IT Security News: today roundup Revolut leaked sensitive customer data after falling for spoofed government emails. AWS launched an isolated sovereign cloud partition for European users. Prophet Security found AI speeds up SOC investigations despite implementation failures. Researchers analyzed Windows…
AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals
New research from Irregular shows AI agents can retrain and redeploy their own underlying models during routine maintenance tasks.
Chosen Brick, Iran’s Surveillance Malware
UK, US, and Dutch agencies expose Chosen Brick, Iranian malware used to track and harass dissidents, journalists, and activists via Telegram. The UK, the…
Drone Start-Up Zipline Seeks $1bn At $20bn Valuation
San Francisco-based drone delivery firm reportedly in early talks for funding round that would see valuation nearly triple
SIRIUS SPoC network meets as EU enters new era for electronic evidence
The 7th SIRIUS Single Point of Contact (SPoC) Network Meeting, organised by Europol’s EU Internet Referral Unit (EU IRU) together with the German Federal…
CISA Releases Guidance on Deploying Cyber Decoys
Complementing Zero Trust models, decoys enable organizations to detect, observe, and block malicious activity in their environments.
Growing number of data requests and complex legal landscape among key challenges for accessing electronic evidence
Over half of all criminal investigations today include a request for cross-border access to electronic evidence such as texts, e-mails or messages in…
IT Security News Hourly Summary 2026-09-17 10h : 7 posts
7 posts published in the last hour 07:31Apple Developing Potential ARM-Based AI Server 07:31Docker Sandboxes Vulnerabilities Let Malicious Guests Escape Workspace and Access Host Files 07:31Flock gets plucked, OpenAI agents arrived even earlier, inside China’s AI spy shop 07:31Hackers Turn…
Apple Developing Potential ARM-Based AI Server
Apple reportedly working on server that could use future M8 Ultra chips, Nvidia communications tech, amid booming demand for AI compute
Docker Sandboxes Vulnerabilities Let Malicious Guests Escape Workspace and Access Host Files
Docker has released security fixes for two serious vulnerabilities in Docker Sandboxes that could let a malicious guest environment bypass workspace…
Flock gets plucked, OpenAI agents arrived even earlier, inside China’s AI spy shop
Flock gets plucked OpenAI agents arrived early China’s AI spy shop Get the show notes here: https://cisoseries.com/cybersecurity-news-september-17-2026/…
Hackers Turn AI Agent Into a Cyber Weapon After Deleting Its Safety Refusals
A French-speaking cybercrime crew calling itself BlackHatSect0r && DXQRTXX allegedly disabled safety controls in a self-hosted AI agent and used the…
BlackHatSect0r Hackers Disable AI Safety Controls to Automate Credential Theft and Cyberattacks
A French-speaking cybercrime crew calling itself BlackHatSect0r && DXQRTXX allegedly disabled safety controls in a self-hosted AI agent and used the…
Z.ai Raises Outlook After $5bn Cash Injection
Beijing-based AI start-up says recent fundraise means it can bring in compute power to fuel 25 percent more growth this year
IT Security News Hourly Summary 2026-09-17 09h : 8 posts
8 posts published in the last hour 06:31Microsoft’s Slough Data Centre Plan Faces Opposition 06:31Jenkins Patches 20 Plugin Flaws Leading to RCE, XSS and Credential Theft 06:31Tuskira Vector brings autonomous red teaming to attack surface validation 06:31Active Exploitation Triggers Emergency…
Microsoft’s Slough Data Centre Plan Faces Opposition
Hundreds of local residents sign petition to pause new data centre projects in Slough, as Microsoft plans to take over derelict site
Jenkins Patches 20 Plugin Flaws Leading to RCE, XSS and Credential Theft
Jenkins has released security updates addressing 20 vulnerabilities across 13 plugins, including multiple high-severity flaws that could allow authorized…
Tuskira Vector brings autonomous red teaming to attack surface validation
Tuskira has announced Vector, its autonomous red teaming agentic capability, which identifies an organization’s exploitable attack surface by simulating…
Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day
Remote, unauthenticated attackers can exploit the vulnerability to bypass authentication via crafted requests.
Riverbed NPM 360 uses AI to predict and prevent network disruptions
Riverbed has announced new Riverbed intelligent network observability solutions that combine 360-degree network visibility with agentic AI to help network…
NightEagle Hackers Target Russian Companies Using GhostContainer Backdoor
The NightEagle advanced persistent threat group, tracked as APT-Q-95, has expanded its operations to target businesses in Russia, combining stolen VPN…
The AI security question leaders should be asking instead
In this Help Net Security interview, Frederic Bull, Security Officer at Gremlin, talks about what AI means for security teams. The conversation covers why…
IT Security News Hourly Summary 2026-09-17 08h : 5 posts
5 posts published in the last hour 05:31A flat cybersecurity budget doesn’t have to mean weaker coverage 05:31Critical Check Point Vulnerability Allows Remote Root Code Execution Without Authentication 05:02AI is adding to the review load on open-source projects, many of…
A flat cybersecurity budget doesn’t have to mean weaker coverage
Cheri Hotman, Managing Partner of Hotman Group, works as a vCISO and vGRC leader. In this Help Net Security video, she talks about holding coverage steady…
Critical Check Point Vulnerability Allows Remote Root Code Execution Without Authentication
Check Point has issued a high-severity security alert for CVE-2026-91843, which is a critical stack overflow vulnerability in the login process of its…
