IT Security News: today roundup 25 articles summarized 11 sources Sources in this roundup The Hacker News 6 article(s) Cyber Security News 4 article(s) Hackread – Cybersecurity News, Data Breaches, AI and More 4 article(s) www.theregister.com – Articles 3 article(s)…
Portnox detects and removes unauthorized AI applications from managed devices
Portnox has announced new capabilities to detect unauthorized AI applications and agents on managed devices and automatically enforce security policy,…
Windows Botnet x47.c Offers AI API Draining, 18 Attack Methods
Qrator found a Windows botnet advertised with AI API draining, credential theft and SOCKS5 proxying
UniGetUI simplifies Windows PC migration
A detailed migration guide from ZDNet demonstrates how UniGetUI significantly reduces the time and effort required to set up a new Windows 11 PC.
Critical NEXT.JS Flaw Enables RCE Attacks Via Weaponized SVG File
A critical Next.js vulnerability, tracked as CVE-2026-94545, affects the Node.js ImageResponse implementation in the next/og package and could allow…
80,000 relay servers help users in China slip past U.S. AI region bans
More than 80,000 relay servers are helping users in China bypass geographic restrictions on leading U.S. AI models, according to Team Cymru. “What we have…
EU KIDS Act Sets New Social Media Age Restrictions
The European Commission has proposed sweeping age restrictions on social media access for children across the EU through the KIDS Act, adopted September…
Fake Crypto Wallet App Spreads PamStealer Malware to Steal Mac Passwords
A fake cryptocurrency wallet download is delivering a new version of PamStealer to Mac users. The attack starts with a convincing website whose installer…
Network Solutions Dark Web Monitoring alerts small businesses to domain-linked data exposure
Network Solutions has launched Dark Web Monitoring, a new security capability that alerts small businesses when information associated with their domain…
IT Security News Hourly Summary 2026-09-23 16h : 20 posts
20 posts published in the last hour 13:32Meta Muse Flaw Lets Attackers Hijack AI Assistant 13:32Six arrests for smuggling migrants via Schengen airports 13:32Fake Crypto Wallet App Delivers PamStealer Malware That Hijacks Mac Credentials 13:32Microsoft Disrupts AI-Powered Phishing Platform EvilTokens…
Meta Muse Flaw Lets Attackers Hijack AI Assistant
The Muse artificial intelligence assistant from Meta has been found to be vulnerable to an attack which allows malicious software to redirect its…
Six arrests for smuggling migrants via Schengen airports
Europol supported a migrant smuggling investigation involving law enforcement authorities from 17 countries. The criminal network was also engaged in…
Fake Crypto Wallet App Delivers PamStealer Malware That Hijacks Mac Credentials
A new variant of the macOS infostealer PamStealer is being distributed through a fake cryptocurrency wallet application, using a server-assisted…
Microsoft Disrupts AI-Powered Phishing Platform EvilTokens
Microsoft has successfully disrupted EvilTokens, a sophisticated phishing platform that integrated artificial intelligence across its entire attack…
Fake Claude Max giveaway tricks users into handing over their Google account credentials
A fake Claude Max giveaway uses a spoofed Google sign-in window to steal users’ login credentials, Malwarebytes researchers have found.…
Workforce AI Security Policy Management Is Now Conversational
In this article The new Workforce AI MCP is Check Point’s own Model Context Protocol server for Workforce AI Security. Connect a compatible AI client and…
LinkedIn adds new tools to fight fake profiles and bogus work histories
LinkedIn is rolling out new verification tools that let members vouch for colleagues’ work experience and give companies more control over accounts that…
Barracuda brings AI security and governance within reach of smaller organizations
Barracuda Networks has launched Barracuda AI Data Security, the AI security and governance solution purpose-built for resource-constrained organizations…
Okta positions identity as control plane for AI agents
Okta has announced an expanded platform for managing AI agent identities, positioning itself as a leader in securing what CEO Todd McKinnon calls “the…
DarkMe RAT trades zero-days for plain phishing emails
DarkMe, a remote access trojan and info-stealer that has previously been associated with a threat group that targeted financial market traders and…
Master of Malt confirms customer data breach
Master of Malt has confirmed a customer data breach affecting personal information after attackers compromised a third-party application integrated with…
Lookout targets smishing, voice cloning, and vishing with real-time mobile protection
Lookout has launched Social Engineering Protection (SEP), a new module within the Lookout Mobile AI Security Platform. SEP provides automated, real-time…
New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control
A flaw in cPanel’s CalDAV and CardDAV service lets anyone with a cPanel hosting account run code as root and take “full control of the server,” the…
Chinese Hackers Exploit ZyXEL Switch Flaw to Steal Data From Nearly 1,000 Devices
A Chinese threat actor has been using the recently discovered vulnerability in ZyXEL GS1900 switches to steal crucial information from the devices around…
Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests
Anthropic and OpenAI on Tuesday announced new models, with both artificial intelligence (AI) companies noting that they are continuing to invest in…
