IT Security News: today roundup CrowdStrike highlights training strategies to build resilient cybersecurity workforces. AWS launched open-weight AI models on Bedrock in Europe. A popular Twitch extension exposed account tokens for 30,000 users. Automated attackers scanned nearly two million Android…
New Settra Ransomware Variant Deployed in Attacks on Retail and Manufacturing
Huntress researchers highlighted a new ransomware variant, named Settra, and the post-compromise techniques used in two recent attacks
AI helps scammers build convincing antivirus renewal pages
A fake Avast renewal page shows how AI is helping scammers create more convincing traps with polished designs and fluent copy.
US Official ‘Suspicious’ Of Anthropic Call For Antitrust Exemption
FTC chair Andrew Ferguson says AI companies looking to bring in regulations that ‘insulate their incumbency from challenge’
PeckBirdy C2 Traffic Seen Across Enterprise Networks While Hiding Behind Casino Domains
China-aligned threat actors are using low-quality Chinese-language casino and adult websites to conceal PeckBirdy command-and-control infrastructure,…
Cyberattack Knocks International Meteor Organization Website Offline
A cyberattack has forced the International Meteor Organization (IMO), one of the leading providers of meteor observation, to take much of the website…
Researchers used Anthropic’s Claude to hack into OpenAI
Security researchers used Anthropic’s Claude to exploit vulnerabilities in OpenAI’s systems, taking over employee accounts and gaining access to an…
Plugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding Agents
A flaw in four widely used AI coding agents lets someone who controls a plugin’s code repository swap the plugin an agent installs for a malicious one,…
OpenAI Hacked By Anthropic Models – Research
HOC Shorts How OpenAI Hacked By Anthropic Models – Research The security researchers successfully breached OpenAI’s internal repositories…
Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation
Microsoft has released fixes for a maximum-severity security flaw in Azure AI Foundry that could be exploited to achieve privilege escalation. No customer…
Brevo Breach Exposes Customer Websites to ClickFix Malware
Email marketing and customer relationship management platform Brevo, formerly known as Sendinblue, suffered a supply chain attack in which malicious code…
An Abandoned CDN Domain Was Re-Registered. Thousands of Sites Still Call It.
In July 2025, someone registered a domain that used to belong to a content delivery network. The CDN had been wound down years earlier, and the domain it…
IT Security News Hourly Summary 2026-09-18 16h : 19 posts
19 posts published in the last hour 13:31Hacker ‘Breached Italian Gov’t Email’ To Steal Revolut Data 13:31Feral Wolf Hackers Exploit Confluence and 1C to Deploy GenieLocker Ransomware 13:31US, UK, Dutch Expose Iranian Chosen Brick Malware 13:31NCSC and Allies Warn of…
Hacker ‘Breached Italian Gov’t Email’ To Steal Revolut Data
Hacker claims they gained access to secure Italian government email system, posed as law enforcement to obtain data on 680 Revolut customers
Feral Wolf Hackers Exploit Confluence and 1C to Deploy GenieLocker Ransomware
Feral Wolf has expanded its ransomware tradecraft by abusing exposed Atlassian Confluence servers and insecure 1C:Enterprise deployments to gain access to…
US, UK, Dutch Expose Iranian Chosen Brick Malware
Cybersecurity agencies from the United States, United Kingdom, and the Netherlands have published a joint advisory exposing Iranian surveillance malware…
NCSC and Allies Warn of Iranian Spyware Campaign
The UK’s National Cyber Security Centre says Iranian Chosen Brick spyware is designed to snoop on dissidents
NIS-2: Why practical relevance is crucial in management training
Under NIS-2, management bodies of affected companies are required to attend training on a regular basis. However, anyone who sees this merely as proof of…
Meta Strengthens WhatsApp Account Security
WhatsApp is one of the world’s most widely used messaging apps, connecting billions of people every day. Because it’s so widely used, cybercriminals also…
When Security Operations Can’t Keep Up: 4 Ways Agentic Network Security Management Improves Security Operations
Security teams are under pressure. Networks are growing. Cloud environments are expanding. AI is accelerating change across users, applications, and…
Meta’s Copyright System Is Being Weaponized Against Albanian Protesters
After three months of daily anti-government protests—dubbed the Flamingo Revolution—the sudden mass suspension of Instagram accounts has led to fears of…
CISA Upgrades Vulnerability Reporting Platform
The US Cybersecurity and Infrastructure Security Agency (CISA) announced on September 17, 2025, the launch of VINCE-NT (Vulnerability Information and…
AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code
Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts.
Italian Start-Up Raises $270m To Fend Off AI Attacks
Rome-based Exein achieves $1.7bn valuation as it builds AI-based security into devices, develops security-oriented foundation model
GUARD Act Passes House to Combat Elder Financial Fraud
The U.S.
