200 posts published today
- 21:50IT Security News Weekly Summary October
- 21:32Apple patches CoreGraphics zero-day already exploited in targeted attacks
- 21:32Meta’s ex launches agent rival to Meta’s Muse
- 21:32NVIDIA Unveils Layered Security Architecture for AI Agents
- 21:32Hacks of 2 federal agencies in a month have spilled a bonanza of sensitive data
- 21:32SASE in the AI Era: Why Secure Global Connectivity Matters More Than Ever
- 21:32Reco raises $55M as AI agent security startups crowd the market
- 21:32Cyber Briefing: 2026.09.29
- 21:32GAO report spotlights industry’s concerns about overlapping cybersecurity regulations
- 21:31Microsoft Warns NeedyMantis Malware Enables Persistent Network Access
- 21:31Scans for Wordfence Protected Websites, (Tue, Sep 29th)
- 21:31Russian hackers Star Blizzard expand targeting, change up tactics to reach Ukraine and beyond
- 21:31AI agents hacked the hackers, stealing email addresses from security research org
- 21:31Nvidia releases Open Agent Safety Platform to monitor and govern agentic AI
- 21:31DC Health Agency Data Exposure Affects Nearly 400,000 Medicaid Beneficiaries
- 21:31RatHat’s Evolving C2 Panel Points to Malware-as-a-Service Model
- 21:31OpenAI benches GPT-6.1 Astra for overstepping the mark
- 21:31What happens when the cloud blows up?
- 21:31NeedyMantis Malware Expands the Post-Compromise Threat Landscape
- 21:31Amazon Bedrock AgentCore Flaws Could Expose AWS Credentials
- 21:03Dual NetScaler Zero-Days Trigger Chaos for Citrix Customers
- 21:03Dutch Police Arrest Hacker in ShinyHunters Case
- 21:02Meta’s Muse sent a Facebook Marketplace buyer to a seller’s home
- 21:02Microsoft says threat actors are ahead in the early AI race
- 21:02Someone Clicked the Link. Is Your Security Team Ready?
- 21:02Scaling with Purpose: Akamai’s Pursuit of ISO 50001 for Energy Management
- 21:02US is looking to weave AI into critical infrastructure for cybersecurity, national cyber director says
- 21:02Microsoft, Google back Apache Ossie to make enterprise data and AI platforms more interoperable
- 21:02OpenAI apologizes to Australia after its AI agents breached government sites
- 21:02Microsoft expands Fabric to 425K Power BI users
- 21:02Kiteworks patches max severity code injection vulnerability
- 21:02Alleged ShinyHunters leader arrested in the Netherlands
- 21:02Why faster AI coding can mean harder engineering
- 21:01Autonomous AI agents tried to hack US, Canadian government websites
- 21:01Kiteworks lifts shutdown advisory after ‘credible threat intelligence’ from federal authorities
- 21:01OpenAI pulls the plug on GPT 6.1 Astra as agents keep crossing lines
- 21:01Police dismantle KillSec ransomware gang allegedly led by 16-year-old
- 21:01Attackers exploited Citrix NetScaler zero-day for at least three weeks undetected
- 21:01AMD agrees to buy World Labs to fill out its AI stack
- 21:01The Day-One Hole in Zero Trust Architecture
- 21:00IT Security News Hourly Summary 2026-10-01 23h : 32 posts
- 20:32Unsloth Studio Flaw Turns Routine Model Inspection Into Code Execution
- 20:32Cloudflare plans to issue quantum-safe TLS certificates
- 20:32National cyber director: Government-industry collaboration vital to managing AI risks, competition with nations
- 20:32Proton Extends Easy Switch to Microsoft 365
- 20:32AI cuts software developers some slack
- 20:32‘NeedyMantis’ Provides Long-Term Access to Compromised Networks
- 20:32Attackers have been exploiting critical Zimbra flaw to steal emails
- 20:32OpenAI reveals ‘novel’ encryption bypass used in distillation attack
- 20:32Japanese Railway Operators Hit with Cyber Attacks
- 20:31Meta’s next big AI bet is enterprise; its biggest hurdle may be trust
- 20:31Cloudflare Announces Public Certificate Authority for the Post-Quantum Web
- 20:31Authorities seize KillSec extortion group infrastructure, arrest 3 alleged members
- 20:31ShinyHunters expands Oracle PeopleSoft campaign
- 20:31Observability for AI-native systems: New SLIs beyond latency and error rate
- 20:31South Africa Seeks Help After Cyberattack Targets Air Traffic Control
- 20:31AI policy circles targeted in China-linked phishing operation
- 20:31Validating AI models and agents with property-based testing
- 20:31Apple Zero-Day Vulnerability Weaponized in Targeted Attacks
- 20:31WaterISAC reckons with range of threats after summer of cyberattacks
- 20:31Unsloth’s model picker had a code-execution problem
- 20:02As AI Reshapes the SOC Career Ladder, Satisfaction Rises for 91%, but Entry Gets Harder for Nearly Half
- 20:02KillSec Ransomware Group Dismantled, 16-Year-Old Suspected Admin Arrested
- 20:02Gossips on Cryptography: Part 4
- 20:02The dream of enterprise semantics: Why this time is different
- 20:02Malicious Custom GPTs Turn ChatGPT Into RAT Delivery Lure
- 20:01Google makes Gemini 4 AI model available to a trusted few
- 20:01Warlock Ransomware Hits Large Spanish, Portuguese Orgs
- 20:01OpenAI bets enterprises are ready to delegate real work to autonomous agents
- 20:01Russia’s Star Blizzard Ditches ClickFix to Widen Phishing Net
- 20:01Microsoft doubles down on Rust
- 20:01Trump, Tech Giants Strike Voluntary AI Safety Accord
- 20:01Stack Overflow expands Stack Internal to give AI agents ‘trusted’ enterprise knowledge
- 19:01OpenAI cuts ties with 3 safety researchers, WSJ reports
- 19:00IT Security News Hourly Summary 2026-10-01 21h : 12 posts
- 18:31Zero Trust Creator Says Model Holds Firm Against AI-Assisted Attacks
- 18:31Former X-Force hackers chase the offensive cyber gold rush
- 18:31Using Device Linking to Eavesdrop on WhatsApp and Signal
- 18:31Wordfence Intelligence Weekly WordPress Vulnerability Report (September 21, 2026 to September 27, 2026)
- 18:31FTC Investigating OpenAI, Anthropic and Other AI Models Over Potential Risks to Customers
- 18:31Operation KillSwitch: Police Dismantle KillSec Ransomware Group
- 18:31Experience What It’s Like to Travel in the Occupied West Bank
- 18:02Proton brings Microsoft 365 to Easy Switch for Business as security leaders weigh US ‘kill switch’ risk
- 18:01Fake iPhone Duo preorder scam triggers DarkSword attack
- 18:01Give yourself room to be human
- 18:01Update your iPhone, iPad, or Mac: Flaw could run attackers’ code
- 18:00IT Security News Hourly Summary 2026-10-01 20h : 16 posts
- 17:31Fake xStocks, Pendle, and other sites bait crypto users with rewards votes
- 17:31EU’s hodgepodge tech policy exposes members to Chinese vendor risks, says think tank
- 17:31OperTraitors: How Kubernetes Operators Betray Your Security Posture
- 17:31Osavul Lands $10 Million to Spot Hostile Intent Across Cyber, Physical Domains
- 17:31CrowdStrike Named a Leader in The Forrester Wave™: Proactive Security Platforms, Q3 2026
- 17:31Cyber Resilience Act Single Reporting Platform (CRA-SRP) obligations for software companies selling globally
- 17:02Japanese Railway Operators Hit with Weekend Cyber Attacks
- 17:02Police Arrest 16-Year-Old Suspected of Running KillSec, Seize Ransomware Leak Site and Servers
- 17:02Suspected Chinese spies spoofed an Anthropic exec, ex-White House official in AI phishing
- 17:02Hackers Built a Windows Backdoor Whose Entire C2 Lives Inside Microsoft 365
- 17:02California governor vetoes bill banning use of ‘pervert glasses’ to secretly record people
- 17:02Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation
- 17:0216-year-old Alleged KillSec Ransomware Group Leader Arrested, Servers Dismantled
- 17:01ThreatsDay: AI-Powered Zero-Day Chain, 543K Live Secrets, Model Inspection RCE and 13 More Stories
- 17:01Fake Zoom Installer Tricks Mac Users Into Installing New CloudSyncD Backdoor
- 17:00IT Security News Hourly Summary 2026-10-01 19h : 12 posts
- 16:31Humans are reviewing Copilot users’ bizarre and abusive image-editing requests
- 16:31Kiteworks Urges Customers to Restart Systems After Shutdown Notice
- 16:31The 6 Best VPN for Streaming Compared: Key Features + Pricing
- 16:31Securing the keys to the kingdom: Announcing Executive Threat Detection
- 16:02New CloudSyncD macOS Backdoor Uses Fake Zoom Installer to Steal Passwords
- 16:02September 2026 Cyber Attacks Timeline
- 16:02Researchers Discover Exploit Kit Targeting iPhones in Mobile Malware
- 16:02CrowdStrike SafeMind: When the Best Offense Builds the Best Defense
- 16:02AI Safety Concerns Put OpenAI and Anthropic Under FTC Scrutiny
- 16:01Are Passphrases Still Secure in the Age of AI?
- 16:01Half a Million GitHub Credentials Are Still Active, Most Have Been Sitting in the Open for Years
- 16:00IT Security News Hourly Summary 2026-10-01 18h : 29 posts
- 15:32Building a Security-First Culture for an Accelerating Threat Landscape
- 15:32GPT-6 Astra goes off script, ShinyHunters suspect arrested, Nvidia corrals rogue AI agents
- 15:32Why OT Resilience Is Now a Boardroom Imperative
- 15:32AI Security Testing: How to Red Team an LLM Application
- 15:31SOC staffers generally pleased with AI’s impact, but worries remain
- 15:31Warlock Ransomware Exploiting SharePoint Flaws to Attack Water and Telecom Operators
- 15:31Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
- 15:31OpenAI Cancels Model Release Over Security Concerns
- 15:31Chinese Hackers Posing as Senior Anthropic Employee Targeting US AI Policy Experts
- 15:31OpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized Actions
- 15:31OpenAI Agent Hacks Australian Government Website
- 15:31OpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External Chatbot
- 15:03Observability’s AI Moment
- 15:03Preparing governments for an era of interconnected cyber risk
- 15:03OpenAI’s dirty deeds Down Under included security bypass attempts, using exposed keys, source code siphon
- 15:03Enterprises Struggle to Prepare for AI and Quantum Threats, PwC Says
- 15:03ISC Stormcast For Tuesday, September 29th, 2026 https://isc.sans.edu/podcastdetail/10114, (Tue, Sep 29th)
- 15:02CrowdStrike Named a Leader in The Forrester Wave™: External Threat Intelligence Service Providers, Q3 2026
- 15:02French Tax Data Theft: Threat Actors Steal Password and Remain Undetected
- 15:02WordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared Memory
- 15:02Introducing CLARA Agent: Instant Cloud & AI Risk Insights Available on Google Cloud Gemini Enterprise
- 15:02Insights from the 2026 Microsoft Digital Defense Report
- 15:02Microsoft catches hackers exploiting Zimbra bug before disclosure
- 15:02Hacker Conversations: Rob Juncker, a Knock at the Door and a Moral Compass
- 15:02PLEASE_READ_ME: The Opportunistic Ransomware Devastating MySQL Servers
- 15:01Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Campaigns
- 15:01“SASE Gateway” provided by KDDI : How SP Interconnect Simplifies Closed Network Zero Trust
- 15:01The Nansh0u Campaign – Hackers Arsenal Grows Stronger
- 15:00IT Security News Hourly Summary 2026-10-01 17h : 32 posts
- 14:33Police Shut Down KillSec Ransomware, Identify Alleged Teen Leader
- 14:32Shadow AI explained: The work shortcut that could leak your company’s secrets
- 14:32This new qubit could be 100 times less error-prone in superfluid quantum computer breakthrough
- 14:32Why Mobile Device Management Needs Its Own Threat Model
- 14:32A Win for Defenders: CrowdStrike and NVIDIA Extend Security Across the AI Stack
- 14:32MI5 warns UK academics their research may have helped Chinese spies
- 14:32Critical Cisco Catalyst SD-WAN Zero-Day Under Active Exploitation
- 14:32Cyber Briefing: 2026.10.01
- 14:32Microsoft Enables Windows 11 Backup Setting by Default for Organizations
- 14:32Inside Gemini 4 Argon, the model Google is testing on its own infrastructure first
- 14:32Hackers Abuse Microsoft Defender Exclusions to Hide Malware From Antivirus Scans
- 14:31Caltech physicists finally measure a quantum energy ladder predicted 40 years ago
- 14:31Axios HTTP/2 Flaws Enable SSRF Control Bypass and Node.js Denial of Service
- 14:31Threats Making WAVs – Incident Response to a Cryptomining Attack
- 14:31WordPress Malware Comes Back After Removal Using a Self-Healing Backdoor
- 14:31The Oracle of Delphi Will Steal Your Credentials
- 14:31Node.js ImageResponse Implementation Vulnerability Enables Remote Code Execution
- 14:02China-Linked Hackers Impersonate AI Experts to Target US Policy Insiders
- 14:02Seven arrests in Brazil during crackdown on South America-Europe cocaine pipeline
- 14:02RMM abuse behind 45% of endpoint incidents as Huntress publishes inaugural Tragic Quadrant
- 14:02Your Cloud Diagram Is Already Out of Date: An Operating Model for Continuous Security Architecture
- 14:02Exabeam brings AI-assisted security investigations to data that must stay on-premises
- 14:02CISO thought he had a ‘r3@lg00dp@$$w0rd’ but forgot to patch
- 14:02LLM Pen Testing: Harness Matters More Than Model
- 14:02CloudSyncD MacOS Backdoor Hides Behind Fake Zoom Installer
- 14:02RadarFirst helps teams investigate AI bias, data exposure and unintended actions
- 14:02Pentagon breach exposes 2.76M SSNs, military records
- 14:02DeepKeep’s AI Lens flags coding agent data leaks and routes destructive commands for approval
- 14:01Microsoft enables Windows settings backup by default
- 14:0116-year-old suspected leader of KillSec ransomware group arrested
- 14:01Treasury Blacklists ATM Malware Developer
- 14:00IT Security News Hourly Summary 2026-10-01 16h : 11 posts
- 13:32Legit Security extends automated fixes to vulnerable open-source dependencies
- 13:32AI Has Changed Attack Speed, Not Security Fundamentals
- 13:32Underground Crypto-Stealing Operation Drains $100K
- 13:32Teenager suspected of leading KillSec ransomware group as law enforcement seizes servers and leak site
- 13:31Next.js ImageResponse Vulnerability Lets Remote Attackers Execute Code Through SVG Content
- 13:31Sophos uses agentic AI to show businesses which security fixes deserve funding
- 13:31Star Blizzard APT Uses RedFlick Chain
- 13:31TerminalFix Attacks Deploy Lorem Ipsum Loader to Create Covert Tunnels Into Corporate Networks
- 13:31AI agent used Zammad zero-days to breach Dutch vulnerability disclosure non-profit
- 13:01Zimbra Vulnerability Exploited in the Wild Prior to Public Disclosure
- 13:00IT Security News Hourly Summary 2026-10-01 15h : 14 posts
- 12:31New PS5 Relapse Exploit Breaks Into the Kernel Across Years of Firmware Releases
- 12:31MetaMask Security Incident Affecting Parts of Infrastructure
- 12:31How Financial Services Companies Can Modernize Their Software Supply Chain
- 12:31Researchers Use New CPU Attack to Steal Linux Root Password Hash From Memory
- 12:31Public PoC Released for Apple CoreGraphics Zero-Day CVE-2026-86950
- 12:31ModSecurity Vulnerabilities Let Attackers Bypass Web Application Firewall Protections
- 12:31Pentagon breach exposes personal data of more than 3 million people
- 12:31Hackers Exploit Zimbra Mail Servers With Crafted Emails to Gain Remote Access
- 12:02England’s schools are getting better at mopping up cyber incidents
- 12:02This month in security with Tony Anscombe – September 2026 edition
- 12:01Axios Flaws Let Attackers Bypass Proxy Controls and Trigger SSRF Attacks
- 12:01Kevin Mandia’s Armadin Raises $255 Million at $2.5 Billion Valuation
- 12:01China-Nexus Hackers Compromise 350 Systems Across Asia With New Antino Backdoor
