IT Security News: today roundup Anthropic reduced Claude safety guardrails for vetted cybersecurity defenders. Attackers abused legitimate corporate access to breach Denmark's population register. Food waste trucks mapped mobile network coverage across Cornwall. ClickFix attacks store malicious payloads disguised as…
Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports
Google has stopped accepting product vulnerability reports through its bug bounty program for its open-source software. The change, in effect since…
Tenant isolation becomes a buying criterion as FusionAuth opens UK office
Customer identity and access management (CIAM) provider FusionAuth has established its first dedicated European sales team, based in the UK, as…
Ransomware recovery CEO charged over secret ransom payments
The owner of ransomware remediation company MonsterCloud has been charged with allegedly defrauding ransomware victims by secretly paying their attackers…
Six arrests for smuggling migrants via Schengen airports
Europol supported a migrant smuggling investigation involving law enforcement authorities from 17 countries. The criminal network was also engaged in…
Money can’t buy enterprise trust
I thought the AI boom was producing a new level of bad behavior , what with MongoDB CEO CJ Desai peacing out, not to mention Google’s earlier…
IT Security News Hourly Summary 2026-10-08 02h : 11 posts
11 posts published in the last hour 23:31Progress Patches Four Telerik Fiddler Classic Flaws, Including Privilege Escalation Risk 23:31ASOS Confirms Cyber Incident After Unauthorized App Notifications 23:31FBI Drops Accenture Contractor After Sensitive Data Breach 23:31Fake AI Marketing Sites Put a…
Progress Patches Four Telerik Fiddler Classic Flaws, Including Privilege Escalation Risk
Progress patched four Telerik Fiddler Classic vulnerabilities, including a high-severity flaw that can enable local privilege escalation and unintended…
ASOS Confirms Cyber Incident After Unauthorized App Notifications
ASOS is investigating unauthorized app notifications and possible customer data exposure. Learn what is confirmed and why messaging systems need…
FBI Drops Accenture Contractor After Sensitive Data Breach
Accenture lost an FBI contract after a missed security patch exposed sensitive employee data, raising serious concerns over operational security. The FBI…
Fake AI Marketing Sites Put a Browser Inside Your Browser to Steal Logins
Fake AI marketing sites impersonating ChatGPT, Gemini, Claude and Muse are stealing ad-account credentials and MFA codes through live phishing flows.
Smashing Security podcast #487: Clippy’s crypto comeback
Microsoft’s Twitter account, with its 13 million followers, was hijacked by a paperclip. There was no ransomware or data theft, just Clippy, a dodgy…
The “Best” AI Model Is Getting Harder to Define
The best AI model for application security depends on vulnerability detection, accuracy, cost, human review, data handling, and deployment needs.
More RMM Tools In the Wild, (Tue, Oct 6th)
It seems that a trend started⦠I continue my journey discovering more RMM (“Remote Management & Monitoring”) tools abused by threat…
OpenAI Bots May Have Contributed To Wikimedia Outage
Wikimedia Foundation says unauthorised activity by rogue OpenAI agents may have contributed to partial outage in May
Cisco quantum network controller lets apps order entanglement on demand
Cisco has built a Quantum Network Controller, a research prototype that lets an application ask a quantum network for entanglement and leaves the network…
Police Urge Passkey Use After Surge in Cybercrime Profits
Report Fraud says cybercrime revenue stemming from account takeover increased 417% annually
IT Security News Hourly Summary 2026-10-08 01h : 29 posts
29 posts published in the last hour 22:32Meeting For Cheshire Green Belt Data Centre Sees Large Turnout 22:31Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products 22:31Australian Gov’t Weighs Mandatory AI Incident Reporting 22:31Can you really make…
Meeting For Cheshire Green Belt Data Centre Sees Large Turnout
More than 100 attend meeting held by Innova to discuss plans for 148-acre data centre complex in green belt area near Manchester
Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products
A critical flaw in 8 Atlassian Data Center products, which customers host themselves, allows an attacker with no login access to read specific files in…
Australian Gov’t Weighs Mandatory AI Incident Reporting
In the wake of an agentic attack against its own Medicare systems, Australia’s government is feeling out what regulations might look like for frontier AI…
Can you really make more than $200M in six months without encrypting victims? It seems Silent Ransom Group can.
DataBreaches has reported extensively on Silent Ransom Group in 2026, often including material provided exclusively to this site by the group. Now, what…
Ransomware Affiliate Double-Crosses RaaS Operator to Steal Victim Funds
An affiliate of The Gentlemen RaaS group ran a parallel leak site during extortion of two dozen victims
The Hidden DoS Vector in SQL Parsers
SQL parsers are critical components of the modern data stack. They validate queries before they reach the database, transpile between dialects, and lint…
Dread Dark Web Forum Hijacked, Operators Claim Control of Domain Keys (Updated)
Dread dark web forum appears hijacked after a pinned post claimed control of the project and domain keys, while denying plans to leak user data.
