200 posts published today
- 21:31New in Falcon Cloud Security: Third-Party App Insights and AI-Enhanced Remediation
- 21:31IBM and Red Hat Fix 400+ Security Vulnerabilities in Widely Used Java Libraries
- 21:31Cybersecurity Imperatives Will Demand AI Math
- 21:31Microsoft Tightens Outlook Security With New MSIX Attachment Block
- 21:31‘AgentCorruption’ Puts AWS Environments At Risk With Single Prompt
- 21:31FBI Warns FortiBleed Attacks Continue After 86,000+ Devices Compromised
- 21:02Ransomware attack disrupts Japan’s IDCF Cloud used by govt clients
- 21:02Samsung’s October Update Patches 9 Critical Security Flaws Across Galaxy Devices
- 21:01Major rules for federal contractors handling sensitive data are nearing the finish line
- 21:01CrowdStrike and Anthropic Give Critical Infrastructure Defenders the AI Advantage
- 21:01South Korean President Orders Probe After Financial Data Breaches
- 21:01Falcon Data Security for SaaS Secures Sensitive Data in Microsoft 365
- 21:01TP-Link Faces 5 State Lawsuits: Are Its Routers Still Legal in the US?
- 21:00IT Security News Hourly Summary 2026-10-08 23h : 16 posts
- 20:31DOJ, FBI seize Flax Typhoon-linked hacking tools Microscan, FishHub
- 20:31Use AI to Hunt Bugs Smarter With This $14.99 Course
- 20:31CloudSyncD Backdoor Spread Through Fake Zoom Installer Targeting macOS
- 20:31Why API Security Belongs in ECB Cyber Action Plans
- 20:31OpenAI Agent Escape Causes Wikimedia Service Outage
- 20:31Attackers hijacked top-level domains, minted fake security certs for Google and other orgs
- 20:31International investigation identifies over 70 potential victims exploited in Indian restaurants
- 20:02Low-cost Android phones ship with residential proxy malware
- 20:02Ransomware recovery CEO indicted after allegedly paying hackers and pocketing millions
- 20:02Google October Update Fixes Pixel Bugs as Pixel 6 Nears End of Support
- 20:02Suspected TraderTraitor Group Uses Trojanized Terraform Provider to Deliver Cross-Platform Malware
- 20:01Italy’s Foreign Ministry Under Cyberattack as Embassy Sites Come Under Review
- 20:01Best Smart Home Security Cameras for 2026: Ring, Nest, Arlo and Eufy
- 20:01Let’s Encrypt cuts certificate lifetimes to 64 days starting February 2027
- 20:01Meta Faces First Ofcom Probe Under Online Safety Act Over Instagram Instants
- 20:00IT Security News Hourly Summary 2026-10-08 22h : 11 posts
- 19:31Venezuelan Cartel’s Malware Honcho Nabbed for ATM Jackpotting
- 19:31Spain, Denmark and the Netherlands win Europol 2026 Excellence Awards in Innovation
- 19:31Dutch Tax Agency Reverses Microsoft 365 Cloud Migration Over Data Risks
- 19:31Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains
- 19:02Hunt.io Finds New Infrastructure Of BraZetsu Access Broker Months Before Disclosure
- 19:02Can you really make more than $200M in six months without encrypting victims? It seems Silent Ransom Group can. (1)
- 19:02Critical Sungrow Inverter Vulnerability Lets Attackers Access Solar Plants Without Passwords
- 19:02FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
- 19:01Microsoft, Adobe, Apple, and Foxit vulnerabilities
- 19:01ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories
- 19:00IT Security News Hourly Summary 2026-10-08 21h : 14 posts
- 18:31Hackers Use Fake Firefox Wallet Extensions to Steal Crypto Recovery Phrases
- 18:31DarkSword iOS Exploit Platform Uses Coruna Malware to Steal Crypto Wallet Recovery Phrases
- 18:31High-severity Nvidia bug could crash GPU monitoring on exposed servers
- 18:31Microsoft Teams Adds Synthetic Audio and Video Detection to Fight Deepfake Meeting Attacks
- 18:31Making sure the checks get printed
- 18:31Tensorlake npm Package Compromised to Spread Shai-Hulud Worm and Steal Developer Secrets
- 18:31Russian Spies Give ‘MatchBoil’ Malware a Stealthy Facelift
- 18:31Hikvision Camera Vulnerability Targeted in Remote Code Execution Exploitation Attempts
- 18:016 alternatives to Blackpoint for your shortlist
- 18:01Legacy sign-on service comes back to bite school software provider Bromcom
- 18:01FakeGit malware campaign returns with 17,610 malicious GitHub repos
- 18:01SonicWall Fixes Max Severity Pre-Auth Flaw in SMA1000 Appliances
- 18:01OpenAI says Iran, Russia used AI journalists, think tanks to influence Western media
- 18:00IT Security News Hourly Summary 2026-10-08 20h : 12 posts
- 17:31Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks
- 17:31Solving the Continuous Authorization Conundrum
- 17:02FBI, French authorities seize deepfake CSAM-for-sale websites
- 17:02CIA officer admits to creating fake top secret government program to steal over $190M, including gold bars
- 17:023 lessons from frontier AI vulnerability research
- 17:02Ordering violence from abroad: five suspects arrested in Spain, Morocco, and France
- 17:02AWS launches open-source AI agent sandbox to prevent YOLO mode disasters
- 17:01Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer
- 17:01Putting Guardrails Around What Your AI Agent Is Allowed to Touch
- 17:01Reconstructing AI Agent Activity: Two New Scripts for Forensic Review, (Thu, Oct 8th)
- 17:01Shai-Hulud worm makes jump to AI infrastructure with Tensorlake compromise
- 17:00IT Security News Hourly Summary 2026-10-08 19h : 30 posts
- 16:32Attackers hijack country-code domains to impersonate Google and other services
- 16:32How DNS, Firewalls and Endpoint Tools Block Websites
- 16:31Unknown Threat Actor Uses AI-Driven ARTEX to Target South Korean Finance
- 16:31AI Watermarking Meant to Protect Against Misuse Could Actually Enable It
- 16:31CVE-2026-21589: Critical Arbitrary File Read Vulnerability in Atlassian Products
- 16:31SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances
- 16:31Open Enrollment Is Where Digital Strategy Gets Tested. Are You Ready?
- 16:31AI underscores singular importance of phishing-resistant authentication, Okta says
- 16:31CrowdStrike Named a Leader in the 2026 IDC MarketScape for Worldwide Modern Endpoint Security for Enterprises Vendor Assessment
- 16:31US states sue popular kitmaker TP-Link over China risks
- 16:31The October 2026 Root KSK Rollover: Is Your DNS Really Ready?
- 16:03Copy, Paste, Compromised: How ClickFix Attacks Work and How CrowdStrike Stops Them
- 16:03Malicious Spreadsheets Can Run Code Without Macro Warnings in LibreOffice, OpenOffice
- 16:02WorkNest Secure Achieves CREST STAR-FS Accreditation for Red Teaming
- 16:02The Pentagon Hopes to Speed Up ‘Kill Chain’ AI Buys With 5-Minute Videos
- 16:02PoeLLM Malware Infects 3,400+ Servers to Expand Crypto Mining Botnet
- 16:02Former Engineer Jailed for Ransomware-Style Cyberattack
- 16:02Cisco warns of critical flaws allowing Nexus switch takeover
- 16:02Part 1 – Cybersecurity journeys: I didn’t plan this
- 16:02Poetry is the new AI security threat as PoeLLM malware infects 3K+ servers
- 16:02China-linked malicious actors called out by UK and international partners for targeting sensitive data globally
- 16:02CrowdStrike Expands Federal SOC Modernization Through CISA-Funded SIEMaaS
- 16:02Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely
- 16:02Southern Company Discloses Data Breach Affecting 400,000 Georgia Power and Alabama Power Customers
- 16:02Ransomware has a new target. Is your backup ready?
- 16:01PoeLLM Campaign Compromises 3,400+ Servers for Crypto Mining
- 16:01PoeLLM malware infects exposed AI servers in cryptomining attacks
- 16:01MALFEX npm Campaign Uses Three Malware Delivery Chains
- 16:01Microsoft Outlook to block MSIX attachments starting November
- 16:00IT Security News Hourly Summary 2026-10-08 18h : 35 posts
- 15:32UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTML
- 15:32What the C-suite needs to know about AI governance
- 15:32PoeLLM malware has assembled a sweeping botnet, taking technical cues from a poem
- 15:32Cisco Patches a Dozen Critical Vulnerabilities
- 15:32FBI Dismantles Scam Center in Ghana and Seizes 300+ Devices in Operation Blackout
- 15:32Midnight Mimosa Malware Found Preinstalled on Low-Cost Android Phones
- 15:31Asos confirms breach of customer data after hackers send rogue app notification
- 15:31Rural Health Transformation Funding Can Strengthen Care and Cyber Resilience
- 15:31Fighting GenAI with GenAI: The New Email Security Landscape
- 15:31ASOS Confirms Unauthorised Hack Notification; Customer Data May Be Exposed
- 15:31ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms
- 15:31Co-Creator of Dark Web Marketplace “Empire Market” Sentenced to 40 Years in Prison
- 15:31FBI warns that FortiBleed credential-harvesting attacks are locking out firewall users
- 15:31Hackers Exploit Critical Citrix NetScaler Flaw to Deploy Web Shells and Steal Configuration Data
- 15:31Chrome Blocks Unauthorized Certificates After Three ccTLD Hijacks
- 15:31GhostAction Supply Chain Campaign Uses Malicious GitHub Actions to Steal CI/CD Credentials
- 15:31US Probes Cyberattack on Energy Tankers Over Possible Iran Ties
- 15:30GitHub AI Can Spot Passwords Hidden in Code Before Developers Push Them
- 15:03Power BI phishing campaign drops rogue ScreenConnect clients
- 15:03FortiBleed hit 86,000 firewalls by exploiting something nobody can patch away
- 15:02Uranium crypto exchange hacker convicted for stealing $53 million
- 15:02PoC Released for Critical LMCache Flaw Enabling Unauthenticated Remote Code Execution
- 15:02Cyber Briefing: 2026.10.07
- 15:02AWS’ support for Iceberg materialized views on Redshift could help lower analytics costs
- 15:02Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts
- 15:02Scans for Atlassian vulnerablity (CVE-2026-21589), (Wed, Oct 7th)
- 15:02OT Coalition Urges CISA to Mandate Federal OT Security
- 15:02Hackers Use Negative Hotel Reviews to Spread Malware That Hides C2 on Blockchain
- 15:02How to build an effective cybersecurity awareness program
- 15:02Hackers Allegedly Selling VirusTotal API Keys on the Dark Web
- 15:02OAuth grants pile up faster than you can review them. Here’s how to keep up.
- 15:02Hackers Use Web3 and Blockchain C2 to Hide Supply Chain Attacks Targeting Cloud Credentials
- 15:01Security Awareness Training Isn’t Dead, but It Needs a Rethink
- 15:01PoC Released for Zammad Session Leak Flaw Enabling Remote Code Execution
- 15:00IT Security News Hourly Summary 2026-10-08 17h : 15 posts
- 14:32Google issues Android security updates: who can get them and how
- 14:32ShinyHunters Extorted Boeing Spin-off Prior to Arrests
- 14:32Four compliance frameworks, one security team: Why fragmented university security raises regulatory risk
- 14:32FortiBleed Campaign Still Active, Locking Out Organizations
- 14:317 Best Solutions to Manage Shadow AI Across the Enterprise
- 14:31Attackers Hijack Three ccTLDs to Obtain Google Certificates
- 14:31Hackers Hijack Tensorlake Package to Spread Shai-Hulud Supply Chain Malware
- 14:31Global cyber attacks up 48% as ransomware and phishing climb, Check Point finds
- 14:31MonsterCloud Owner Charged With Secretly Paying Ransomware Demands
- 14:31Qilin Ransomware Suspect Arrested in Japan, Extradited to Germany
- 14:31Cyber Briefing: 2026.10.08
- 14:31ASOS Confirms Data Breach Linked to Stolen Employee Credentials
- 14:31CERT-UA: Fake Cloudflare Checks Deliver LunexStealer Malware
- 14:31Attackers Target Critical Atlassian Vulnerability Within Hours of PoC Publication
- 14:00IT Security News Hourly Summary 2026-10-08 16h : 39 posts
- 13:33Critical LMCache RCE Vulnerability Remains Unpatched, Public PoC Exploit Available
- 13:33Japan Arrests Suspected Qilin Ransomware Hacker, Extradites Him to Germany
- 13:33Europol and US Spending Watchdog Sound the Alarm Over Quantum Threats
- 13:33YouTubers targeted with fake sponsorships and “channel verification” phishing
- 13:32Hadrian Raises $40 Million to Expand Autonomous Offensive Security Platform
- 13:32Filigran announces speakers for first THREAD event
- 13:32The ASOS Incident: When Attackers Use the Channels Customers Trust
- 13:327 Best Agentic AI Tools for Penetration Testing in 2026
- 13:32Advantest confirms data stolen in ransomware attack
- 13:32September 2026 Cyber Threat Landscape: Global Attacks Jump 48% as Phishing and GenAI Data Exposure Rise
- 13:32PoC Exploit Released for Zammad Vulnerability Enabling Session Hijacking and Remote Code Execution
- 13:32Anthropic Launches Three-Tier Claude Cyber Access Program
- 13:32Japanase Media Company Nikkei Reveals Intrusions Attacking Users and Employees
- 13:31Musician sentenced for $10M streaming fraud
- 13:31Attackers Hide AI Prompt Injections Inside Phishing Emails
- 13:31Gartner Defines New ISOC Security Tool Category
- 13:31The trust gap that AI watermarking can’t close
- 13:31Chinese Hacker Uses AI in South Korean Bank Campaign
- 13:03CVE-2026-21589: Critical unauthenticated arbitrary file access in Atlassian products
- 13:03De Kalb County, Indiana fell prey to vendor impersonation billing
- 13:03From Automation to Infection (Part III): Naming, Measuring, and Detecting Malicious AI Agent Skills
- 13:03UAT-11985: AI-assisted AitM phishing targeting Taiwan
- 13:03SonicWall and Splunk Patch Critical Vulnerabilities
- 13:03Amazon has an uncomfortably personal profile on you
- 13:03Middle managers want tighter human oversight of AI than their bosses, TeamViewer research finds
- 13:03What Is Agentic Pentesting? What It Proves, and Where It Stops.
- 13:02Hackers exploit critical Atlassian flaw after public PoC release
- 13:02Russia-Aligned UAC-0099 Evolves MATCHBOIL Malware
- 13:02Authorities seize sites selling hacked, stolen intimate images of 17,000 women and girls
- 13:02It Wasn’t Me, It Was the AI Agent” May Not Avoid Liability Under New Senate Proposal
- 13:02Context Over Alerts: SOC Evolution Strategy
- 13:02US Seeks Alleged Chinese Hafnium Hacker With $10 Million Reward
- 13:02Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details
- 13:02Europol and US GAO Warn of Quantum Computing Threats
- 13:02SonicWall warns of max severity SSRF flaw in SMA1000 gateways
- 13:02Ransomware Recovery Scheme Nets $11M Markup
- 13:01Microsoft Teams to get support for third-party deepfake detection tools
- 13:01Oracle Health breach affects nearly 20M
- 13:00IT Security News Hourly Summary 2026-10-08 15h : 32 posts
- 12:32CrowdStrike Named a Leader in The Forrester Wave™: Proactive Security Platforms, Q3 2026
- 12:32Verify it, don’t assume it: why untested security controls are making life easy for attackers
- 12:31Telegram Account Behind ASOS Rogue Notification Tied to Gaming Trading
- 12:31AI-powered phishkit arms criminals with account-hijacking tools in 10 minutes
- 12:3116 Malicious Firefox Extensions Impersonate Crypto Wallets to Steal Seed Phrases and Private Keys
- 12:31KR: Coupang files lawsuits against 620 billion won fine over data leak
- 12:31FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials
- 12:31Encrypted instructions trick Copilot CLI into spilling developer secrets
- 12:31US government lagging in transition to post-quantum encryption, GAO finds
- 12:31Apple’s Verified Photography System
- 12:31Core to Cloud Appoints David Brown as Managing Director
- 12:31Alleged ATM malware creator appears in Nebraska court after arrest
- 12:31The Sixth Voice of the CISO Data Shows Cyber Risk Has Moved Inside the Workflow
- 12:04Another ShinyHunters suspect arrested
