198 posts published today
- 21:31CrowdStrike SafeMind: When the Best Offense Builds the Best Defense
- 21:31Run open weight models on Amazon Bedrock in AWS European Sovereign Cloud
- 21:31Researchers Find OAuth Token Exposure in Twitch Extension Used by 30K
- 21:021.8M Android APKs Scanned for Hardcoded Secrets in Automated Attack
- 21:00IT Security News Hourly Summary 2026-09-17 23h : 6 posts
- 20:31Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point
- 20:31100,000 WordPress Sites Exposed to Remote Code Execution via PHP Object Injection Vulnerability Found by Wordfence Argus in Tutor LMS
- 20:02New Italian unicorn Exein rides the physical AI wave
- 20:02Mass-Scanning Campaign Exploits Vite Flaw to Extract Cloud Credentials From Exposed Dev Servers
- 20:02Researchers find way to listen in on headphones from afar
- 20:00IT Security News Hourly Summary 2026-09-17 22h : 5 posts
- 19:31Human Attacker Exploits Marimo RCE, Reaches SSH Bastion in Eight Seconds
- 19:02HBO Max’s verified Reddit account hijacked to spread malware
- 19:02Cyberattacks on Oil Tankers Put Maritime Critical Infrastructure at Risk
- 19:02Flock cameras are tracking people as well as cars
- 19:00IT Security News Hourly Summary 2026-09-17 21h : 7 posts
- 18:3125 Years of Mass Surveillance Is Enough
- 18:02Wordfence Intelligence Weekly WordPress Vulnerability Report (September 7, 2026 to September 13, 2026)
- 18:02Should you care about an “AI slowdown?”
- 18:02From guidance to action: Security fundamentals that materially reduce risk
- 18:02China’s Salt Typhoon backdoors Latin American orgs with new snooping malware
- 18:02HKMA’s Quantum Preparedness Index: What Hong Kong Banks Should Do Next
- 18:00IT Security News Hourly Summary 2026-09-17 20h : 3 posts
- 17:31Cyberattacks on Two Oil Tankers Prompt Coast Guard, FBI to Board Vessels
- 17:01Improving email security outcomes with real-world Microsoft Defender insights
- 17:00IT Security News Hourly Summary 2026-09-17 19h : 11 posts
- 16:31Parallels Desktop Vulnerability Gives Any Local Mac User Full Root Access, Intel Mac Users Left Without a Clear Fix
- 16:31FBI, Coast Guard probe suspected cyberattacks on ships entering US waters
- 16:31New Settra Ransomware Strain Deploys MeshAgent RMM for Persistence
- 16:31Cyberattack on Tanker Prompts Coast Guard-FBI Security Boarding
- 16:31Microsoft Releases Emergency Patch to Fix RDS Vulnerability
- 16:31Vercel Sandbox Challenge Uncovers Linux Kernel Flaws
- 16:02Meta AI builds detailed profiles of children from years of family posts
- 16:02PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
- 16:02On the NSA’s Supercomputer from the 1960s
- 16:02OpenAI Says Its Models Searched GitHub for Leaked API Keys During Training
- 16:00IT Security News Hourly Summary 2026-09-17 18h : 22 posts
- 15:32Crackdown on Italian organised criminal network involved in large-scale euro counterfeiting
- 15:32Search results are sending people to fake Bitrefill checkouts
- 15:32FamousSparrow Swaps SparrowDoor For New SparroWocky Backdoor
- 15:31Apple Opens Early Access To Siri AI
- 15:31The Nansh0u Campaign – Hackers Arsenal Grows Stronger
- 15:31Critical Cisco ISE Authentication Bypass (CVE-2026-76460) Under Active Exploitation
- 15:31Threats Making WAVs – Incident Response to a Cryptomining Attack
- 15:31London property manager breach may have exposed bank details and lockbox codes
- 15:31CrowdStrike Named a Leader in The Forrester Wave™: External Threat Intelligence Service Providers, Q3 2026
- 15:31EU To Propose Social Media Restrictions For Minors
- 15:31Peer Pressure: Inside the Sality Botnet Disruption Operation
- 15:02Manufacturers make patching progress, but identity management still major weakness
- 15:02Amazon Looks To Expand UK Drone Deliveries
- 15:02LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)
- 15:02China hits fast-forward on AI security, Hacking Cat shows its claws, Vite servers spill cloud secrets
- 15:02The Oracle of Delphi Will Steal Your Credentials
- 15:02SilkParasite Infrastructure Links SpiceRAT to Central Asian Targets
- 15:02LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server
- 15:02Start-Up Z.ai Plots Latest Funding Measures
- 15:02Microsoft Releases Emergency Windows Updates to Fix Remote Desktop Services Failures
- 15:01McDonald’s, Meituan Begin Drone Deliveries In Shanghai
- 15:00IT Security News Hourly Summary 2026-09-17 17h : 37 posts
- 14:33CISA Retires Weekly Vulnerability Bulletin in Risk-Based Pivot
- 14:33China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
- 14:32Seven arrests in Brazil during crackdown on South America-Europe cocaine pipeline
- 14:32Cyber Briefing: 2026.09.17
- 14:32Why Endpoint Protection Alone No Longer Stops Modern Attacks
- 14:32Police Seize Drone Spotted Near Luton Airport
- 14:32Revolut phishing texts appear days after data breach
- 14:32CrowdStrike Falcon Guardian Defines the Next Generation of AI Security
- 14:32AWS Says Some Cloud Data Cannot Be Recovered After Data Centers Suffer War Damage
- 14:32“Zero-Code Cloaking”: Attackers Weaponize Google Search and Hacked .ac.th Domain to Bypass Ad Moderation
- 14:31When Everyday Habits Become an Invisible Security Risk
- 14:31Cisco Warns of Critical ISE 0-Day Vulnerability Exploited in Attacks
- 14:31Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
- 14:31APT36 Uses USB-Spreading Malware to Reach Air-Gapped Government Networks
- 14:31Python For Cybersecurity: Write Your First Security Tools And Scripts
- 14:31One Compromised Kubernetes Node Can Expose Every Workload Identity Running on It
- 14:31Aldi Responds To Complaint With AI Prompt
- 14:31Critical Docker Sandbox Vulnerabilities Enable Malicious Guests to Escape Isolated microVM Workspaces
- 14:03The latest AI doomsayer is China’s intelligence boss
- 14:03U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks
- 14:03Handala Hack Uses CRUDEEXCLUDE to Disable Defender Protections and Deploy HEAVYGRAM
- 14:03Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
- 14:03Revolut Data Breach: 5 Months, 680 High-Profile Accounts, $3M Ransom
- 14:03Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This Webinar
- 14:03CISA Urges Critical Infrastructure to Plant Decoys Inside Networks
- 14:02BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS
- 14:02North Korean IT Workers Use AI and Remote Desktop Tools to Fake Technical Interviews
- 14:02OpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized Uploads
- 14:02FamousSparrow Exploits Public-Facing Exchange Servers to Deploy SparroWocky Backdoor
- 14:02CISO’s Expert Guide to Agentic Pentesting for Websites
- 14:02Hacked Thai College Website Abused to Redirect Google Searchers to Illegal Online Casino
- 14:02Gyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata Records
- 14:02SilkParasite-Linked Malware Infrastructure Traced Back Four Years Across Central Asia
- 14:02Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone
- 14:02Hackers Turn Telegram Into a Command Center for HEAVYGRAM Surveillance Malware
- 14:02China-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin America
- 14:00IT Security News Hourly Summary 2026-09-17 16h : 24 posts
- 13:32AI Models Broke Their Own Containment: Key Findings from the July-August 2026 AI Threat Landscape
- 13:32ISC Stormcast For Tuesday, September 15th, 2026 https://isc.sans.edu/podcastdetail/10094, (Tue, Sep 15th)
- 13:32Download: The IT leader’s guide to AI code sprawl
- 13:32HBO Max Reddit account hijacked for malware
- 13:32SilkParasite Hackers Use SpiceRAT Infrastructure to Target Central Asian Governments and Energy Firms
- 13:32The Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrents
- 13:32Comp AI Raises $34 Million for AI-Native Compliance and Security
- 13:31Iranian strikes on AWS facilities left customer data beyond recovery in Bahrain, UAE
- 13:31September 2026 Patch Tuesday: Two Exploited Zero-Days and 113 Critical Vulnerabilities Among 972 CVEs
- 13:31A fake ChatGPT billing email is after your OpenAI password
- 13:03Cisco drops another exploited zero-day, this time a perfect 10
- 13:03New Chinese-Made ‘RatHat’ Android Malware Leverages AI to Steal Financial Data
- 13:02Could an Email You Never Read Hijack Your AI Assistant?
- 13:02CISA wants critical infrastructure orgs and smaller security teams to start using cyber decoys
- 13:02Critical ScreenConnect flaw actively exploited
- 13:02North Korean IT Workers Pay People to Sit Through Job Interviews While They Control the Computer
- 13:02Anthropic tests Claude Money for bank data analysis
- 13:02ISC Patches 14 Vulnerabilities in BIND 9 Security Update
- 13:02Google Launches Gemini 3.8 Live AI Models
- 13:02Salt Security expands CrowdStrike integration to tackle AI agent security
- 13:02Salesforce global outage affects hundreds of instances
- 13:02Druva expands identity resilience with ransomware detection
- 13:02SE Labs Launches PIVOT Testing Program for Cybersecurity Ven
- 13:00IT Security News Hourly Summary 2026-09-17 15h : 9 posts
- 12:31Google’s new agent security system detects tool misuse, loops and rogue behavior
- 12:31Cyber Essentials Has Record Year but Takeup Remains Low
- 12:31Ransomware Attacks on Manufacturers Surge as Supply Chain Risk Grows
- 12:31GPT4Free Privacy Risks Expose AI Prompts to Third-Party Servers and Hidden Logs
- 12:31Cisco Fixes Dozens of Flaws Across FMC, ISE and Nexus Dashboard
- 12:02NightmareStresser Goes Offline in Global DDoS-for-Hire Crackdown
- 12:02Two in Five Organisations Hit by AI-Related Compliance Failures in Past Year, Research Finds
- 12:02FBI takes down one of the longest-running DDoS-for-hire services
- 12:00IT Security News Hourly Summary 2026-09-17 14h : 14 posts
- 11:32Fake MRI Scans Deliver CHOSEN BRICK Spyware to Windows PCs
- 11:32Test environment let anyone access live customer data
- 11:31How Candidates Could Use AI for Good
- 11:31BIND 9.20.29 Fixes 14 Security Flaws Enabling DNSSEC Bypass and Denial-of-Service Attacks
- 11:31World Quantum Readiness Day: Industry Voices on Moving From Blueprint to Build
- 11:3112 celebrity deepfake websites seized by Manhattan DA
- 11:31FamousSparrow Deploys New SparroWocky Backdoor Against Latin American Governments
- 11:31Cisco Warns of Active Exploitation of Critical ISE Flaw
- 11:31CISA Urges Organizations to Deploy Cyber Decoys to Detect Hackers Inside Networks
- 11:02CISA Releases Cyber Decoy Guidance to Strengthen Critical Infrastructure Defenses
- 11:0212 Best DSPM Tools Compared (2026): Features & Pricing
- 11:02T-Mobile rewards points expiry texts are a phishing scam
- 11:02Kubernetes Attack Lets Hackers Steal SPIFFE Workload Identities and Impersonate Applications
- 11:00IT Security News Hourly Summary 2026-09-17 13h : 12 posts
- 10:31Ofcom discovers issuing Online Safety Act fines is easier than collecting them
- 10:31Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460)
- 10:31Hackers Exploit Critical Cisco ISE Flaw to Bypass Authentication and Gain Root Access
- 10:31Scammers leave AI fingerprints all over fake antivirus renewal page
- 10:02U.S. CISA adds Acronis Backup, Cisco ISE, and Google Pixel flaws to its Known Exploited Vulnerabilities catalog
- 10:026 Ways Security Teams Can Reduce Non-Human Insider Risk
- 10:02Cyberthreats are moving faster than SMBs: Readiness must accelerate
- 10:0216-31 August 2026 Cyber Attacks Timeline Infographic
- 10:02APT36 Targets Indian Government and Defense Organizations With New Rust Malware Arsenal
- 10:02Ransomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin’s AI use
- 10:0116-31 August 2026 Cyber Attacks Timeline
- 10:00IT Security News Hourly Summary 2026-09-17 12h : 8 posts
- 09:31CSIDES Unveils Full Agenda for 2026 Cybersecurity Community Event
- 09:31NightEagle Hackers Abuse Microsoft Dev Tunnels and GhostContainer to Breach Russian Companies
- 09:31Flock Once Touted Its Cameras as ‘Made in the USA.’ Now It’s Not So Clear
- 09:31Google Ordered To Allow More Ad Competition
- 09:0212 Serverless Security Options Compared (2026): Features & Pricing
- 09:02Spain reports first data breach involving autonomous AI agent
- 09:02Snap Adds Enterprise Apps To Specs AR Glasses
- 09:00IT Security News Hourly Summary 2026-09-17 11h : 11 posts
- 08:31EU Chief Promises ‘Action’ On Social Media Harms
- 08:31AI Agent Carries Out Multi-Stage Data Theft Attack
- 08:31Fake AI trading agent steals crypto wallet passwords
- 08:31RatHat Abuses Android Wireless Debugging to Gain Shell Access and Steal Banking PINs
- 08:02AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals
- 08:02Chosen Brick, Iran’s Surveillance Malware
- 08:02Drone Start-Up Zipline Seeks $1bn At $20bn Valuation
- 08:02SIRIUS SPoC network meets as EU enters new era for electronic evidence
- 08:02CISA Releases Guidance on Deploying Cyber Decoys
- 08:02Growing number of data requests and complex legal landscape among key challenges for accessing electronic evidence
- 08:00IT Security News Hourly Summary 2026-09-17 10h : 7 posts
- 07:31Apple Developing Potential ARM-Based AI Server
- 07:31Docker Sandboxes Vulnerabilities Let Malicious Guests Escape Workspace and Access Host Files
- 07:31Flock gets plucked, OpenAI agents arrived even earlier, inside China’s AI spy shop
- 07:31Hackers Turn AI Agent Into a Cyber Weapon After Deleting Its Safety Refusals
- 07:02BlackHatSect0r Hackers Disable AI Safety Controls to Automate Credential Theft and Cyberattacks
- 07:01Z.ai Raises Outlook After $5bn Cash Injection
- 07:00IT Security News Hourly Summary 2026-09-17 09h : 8 posts
- 06:31Microsoft’s Slough Data Centre Plan Faces Opposition
- 06:31Jenkins Patches 20 Plugin Flaws Leading to RCE, XSS and Credential Theft
- 06:31Tuskira Vector brings autonomous red teaming to attack surface validation
- 06:31Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day
- 06:31Riverbed NPM 360 uses AI to predict and prevent network disruptions
- 06:02NightEagle Hackers Target Russian Companies Using GhostContainer Backdoor
- 06:01The AI security question leaders should be asking instead
- 06:00IT Security News Hourly Summary 2026-09-17 08h : 5 posts
- 05:31A flat cybersecurity budget doesn’t have to mean weaker coverage
- 05:31Critical Check Point Vulnerability Allows Remote Root Code Execution Without Authentication
- 05:02AI is adding to the review load on open-source projects, many of them thinly funded
- 05:02GNOME 51 adds passkey logins, offline maps and drawn PDF signatures
- 05:01AWS’s new sign-up gives accounts spend caps, email invites, and agent-set permissions
- 04:31The world must establish red lines for autonomous AI weapons
- 02:02ISC Stormcast For Thursday, September 17th, 2026 https://isc.sans.edu/podcastdetail/10098, (Thu, Sep 17th)
- 01:31Windows 11 KB5124008 Update Breaks Active Directory Domain Trust and Blocks User Logins
- 22:31AI agents can modify themselves without humans telling them to do so
