200 posts published this week
- 21:55IT Security News Daily Summary 2026-09-06
- 17:00IT Security News Hourly Summary 2026-09-06 19h : 3 posts
- 16:02Baylor Genetics Confirms Cyberattack Exposed Patient Data
- 16:01A New Magento Zero-Day Is Breaking Into Online Stores Right Now
- 16:01Origin Energy Data Breach Traced to Manila Call Centre, Ex-Accenture Employee Identified
- 14:31Your MikroTik Router May Already Be Compromised: Look for SSH User “-2”
- 14:01CrowdStrike Launches SafeMind – First Agentic Cybersecurity Solution Built for Defenders
- 13:01CrowdStrike Named Strongest Overall Leader in 2026 Frost Radar™: Cloud Workload Protection Platforms
- 13:00IT Security News Hourly Summary 2026-09-06 15h : 5 posts
- 12:31Hackers Exploiting MikroTik RouterOS Vulnerability in the Wild to Gain Complete Network Access
- 12:31AI Agents Hijacked German Wiki to Cheat, OpenAI Delayed Disclosure
- 12:31Knowledge Retention & Sharing in DF/IR
- 12:31Keeping Claude at Bay – Old Models are Still Useful
- 12:31ASUS Control Center Flaw Allows Attackers to Gain Full Admin Control of the System
- 11:01Trezor Data Breach Rises to 67,000 US Customers
- 10:02Four REVSTEALER-Linked Modules Disable Windows Update and Defender to Run a Crypto Miner
- 10:01Attackers Hijack MikroTik Routers Through Internet-Exposed SSH Without Authentication
- 09:31SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 113
- 08:31Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast
- 08:31Security Affairs newsletter Round 593 by Pierluigi Paganini – INTERNATIONAL EDITION
- 07:31Malicious Ted Backdoor Conceals Itself Inside HAProxy Builds for Traffic Monitoring
- 06:3110 Best ZTNA Solutions (Zero Trust Network Access) In 2026
- 04:31Hackers Actively Exploiting Magento and Adobe Commerce 0-Day RCE Vulnerability
- 22:00IT Security News Hourly Summary 2026-09-06 00h : 3 posts
- 21:55IT Security News Daily Summary 2026-09-05
- 21:31OpenAI Announced $1B in Defensive Tools for Water Utilities
- 21:31Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
- 19:31PaperCut Flaws Exploited in Attacks on U.S. and European Schools
- 18:31OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure
- 18:00IT Security News Hourly Summary 2026-09-05 20h : 8 posts
- 17:31August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415 CVEs
- 17:02Elementor Pro WordPress Flaw Exploited to Upload Webshells and Execute Commands
- 17:02AWS CodeCatalyst Blueprints SDK Hit by High-Severity Command Injection Flaw
- 17:02Critical Nexus 9000 Flaw Could Permit Threat Actors to Gain Root Access
- 17:02Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
- 17:02Dropbox Says 5,000 Accounts Compromised After Flaw in Lenovo Login System
- 17:02Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
- 17:01Switchvox Vulnerability Triggers Active Exploitation Risk
- 15:31Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers’ Data It Said Was Deleted
- 15:01Cybersecurity Risk Assessment: Step-by-Step Guide And Free Template
- 14:31CISA Flags Old ownCloud Flaw After Reported Philippine Nuclear Data Theft
- 13:31Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
- 12:31redactproxy, a tool that lets pentesters use AI without leaking client data
- 11:01OpenAI Agents Hacked Another Website
- 11:00IT Security News Hourly Summary 2026-09-05 13h : 3 posts
- 10:01Chainguard Hits 1 Billion Build Manifests With AI-Powered Software Supply Chain Security
- 10:01Microsoft Teams Desktop Client Fails to Load on Windows System – Microsoft Investigating
- 10:00IT Security News Hourly Summary 2026-09-05 12h : 4 posts
- 09:31Russian Hackers Deploy New HOOKEDGE Backdoor in Espionage Attacks Across Europe
- 09:02AI Agents Breach Company Network in Under 10 Hours and Steal Root Credentials
- 09:01Thousands of OpenAI Agents Quietly Turned an Abandoned Wiki Into Their Coordination Channel
- 09:00IT Security News Hourly Summary 2026-09-05 11h : 4 posts
- 08:0212-Year-Old PostgreSQL Flaw Lets Attackers Execute Code and Take Over Database Servers
- 08:02Global public-private operation disrupts Sality botnet active for two decades
- 08:02Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities
- 08:01New Panzer Ransomware Hits 16 Victims Across 11 Countries With Data Theft and Encryption
- 07:31CARS24 Data Breach Exposes 3,100 Customer Records, Leads Allegedly Sold for ₹1,000 Each
- 07:31Hackers Use Frontier AI Agents to Breach Enterprise Network in Under 10 Hours
- 05:31Broadcom Patches Critical VMware Workstation and Fusion VM-Escape Vulnerabilities
- 04:01Defenders call out OpenAI defense pledge, Astra release timing
- 01:31Surviving and thriving in the AI Vulnpocalypse
- 01:31numbat – AI agent observability, (Fri, Sep 4th)
- 00:01Why Vulnerability Management Must Move Beyond CVSS
- 23:31U.S. CISA adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog
- 23:02Defenders call out timing of OpenAI defense pledge, Astra release
- 22:31Cyber Resilience Starts With a Unified Recovery Strategy
- 22:00IT Security News Hourly Summary 2026-09-05 00h : 11 posts
- 21:55IT Security News Daily Summary 2026-09-04
- 21:31Fable 5.1 released, USPS “untested” IT, Exchange hijack vulnerability
- 21:31Friday Squid Blogging: Squid on a Stick at the New York State Fair
- 21:31Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials
- 21:31The Department of Know: Astra launches, CISA cuts programs, McKesson breached
- 21:02Attack Surface Reduction Is the Only Scalable Defense Strategy Left
- 21:02The 5 Best Antiviruses With Parental Controls
- 21:02Why Security Teams are Becoming Builders of Agentic AI, not just Buyers
- 21:02What is a brushing scam?
- 21:01Google’s Chrome Update Patches Sixth Zero-Day Exploited in 2026
- 21:00IT Security News Hourly Summary 2026-09-04 23h : 4 posts
- 20:31Teaching AI to Reason Through Detection Triage
- 20:022026-09-01: Essential macOS Stealer infection
- 20:02How to secure edge AI in customer-owned environments
- 20:00IT Security News Hourly Summary 2026-09-04 22h : 5 posts
- 19:31ASCII smuggling isn’t just an AI security risk
- 19:31Crooks Behind Manchester Airports Group Hack Leaked Data of 8.8 Million People
- 19:02CVE-2026-19949 Leaves Millions of WordPress Sites Running Vulnerable Plugin Versions
- 19:01Dropbox Says Lenovo ID Flaw Compromised 5,000 Accounts
- 19:00IT Security News Hourly Summary 2026-09-04 21h : 3 posts
- 18:31OSPAR 2026 report now available with 167 services in scope
- 18:01OpenAI pledges $1B to provide resources, training for frontline cyber defenders
- 18:00IT Security News Hourly Summary 2026-09-04 20h : 15 posts
- 17:3122,000 Exchange servers open to hijack, 700 rogue AI agents swarmed Hugging Face, AI threatens global finance
- 17:31ISC Stormcast For Wednesday, September 2nd, 2026 https://isc.sans.edu/podcastdetail/10078, (Wed, Sep 2nd)
- 17:31Critical Ruby on Rails Vulnerability Under Active Attack | CVE-2026-66066
- 17:31The hidden work of modernizing Malwarebytes
- 17:02AI is finding vulnerabilities faster. Who is funding the people expected to fix them?
- 17:022026-08-31: Files for an ISC diary (Guildma/Astaroth infection)
- 17:02LLMs in Security Research – AI, Standards, and Why Evidence Still Matters
- 17:02Using a VM to Contain an AI Agent
- 17:02PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
- 17:0278 arrests in bust of major Western Mediterranean smuggling network in Spain
- 17:02Microsoft Unveils Project Zenith Windows PCs That Can Run 30B+ AI Models Locally
- 17:02Peer Pressure: Inside the Sality Botnet Disruption Operation
- 17:02Cops, CrowdStrike disrupt Sality botnet by poisoning the network and diverting into sinkholes
- 17:01Threats Making WAVs – Incident Response to a Cryptomining Attack
- 17:00IT Security News Hourly Summary 2026-09-04 19h : 16 posts
- 16:32Thomson Reuters Court Records Breach Exposes Sensitive Data Across North America
- 16:32Rogue OpenAI agents used dead German web site to communicate in May, months before Hugging Face incident
- 16:32OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders
- 16:32AI Attack Surfaces and Supply Chain Threats Define the Week
- 16:31Q&A: Viasat Tests Satellite Resilience With AI as Cyber Expert Warns an Attack Could ‘Hurt an Entire Country’
- 16:31PostgreSQL Fixes 12-Year-Old Logical Decoding Flaw Enabling Replication-Role Code Execution
- 16:31Grafana MCP Flaw Exposes Session Spoofing and SSRF Risk
- 16:31In Other News: Microsoft’s Cloud Patches, Hacked Dropbox Accounts, Guardio’s $1.1B Valuation
- 16:31CISA Adds 7 Exploited Flaws as Attackers Target AI Infrastructure
- 16:31Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters
- 16:311 Folder Was All It Took: Security Researchers Find AI Coding Agents Can Be Hijacked Before a Single Prompt Is Typed
- 16:31HPE Patches Critical RCE Vulnerabilities in AOS-CX
- 16:02Nvidia’s $12.9B Hugging Face deal could benefit enterprises
- 16:01The Nansh0u Campaign – Hackers Arsenal Grows Stronger
- 16:01Government lacks ability to verify AI labs’ claims, experts say
- 16:00IT Security News Hourly Summary 2026-09-04 18h : 5 posts
- 15:31Hackers Use Popular Messaging Services to Control New Windows Backdoors
- 15:31Hackers Use Invisible Unicode Characters to Evade Phishing Detection in Millions of Emails
- 15:31New Ted Backdoor Hides Inside Victims’ Own HAProxy Builds to Intercept Web Traffic
- 15:31NodeStealer Can Now Record Everything Victims Type and Steal Their Screenshots
- 15:00IT Security News Hourly Summary 2026-09-04 17h : 19 posts
- 14:31VMware Workstation/Fusion Critical Vulnerability Patched
- 14:31CrowdStrike Falcon Guardian Defines the Next Generation of AI Security
- 14:315 Million WordPress Sites Exposed to SQL Injection Vulnerability
- 14:31PostgreSQL Hit by 12-Year-Old Vulnerability Allowing Server Takeover
- 14:31Cyber Briefing: 2026.09.04
- 14:31Brazilian Government Site Compromised to Redirect Users to Betting Pages
- 14:03The Oracle of Delphi Will Steal Your Credentials
- 14:03Season 4 of The Europol Podcast available now
- 14:02Hackers Turn Claude, Qwen and DeepSeek Into AI Agents for Real-World Cyberattacks
- 14:02Politicians target Flock AI surveillance cameras
- 14:02Hackers Turn HiveMQ and Element Messenger Into Control Channels for Windows Backdoors
- 14:02Russian National Indicted for Malware Distribution
- 14:02Europol-led action against nihilistic violent extremist network “The Com”
- 14:02North Dakota Supreme Court hit by third-party vendor breach
- 14:02Microsoft Confirms New Exchange Online Outage Delaying Emails from External Domains
- 14:02OpenAI launches Astra model, claims AGI milestone
- 14:02Migrant smuggling network using rental cars dismantled across the Balkans
- 14:02Chinese Hackers Deploy AI Agents in Multi-Country Campaign
- 14:00IT Security News Hourly Summary 2026-09-04 16h : 12 posts
- 13:31Sangoma Switchvox Vulnerabilities Exploited in the Wild
- 13:31KnowBe4 to Put AI Trust to the Test at Leeds Digital Festival
- 13:31OpenAI Agents Collude on Public Wiki to Share Sandbox Bypass and Evasion Techniques
- 13:31Compliance teams have gone continuous, but their evidence-gathering hasn’t caught up
- 13:31US military disabled ad tracking on troops’ devices following reports of targeted attacks
- 13:31Protecting Against Zero-Click Attacks
- 13:02Europol supports operation against amphetamine producers
- 13:02ShipMonk Data Breach Exposes Personal Data of 67,000 Additional Trezor Customers
- 13:02Coder Registry Compromise: Malicious Terraform Modules Explained
- 13:02X Money rollout linked to password-reset attacks
- 13:01Microsoft Teams to Add QR Code Protection in Teams Messaging
- 13:00IT Security News Hourly Summary 2026-09-04 15h : 16 posts
- 12:32NodeStealer Spyware Adds Keylogging, Screenshot Capture and Facebook Data Theft
- 12:32Multiple TP-Link Archer Vulnerabilities Allow Attackers to Execute Remote Code
- 12:31Nvidia Is Buying AI Platform Hugging Face for $13 Billion
- 12:31Microsoft 365 Phishing Technique Uses Empty Envelope Sender to Evade Direct Send Blocking
- 12:31Synology ActiveProtect Manager 2.0 improves AI-driven security
- 12:31OpenAI Agents Hijack German Wiki in AI Breakout to Share Evasion and Bypass Tactics
- 12:3112-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover
- 12:31Trezor Confirms ShipMonk Data Breach Exposed 67,000 Additional US Customers
- 12:31Google patches actively exploited Chrome zero-day (CVE-2026-85046)
- 12:31Plex Urges Users to Update Media Server Immediately to Fix Multiple Security Flaws
- 12:02Google Patches 6th Chrome Zero-Day of 2026
- 12:02Microsoft Teams Adds QR Code Protection to Block Phishing and Fraud
- 12:02VMware Workstation and Fusion Updates Patch Critical Vulnerability
- 12:01ICE Wants to Know Everyone Who Bought a Certain Green Beanie From REI in the Last 2 Years
- 12:01Catch Raises $5 Million for AI Executive Assistant With Guardrails
- 12:00IT Security News Hourly Summary 2026-09-04 14h : 8 posts
- 11:31Security Vulnerability in a Voting System
- 11:31MECCHA CHAMELEON Flaw Lets Malicious Custom Maps Achieve Remote Code Execution
- 11:31Chinese Hackers Use AI Agents in Multi-Country Cyber Campaign
- 11:02Critical Super Forms WordPress Flaw Actively Exploited to Achieve Remote Code Execution
- 11:02ICE Wants to Know Who Bought a Certain Green Beanie From REI in the Last 2 Years
- 11:02AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks
- 11:01Plex Urges Users to Update Media Server as Multiple Security Flaws Are Discovered
- 11:00IT Security News Hourly Summary 2026-09-04 13h : 6 posts
- 10:31OpenAI Pledges $1bn to Bring its AI Cybersecurity Tools to Essential Services
- 10:31Angry Birds: Toy Ghouls’ new toys
- 10:31Hackers Abuse AI-Era ASCII Smuggling to Hide Phishing Content in Millions of Emails
- 10:02Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws
- 10:02Free streaming boxes may be routing criminal traffic through your home
- 10:00IT Security News Hourly Summary 2026-09-04 12h : 8 posts
- 09:31G7 Urges Fast-Track on Quantum-Safe Cybersecurity Rules
- 09:31Google fixes the sixth actively exploited Chrome zero-day of 2026
- 09:31Chinese-Speaking Hackers Use Claude, Qwen and DeepSeek AI Agents to Attack Government Systems
- 09:0214 Fake macOS Installers Linked to DPRK Campaign Deliver Credential-Stealing RAT
- 09:02Microsoft Teams is about to make QR code phishing much harder
- 09:02TP-Link Archer AX55 Flaws Enable Remote Code Execution and Admin Password Theft
- 09:01Dahua Camera Backdoor Survives Password Changes and Factory Resets on Compromised Devices
- 09:00IT Security News Hourly Summary 2026-09-04 11h : 7 posts
- 08:31Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day
- 08:31Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws
- 08:31Indirect Prompt Injection: How Hackers Attack RAG Applications (2026)
- 08:31GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests
- 08:02Microsoft Challenges Data Centre Cost Recovery, After Public Pledge