195 posts published today
- 21:31ShinyHunters Hacks FBI Jobs Portal, Claims It Stole Agents’ Data
- 21:02ShinyHunters Hacks FBI Jobs Portal, Claims Data on Nearly All FBI Agents
- 20:31Check Point Fixes a New Actively Exploited Critical Security Flaw
- 20:00IT Security News Hourly Summary 2026-09-22 22h : 5 posts
- 19:31Malicious npm Package Poses as Twilio Bug-Bounty Probe, Can Exfiltrate Credentials
- 19:31WordPress Issues Patch for Critical Flaw That Can Enable Code Execution on Some Servers
- 19:31Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks
- 19:02Hacking group ShinyHunters claims it breached the FBI, stole agents’ and applicants’ data
- 19:00IT Security News Hourly Summary 2026-09-22 21h : 8 posts
- 18:31Scaling SOC Capabilities: How Threat Intelligence Cuts Triage Time and Burnout
- 18:31Building a Secure MCP Server for File Processing: Auth, Rate Limiting, and Idempotency
- 18:31Check Point Management Server 0-Day Vulnerability Actively Exploited in Attacks
- 18:02Researcher Drops BigDiskBuster Zero-Day PoC That Blocks Microsoft Defender Updates
- 18:02Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials
- 18:01BigCommerce Data Stolen via Ribon Apps Hack
- 18:01Microsoft Takes Down EvilTokens Device-Code Phishing Service Tied to 12,000 Inbox Compromises
- 18:00IT Security News Hourly Summary 2026-09-22 20h : 6 posts
- 17:31ShinyHunters claims FBI hack: ‘This is NOT financially motivated’
- 17:31RatHat Android Malware Uses AI to Target Banking Credentials in Real Time
- 17:02Cyberattack Hits University of Munich, Exposing Student Data
- 17:02NightmareEclipse’s latest zero-day leaves Microsoft Defender stuck in the past
- 17:02Foreign Hackers Got Into Two Colorado Water Systems, Messed With Pump Controls and Killed the Alarms
- 17:00IT Security News Hourly Summary 2026-09-22 19h : 10 posts
- 16:31CAIRN – A New Tool to Track AI Malware That Operates Without Human Control
- 16:31Insurance sector begins to offer clarity on AI-related cyber claims
- 16:31Autonomous AI Agents Hack Retailers for $25 and Steal 600,000 Credit Cards
- 16:02MovieReaper Malware Uses The Odyssey Torrents to Infect Users Worldwide
- 16:02PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
- 16:02Z.ai says sorry for slurping up your code, open sources ZCode
- 16:02Stolen passwords are exposing America’s water providers to hackers
- 16:01Delivering FIDO Security Keys at Banking Scale: Simplify Distribution and Provisioning for Optimal Adoption
- 16:01Beyond Identity: Governing the Agentic Enterprise
- 16:00IT Security News Hourly Summary 2026-09-22 18h : 15 posts
- 15:31Some cheap smart glasses are a security disaster
- 15:31New TASK#STOMP Backdoor Uses PowerShell to Steal Documents and Wi-Fi Passwords
- 15:31Unmasking EvilTokens: Getting to the root of device code phishing
- 15:31UK cops arrest 2 EvilTokens suspects, Microsoft seizes 50 phishing kit websites
- 15:31Chaotic Eclipse Released BigDiskBuster, A PoC For Windows Defender Update DoS Zero-Day
- 15:31Two-week Europol task force identifies 18 sexually abused children worldwide
- 15:31Microsoft SharePoint Flaw Lets Attackers Execute Code Remotely With Low Privileges
- 15:02Inside a Malicious, Stealthy WordPress Must Use Plugin
- 15:02CrowdStrike Extends Endpoint Security to Stop Software Supply Chain Attacks
- 15:02Retailers tamp down shadow AI but struggle to oversee agentic sprawl
- 15:02The Truth about GET and HTTP Standards, (Tue, Sep 22nd)
- 15:02Linux Kernel Flaw (CVE-2026-89775): ARM64 KVM Guests Gain Host Read-Write
- 15:02STOMP Backdoor Uses PowerShell for Sensitive Data Theft
- 15:01Who signed off on that AI agent? Nobody? Thought so.
- 15:00IT Security News Hourly Summary 2026-09-22 17h : 25 posts
- 14:32TraderTraitor Mac Malware Targets IT Firm Through Weaponized Terraform Projects
- 14:32CrowdStrike Delivers the Next Evolution of the Agentic SOC
- 14:32Europol and European Labour Authority strengthen cooperation against labour exploitation
- 14:31Cyber Briefing: 2026.09.22
- 14:31Cyera Raises $400 Million at $12+ Billion Valuation
- 14:31For the first time, scientists watch sound jump between quantum states
- 14:31Chinese Hackers Exploit ZyXEL Switch Vulnerability
- 14:31CrowdStrike Announces Agentic Identity Provider
- 14:31Cyber Briefing: 2026.09.21
- 14:03Brief hijack makes Elsevier domains redirect to LAPSUS$ “Chapter II” page
- 14:03BambooToken Linux Backdoor Uses MQTT C2 to Execute Shell Commands and Exfiltrate Files
- 14:03Salt Security adds native AI detection and response to agentic security platform
- 14:03North Korean Attackers Hit 30,000 Devices and Steal $10.7m
- 14:03Malicious B-tree NPM Package Hides Malware
- 14:03Security Advisory – Action Required – Active Exploitation of CVE-2026-85102 and a Management Pre-Authentication Vulnerability CVE-2026-93616
- 14:03Researchers uncover malware that uses AI to choose its next move
- 14:03Red Hat OpenShift Flaw Lets Attackers Bypass PGP Checks and Push Malicious Releases
- 14:02Belgian Sports Federations Hit by Cyberattacks
- 14:02Only 13% of OT Network Segments Keep Operational Technology Isolated
- 14:02Gartner: 55% of VMware users will explore alternatives by 20
- 14:02Linux KVM/arm64 Vulnerability Lets Attackers Escape Virtual Machines and Gain Host Access
- 14:02British Columbia sues OpenAI over Tumbler Ridge shooting
- 14:02Veeam Agent Flaw Actively Exploited to Gain SYSTEM Privileges on Windows
- 14:02Amiga Unix gets modern revival with AI-assisted updates
- 14:00IT Security News Hourly Summary 2026-09-22 16h : 8 posts
- 13:32Aembit Launches Support for Okta Cross App Access, Extending Enterprise Identity Controls to AI Agents
- 13:31AI Incident Response Readiness Lags Behind AI Adoption, ISACA Finds
- 13:31New CVSS 10.0 VeloCloud Orchestrator Flaw Actively Exploited in Certificate-Based Setups
- 13:31Europol celebrates the International Day of Police Cooperation
- 13:31Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity
- 13:31LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)
- 13:31AI Agents Are Rewriting the Rules of Lateral Movement
- 13:00IT Security News Hourly Summary 2026-09-22 15h : 19 posts
- 12:32Only 13% of OT Network Segments Are Fully Isolated: Analysis
- 12:32Context Bombs Trick Autonomous Qwen AI Agents Into Stopping Cyberattacks
- 12:32Critical Linux KVM Flaw Enables Guest-to-Host Escape on ARM64 Systems
- 12:31GHAPPIER Supply Chain Attack Compromises 65 GitHub Repositories and Poisons npm Package
- 12:31The next intellectual property thief may sound like your CEO
- 12:31Hackers Exploit WordPress Flaws to Steal 18,566 Government Records and Plaintext Passwords
- 12:31Deepfake Phishing Attacks: Detection and Prevention Guide
- 12:31Hackers Clone Legitimate Websites to Silently Trigger Chrome and Windows Zero-Day Exploits
- 12:31The latest deepfake numbers give CISOs plenty to worry about
- 12:31Aikido Security Unveils Altar-1 Open-Weight AI for Cybersecurity Defense
- 12:02TASK#STOMP PowerShell Backdoor Steals Business Documents and Executes Remote Commands
- 12:02Network Segmentation Failures Are Expanding the Corporate Attack Surface
- 12:02Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers
- 12:02SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE
- 12:02Introducing Unit 42 Continuous Frontier AI Defense
- 12:02New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory
- 12:02Malicious B-tree NPM Package Accumulates Millions of Downloads
- 12:02DORA Year Two: Can Your SOC Actually See the Attack?
- 12:00IT Security News Hourly Summary 2026-09-22 14h : 15 posts
- 11:31Hackers Exploit Veeam Agent Vulnerability to Gain SYSTEM-Level Access on Windows
- 11:31Meta’s Muse AI assistant has a zero-day that can turn it into a Mac backdoor
- 11:31GPT-6 Astra Breaks an Old Enigma Message
- 11:31Public PoC Exposes Critical Veeam Agent Privilege Escalation
- 11:31New TASK#STOMP Windows Backdoor Enables Continuous Document Theft
- 11:31Red Hat OpenShift Flaw Lets Attackers Poison Disconnected Registries With Malicious Releases
- 11:02Andorran Police joins Europol’s secure communication network
- 11:02AI Drives Surge in Bot and API Threats
- 11:02How a Managed SOC works: What happens when a cyberattack begins?
- 11:02Critical MaxKB AI Agent Flaw Lets Prompt Injection Execute System Commands
- 11:02Attacker compromised nearly 1000 Zyxel switches since August (CVE-2026-7273)
- 11:02Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal
- 11:02Linux BambooToken Malware Uses MQTT C2 for Remote Shell Access and File Exfiltration
- 11:02Somewhere in your traffic logs, a bot is doing more than looking
- 11:00IT Security News Hourly Summary 2026-09-22 13h : 23 posts
- 10:32Rogue AI agents put trusted access under scrutiny
- 10:32WordPress Patches ‘Click2Shell’ Vulnerability
- 10:32Researchers used Claude to hack OpenAI
- 10:32U.S. CISA adds Zyxel flaw to its Known Exploited Vulnerabilities catalog
- 10:32A New Tool Found Malware That’s Guided by an AI Hive Mind—No Humans in Sight
- 10:31Top 10 Best Passwordless Authentication Solutions in 2026 [Ranked & Scored]
- 10:31North Korean Hackers Hide Mac Backdoors in Fake Terraform Job Tests
- 10:31Texas utility CenterPoint confirms breach after attacker leaks customer data
- 10:31CISA Warns of Zyxel GS1900 Switches Flaw Actively Exploited in Attacks
- 10:31Orkes Conductor RCE Draws Nearly 7,000 Exploit Attempts
- 10:31Top 10 Best Customer Identity & Access Management (CIAM) Solutions in 2026 [Ranked & Scored]
- 10:31Gemini crosses the line in cybersecurity test
- 10:31ZTE SmartLife Flaws Let Attackers Hijack Accounts by Resetting Passwords Without Verification
- 10:03Vidar Malware Rewrites Its Obfuscation With Every Build to Make Detection Harder
- 10:02CISOs Must Update Incident Response Playbooks for Multimodal Deepfakes, Gartner Warns
- 10:02Hackers Steal NTDS.dit to Dump Active Directory Password Hashes and Forge Golden Tickets
- 10:02The Closed Quorum: Inside the first reported autonomous AI C2 implant
- 10:02Top 10 Best Identity Threat Detection & Response (ITDR) Tools in 2026 [Ranked & Scored]
- 10:02LimeLeads – 17,838,396 breached accounts
- 10:02D-Link Router Hit by CVSS 10.0 Flaw Exploitable Remotely Without Authentication
- 10:02Introducing CAIRN: Frontier tracking for AI-integrated malware
- 10:02Windows COM Flaw Lets Attackers Gain SYSTEM Privileges With a Malicious DLL
- 10:00IT Security News Hourly Summary 2026-09-22 12h : 12 posts
- 09:31Developers Complain After Z.ai’s ZCode Sends Data To Cloud
- 09:31How to Use AI With Your Privacy Intact
- 09:31Chinese APT Clones Legitimate Websites to Deliver Chrome and Windows Zero-Day Exploits
- 09:31SideCopy Broadens India Targeting to Academia With ReverseRAT Spear-Phishing
- 09:31Hackers Abuse Stolen BigCommerce App Key to Steal Master of Malt Customer Data
- 09:02Scammers use genuine Google sign-ins to sell costly, unverified AI subscriptions
- 09:02D-Link DIR-822A Router Vulnerability Scores CVSS 10.0 With Public PoC Available
- 09:02Japan Dismantles First North Korean Laptop Farm as US and Allies Detail Wider Scheme
- 09:02Hackers Compromise 65 GitHub Repositories and Poison npm Package With Hidden Backdoor
- 09:02Belgium’s Aikido Releases Open-Weight AI Security Model
- 09:02CISA Flags Actively Exploited Flaw in Zyxel GS1900 Switches
- 09:00IT Security News Hourly Summary 2026-09-22 11h : 7 posts
- 08:31August 2026 Cyber Attacks Statistics Infographic
- 08:31Google Gemini AI Hacked Three Real Companies in CTF Test
- 08:31AI Chatbots Get Financial Queries Wrong ‘Most Of Time’
- 08:31The SMB cybersecurity squeeze: AI agents at work, old attacks in overdrive
- 08:31August 2026 Cyber Attacks Statistics
- 08:02Meta Challenges Online Safety Categorisation, In Latest Pushback
- 08:00IT Security News Hourly Summary 2026-09-22 10h : 13 posts
- 07:31Contagious Interview: 30,000 devices infected by a fake job interview
- 07:31ShinyHunters hijacks Clop, fake LastPass kills security tools, trusted npm release carries malware
- 07:31Amazon Blocks Meta’s Muse AI Bot From Consumer Platform
- 07:31CrowdStrike SafeMind: When the Best Offense Builds the Best Defense
- 07:02Microsoft to Disable SMS as Primary Entra ID Sign-In Method in 2027
- 07:02A cheap fake base station can still track 5G subscribers
- 07:02Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access
- 07:02Amazon Adds Moonshot’s Kimi K3 To Cloud Platform
- 07:02Windows 11 26H1 Security Update Expands Secure Boot Certificate Protection
- 07:02WordPress Comment2Shell Flaw Can Turn Anonymous Comment XSS Into RCE via Admin Session
- 07:02Hackers Exploit WordPress CVE-2026-63030 and CVE-2026-60137 to Steal Government Data
- 07:02One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor
- 07:00IT Security News Hourly Summary 2026-09-22 09h : 3 posts
- 06:31Ireland Fines Google €403m Over Location Tracking
- 06:02Vidar Uses Custom Bytecode Interpreter and ARX Stream Ciphers for Per-Build String Obfuscation
- 06:00IT Security News Hourly Summary 2026-09-22 08h : 8 posts
- 05:31Hackers Impersonate IT Help Desk on Microsoft Teams to Steal Windows Passwords
- 05:31One Stolen Active Directory File Can Expose Credentials for an Entire Windows Domain
- 05:31Passwork NIS2 efficiency guide: Save your team hours before the 2026 audit
- 05:31AWS Detects and Quarantines Exposed IAM Credentials in Public GitHub Repositories
- 05:02Meta’s Muse AI 0-Day Lets Hackers Hijack Dictation Traffic and Inject Malicious Prompts
- 05:02European AI spending is on track to reach nearly $470 billion by 2030
- 05:02Google Fined €403 Million for GDPR Violations Over Location Data Processing
- 05:00IT Security News Hourly Summary 2026-09-22 07h : 4 posts
- 04:31Cybersecurity jobs available right now: September 22, 2026
- 04:31Meta’s Muse AI Agent 0-Day Vulnerability Allows Attackers to Hijack the Tool and Inject Malware
- 04:02DavMail 7.0.0 puts most of its work into Microsoft Graph
- 04:02ISC Stormcast For Tuesday, September 22nd, 2026 https://isc.sans.edu/podcastdetail/10104, (Tue, Sep 22nd)
- 02:31US Proposes AI Incident Alert System in Talks With China, Bessent Says
- 00:31Using Paybis as a Crypto On-Ramp in 2026: Fees, Wallets and Checks
- 00:00IT Security News Hourly Summary 2026-09-22 02h : 6 posts
- 23:02China-Linked FamousSparrow Deploys SparroWocky Backdoor in Latin America
- 23:02Can Shiba Inu Reach $1 in 2026? The Math Behind the SHIB Dream
- 23:02Alexey Tulia at Tech Race Summit: how AI agents are changing engineering leadership
- 23:02Clop Ransomware Responds to ShinyHunters Amid Eight-Figure Demands
- 23:02Anthropic-linked CVEs pile up, attackers mostly shrug
- 23:02ClickFix Attacks Spread ChainScript RAT via Fake Spotify and Teams Installers
- 22:02PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
