🛡️ Sent every weekday at 6:30am

Brief Cyber

Breaches, patches, and the exploits worth patching tonight.

Free. One email a day. Unsubscribe from the top of any issue.

Today's issue

Open full issue →

Friday, August 21, 2026

hijacking military phone routing, interview malware, and border data laws

Today we look at critical system exposures, social engineering tactics disguised as hiring processes, and the legal risks of security operations.

EXPLOITS & EXPOSURES

How misconfigured ENUM DNS records allowed hijacking of military and government phone routing

5 minute read

An investigation into the e164.arpa infrastructure revealed that expired domains used for telecom routing could be registered by third parties. By claiming these domains, an attacker could intercept and log hundreds of thousands of phone calls destined for secure military and government networks. This highlights a critical oversight in public telecommunications routing that remains poorly audited.

DEFENSIVE ENGINEERING

Using physical scroll behavior to differentiate automated scraper bots from human visitors

3 minute read

Traditional IP blocking and CAPTCHAs are failing to stop sophisticated scraping scripts that mimic human browser profiles. This research demonstrates how measuring the physics of scrolling, such as acceleration curves and micro-adjustments, provides a highly accurate method for identifying automated bots. Implementing these passive behavioral telemetry checks can help protect sensitive APIs and proprietary content from automated harvesting.

INCIDENTS & LAW

US citizen faces felony charges after remotely wiping phone data at the border

5 minute read

A traveler has been hit with felony obstruction of justice charges for initiating a remote wipe of his mobile device during a border search. This case highlights a significant escalation in how border agents treat data destruction under the guise of resisting administrative searches. Security professionals must carefully review corporate travel OPSEC policies to avoid legal pitfalls when handling sensitive corporate data at customs checkpoints.

GitHub publishes post-mortem detailing the infrastructure failures behind the August 17 outage

8 minute read

GitHub has released a deep dive into the recent cascading database and queue failures that crippled their developer services. The incident highlights how subtle configuration drift in high-availability clusters can cause automated failovers to worsen rather than solve a service disruption. Teams relying on continuous delivery pipelines should study these architectural bottlenecks to harden their own dependency infrastructure.

Read the whole thing →

Want a different beat?

See all nine newsletters and pick the ones that match your job.