197 posts published today
- 21:31TerminalFix: Fake Cloudflare CAPTCHA Campaign Deploys Reverse-Tunnel Backdoor
- 21:01Managing identity source transition for AWS IAM Identity Center
- 21:00IT Security News Hourly Summary 2026-09-02 23h : 5 posts
- 20:01WhatsApp Video Call Flaw Lets Anyone Bypass Your Android Lock Screen and View Your Photos
- 20:01CrowdStrike Disrupts Sality Botnet After More Than 20 Years
- 20:01It sure looks like hackers breached a major ID card verification service
- 20:01Five Men Tried to Make Kansas ATMs Spit Out Cash
- 20:00IT Security News Hourly Summary 2026-09-02 22h : 5 posts
- 19:31OpenLeash Adds a Human Check to Risky AI Agent Actions
- 19:3150 SOC Analyst Interview Questions and Answers (2026 Guide)
- 19:31Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
- 19:01Agentic security: Detection and response at machine speed
- 19:00IT Security News Hourly Summary 2026-09-02 21h : 13 posts
- 18:31ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074, (Mon, Aug 31st)
- 18:31AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit
- 18:31AI Agents Are Now Emailing Me with Their Security Concerns
- 18:31ShinyHunters claims another health giant breach, PaperCut rushes second emergency patch, US bans foreign grid tech
- 18:02Hackers Abuse Legitimate IT Management Tool to Sneak Into Business Networks
- 18:02Black Duck brings AI-powered vulnerability scanning into Claude with new Signal integration
- 18:02Wiz Finds Active LiteLLM and MCP Attacks Targeting AI Infrastructure
- 18:02New ‘Knight Office’ Phishing Kit Steals Microsoft 365 Logins Without Touching a Password
- 18:02Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
- 18:02KnowBe4 Names Kurt Mills as Channel Chief to Lead Next Phase of Partner-Led Growth
- 18:01Anthropic Tightens Claude Security After Agents Access Live Systems
- 18:01Fake Software Update Installs a Real Crypto Wallet – Rigged So It Can Never Open
- 18:00IT Security News Hourly Summary 2026-09-02 20h : 10 posts
- 17:31Hackers Target US and EU Firms With Microsoft 365 Session Hijacking and RMM Abuse
- 17:31Google Launches Gemini 3.8 Flash Cyber to Identify and Auto-Patch Security Vulnerabilities
- 17:31GitSpawn Flaws Let Malicious Repositories Execute Code in Claude Code, Codex, Cursor, and Grok
- 17:31Dropbox Says 5,000 Accounts Were Compromised Through Lenovo ID Authentication Flaw
- 17:31Firefox on iPhone Can Now Block Ads and Trackers Without Installing an Extension
- 17:02How to Write Bug Bounty Report That Gets Paid (2026)
- 17:02FBI Investigates Dark Web Service Offering 153 Million Driver’s Licenses
- 17:02Threat Intelligence: Definition, Benefits, and Use Cases
- 17:01Hackers Hijack BGP Routes to Deliver Malicious Virtualizor Update
- 17:00IT Security News Hourly Summary 2026-09-02 19h : 8 posts
- 16:31CrowdStrike Delivers the Next Evolution of the Agentic SOC
- 16:31Tech support scams look different now. Here’s what to watch for
- 16:31CrowdStrike Extends Endpoint Security to Stop Software Supply Chain Attacks
- 16:31SonicWall’s SMA1000 boxes under active attack again
- 16:31CrowdStrike Announces Agentic Identity Provider
- 16:01What If Your Idea Became the Next OffSec Lab?
- 16:01UK Moves to Block High-Risk Tech Suppliers From Critical Infrastructure
- 16:00IT Security News Hourly Summary 2026-09-02 18h : 16 posts
- 15:31Russian Man Extradited Over Malware Campaign Targeting Freelancers
- 15:31HiddenLayer nabs $100M as enterprises rush to secure their AI deployments
- 15:31Attackers Actively Exploiting Critical Vulnerability in Elementor Pro Plugin
- 15:31NSA Warning Exposes Common Router Security Risks
- 15:31SonicWall Patches Two New Actively Exploited Zero-Days in SMA 1000 VPNs
- 15:02Europol and European Labour Authority strengthen cooperation against labour exploitation
- 15:02Authorities Disrupted 20-Year-Old Sality Botnet Controlling 15,000+ Infected Systems
- 15:02Frontier AI helps exploit flaws in tests using key industrial devices
- 15:02BREEZE COMET Hackers Use AI-Assisted Malware to Target Brazil Banks for Fraudulent Transfers
- 15:02Your DNS Is Hiding in HTTPS — This Is Why It Matters
- 15:02Russian Hacker Indicted for Using Excel Malware to Target 80,000 Freelancers With TVRAT and DarkVNC
- 15:02Building Securely From Day One: Palo Alto Networks Partners with the Zendesk Startup Program
- 15:02Ransomware Hackers Use New TukTuk Malware to Steal Credentials and Disable Security Tools
- 15:01CISA scraps 6 free cybersecurity assessments for critical infrastructure operators
- 15:01Cleo Harmony Flaw Lets Remote Attackers Escalate Privileges via JWT Refresh Token
- 15:00IT Security News Hourly Summary 2026-09-02 17h : 10 posts
- 14:31Attackers Turn Langflow and Rails Flaws Into Entry Points for Credential Probing
- 14:31Malicious .git Configs Can Make Claude, Codex, Cursor, and Other AI Agents Run Attacker Code
- 14:31Legacy Lenovo login opens 5,000 Dropbox accounts to attackers
- 14:31Malicious Apache Modules Hijack Brazilian Government Site Traffic to Push Betting Pages
- 14:02Gambling Goblin Turns Brazilian Government Sites Into SEO Weapons
- 14:02Beyond Agent-Washing: The Engineering Principles Behind Production-Ready AI Agents
- 14:02Meta Ads Push StreamRat Android Trojan That Can Gain Near-Complete Device Control
- 14:02OpenAI’s Astra Crosses ‘Critical’ Cyber Threshold After Finding Zero-Days
- 14:01BGP Hijack Delivers Malicious Virtualizor Update That Establishes Persistent Root Access
- 14:00IT Security News Hourly Summary 2026-09-02 16h : 19 posts
- 13:32Nearly 22,000 Microsoft Exchange servers remain exposed to critical security flaw (CVE-2026-62911)
- 13:32Anthropic: Infostealer Malware Hacks Claude Sessions to Drain Consumption Usage
- 13:32Singularity Rootkit Bypasses Elastic Defend eBPF Module Load Detection
- 13:32Scammers are getting smarter about where they target you
- 13:32$536 and 8 Hours: AI Learns to Attack a Different PLC
- 13:32FreeRDP Fixes 22 Security Flaws and Urges Users to Update Immediately
- 13:31Norway considers ban on camera-enabled wearable ‘pervert glasses’
- 13:31AI Observability Must Evolve for the Agentic Era
- 13:31Download: The Agentic Software Development Guide
- 13:31Hackers Exploit LiteLLM Admin API Flaw to Steal Secrets and Target AI Gateway Servers
- 13:31255 Fake Accounts Used to Send Malicious Excel Files to 80,000 Freelancers
- 13:31Claude AI Builds Pre-Auth RCE Exploit for WAGO PLC to Execute ARM Shellcode Without Credentials
- 13:31Firefox for iPhone Adds Built-In Ad Blocker to Block Third-Party Ads and Trackers
- 13:31Palo Alto Networks Acquires Console to Build AI Agents for Autonomous Security Operations
- 13:02Exploitation of Sangoma Switchvox flaw is underway (CVE-2026-9586)
- 13:01Gambling Goblin: A Chinese-Speaking Actor Hijacks Brazilian Government Sites to Fuel a Global SEO Fraud Machine
- 13:01Claude AI Develops Working RCE Exploit Against WAGO PLC With Researcher Assistance
- 13:01Rockwell Automation Patches Over a Dozen Vulnerabilities Across Products
- 13:00IT Security News Hourly Summary 2026-09-02 15h : 9 posts
- 12:31How to Secure Enterprise AI: From Adoption to Incident Readiness
- 12:31153M+ driver’s licenses for sale on new dark web platform
- 12:31Exploit Published for Fresh Cleo Harmony Vulnerability
- 12:02Architectural intent is the cornerstone for the future of software security
- 12:02Hackers Exploit LiteLLM Admin API Flaw to Turn Read-Only Access Into Full Server Takeover
- 12:01Malicious Virtualizor Update Served via BGP Hijacking
- 12:01CrowdStrike Named Strongest Overall Leader in 2026 Frost Radar™: Cloud Workload Protection Platforms
- 12:01Anthropic Details Response to Security Incidents, Unveils Enterprise Safeguards
- 12:00IT Security News Hourly Summary 2026-09-02 14h : 12 posts
- 11:32Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain
- 11:31Palo Alto Networks Acquires Console to Add Agentic AI Workflows to Cortex
- 11:31Silver Fox-Linked Hackers Use Fake Software Installers to Disable Microsoft Defender and Compromise Windows Systems
- 11:31Attackers are going after prominent individuals through OAuth phishing, FBI warns
- 11:31Iran-linked APT Mirage Kitten Uses Fake Job Tests to Spread Malware
- 11:31Two critical Chrome flaws put users at risk on malicious websites
- 11:31The Gentlemen Ransomware Hackers Use TukTuk C2 to Steal Credentials and Disable EDR Security
- 11:31Hackers Pose as IT Support on Microsoft Teams to Take Remote Control of Windows PCs
- 11:31FreeRDP 3.31.0 Fixes 22 Security Flaws Including Heap Overflow and Pre-Auth DoS Bugs
- 11:01Nutex Health Says Patient Data Stolen, Hackers Threaten Leak
- 11:01OpenAI’s Astra Becomes First Model to Cross Critical Cybersecurity Threshold
- 11:00IT Security News Hourly Summary 2026-09-02 13h : 12 posts
- 10:31Researchers Take Down 20-Year-Old Russian Botnet
- 10:31Dark web site puts 153 million driver’s licenses and millions more IDs up for sale
- 10:31SonicWall SMA 1000 appliances under attack via zero-day flaws
- 10:31Secure Agent Harness Execution: Preventing Escape
- 10:31An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation
- 10:31Wireless Routers as Motion Detectors
- 10:02Critical SonicWall SMA 1000 Vulnerabilities Actively Exploited in the Wild
- 10:02August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415 CVEs
- 10:021-15 August 2026 Cyber Attacks Timeline Infographic
- 10:01UK cyber bill targets AI users, not the vendors building it
- 10:011-15 August 2026 Cyber Attacks Timeline
- 10:00IT Security News Hourly Summary 2026-09-02 12h : 19 posts
- 09:32Hackers Breach Brazilian Financial Firms and Execute Hundreds of Fraudulent Transactions
- 09:32GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends
- 09:31Your AI chats could be used in court
- 09:31Hackers Chain Two New SonicWall Zero-Day Vulnerabilities
- 09:31Critical HPE Fabric Composer Flaws Let Unauthenticated Attackers Execute Code and Take Over Systems
- 09:31Waymo, Zoox Expand Robotaxis To More Cities
- 09:31Manchester Airports Group – 8,728,451 breached accounts
- 09:31A battery storage cyberattack would look exactly like a badly tuned controller
- 09:31Chrome and Firefox Updates Patch Dozens of Vulnerabilities
- 09:31Extradited Russian Hacker Faces Charges Over Excel Malware Campaign That Infected Thousands
- 09:31Critical SonicWall Remote Code Execution Vulnerabilities Actively Exploited in Attacks
- 09:31EU Queries Publishers Over Google AI Opt-Out
- 09:0223-Year-Old Sality P2P Botnet Disrupted
- 09:02Global sinkhole operation ends Sality botnet’s 23-year run
- 09:02Google Patches 26 Chrome Vulnerabilities, Including Critical WebGL and Shared Tab Groups Flaws
- 09:02ChatGPT Faces Tougher EU Rules
- 09:02Global public-private operation disrupts Sality botnet active for two decades
- 09:01Critical HPE Fabric Composer Flaw Lets Unauthenticated Attackers Execute Commands as Privileged User
- 09:00IT Security News Hourly Summary 2026-09-02 11h : 16 posts
- 08:32FulcrumSec Claims Responsibility for Manchester Airport Group Breach
- 08:32Hackers Target Langflow in CVE-2026-0768 Attacks
- 08:32Hugging Face Transformers Flaw Writes Malicious Python Code to Disk Before User Consent
- 08:32Anthropic Revamps Pricing With Fable 5.1
- 08:32CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX
- 08:32Keepnet launches free SMS/Call Reporter for iOS
- 08:31There is no Zero Trust in Zero Trust
- 08:31Hackers Hide Reverse Shell Traffic Behind Signed Apps and AWS API Gateway
- 08:02Manus Resumes Independent Operations After Meta Split
- 08:02Hackers Hide a Full Remote Access Trojan Inside a Real Exodus Crypto Wallet
- 08:02Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another
- 08:02Hugging Face Flaw Lets Malicious AI Models Plant Python Code on User Systems
- 08:02Authorities Turn Sality’s P2P Network Against Itself, Cutting Off New Malware Payloads
- 08:01Google Fixes 26 Chrome Vulnerabilities, Including 2 Critical Use-After-Free Flaws
- 08:01Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials
- 08:00IT Security News Hourly Summary 2026-09-02 10h : 9 posts
- 07:31FTC Sues Amazon Over Ad Price ‘Manipulation’
- 07:31Fable 5.1 released, USPS “untested” IT, Exchange hijack vulnerability
- 07:31What is a brushing scam?
- 07:02DuckDB stays open source while the team behind it goes to work for Amazon
- 07:02Teaching AI to Reason Through Detection Triage
- 07:01Edge Case launches Guardian, an AI platform for tracking risk across autonomous systems
- 07:01Fake Microsoft Edge, Kaspersky and Razer Installers Used to Compromise Windows Systems
- 07:01Visa enhances A2A Protect to stop fraud before money leaves the account
- 07:00IT Security News Hourly Summary 2026-09-02 09h : 7 posts
- 06:31National Life Group CISO expects more vulnerabilities in six months than in thirty years
- 06:31Vali Cyber ZeroLock 5 brings MFA to the hypervisor command line
- 06:31F5 speeds up virtual patching to counter AI-driven threats
- 06:02OWASP Launches OASIS to Use AI and AppSec Experts to Fix Open-Source Vulnerabilities
- 06:01Scareware ads keep running on Google’s transparency tool, even after they’re reported
- 06:01OpenAI’s New Astra AI Can Discover Zero-Day Security Flaws and Build Exploits
- 06:00IT Security News Hourly Summary 2026-09-02 08h : 8 posts
- 05:31Trojanized Exodus Wallet Installer Deploys RAT to Steal Browser Credentials and Cookies
- 05:31Open-source secrets scanning tool Sift hunts credentials in Microsoft 365, Slack, and Jira
- 05:31SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks
- 05:02Bright Security Expands its AI SDLC security Platform & Launches an AI PT Module
- 05:02Critical Ruby on Rails Vulnerability Under Active Attack | CVE-2026-66066
- 05:01Anthropic’s Enterprise Frontier Safeguards lets your Claude logs stay in your cloud
- 05:01Anthropic Unveils Claude Fable 5.1 and Mythos 5.1 With Powerful Cybersecurity Capabilities
- 05:00IT Security News Hourly Summary 2026-09-02 07h : 3 posts
- 04:31OWASP Launches OASIS AI Initiative to Fix Open Source Vulnerabilities at Scale
- 04:31An AI CAPTCHA solver talked itself out of the right answer
- 04:31Anthropic Launches Claude Fable and Mythos 5.1 for Advanced Coding and Research
- 02:02ISC Stormcast For Wednesday, September 2nd, 2026 https://isc.sans.edu/podcastdetail/10078, (Wed, Sep 2nd)
- 01:0122,000 Exchange servers open to hijack, 700 rogue AI agents swarmed Hugging Face, AI threatens global finance
- 01:00IT Security News Hourly Summary 2026-09-02 03h : 5 posts
- 00:31Peer Pressure: Inside the Sality Botnet Disruption Operation
- 00:02Cops, CrowdStrike disrupt Sality botnet by poisoning the network and diverting into sinkholes
- 00:0278 arrests in bust of major Western Mediterranean smuggling network in Spain
- 00:01Counterfeit installers to system compromise: Tracking a deceptive software download campaign
- 00:00IT Security News Hourly Summary 2026-09-02 02h : 3 posts
- 23:31PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
- 23:01FBI Probes Service Selling 153M+ Drivers Licenses
- 23:00IT Security News Hourly Summary 2026-09-02 01h : 3 posts
- 22:02LLMs in Security Research – AI, Standards, and Why Evidence Still Matters
- 22:01Threats Making WAVs – Incident Response to a Cryptomining Attack