IT Security News: today roundup Europol supported a crackdown on an Italian euro counterfeiting network. Ireland fined Google €403 million over location data GDPR violations. Guardicore detected Nansh0u campaign attack vectors in its sensor network. Guardicore researchers exposed malware hiding…
ShinyHunters Hacks FBI Jobs Portal, Claims Data on Nearly All FBI Agents
ShinyHunters hacks the FBI Jobs portal and claims sensitive data on nearly all FBI agents and job applicants before the site is taken offline for security…
Check Point Fixes a New Actively Exploited Critical Security Flaw
Check Point fixes an actively exploited flaw that lets unauthenticated attackers upload and run scripts on vulnerable Security Management Servers. Check…
IT Security News Hourly Summary 2026-09-22 22h : 5 posts
5 posts published in the last hour 19:31Malicious npm Package Poses as Twilio Bug-Bounty Probe, Can Exfiltrate Credentials 19:31WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers 19:31Check Point Warns of Management Server Zero-Day Exploited…
Malicious npm Package Poses as Twilio Bug-Bounty Probe, Can Exfiltrate Credentials
Cybersecurity researchers have disclosed details of a malicious npm package named “tw-pkgprobe-7731” that masquerades as a security tool targeting…
WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers
WordPress has fixed a critical flaw in its core software that lets an attacker with no account make a site load a PHP file from outside its theme folders.…
Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks
Attackers exploited a previously unknown flaw in Check Point’s Security Management Server in a handful of targeted attacks on July 23, the company said.…
Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data
The theft of agents’ personal information could present a major counterintelligence threat, where agents and their families are extorted into cooperating…
IT Security News Hourly Summary 2026-09-22 21h : 8 posts
8 posts published in the last hour 18:31Scaling SOC Capabilities: How Threat Intelligence Cuts Triage Time and Burnout 18:31Building a Secure MCP Server for File Processing: Auth, Rate Limiting, and Idempotency 18:31Check Point Management Server 0-Day Vulnerability Actively Exploited in…
Scaling SOC Capabilities: How Threat Intelligence Cuts Triage Time and Burnout
A suspicious IP, unfamiliar domain, or file hash can trigger an investigation in seconds. Understanding what that indicator means can take much longer. An…
Building a Secure MCP Server for File Processing: Auth, Rate Limiting, and Idempotency
Most write-ups on building an MCP server focus on the protocol itself: defining tools, handling requests, wiring up a client. That part is genuinely…
Check Point Management Server 0-Day Vulnerability Actively Exploited in Attacks
Check Point has warned customers that attackers are exploiting a critical zero-day vulnerability in its Security Management infrastructure. Tracked as…
Researcher Drops BigDiskBuster Zero-Day PoC That Blocks Microsoft Defender Updates
A zero-day proof-of-concept tool that stops Microsoft Defender from installing platform and signature updates by filling all available disk space was…
Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials
A critical vulnerability in Bifrost, an open-source AI gateway that routes requests to more than 20 LLM providers, allows an unauthenticated attacker to…
BigCommerce Data Stolen via Ribon Apps Hack
The attackers used a compromised BigCommerce application key held by Ribon to access customer data.
Microsoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises
Microsoft on Tuesday announced the takedown of the EvilTokens device code phishing service that it said used artificial intelligence (AI) “at every step…
IT Security News Hourly Summary 2026-09-22 20h : 6 posts
6 posts published in the last hour 17:31ShinyHunters claims FBI hack: ‘This is NOT financially motivated’ 17:31RatHat Android Malware Uses AI to Target Banking Credentials in Real Time 17:02Cyberattack Hits University of Munich, Exposing Student Data 17:02NightmareEclipse’s latest zero-day leaves…
ShinyHunters claims FBI hack: ‘This is NOT financially motivated’
This time it’s personal
RatHat Android Malware Uses AI to Target Banking Credentials in Real Time
RatHat Android malware uses generative AI to navigate infected devices, steal banking credentials, intercept OTP codes and reinstall itself after removal…
Cyberattack Hits University of Munich, Exposing Student Data
Germany’s Ludwig Maximilian University of Munich (LMU) is investigating a significant cyberattack that potentially exposed sensitive student information,…
NightmareEclipse’s latest zero-day leaves Microsoft Defender stuck in the past
BigDiskBuster leaves Microsoft’s antivirus running but unable to install updates
Foreign Hackers Got Into Two Colorado Water Systems, Messed With Pump Controls and Killed the Alarms
Foreign actors broke into the industrial control systems of two small private water utilities in Colorado last month, altered pumping cycles, changed…
IT Security News Hourly Summary 2026-09-22 19h : 10 posts
10 posts published in the last hour 16:31CAIRN – A New Tool to Track AI Malware That Operates Without Human Control 16:31Insurance sector begins to offer clarity on AI-related cyber claims 16:31Autonomous AI Agents Hack Retailers for $25 and Steal…
CAIRN – A New Tool to Track AI Malware That Operates Without Human Control
Cisco Talos has released CAIRN, an open-source toolkit designed to hunt, classify, and track AI-integrated malware by examining the digital markers…
Insurance sector begins to offer clarity on AI-related cyber claims
The emergence of agentic AI and frontier models has led to widespread uncertainty for policyholders.
