200 posts published today
- 21:31Friday Squid Blogging: EU is Trying to Fight Unregulated Squid Fishing
- 21:31MI5 Warns Over 100 Academics Helped China’s Espionage Plans
- 21:31Losing gamblers pushed to bet more by DraftKings’ AI, report says
- 21:01AI Agent Chains Zammad Zero-Days To Take Over DIVD Systems in Seconds
- 21:01RemoteThreat Bets Security Teams Need to Test What Happens After Defenses Fail
- 21:00IT Security News Hourly Summary 2026-10-02 23h : 4 posts
- 20:31Detecting Host Header Injection & Open Redirects
- 20:01Frontline Education breach exposes school district employee data
- 20:01ICE Has Been Dumping Protester Photos Into a Palantir Database
- 20:00IT Security News Hourly Summary 2026-10-02 22h : 11 posts
- 19:31Gemini 4 enters the ring, MI5 flags research ties, Custom GPTs deliver malware
- 19:31Apple CoreGraphics PoC Emerges as WhatsApp PDF Checks Hint at Possible Delivery Path
- 19:31‘North Korean’ Attackers Steal $387.5m From Bitget
- 19:31Halfway is No Way: Why DSPM Fails if it Can Detect, But Not Respond
- 19:01Sydney Data Centre Plan Withdrawn After Protests
- 19:01Warlock ransomware breach SharePoint in water, telecom operator attacks
- 19:01What enterprises need to know about the Cyber Resilience Act and software supply chain risk
- 19:01Bitget Confirms Third-Party Zero-Day Behind $387.5 Million Cryptocurrency Theft
- 19:01ScreenConnect Client (Ab)used by Attackers, (Thu, Oct 1st)
- 19:01What enterprises need to know about the software they depend on
- 19:00IT Security News Hourly Summary 2026-10-02 21h : 10 posts
- 18:31Apple says it’s tightening macOS ‘Full Disk Access’ controls due to new risks from AI agents
- 18:31Fire That Killed Four Linked To Lithium-Ion Battery
- 18:31MetaMask Security Incident Prompts Exit of Affected Ethereum Validators
- 18:31Most Enterprises Are Unprepared for AI and Quantum Threats, PwC Survey Finds
- 18:01Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes
- 18:01OpenAI alerts 100+ orgs that its ‘misaligned models’ attempted to break in – or worse
- 18:01GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers
- 18:01The legal questions raised by agentic AI hacks
- 18:01Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign
- 18:00IT Security News Hourly Summary 2026-10-02 20h : 7 posts
- 17:31Kiteworks & Citrix Incidents Show Challenges of Zero-Day Response
- 17:31Citrix NetScaler Post-Exploitation Payload Creates Superuser, Maps Web Shell to CSS-Like URLs
- 17:01ISC Stormcast For Thursday, October 1st, 2026 https://isc.sans.edu/podcastdetail/10118, (Thu, Oct 1st)
- 17:01Exabeam Pushes The “Agentic SOC” Into The Cloud And On-Premises, With Analysts Kept In The Loop
- 17:01GitLab warns of critical RCE vulnerability in AI Gateway service
- 17:01New Mexico Jury Finds Facebook Violated Consumer Protection Law More Than 43 Million Times
- 17:00IT Security News Hourly Summary 2026-10-02 19h : 16 posts
- 16:31Defending against AI-fueled cyberattacks requires focus on identity, data governance, Microsoft says
- 16:31Threat Brief: NetScaler Zero Days CVE-2026-88771 and CVE-2026-88772 Exploited in the Wild (Updated September 30)
- 16:31Is Your Organization Ready for 2027’s AI Accountability Era?
- 16:31Irony alert: OpenAI whines that Chinese model stole its special IP that it stole from everybody else
- 16:31Meta AI Shares Seller’s Address: Facebook Marketplace Buyer Shows Up at His Home
- 16:31Internet Society Launches Global Online Trust and Safety Hub as Part of Its Safer Internet Initiative
- 16:31SWIFT Banking & Government Middleware Enables RCE
- 16:02US sanctions Tren de Aragua gang members in ATM hacks crackdown
- 16:01Secure what’s next: Your guide to Microsoft Security at Microsoft Ignite 2026
- 16:01Is It Fair to Blame ‘Rogue’ AI for Security Failures?
- 16:01MALFEX npm Attack Spreads Windows RAT, Steals Discord and Browser Data
- 16:01WatchGuard fixes critical Fireware OS flaw allowing remote code execution
- 16:01Fortinet warns that critical flaw in FortiMail is facing exploitation
- 16:01Automakers Face Scrutiny Over Connected-Car Data Sharing
- 16:01State-linked actor targets US AI policy experts in credential phishing campaigns
- 16:00IT Security News Hourly Summary 2026-10-02 18h : 29 posts
- 15:31Medela – 423,947 breached accounts
- 15:31Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval
- 15:31National cyber director defends private-sector hacking program, urges focus on security basics
- 15:31Hackers stole millions of US military personnel records during months-long data breach
- 15:31Google Introduces Gemini 4 Argon With Guardrail-Free Access for Defenders
- 15:31When Productivity Extensions Become Attack Platforms
- 15:31The Silent Container Death: A TCP Dial That Never Times Out
- 15:31FTC Probes OpenAI, Anthropic as AI Agent Safety Risks Draw Scrutiny
- 15:04In Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI Chats
- 15:04Exposed WordPress Backups Became a Gold Mine of AWS and Email Credentials
- 15:04Pentagon Confirms Breached 3 Million DMDC Personnel Database
- 15:04Unidentified Flock Cameras in Florida
- 15:03Attackers Exploit Zimbra Flaw to Deploy Web Shells and Harvest Authentication Secrets
- 15:03Meta disputes claim that Muse read a user’s private messages without permission
- 15:03Attacker signs up as a member to plant webshells on parks and recreation platform, hunts for card data
- 15:03101 Malicious npm Packages Secretly Enroll Developers into WhatsApp Spam Channels
- 15:0316-year-old researcher found a Microsoft bug, got admin access to databases with 17.3 trillion rows
- 15:02AI Agents Attempt SQL Injection While Searching Government Data
- 15:02iPhone Security Warning: Apple Says iOS 26 Flaw May Have Been Exploited
- 15:02Hackers steal protective order and foster care records from Arizona courts
- 15:02Global Group Ransomware Abuses WinMerge to Deploy Encryptor
- 15:02The EDR blind spot: 3 ways browser attacks evade endpoint telemetry
- 15:02Mass exploitation of Citrix NetScaler: What we currently know
- 15:01Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Attacks
- 15:01Ship fast, verify independently: keeping application security in step with AI-written code
- 15:0184% of Indian SMEs Plan Higher Cybersecurity Spending as Readiness Gaps Remain
- 15:01OpenAI’s wandering AI agents earn it a California subpoena
- 15:01Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures
- 15:00IT Security News Hourly Summary 2026-10-02 17h : 30 posts
- 14:33Vulnerability Backlogs Are an Ownership Problem
- 14:32Oxygen Forensics, A Russian-run forensics firm spent a decade inside European police departments
- 14:32Legit Security launches agentic remediation for open-source dependency vulnerabilities
- 14:32Opsec Fail Leaks a Rare Look Inside a Media-Buy-Powered Scam Operation
- 14:32MetaMask Takes Precautionary Action After Infrastructure Security Incident
- 14:32Microsoft: AI Cuts Post-Compromise Attack Time to Minutes
- 14:32Unauthenticated command injection on internet-facing mail servers: tracking CVE-2026-73570
- 14:32Cyber Briefing: 2026.10.02
- 14:32Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager
- 14:32Six arrests for smuggling migrants via Schengen airports
- 14:31IBM’s Bob wants to move in: Agent available for on-prem deployment
- 14:31Hackers Turned a Microsoft SQL Server Into a Command and Data Exfiltration Channel
- 14:31MCP Python SDK Flaw Exposes OAuth Credentials
- 14:31Critical Red Hat Satellite Flaw Could Enable Root Password Theft and Code Execution Attacks
- 14:31Chrome, Firefox Updates Patch Over 100 Vulnerabilities
- 14:31Hackers Poison Trusted Software Updates to Steal Developer and Cloud Credentials
- 14:31Federal Agencies Disrupt Ransomware Gang Involving A 16-Year Old Member
- 14:31Multiple Cpanel/WHM Vulnerabilities Allow Arbitrary Command Execution On Server
- 14:31Cyber Briefing: 2026.09.30
- 14:31OpenClaw Launches Free Open-source Enterprise Agent Platform for AI Agents
- 14:02Oracle launches Fusion Claw AI agentic runtime
- 14:02Jailbreaking AI: What It Is and Why It Matters for Security
- 14:02AI Coding Agents Leak 13K Internal Images on GitHub
- 14:01Sony PS5 Relapse Jailbreak Exploit Uses JSC Memory Corruption and Kernel UAF
- 14:01Signal adds encrypted backups, cross-platform restore
- 14:01Cybercriminals Misuse ChatGPT Custom GPTs in ClickFix RAT Attacks
- 14:01Shadow AI governance creates security gaps
- 14:01AI-Found Vulnerabilities More Likely to Enable RCE, Google Says
- 14:01EU CRA requirements for containers and Kubernetes
- 14:00IT Security News Hourly Summary 2026-10-02 16h : 31 posts
- 13:32Crypto Scammers Hijack Microsoft’s Official X Account
- 13:32Shadow AI and the permissions problem: what to check before handing AI the keys
- 13:32AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub
- 13:32macOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD Backdoor
- 13:31Convincing Free Mobile phishing emails appear after data breach
- 13:31AI Boosts SOC Analyst Capacity but Limits Skill Development
- 13:31Don’t Make It Easy For Them: Cybersecurity Awareness Month 2026
- 13:31Medical records giant Epic pauses product development to fix security bugs that risk patients’ data
- 13:31EU Cyber Resilience Act eliminates manual vulnerability triage
- 13:31CyberASAP Celebrates 10th Anniversary with Special Event Exploring Future of UK Cyber Security Innovation
- 13:31Google Launches Gemini 4 Argon AI Model
- 13:31Know Your Enemy: Browser-Based Attack Techniques in 2026
- 13:31Healthcare Providers Settle Pixel Tracking Lawsuits
- 13:31Trump, Six AI Giants Sign ‘Super Intelligence’ Safety Accord
- 13:31Iranian State Hacker Extradited to US
- 13:02OpenAI Parts Ways With Three Safety Researchers Over Sensitive Information Mishandling
- 13:02Safari History Database Tags Can Reveal Users’ Browsing Themes in Forensic Investigations
- 13:02Dell asks admins to patch max severity CSM flaws as soon as possible
- 13:02Safari History Database Tags Can Reveal What Users Were Browsing on macOS
- 13:02Your car’s app could be telling Big Tech who you are and where you go
- 13:02Continuous Penetration Testing: Why Annual Pen Tests Are a Compliance Checkbox, Not a Security Strategy
- 13:02Attackers Combine ChatGPT Feature Abuse With ClickFix to Deliver Trojan Malware
- 13:02AI is giving attackers a head start, Microsoft warns
- 13:02CrowdStrike Accelerates Real-Time Data Classification with On-Device AI
- 13:02EU law enforcement chiefs gather to discuss new challenges in EU security
- 13:01Malicious Linux Implants Mimic Asian Mail Security Products
- 13:01US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access
- 13:01Cybersecurity Awareness Month: AI agents are users too, and they need governing like it
- 13:01Zammad Vulnerabilities Let Attackers Execute Code and Escalate Privileges to Root
- 13:01AI Is Making Software Cheaper to Attack. Defenders Need to Change the Price
- 13:00IT Security News Hourly Summary 2026-10-02 15h : 16 posts
- 12:32Sony Rolls Out PS5 Security Update Following the Release of Relapse Jailbreak
- 12:31How much does the average UK SME spend on cybersecurity each year?
- 12:31I Want Better Reporting on AI Genie Behavior
- 12:31Zammad 0-Day Vulnerabilities Exploited to Gain Remote Code Execution and Root Access
- 12:31Amazon Prime Phishing Scam Uses Fake Billing Alert to Steal Logins and Card Details
- 12:31Free iCloud Account Could Let Attackers Spoof Any @icloud.com Address and Pass Email Security Checks
- 12:31How Is AI Improving These 3 Tech Sectors?
- 12:31Critical Capacitor Flaw Lets Malicious Links Access App Data and Native Features
- 12:31367,000-Ship Study Finds Global GPS Spoofing, Red Sea Activity Before Grounding
- 12:31Session Cookie Vulnerability Lets Attackers Bypass Entra ID MFA and Impersonate Users
- 12:01Exposed Hacker Server Reveals Toolkit Used in Viva Aerobus-Linked Intrusion
- 12:01Why CISOs Struggle to Answer the Board’s Three Hardest Questions, and How to Fix the Report
- 12:01More than half of UK businesses lack confidence in basic cyber skills
- 12:01Crypto Scammers Hijack Microsoft’s Official X Account
- 12:01How Israeli Checkpoints Choke Palestinian Life in the Occupied West Bank
- 12:00IT Security News Hourly Summary 2026-10-02 14h : 17 posts
- 11:31Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT
- 11:31China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor
- 11:31In Rare Move, Alleged Iranian State Hacker Extradited to US
- 11:31Capacitor Vulnerability Lets Remote Content Run With Full App Origin Trust
- 11:31Malicious Email Could Hijack AI Agent and Access Connected Accounts
- 11:31OpenAI Blocks 15,000 Requests Trying to Extract Protected Model Reasoning
- 11:31How American Political Campaigns Are Using AI—and What They’re Spending on the Tools
- 11:31Multiple cPanel & WHM Vulnerabilities Enable Root Code Execution and Admin Session Hijacking
- 11:02Attackers Abuse ChatGPT Custom GPTs to Deploy a Full-Featured RAT
- 11:02Fortinet sounds the alarm over actively exploited FortiMail zero-day
- 11:02Hackers Are Turning Trusted Software Updates Into Credential-Stealing Malware
- 11:01Milk Dragon AiTM Kit Uses Real-Time OTP Relay and WebSocket Keylogging to Bypass MFA
- 11:018 Top Red Teaming Service Providers for Enterprise Adversary Emulation
- 11:01Apple Patches CoreGraphics Zero Day Exploited in Attacks
- 11:01OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted
- 11:01Cybersecurity Month: 4 essential security habits
- 11:00IT Security News Hourly Summary 2026-10-02 13h : 25 posts
- 10:32Spain, Denmark and the Netherlands win Europol 2026 Excellence Awards in Innovation
- 10:32UK rail cops’ £320K face-scanning spree nets zero matches
- 10:31SpaceX’s Starship Orbits Earth For First Time
- 10:31Chinese spies impersonate White House, Anthropic figures to phish AI policy experts
- 10:31Star Blizzard, Cloudflare CA, GPT-6.1 scuttled
- 10:31TIKTOUK WordPress Toolkit Could Enable AWS, SMTP and API Credential Theft Attacks
- 10:31International investigation identifies over 70 potential victims exploited in Indian restaurants
- 10:31Spectre bug is back, this time to haunt JIT engines
- 10:31Tech Company Halo Moves Into Futuristic Ipswich Headquarters
- 10:02Warlock Expands SharePoint Exploitation in Critical Infrastructure Attacks
- 10:02AI could boost software engineer productivity by 32.6%
- 10:02Kiteworks Patches 126 Vulnerabilities in Massive Security Update
- 10:02Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution
- 10:02A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data
- 10:02Police Target KillSec Ransomware Group with Arrests and Seizures
- 10:0212 Best IAM Solutions Compared (2026): Features & Pricing
- 10:02Apple Hit By $5.7bn Verdict Over Vibration Patents
- 10:02Microsoft’s X account hacked in crypto pump-and-dump scheme
- 10:01AI is less dangerous than humans
- 10:01Authentication Bypass Successfully Impersonated 95 Users Without Passwords or MFA
- 10:01OpenAI Blocks 15,000-User Campaign Trying to Extract Hidden AI Reasoning
- 10:0110 Best Container Registry Security Tools Compared (2026): Features & Pricing
- 10:01Cloudflare Launches Free Certificate Authority for the Whole Internet
