164 posts published today
- 21:31Threats Making WAVs – Incident Response to a Cryptomining Attack
- 21:01The Oracle of Delphi Will Steal Your Credentials
- 21:01A Win for Defenders: CrowdStrike and NVIDIA Extend Security Across the AI Stack
- 21:00IT Security News Hourly Summary 2026-09-28 23h : 6 posts
- 20:31Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
- 20:31JadePuffer crims hijacked Azure identities and used them to blow up cloud resources
- 20:31AI Accounts Are Becoming the New Target for Infostealers
- 20:31Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
- 20:01CrowdStrike Falcon Guardian Defines the Next Generation of AI Security
- 20:00IT Security News Hourly Summary 2026-09-28 22h : 6 posts
- 19:31Seven arrests in Brazil during crackdown on South America-Europe cocaine pipeline
- 19:02IAM for AI agents: A Practical Enterprise Framework
- 19:02RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
- 19:02Citrix NetScaler Zero-Days Exploited in Attacks
- 19:01Bitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388M
- 19:00IT Security News Hourly Summary 2026-09-28 21h : 3 posts
- 18:01Previously Convicted Dutch Hacker Arrested in ShinyHunters Odido Probe
- 18:01Modulate Raises $25 Million to Advance Deepfake Detection
- 18:00IT Security News Hourly Summary 2026-09-28 20h : 7 posts
- 17:32CVE-2026-85706: GitLab Unauthenticated Arbitrary File Read via the Repository Commits API
- 17:31AWS European Sovereign Cloud: Demonstrating an independent operation
- 17:31Microsoft Finds New Malware Used by Hackers to Maintain Secret Access Inside Target Networks
- 17:31Akamai Joins Athena Coalition to Shield Users from New Vulnerabilities
- 17:31Florida AG Seeks Emergency Injunction to Restrict OpenAI and ChatGPT Over AI Safety Risks
- 17:31New Remote DoS Attacks Against GraphQL Java
- 17:00IT Security News Hourly Summary 2026-09-28 19h : 4 posts
- 16:31Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
- 16:31NeedyMantis: Unpacking a post-compromise malware family used in targeted operations
- 16:31Kiteworks lifts advisory after precautionary warning for customers to shut down systems
- 16:00IT Security News Hourly Summary 2026-09-28 18h : 21 posts
- 15:32Call for Presentations Open for 2026 CISO Forum Virtual Summit
- 15:32New File Notification Attack Lets Hackers Track User Activity Across Linux, Windows and macOS
- 15:32Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation
- 15:32Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-2026-88772 Exploited in the Wild
- 15:32Anthropic Declines Australian AI Hearing as OpenAI Agent Breach Faces Scrutiny
- 15:32File Notification APIs in Windows, Linux, and Android Are Leaking What You Do on Your Computer
- 15:32Niche AI tools pose major cybersecurity risk to infrastructure operators
- 15:32Fake Email Thread Tricks AI Summarizer Without Hidden Text
- 15:31Bitget Restarts Bitcoin Withdrawals Following $387.5m Wallet Breach
- 15:31Hackers Built an AI-Powered Attack Machine and Accidentally Left the Control Panel Open
- 15:31Singapore Expands AI Cybersecurity After UNC3886 Attacks
- 15:31OpenCode AI Coding Agent Flaw Lets Malicious Websites Execute Code on Developer Machines
- 15:31Supabase Misconfigurations Leave Customer Data Publicly Exposed
- 15:31NCSC Urges UK organizations to Patch for Citrix NetScaler ADC and Gateway 0-Day Vulnerabilities
- 15:02September 2026 Patch Tuesday: Two Exploited Zero-Days and 113 Critical Vulnerabilities Among 972 CVEs
- 15:02FBI reportedly declares ‘cyber security incident’ after hackers steal agents’ personal data
- 15:02New Guide from Filigran Highlights the Many Routes Women Take into Cyber Threat Intelligence
- 15:02Ex-soldier’s telecom hacking spree earns him 70 months
- 15:02Cyber Briefing: 2026.09.28
- 15:01TrustSink Attack Uses Rogue MFA Provider to Steal Microsoft Entra Passwords During Legitimate Logins
- 15:00IT Security News Hourly Summary 2026-09-28 17h : 17 posts
- 14:32NVIDIA Launches Open Agent Safety Platform With 100 Industry Partners to Secure Autonomous AI Agents
- 14:32ShinyHunters Bypasses WAF Protections to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells
- 14:32James Moore, CultureAI Q&A: AI Security And Governance: Why Most Organisations Are Flying Blind
- 14:31Attackers Create Fake Jev AI Stores to Intercept Prompts Through Third-Party Servers
- 14:31⚡ Weekly Recap: $387M Crypto Hack, Citrix Exploits, AI Agents Go Off-Script, and More Threats
- 14:31Bitget Backend Breach Drains $387.5 Million as DPRK-Linked Launderers Expose Themselves
- 14:31Nearly 400,000 Medicaid Beneficiaries Caught in Medicaid and DC Healthcare Alliance Data Exposure
- 14:31CISA Warns of Microsoft SharePoint Code Injection Vulnerability Exploited in Attacks
- 14:02Protecting citizens, preserving rights
- 14:02DC Health Agency Exposes 400K Records
- 14:02FBI job portals remain offline after ShinyHunters claims breach via PeopleSoft zero-day
- 14:02Nvidia AI Agent Safety Platform Launch
- 14:02NVIDIA Launches Open Platform to Secure Autonomous AI Agents
- 14:02Drunk AI models leak secrets, easier to jailbreak
- 14:0216-year-old researcher breaks into Microsoft analytics service with access to 17 trillion rows of data
- 14:01New Mexico Jury Finds Facebook Liable for Privacy Deception
- 14:00IT Security News Hourly Summary 2026-09-28 16h : 11 posts
- 13:31OpenAI pauses work on top AI models after agent slips past internet controls
- 13:31Researchers Discover Cybercrime Server Containing AI Tools, Phishing Kits and Stolen Data
- 13:31Psychedelic Stealer Campaign Targets Ukrainian Businesses
- 13:31Deepfakes Are Becoming a Costly Reality for Businesses, Report Warns
- 13:31Storm-3168/JADEPUFFER Azure Credential Abuse
- 13:02Carbonato Botnet Compromises Docker Hosts to Deploy Telegram-Controlled Hermes AI Agent
- 13:02Prison Sentence for Former US Soldier Who Hacked AT&T and Verizon
- 13:02Goals Are Not Enough: Securing AI Agents with NVIDIA OpenShell
- 13:02OpenAI Agent Swarm Used Nearly 1 Million URLs to Hack Hugging Face
- 13:01Webinar: How to Govern AI Agents, Reduce Excessive Access, and Control Shadow AI
- 13:00IT Security News Hourly Summary 2026-09-28 15h : 9 posts
- 12:31Beyond Account-Level Risk: An Evidence-to-Action Pipeline for Detecting Fraud Rings
- 12:31OpenAI Agent Swarm Bypassed Sandbox Limits and Left 80,000 Attack Payloads Behind
- 12:31NVIDIA Launches In-Silicon Security Platform to Monitor and Control Autonomous AI Agents
- 12:31Other users can watch your browsing and time your keystrokes through OS file notifications
- 12:02NVIDIA wants AI agent safety enforced in silicon, not left to the agent
- 12:02OpenAI Pauses Training Its Most Powerful Models After Rogue Agents Target Government
- 12:02Oracle PeopleSoft Servers Targeted Again as ShinyHunters Expands Extortion Operations
- 12:01“Drunk” AI is terrible at keeping secrets
- 12:00IT Security News Hourly Summary 2026-09-28 14h : 13 posts
- 11:31DC Health Agency Exposes 400,000 Beneficiary Records
- 11:31New Attack Against RSA
- 11:31Storm-3168, Linked to JADEPUFFER, Abused Stolen Azure Identities
- 11:02Top 10 Best Authentication-as-a-Service (AaaS) Providers in 2026 [Ranked & Scored]
- 11:02New Mexico Jury Finds Facebook Liable for Deceiving Users About Privacy Protections
- 11:02Python MaaS Infostealer Builder Steals Passwords, Credit Cards and Cookies From 17 Browsers
- 11:02The Goal Tells an Agent What to Do. Security Has to Govern How.
- 11:02Hackers Exploit GlobalProtect Flaw and Turn Stolen Data Into 2.4 Million Fraud Messages
- 11:02James Moore, Q&A: AI Security And Governance: Why Most Organisations Are Flying Blind
- 11:02Top 10 Best Adaptive / Risk-Based Authentication Tools in 2026 [Ranked & Scored]
- 11:01Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign
- 11:01Top 10 Best Biometric Authentication Solutions in 2026 [Ranked & Scored]
- 11:00IT Security News Hourly Summary 2026-09-28 13h : 18 posts
- 10:32670 Jev Domains Registered After Launch as Fake AI Marketplaces Target Users
- 10:32Hackers Don’t Need to Break Into the Cloud When They Can Steal the Keys
- 10:32JADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure Resources
- 10:32Kiteworks Warned Customers to Shut Down Servers Over Potential Zero-Day Attack
- 10:31Tech Support Scam Kit Uses Google Ads to Deliver Fake Security Alerts
- 10:31Critical ViewSonic vCast Vulnerabilities Allow Attackers to Gain Full Control Over the Device
- 10:31Nvidia Unveils AI Agent Safety Platform With Hardware-Based Watchdog
- 10:31CISA Warns of Citrix NetScaler 0-Day RCE Vulnerabilities Exploited in Attacks
- 10:31CISA Says Attackers Are Exploiting Two Critical Citrix NetScaler Flaws Globally
- 10:31PHP Fixed a Bug That Could Send Your Login Credentials to the Wrong Server
- 10:02SIRIUS SPoC network meets as EU enters new era for electronic evidence
- 10:02Microsoft Entra TrustSink Attack Uses Rogue MFA Provider to Steal Passwords
- 10:02FBI agents’ blood tests and doctors’ notes surface after breach
- 10:02MCP Is Creating Major Governance Gaps, Researchers Warn
- 10:02Citrix NetScaler RCE zero-days exploited globally for weeks (CVE-2026-88771, CVE-2026-88772)
- 10:02Kiteworks Urges Server Shutdown, Finds Advanced Forms Vulnerability
- 10:01Securing AI Agents at Scale with NVIDIA
- 10:00IT Security News Hourly Summary 2026-09-28 12h : 9 posts
- 09:31Security testing has to keep pace with AI-driven attackers
- 09:31U.S. CISA adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog
- 09:31Context matters when it comes to cybersecurity’s agentic operating model
- 09:31Lumma, RedLine and Vidar Infostealers Fuel Cloud Credential Theft Campaigns
- 09:31Your attack surface is bigger than you think… and hackers know that
- 09:02Ex-US soldier gets 70 months for role in AT&T, Snowflake data thefts
- 09:02Green Growth Without Washington: Why US Businesses Are Still Investing in Climate Technology
- 09:02Operation Master Exploits GlobalProtect CVE-2026-0257 and Deploys AdaptixC2 Across Enterprise Networks
- 09:01Citrix Patches Critical Zero Days Under Active Exploitation
- 08:31LinkedIn tests a way for connections to verify your work history
- 08:00IT Security News Hourly Summary 2026-09-28 10h : 16 posts
- 07:32http-terminator – AI-Assisted HTTP Request-Smuggling Discovery
- 07:32Kiteworks Urges Customers to Shut Down Servers Over Potential Zero-Day Threat
- 07:32A week in security (September 21 – September 27)
- 07:31New Python Infostealer Targets 17 Browsers to Steal Passwords, Cards and Session Cookies
- 07:31Citrix Confirms 2 NetScaler Zero-Days After Admins Pulled the Plug
- 07:3112 Best Cloud Compliance Tools Compared (2026): Features & Pricing
- 07:31New SharePoint exploit, Australian OpenAI hack developments, Kiteworks urges stoppage
- 07:3112 Best Cloud Encryption Solutions Compared (2026): Features & Pricing
- 07:02ViewSonic vCast Vulnerabilities Let Attackers Gain Full Device Control Without Authentication
- 07:0211 Best GCP Security Tools Compared (2026): Features & Pricing
- 07:02Hackers Turn an Open-Source AI Agent Into a Tool for Controlling Compromised Docker Servers
- 07:02Certainties in life: Death, taxes, and critical Citrix vulns under attack
- 07:0212 Best Azure Security Tools Compared (2026): Features & Pricing
- 07:01Huawei Smartphone Chip Narrows Performance Gap
- 07:0112 Best AWS Security Tools Compared (2026): Features & Pricing
- 07:00IT Security News Hourly Summary 2026-09-28 09h : 8 posts
- 06:31Local Residents Protest Massive North Devon Data Centre
- 06:31If you do one security check this quarter, make it agent memory
- 06:31Roundcube SQL injection CVE-2026-48842 is now being exploited in the wild
- 06:02Authorizer: Open-source authentication and authorization for your apps
- 06:0216-Year-Old Researcher Discovers Microsoft Authentication Bug Exposing 17.3 Trillion Records
- 06:02OpenAI pauses some training amid allegations its rogue agents behaved more badly than first thought
- 06:02Ping Command Options & Syntax: Network Admin Guide
- 06:00IT Security News Hourly Summary 2026-09-28 08h : 7 posts
- 05:31AI tests the limits of enterprise security governance
- 05:31MacSync’s New Infection Chain Shows How Mac Malware Is Becoming More Sophisticated
- 05:31Which Platforms to Use for Enterprise Threat Intelligence
- 05:31New Windows Process Injection Technique Bypasses EDR Monitoring Without WriteProcessMemory
- 05:31Wireshark 4.6.9 Fixes 19 Vulnerabilities Including Code Execution Via Malicious Packet
- 05:31Citrix Confirms NetScaler Zero-Day RCE Flaws Actively Exploited in Attacks
- 05:01Product showcase: A photo can fool your eyes, Verdict checks the evidence
- 04:31Quantum random numbers can pass the tests and still leak clues to attackers
- 02:02ISC Stormcast For Monday, September 28th, 2026 https://isc.sans.edu/podcastdetail/10112, (Mon, Sep 28th)
- 01:02Two new NetScaler zero-days exploited, ShinyHunters steals FBI medical files, OpenAI Australia hack disputed
