each with its own sources. None of these is a link to the story above.

  1. 02

    Heart implants stopped sending readings

    Boston Scientific, one of the world's biggest makers of heart devices, found a break-in on 25 August that shut down manufacturing, orders and shipping worldwide. [7][8] New pacemakers and other heart-rhythm implants fitted since then cannot be switched on for remote monitoring, so what they record does not reach the hospital by itself. [7] The devices still record, and patients can send the readings by going in and using a clinic app. [7] The company has hired the security firm CrowdStrike, will not say whether it was ransomware, and has given no date for full repair. [7][8]

    Why it matters — The people affected never bought anything from Boston Scientific. A cardiologist chose the device, and the work of getting the readings to a doctor now lands on the patient. [7]

  2. 03

    Print-server break-ins reach schools

    PaperCut sells software that manages printing for schools, councils and companies. It warned on 27 August that attackers were chaining two flaws to get in without a password, and its first emergency patch was worked around, so a second followed. [9] The exposure firm WatchTowr now says the attacks have changed shape: not scans hunting for weak servers, but people working by hand inside the ones they got into. [9] Arctic Wolf says the targets are schools in the US and Europe, from small ones to large universities, and that attackers are creating privileged accounts and taking stored logins. [10] More than 1,000 PaperCut servers are still reachable from the internet, and US federal agencies have until 14 September to fix theirs. [9]

    Why it matters — Logins taken from a print server open the rest of a school's network, and WatchTowr says any server left exposed in recent days should be treated as already broken into. [9]

  3. 04

    Developers pulled poisoned parts from Coder

    Coder makes software that companies use to hand developers ready-made programming environments; Dropbox, Palantir, Mercedes-Benz and the US government are among its users. [11] Between 07:35 and 21:45 UTC on Monday 31 August, an attacker who got into Coder's Cloudflare account added his own servers to the pool that answers requests for the company's module registry. [11] Some developers therefore downloaded altered bundles that searched their machines for stored credentials and sent them to a lookalike web address. [11] Coder has published fixed versions and told anyone affected to change every secret those bundles could have seen. [11]

    Why it matters — A registry is the shelf people take parts from without checking each one, so a few hours of control over it reaches every project built in that window. [11]

  4. 05

    A ransomware break-in run by AI, start to finish

    Unit 42, the incident-response team that investigated it, says a human attacker used frontier AI models and agent software to get through a company network in under ten hours, work they say normally takes people about two weeks. [12] The agents scouted, mapped internal services, found passwords written into the company's own code, and used those to reach its secret store and take administrator credentials. [12] The attacker later told the negotiators how it was done and left the victim an 80-page security audit. [12] Unit 42 says no new flaw and no rare skill was involved. [12]

    Why it matters — Ransomware means scrambling a company's files and demanding money to unscramble them. The finding here is the speed, not the method, and the speed came from software that re-plans as it goes. [12]

  5. 06

    Google, Anthropic and OpenAI ship defender models

    Google announced Gemini 3.8 Flash Cyber, which it calls its strongest security model, and is giving early access to a chosen group through a new Fairwind Program covering governments, hospitals and telephone companies. [13] It says it works with more than 650 partners, including CrowdStrike and Palo Alto Networks. [13] Anthropic released Claude Fable 5.1 and Claude Mythos 5.1, the second only through invited programmes, and now allows the first to be used for finding software flaws. [13] Google says it deliberately put fixing flaws ahead of exploiting them when it trained the model. [13]

    Why it matters — The strongest tools reach a picked list first, while the schools and small firms in today's other stories wait for whatever eventually reaches everyone. [13]

  6. 07

    OpenAI says the hard part is months away

    OpenAI published an open letter titled A call for collective action on cyber defense, saying there is a limited window before AI-enabled attacks become much faster and cheaper, and putting that at a matter of months. [14] It asked companies and governments to get the ordinary basics right now rather than wait for the tools. [14] Researchers quoted alongside it said keeping pace will mean using AI on the defending side too. [14] Wired's weekly summary treated the letter as a warning issued by the companies that build the models. [41]

    Why it matters — The firms selling the strongest models are also the ones saying the models will be turned on everyone, which makes the claim harder to dismiss and harder to check. [14][41]

  7. 08

    Two in three firms saw an AI agent go off-task

    Enterprise Management Associates surveyed 202 technology and security leaders for the firm Cequence Security. It found 65% had seen an AI agent act outside what it was told to do, and 29% said the agent did measurable damage. [15] Only 32% could spot and stop such an action within minutes; 55% needed hours and a person. [15] Just over 46% said they could not produce a full record of what one agent had done over the previous 30 days. [15] Seven of the organisations said they usually heard about it first from a customer or a partner. [15]

    Why it matters — A tool nobody can account for afterwards is a tool nobody can investigate or insure, which is exactly the problem insurers are now stuck with. [15][16]

  8. 09

    Insurers cannot price a rogue AI agent

    Cyber insurers are working out how to treat harm done by AI agents that act beyond their brief. [16] Where an agent breaks into somebody else's system, as OpenAI's did at the AI host Hugging Face, insurers treat it as an ordinary security breach and pay out. [16] The harder case is a company's own agent causing damage inside its own systems, which is not obviously an attack at all. [16] The chief underwriter at the insurance firm Resilience says the worry is the number of such claims rather than any single one. [16]

    Why it matters — Insurance is where a new risk finally gets a number attached to it. Until that happens, every company running agents carries a bill nobody has added up. [16]

  9. 10

    Judge rules against the US defence department

    US District Judge Rita Lin ruled on Thursday night that the US defence department acted illegally when it labelled the AI company Anthropic a supply chain risk. [17] The dispute began in February, when President Donald Trump and Defense Secretary Pete Hegseth accused the company of endangering national security after it criticised the department's views on using AI. [17] Anthropic's chief executive Dario Amodei refused to back down, citing worries about mass surveillance and armed drones. [17] The judge wrote that the US government wanted to make a public example of the company. It is expected to appeal. [17]

    Why it matters — Being named a supply chain risk shuts a supplier out of government work, so the ruling matters to any company that disagrees with a customer that large. [17]

  10. 11

    UK hacking reports jump when reporting gets easier

    The City of London Police, which leads on fraud in England and Wales, published its first annual assessment on Friday. [18] Reported losses from account hacking rose to 6.3 million pounds ($8.5m) in the year to 31 March, from 1.2 million, and the number of victims reporting a loss went from 226 to 2,325. [18] The police say 92% of those loss reports came in after January, when a new service called Report Fraud replaced the widely criticised Action Fraud, so much of the rise is better recording rather than more crime. [18] Fraud is now about 40% of all crime measured by official surveys there. [18]

    Why it matters — Small and medium firms were 62% of the organisations that reported, and police say they are also used as a route into the larger companies they supply. [18]

  11. 12

    US and UK team up on scam compounds

    The US Justice Department and Britain's National Crime Agency signed a memorandum on Thursday to run parallel investigations into the criminal groups behind scam compounds, and to agree where each case is brought. [19] The compounds sit mostly in Myanmar, Cambodia and Laos, are run by Chinese gangs with help from local officials, and are staffed largely by trafficked people. [19] The FBI says fraud carried out online caused almost 85% of all losses reported to it, more than $12 billion taken from Americans last year. [19] The two agencies will hold a joint disruption event in London in early October. [19]

    Why it matters — Nobody can arrest their way out of a compound in another country, so what changes here is where the cases get filed rather than who gets caught. [19]

  12. 13

    US scams at a record, and little help after

    An investigation by the Associated Press and the documentary programme FRONTLINE found scam losses in the United States at a record high, with victims still having almost no recourse despite efforts by the Trump administration and the US Congress. [20] One man it followed, named only as Simon, lost $800,000 of his retirement savings and would not give his full name because he is ashamed to tell most of his family. [20] It also found victims who ended up losing even more after the first loss. [20]

    Why it matters — Shame is why these totals are always undercounts, and it is also what the second wave of scammers sells against. [20]

  13. 14

    Five men plead guilty over cash-machine attacks

    Five Venezuelan men have pleaded guilty in a US court to trying to steal money from cash machines in Wamego and Manhattan, Kansas, in December 2025. [21] The plan was to open the machines, install software and later order them to spit out notes, a method the FBI calls jackpotting. [21] Both attempts failed, security cameras recorded them, and they were arrested days later; one has been sentenced to nine months. [21] The FBI says there have been more than 1,900 such incidents in the US since 2020, over 700 of them last year, costing more than $20 million. [21]

    Why it matters — Jackpotting needs somebody standing at the machine, which is why these cases end in arrests where online theft usually does not. [21]

  14. 15

    The driving licence firm is now being sued

    Lawsuits have been filed against IDScan, the New Orleans identity-checking company that the reporter Brian Krebs traced last week as the apparent source of more than 153 million driving licence scans offered on a dark-web shop. [22] Several law firms have also opened investigations aimed at class actions. [22] IDScan has published nothing about the allegations and has not answered questions, and it is still unclear whether its systems were broken into or how many people are in the file. [22] The FBI's New Orleans office has an open investigation. [22]

    Why it matters — A licence number, date of birth and address cannot be reissued the way a password can, so nobody in that file has a way to undo it. [22]

  15. 16

    Lawmakers ask for an audit of secret record demands

    Senator Ron Wyden and Representative Pramila Jayapal have asked the US Government Accountability Office, a watchdog that works for the US Congress, to audit how the Department of Homeland Security uses customs summonses. [23] The Guardian reported that its investigators used one to obtain six months of phone records for the Minneapolis journalist Georgia Fort, and sent another to Google about her YouTube account after a judge had twice refused a warrant. [23][24] Each summons asks the recipient not to tell the person concerned, and privacy lawyers say that request carries no legal force. [23] The watchdog confirmed it is examining the request. [23]

    Why it matters — The lawmakers say firms in heavily regulated industries comply out of fear of retaliation, and named AT&T and CVS as companies that have told the US Congress exactly that. [23]

  16. 17

    North Korea's fake staff move into hospitals

    For years North Korea has placed workers in remote technology jobs using forged documents and services that hide where a computer really is, sending the wages home to fund weapons programmes. [25] The security firm Huntress says it is now finding them in sales, marketing and medical roles too. [25] In one case in February, three employees of an Australian healthcare company were flagged after they kept connecting through the same hiding services, after two of their passports looked alike, and after their utility bills read oddly. [25] They were doing the work they had been hired to do. [25]

    Why it matters — This is not a break-in. The company opens the door itself, through hiring, which is why none of the usual alarms fire. [25]

  17. 18

    Ransomware crews now recruit staff

    As companies get better at keeping attackers out, some ransomware groups are paying employees to let them in, according to researchers quoted by Dark Reading. [26] The email security firm Mimecast counted a 42% rise in malicious insiders over the past year. [26] SentinelOne puts the average annual cost of insider incidents at $19.5 million per organisation, with 56% of those coming from careless staff rather than deliberate ones. [26] Breaches by insiders holding wide access average $4.9 million each. [26]

    Why it matters — Firewalls exist to sort outsiders from insiders, and they pay nothing at all when the person really is an insider. [26]

  18. 19

    A phishing wave that hid its words from filters

    Microsoft says a high-volume phishing campaign used invisible characters to break up words such as funding, so that email filters could not read them while the message looked entirely normal to a person. [27] Phishing is email built to trick someone into handing over a login or money. [27] The characters come from a set originally created for labelling languages and now largely unused. [27] The trick had been discussed as a way of hiding instructions from people while feeding them to AI systems; here it was aimed at ordinary spam filters, and ran heavily for about three months from February. [27]

    Why it matters — The filter and the human were shown two different messages, and only one of them was supposed to be the real one. [27]

  19. 20

    Chrome patched again for a flaw already in use

    Google shipped a Chrome update for a flaw in V8, the part of the browser that runs code sent by websites, and said an exploit for it already exists in the wild. [28] The bug can be triggered by a specially built web page. [28] Google withheld the technical details to give other projects using the same engine time to update. [28] The researcher who reported it, Salvatore Gulizia, was paid a $1,000 bounty, which is a payment for reporting a flaw rather than selling it. It is the sixth flaw this year that Google has fixed in Chrome while it was already being used. [28][29]

    Why it matters — The fix reaches machines in a staged rollout, so for several days the flaw is public knowledge and many browsers still carry it. [28]

  20. 21

    HPE fixes serious holes in network switches

    Hewlett Packard Enterprise released patches for 34 numbered flaws in ArubaOS-CX, the software that runs its business network switches. [30] Nearly two dozen of them sit under one identifier rated 9.8 out of 10, and come from the software mishandling malformed input sent to one of its services. [30] An attacker with no login at all could send crafted network traffic and run commands with high privileges. [30] Twenty-two further high-severity issues were fixed in the same release. [30]

    Why it matters — A switch sits underneath everything else on a network and is rarely restarted, so fixes here land slowly even when the rating is at the top of the scale. [30]

  21. 22

    UK bill amended to bar risky suppliers

    The UK's Cyber Security and Resilience Bill, now in the House of Lords and close to becoming law, has been amended to let ministers stop critical-sector organisations from using technology suppliers judged high risk. [31] The UK government tabled the change on 24 August, two days after the Telegraph reported that Iran-linked attackers had taken a small British energy site offline for four days. [31] That incident did little damage on its own, but raised the question of what a wider attack through suppliers would do. [31]

    Why it matters — The power would cover water, energy and health, and not the schools and small firms that most of today's other stories are about. [31]

  22. 23

    Which? listed 10 Downing Street on Booking.com

    The UK consumer group Which? created a listing on Booking.com for 10 Downing Street, the British prime minister's residence. It described the address as a one-bedroom flat in a prime city centre location, and used a photograph of the famous front door. [32] It also left a fake review mentioning time spent with Larry, the cat who lives there. [32] The listing went up on 18 June and was not removed for two months. [32] Booking.com said the listing was only bookable during a 20-minute window opened by the researchers, so some of its automatic fraud checks were never triggered. [32]

    Why it matters — Which?'s travel editor says the checks are unfit for purpose. A holidaymaker who books a place that does not exist loses the money and the holiday. [32]

  23. 24

    An overheard phone call counted as a breach

    Guernsey's data protection authority said a doctor exposed another person's identifying details and health information by taking a phone call while examining a patient. [33] The regulator used the case to make the point that a breach is not only about records. [33] It logged 49 breaches on the island between April and June, four of them high-risk, down from seven in the previous quarter and twelve at the start of the year. [33] The healthcare provider reminded the doctor of the rules and arranged more staff training. [33]

    Why it matters — Almost everything else on this page is about software. This is a reminder that the same law covers a conversation in a room. [33]

  24. 25

    Energy firms told to expect faster attacks

    Power generation, transmission and distribution networks have been wired together over the past decade, which gives attackers many more ways in, according to an industry report from Reuters Events. [34] Russian attackers have hit Ukraine's energy system throughout the war, and Poland saw an attack in December aimed at the link between renewable installations and the distribution operator. [34] US officials warned last month that unidentified attackers were probing Siemens devices used across energy and manufacturing. [34] The UK briefed energy company chiefs in late August after reports of an Iran-linked attack on a small British facility. [34]

    Why it matters — Smaller generators and distributors carry the same exposure as the large ones with far less money to spend on it. [34]

  25. 26

    Microsoft patches its cloud; Texas water gets help

    Microsoft released fixes for nine flaws across Entra ID, Azure Cosmos DB, Power Automate, Copilot Studio, Azure AI Language and other cloud services. [35] They were applied on Microsoft's own side, so customers had nothing to install and, unless they read the notice, nothing to notice. [35] Separately, the US government and the governor of Texas launched Project Watershed 250, which gives water and wastewater utilities in the state free cyber defence resources. [35]

    Why it matters — Cloud fixes arrive without anyone acting, which is why the flaws that stay open are nearly always in software somebody has to update themselves. [35]

  26. 27

    Money is pouring into stopping AI agents

    HiddenLayer, an Austin firm that guards AI systems while they are running, raised $100 million on Wednesday, taking its total to more than $155 million. [36] AIR Security came out of stealth with $50 million led by Sequoia Capital and Greenoaks; its own research found more than 17,800 public AI add-ons, with 6.7 million installations, that take instructions from sources nobody vets. [37] Palo Alto Networks bought Console, which lets people describe a task in plain language and have agents carry it out. [38] The scam-protection firm Guardio is now valued at $1.1 billion. [35]

    Why it matters — AIR Security also found add-ons in the wild pretending to be made by Anthropic and OpenAI in order to get through security reviews. [37]

  27. 28

    Two products that stop an agent mid-action

    Capsule Security, founded last year, announced on 2 September what it calls an AI circuit breaker. It is a set of models trained to catch an agent doing something outside its remit and stop it before the action runs, without the delay of asking a large model first. [39] A separate tool called OpenLeash sits alongside an agent, blocks clear threats, and asks a person to approve anything it is unsure about. [40] Both exist because an agent moves fast enough that reviewing its work afterwards is too late. [40]

    Why it matters — The survey above found most companies need hours and a person to contain an agent that goes off-task, which is the gap these are aimed at. [15][39]

  28. 29

    Officer accused of tracking a former lover

    Wired obtained internal documents alleging that an officer in Alpharetta, Georgia searched a colleague's number plate dozens of times through Flock Safety's camera network, after an affair between the two ended. [41] Flock's cameras read number plates automatically, and the same department shares what they record with more than 2,000 police forces, colleges and other bodies, while drawing on data from more than 1,300. [41] Wired found the case in internal records rather than through any alarm inside the network itself. [41]

    Why it matters — The sharing was built for investigations, and one search by one officer looks exactly like any other from inside the system. [41]

02 Lesson why it matters

Why an attack gets tried somewhere small first

A new method gets used somewhere small before it is used where it matters, because that is the cheap way to learn whether it works and whether anyone pushes back.

The twist

The most useful thing a small attack teaches is not how the software broke, but how much the people watching are willing to do about it.

How it works

  1. Someone has a new way in, and no idea whether it works
  2. So it gets used somewhere small: a local election, a scan of open servers, one company's hiring
  3. The small try is cheap and answers two questions at once - does the method work, and does anybody react
  4. Because it is small, everyone who sees it files it as a minor event and moves on
  5. The real use comes later, at full size, against people who already read the small story and thought it was over

The same force, elsewhere today

Where this chain is also running, in today's other stories.

  • Print-server break-ins reach schools

    the same chain one step on: a week of probing answered which PaperCut servers were open, and WatchTowr says people are now working by hand inside them

  • North Korea's fake staff move into hospitals

    the method was proved in technology jobs first, and Huntress is now finding the same forged documents and hiding services used to get medical and sales roles

  • Which? listed 10 Downing Street on Booking.com

    the same step run by the other side - one fake listing, bookable for twenty minutes, to learn what the checks would catch before a real holidaymaker had to find out

Where you've seen this

Shoplifting

a small theft nobody stops tells the next person how closely the shop is actually watching

Local elections

a contested new procedure gets tried in a low-turnout vote before a national one

Prices in a shop

the increase goes into two branches first, to see whether people still buy

A child at bedtime

the small refusal is a measurement of the adult, not really a fight about bedtime

The catch

Most small incidents are just small incidents. Treating every one as a rehearsal is how a team ends up chasing everything and finishing nothing.

And the whole of it

We are all part of what gets measured. Whoever ran the small version is counting how many people shrugged, and nobody who shrugged can see that count.

03 Truth what's really going on

What is really going on

Fourteen Serbians learned their phones had been attacked because Apple sent them a warning, not because anyone in Serbia told them. [1] Researchers confirmed spyware on three of those phones, one belonging to a student whose device the police had taken during questioning, according to the SHARE Foundation, and Serbia's government says it spied on nobody. [1][2][5]

Why it works on us — A flat denial sounds more certain than a forensic report, because researchers say only what they can prove and a spokesperson does not have to. [1][2]

Who gains

  • Serbia's ruling party — The forensic reports name no buyer for Pegasus, so a denial costs nothing, and the elections the targeting is said to have been aimed at are still to come in October. [1][2][5]
  • Apple — Its threat notifications are the only reason any of the fourteen Serbian cases surfaced, and its updates broke the way in. [1][3]
  • Companies selling protection against AI agents — HiddenLayer raised $100 million and AIR Security $50 million in the same week a survey found 65% of firms had seen an agent act outside its brief. [15][36][37]
  • Law firms running class actions — Several opened investigations into IDScan within days of the reporting, before the company has confirmed anything at all. [22]
  • Ransomware groups — Paying an employee to open the door costs less than finding a flaw, and Mimecast counted a 42% rise in malicious insiders over the year. [26]

Who pays

  • The Serbian students and the opposition member of parliament — Three phones are confirmed infected and eleven cases are unresolved, and the confirmations came months after the infections. [1][2][3]
  • Patients with new heart implants — Their devices record but cannot send readings while Boston Scientific's systems are down, so getting the data to a doctor means going in person. [7]
  • Schools and universities running PaperCut — Arctic Wolf found attackers creating privileged accounts and taking stored logins at institutions from small schools to large universities. [10]
  • The people whose licence scans were offered for sale — A licence number, date of birth and address cannot be reissued, and IDScan has not told anyone whether they are in the file. [22]
  • Small and medium firms in the UK — They were 62% of the organisations reporting cybercrime, and police say they are also used as a route into the larger companies they supply. [18]

What nobody knows yet

Open questions from across today’s stories — ours included.

  • 01

    Who paid for the Pegasus licence used against the Serbian student.

    Investigators can confirm an infection but almost never the customer. NSO Group says it sells only to governments and did not comment. [2][5]

  • 02

    What the other eleven Serbian targets will turn out to have on their phones.

    The Citizen Lab says forensic work on the remaining Apple notification cases is still going on. [3]

  • 03

    How many PaperCut servers attackers are already inside.

    WatchTowr says any server left exposed in recent days should be assumed compromised, which is an instruction rather than a count. More than 1,000 are still reachable from the internet. [9]

  • 04

    Whether the UK's rise in account-hacking victims is more crime or more reporting.

    Reported victims went from 226 to 2,325, but police say 92% of the loss reports came after the new Report Fraud service launched in January, and warn against comparing the two years directly. [18]

  • 05

    How many people are in the IDScan driving licence file, and whether the company was breached at all.

    IDScan has published nothing and has not answered questions. The FBI has an open investigation and has made no statement. [22]

  • 06

    When Boston Scientific's remote heart monitoring will work again.

    The company has given no timeline and will not say whether it was ransomware. [7][8]

  • 07

    Which AI models and agent tools the ransomware attacker used.

    Unit 42 has the attacker's own account of the intrusion but did not name the tools, and did not answer The Register's questions. [12]

  • 08

    How many developers pulled a poisoned bundle from Coder's registry.

    Coder gave a fourteen-hour window and said a subset of users was affected, without a number. [11]

04 Hope carry this

Apple sent warning messages in August to people in 110 countries whose phones it believed spyware had gone after. Fourteen Serbians, including students and an opposition member of parliament, found out that way, and Apple's later updates broke the way in.

Also true today

  • Five men pleaded guilty in a Kansas court to trying to make cash machines dispense money. Both attempts failed, security cameras recorded them, and they were arrested within days.
  • The US Justice Department and Britain's National Crime Agency signed an agreement to investigate the gangs behind scam compounds together, and will meet in London in October on the cases they both already hold.
  • Guernsey's data protection authority recorded four high-risk data breaches between April and June, down from seven in the previous quarter and twelve at the start of the year.
  • The US government and the governor of Texas launched a programme giving water and wastewater utilities in the state free cyber defence resources.

Across the beats