IT Security News: today roundup CISA listed actively exploited Check Point, Arista, and F5 vulnerabilities. Attackers target Rust developers with malicious job interview invitations. Extortion group ShinyHunters hacked rival gang Clop's dark web site. US and China discussed mutual notifications…
New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory
A new flaw in the Linux kernel’s KVM virtualization code for ARM64 processors can leave a freed piece of host memory exposed to a guest virtual machine on…
Autonomous AI Hacks Raise Thorny Questions of Legal Accountability
The prospect of legal accountability is unclear. Lawsuits are a possibility, but some legal experts believe any criminal investigations would face an…
DORA Year Two: Can Your SOC Actually See the Attack?
When the Digital Operational Resilience Act (DORA) became enforceable across the European Union in January 2025, it triggered an administrative sprint.…
IT Security News Hourly Summary 2026-09-24 23h : 10 posts
10 posts published in the last hour 20:31Meta’s Muse AI assistant has a zero-day that can turn it into a Mac backdoor 20:31GPT-6 Astra Breaks an Old Enigma Message 20:03OpenSSL 4.1 Beta Release Announcement 20:03Andorran Police joins Europol’s secure communication…
Meta’s Muse AI assistant has a zero-day that can turn it into a Mac backdoor
A simple terminal command can hijack Muse and use its extensive permissions to spy on Mac users and control their connected accounts.
GPT-6 Astra Breaks an Old Enigma Message
This is pretty amazing: However, the most astonishing thing about this break is that the GPT6 Astra did it entirely on its own. Carter Leffer only…
OpenSSL 4.1 Beta Release Announcement
The OpenSSL Project is pleased to announce that OpenSSL 4.1 Beta1 pre-release is available, adding significant functionality to the OpenSSL Library.
Andorran Police joins Europol’s secure communication network
Through this connection, the Andorran Police will be able to securely share law enforcement information with Europol and a wide network of European and…
Researchers Found a New Way to Break RSA that Doesn’t Require Factoring the Key
Security researchers have demonstrated a faster way to undermine certain RSA deployments without factoring the public modulus, challenging the assumption…
What Would RAG Look Like If Miranda Priestly Were the User?
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: What Would RAG Look Like If Miranda Priestly Were the User?
AI Drives Surge in Bot and API Threats
Akamai report warns of increase in bot traffic, API threats, chatbot leaks and other AI-related threats
OpenAI Agent Breached Australian Medicare Statistics Portal
An OpenAI agent bypassed controls on Australia’s Medicare statistics portal, accessed non-public data and was not reported to officials for nearly 3…
How a Managed SOC works: What happens when a cyberattack begins?
Cyberattacks often begin in an inconspicuous way – for example, by clicking on an email attachment or a phishing link. Whether this leads to a serious…
IT Security News Hourly Summary 2026-09-24 22h : 8 posts
8 posts published in the last hour 19:31Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal 19:31AI Helps Uncover MikroTrick Attack Chain in MikroTik RouterOS 19:31Salesforce Agentforce vulns allowed 0-click CRM data theft, anonymous phishing 19:02Unpatched OnePlus…
Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal
A malicious npm package named “indexed-btree” has been observed hiding its malicious behavior within application code rather than using lifecycle scripts,…
AI Helps Uncover MikroTrick Attack Chain in MikroTik RouterOS
MikroTrick chains two RouterOS flaws to bypass authentication and gain admin access. AI helped researchers uncover the attack chain within days. MikroTik…
Salesforce Agentforce vulns allowed 0-click CRM data theft, anonymous phishing
‘SalesBleed’ security flaws ‘lead to very unexpected consequences’
Unpatched OnePlus Flaws Let Installed Android Apps Gain Root Without Permissions
A OnePlus 15 running the latest OxygenOS can be rooted by a malicious app the owner installs, one that asks for no special permissions. A researcher,…
Rogue AI agents put trusted access under scrutiny
Two newly disclosed incidents involving rogue AI agents are raising questions about what happens when autonomous software operates through apparently…
Researchers used Claude to hack OpenAI
Claude helped researchers break into OpenAI in under 72 hours, and exposed how quickly AI is lowering the bar for sophisticated hacking.
ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories
This week, the dangerous stuff keeps arriving dressed as something boring. An update. A login box. A search answer. A coding tool. A link you have clicked…
IT Security News Hourly Summary 2026-09-24 21h : 10 posts
10 posts published in the last hour 18:31A New Tool Found Malware That’s Guided by an AI Hive Mind—No Humans in Sight 18:31North Korean Hackers Hide Mac Backdoors in Fake Terraform Job Tests 18:31Texas utility CenterPoint confirms breach after attacker…
A New Tool Found Malware That’s Guided by an AI Hive Mind—No Humans in Sight
Cisco Talos researchers created a new framework for identifying malware and hacking tools that rely on AI chatbots—and quickly discovered something…
North Korean Hackers Hide Mac Backdoors in Fake Terraform Job Tests
North Korean hackers are using fake Terraform job tests to deploy macOS backdoors and target developer access to cloud infrastructure.
