193 posts published today
- 21:31Citrix NetScaler security snafus get even worse amid more 0-day reports
- 21:01Rejetto HFS servers now actively scanned for critical RCE flaw
- 20:00IT Security News Hourly Summary 2026-10-05 22h : 5 posts
- 19:31CloudSyncD Backdoor Spread Through Fake Zoom Installer Targeting macOS
- 19:01Authenticated Doesn’t Mean Safe: Why AI Agents Need Action-Level Security
- 19:01Anthropic Mythos Found A Bug in Rejetto HFS. Attackers Are Now Exploiting It.
- 19:01Nobody Designs an RBAC Mess; Everyone Ends Up With One
- 19:00IT Security News Hourly Summary 2026-10-05 21h : 3 posts
- 18:01IQVIA fined $7.8 million for failing to properly anonymize health data
- 18:01FBI confirms ‘multiple’ arrests related to ShinyHunters hack
- 18:00IT Security News Hourly Summary 2026-10-05 20h : 4 posts
- 17:31Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users’ Mailboxes
- 17:01DTU Data Breach Exposes Information of 200,000 People
- 17:01Spain, Denmark and the Netherlands win Europol 2026 Excellence Awards in Innovation
- 17:00IT Security News Hourly Summary 2026-10-05 19h : 15 posts
- 16:32International investigation identifies over 70 potential victims exploited in Indian restaurants
- 16:32Zammad Zero-Day Chain Lets AI Agent Hijack Sessions, Execute Code and Escalate to Root
- 16:31California Court Dismisses El Faro Journalists’ Pegasus Spyware Lawsuit Against NSO Group for Second Time
- 16:31Chinese Hackers Impersonate US Officials for AI Cyber Espionage
- 16:31Building Enterprise File-Heavy AI Workflows: From Secure Uploads to Governed Document Intelligence
- 16:3116 Suspects Detained in Timor-Leste for Japanese Police Impersonation Scam
- 16:31China’s Ministry Allegedly Funded Research Involving 100+ Academics
- 16:31Malicious HEIC Images Can Trigger Remote Code Execution on WordPress Servers
- 16:31China-Aligned TA419 Uses Microsoft AitM Phishing Against U.S. AI Policy Experts
- 16:31Researcher Infiltrates Lazarus Group’s Crypto Laundering Network After $1.5B Bybit Hack
- 16:01Denmark population registry data breach affects 8.8 million people
- 16:01Legacy sign-on service comes back to bite school software provider Bromcom
- 16:01Hackers Exploit 24 IoT Vulnerabilities to Install ClingSTUN Linux Backdoor
- 16:01Debian’s latest kernel security update has 1,313 reasons to patch
- 16:00IT Security News Hourly Summary 2026-10-05 18h : 14 posts
- 15:31Nueva EPS, Colombia’s largest regional healthcare promoting entity has allegedly been hacked (1)
- 15:31Google pauses open source bug bounty program after rise in AI submissions
- 15:31⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests
- 15:31Citrix issues patch for third exploited flaw in NetScaler
- 15:31California Man Charged in Alleged $300M AI Server Smuggling Scheme to China
- 15:02Q&A With Oliver Simonnet at CultureAI: AI Security In 2026: Most Organisations Deploy AI And Hope For The Best
- 15:02Denmark ’s Population Registry Breached, 8.8 Million Affected
- 15:02CISA flags new exploited NetScaler flaw as attackers crash appliances (CVE-2026-88779)
- 15:01Ordering violence from abroad: five suspects arrested in Spain, Morocco, and France
- 15:01Hackers steal 8 million citizens’ records from Danish government database
- 15:01New Dell System Update flaw lets hackers gain root privileges
- 15:01Nueva EPS, Colombia’s largest regional healthcare promoting entity has allegedly been hacked
- 15:01South Korea probes bank breaches amid suspected AI-powered attacks
- 15:00IT Security News Hourly Summary 2026-10-05 17h : 29 posts
- 14:31ClingSTUN Malware Turns Unpatched IoT Devices Into Proxy Nodes
- 14:31Apple Tightens macOS Full Disk Access as AI Agents Become More Powerful
- 14:31Google Narrows Open Source Bug Bounty Amid Wave of Invalid Automated Reports
- 14:31Secure the Grid: What Executive Order 14421 Means for Zero Trust
- 14:31Company Behind Graphite Spyware Speaks for First Time about Italy Abuse and Accountability
- 14:31Proposed anti-Flock bills could spell trouble for license plate readers
- 14:31Cyber Briefing: 2026.10.05
- 14:31Google Pauses Open-Source Bug Bounty Program After Flood of Invalid AI-Generated Reports
- 14:03Prime Big Deal Days: scammers stock up early as Amazon impersonation attacks nearly triple
- 14:03Harvest Now, Decrypt Later: The Attack You Defend Against by Doing Nothing
- 14:03Google Suspends Open-Source Bug Bounty Until 2027
- 14:03Alleged dev of Ploutus ATM malware appears in US court after arrest
- 14:03Stellar Cyber 7.0 adds measurable workflows for AI-powered SOCs
- 14:03Google Gemini Will Soon Get Full Access Permission to Use Your Computer
- 14:02Citrix NetScaler Targeted Via New Zero Day
- 14:02U.S. CISA adds Citrix NetScaler flaw to its Known Exploited Vulnerabilities catalog
- 14:02Denmark’s CPR breach exposes 8.8 million people as experts warn over trusted third-party access
- 14:0247-Day Certificates Are Coming: Five Things to Do Before They Arrive
- 14:02Senate Passes Healthcare Cybersecurity Bill
- 14:02tenfold CE: Our free Identity Governance tool just got 2 new features
- 14:02Fake brand discounts on social media prey on shoppers’ fear of missing out
- 14:02CISA Warns of Citrix NetScaler Vulnerability Actively Exploited in Attacks
- 14:02New Stealthy Linux Backdoors Target Telecoms, Masquerade as Email Traffic
- 14:02GlassWorm Supply Chain Attack Uses Fake VS Code Themes to Deliver Hidden Malware
- 14:02Malwarebytes Scam Link Check analyzes URLs and explains potential risks
- 14:01ClickFix Fake CAPTCHA Attack Executes Malware Hidden Inside Browser Cache
- 14:01LTM launches BlueVerse AgenTraceIQ to monitor AI agents and reverse unintended actions
- 14:01RemoveMacAI Free Up 12GB of Data by Removing Apple Intelligence Models
- 14:00IT Security News Hourly Summary 2026-10-05 16h : 23 posts
- 13:32Linux Backdoor Abuses STUN Protocol, Exploits Dozens of Flaws
- 13:31The Credential Layer Is Expanding Faster Than Security Teams Can See It
- 13:31CrowdStrike Expands Federal SOC Modernization Through CISA-Funded SIEMaaS
- 13:31New RemoveMacAI Tool Removes Apple Intelligence Models and Reclaims Mac Storage
- 13:31Denmark population register breach affects 8.8M
- 13:31Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2
- 13:31Deepfakes weaponized for social engineering attacks
- 13:31PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
- 13:31Apple Tightens macOS Full Disk Access Controls
- 13:31Apple Strengthens macOS Privacy Controls as AI Agents Become More Autonomous
- 13:31Star Blizzard Phishing Campaign with RedFlick
- 13:02Need for Speed: AI-Driven Attacks Are Changing Security Strategies
- 13:02Response Overview and Colonel Clustered – Grouping Burp Responses by Content
- 13:02250,000 Impacted by Data Breaches at New Jersey, Texas Healthcare Firms
- 13:02Copy, Paste, Compromised: How ClickFix Attacks Work and How CrowdStrike Stops Them
- 13:02Google Gemini to Gain Full Computer Access With New Permission
- 13:01A new kind of magnetism could unlock faster, more efficient computers
- 13:01Daiwa Securities says info on 110,000 clients may have been leaked in vendor incident
- 13:01Cybersecurity Awareness Month “cannot be the strategy”: why awareness must become a year-round capability
- 13:01Ransomware group threatens to leak customer data from top insurance companies in South Africa
- 13:01Critical libheif Vulnerability Could Enable Remote Code Execution Through WordPress Image Uploads
- 13:01Hackers Breached Propulsion System of U.S.-Bound Oil Tanker
- 13:00IT Security News Hourly Summary 2026-10-05 15h : 9 posts
- 12:31Two-week Europol task force identifies 18 sexually abused children worldwide
- 12:31CrowdStrike Delivers the Next Evolution of the Agentic SOC
- 12:31RemoveMacAI turns off Apple Intelligence on macOS 27 and deletes its models
- 12:02Windows 11 KB5124010 Update Crashes Productivity Apps, Games and Media Players
- 12:01A familiar face is no longer proof: rethinking social engineering defence for the deepfake era
- 12:01Denmark Data Breach Exposes Personal Records of 8.8 Million People
- 12:01Japanese Police Impersonation Scam Operation Dismantled as 16 Suspects Detained in Timor-Leste
- 12:01Hackers Abuse Legitimate ScreenConnect Tool to Gain Remote Access Through Phishing
- 12:00IT Security News Hourly Summary 2026-10-05 14h : 12 posts
- 11:31Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access
- 11:31Star Blizzard Targets 100+ Organizations with Phishing and RedFlick Technique
- 11:31Exploitation Hits Rejetto HFS Vulnerability Discovered by AI
- 11:31Another Historic Cipher Falls to AI
- 11:02Google Suspends Open-Source Bug Bounty Due to AI Vulnerability Reports
- 11:01OpenAI will show visual ads in ChatGPT while you generate images
- 11:01Out-of-band Exchange Server update fixes high-severity mailbox access bug (CVE-2026-96940)
- 11:01Senate Passes Bipartisan Bill to Strengthen Healthcare Cybersecurity
- 11:01CISA Flags Citrix NetScaler Flaw Exploited in Ongoing Attacks
- 11:01Detained ShinyHunters hacker reportedly helping FBI track down fellow members
- 11:01Denmark Confirms Major Security Incident Exposing 8.8 Million Citizen Records
- 11:00IT Security News Hourly Summary 2026-10-05 13h : 10 posts
- 10:31MediaTek Fixes 31 Security Flaws Affecting Modem, Video and AI Components
- 10:02MAKERphone 2: A DIY 4G phone with plug-in camera, speaker and prototyping board
- 10:02MI5 Raises Alarm Over Chinese Funding of UK Academic Research
- 10:02Google Tightens Open-Source Bug Bounty Rules After Surge in AI-Generated Vulnerability Reports
- 10:01CISA Warns of Zammad DIVD Vulnerabilities Actively Exploited in Attacks
- 10:01Microsoft: Windows KB5124010 update crashes some games and apps
- 10:01Google’s AI Hacker Finds 500+ XSS Flaws and Builds Working Exploit Chains
- 10:01AWS Fixes AI Agent Flaws Enabling Authentication Bypass and Credential Theft
- 10:01CISA Adds Fortinet FortiMail 0-day Vulnerability to KEV Following Active Exploitation
- 10:00IT Security News Hourly Summary 2026-10-05 12h : 12 posts
- 09:31Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
- 09:31More UK Schools Are Recovering Faster from Cyber Incidents
- 09:31Knowing which vulnerability to fix first
- 09:31Modernizing data security with DSPM, AI and fewer tools
- 09:31What cloud infrastructure taught me about building billing systems
- 09:31Why permissions must be the foundation for next-gen identity security
- 09:31JDK 27: The quiet before the storm
- 09:01Frontline Education Breach Impacts K-12 School District Staff
- 09:01Google halts open-source bug bounty program amid AI spam surge
- 09:01Iranian hacker accused of draining 31TB from university inboxes extradited to the US
- 09:01October 2026 Cyber Attacks Timeline
- 09:00IT Security News Hourly Summary 2026-10-05 11h : 14 posts
- 08:31Apple tightens macOS disk access as AI agents become more powerful
- 08:31Top 10 Best Certificate Lifecycle Management (PKI) Tools in 2026 [Ranked & Scored]
- 08:31Autonomous AI Agent Chains Two Zammad Zero-Days in Machine-Speed Cyberattack
- 08:31Top 10 Best Machine Identity Management Solutions in 2026 [Ranked & Scored]
- 08:31doxx.net opens Agentic Defined Networking public beta, raises $38 million
- 08:31Top 10 Best Fine-Grained Authorization Tools in 2026 [Ranked & Scored]
- 08:02New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
- 08:02CISA Adds Zammad Vulnerabilities to KEV Following Active Exploitation
- 08:02One hidden Meta Muse setting could let attackers turn the AI assistant into a backdoor
- 08:01Another OpenAI Safety Expert Quits and Raises New AI Safety Concerns
- 08:0112 Best ITDR Tools Compared (2026): Features & Pricing
- 08:01AI slop submissions force Google to freeze its open-source bug bounty
- 08:0111 Best CIAM Solutions Compared (2026): Features & Pricing
- 08:00IT Security News Hourly Summary 2026-10-05 10h : 12 posts
- 07:31Warlock continues SharePoint exploits, ShinyHunters member flips China’s AI espionage
- 07:31A week in security (September 28 – October 4)
- 07:3112 Best Passwordless Authentication Solutions Compared (2026): Features & Pricing
- 07:31Alleged ShinyHunters Leader Arrested in Jordan
- 07:31AMD Buys Li Fei-Fei’s World Labs For $8.2bn
- 07:02GlassWorm Supply Chain Attack Hides Malware Inside VS Code Color Themes
- 07:01OpenAI faces California DOJ subpoena amid growing cybersecurity incident notices
- 07:01Dutch Ex-Hacker Arrested Over Suspected Link To FBI Breach Gang
- 07:01Fed employee repeatedly removed sensitive files, watchdog finds
- 07:01Smart Ring Maker Oura Withdraws Planned $2.2bn IPO
- 07:01Senate passes bipartisan bill to bolster hospital cybersecurity
- 07:00IT Security News Hourly Summary 2026-10-05 09h : 12 posts
- 06:02Keyorix: Open-source secrets management for teams that can’t use SaaS
- 06:02Exploitation of Citrix NetScaler Zero-Day Hits Appliances Patched Days Earlier
- 06:02DHS readies major cyber contract
- 06:02Attackers Abuse Legitimate ScreenConnect Client in Phishing Campaign to Gain Remote Access
- 06:02Italy’s Data Protection Authority fines IQVIA €7 million over data protection breach
- 06:01N0n ransomware: what you need to know
- 06:01ShinyHunters hacker “Rey,” allegedly involved in FBI data theft, detained in Jordan
- 06:01Three questions a hospital CISO should ask a healthcare fintech vendor
- 06:01Slate Valley Unified School District voted not to pay ransom demand; Kairos likely to leak data
- 06:01Microsoft Releases Emergency Exchange Server Update to Fix CVE-2026-96940
- 06:01South Korea’s President Lee Jae Myung orders thorough probe into data breaches at local banks
- 06:00IT Security News Hourly Summary 2026-10-05 08h : 6 posts
- 05:01Anthropic Asks Claude Users to Share Voice Recordings for AI Training With a New Opt-In Setting
- 05:01Google PageBreak AI Agent Finds Over 500 XSS Vulnerabilities Across Its Web Applications
- 05:01How RMM abuse gives attackers a way in that looks like business as usual
- 05:01South Korea Orders Investigation Into AI-Powered Cyberattacks on Major Banks
- 05:01Apple Will Require Explicit User Action to Grant Full Disk Access in macOS, Citing AI Agents
- 05:01Citrix NetScaler SAML Vulnerability Enables Unauthenticated Remote DoS Attacks
- 04:00IT Security News Hourly Summary 2026-10-05 06h : 3 posts
- 03:012026-10-02: Atomic macOS (AMOS) Stealer infection from malicious ad impersonating Claude Code
- 03:012026-10-01: Traffic analysis exercise – Natureforce
- 03:00IT Security News Hourly Summary 2026-10-05 05h : 3 posts
- 02:01Cybersecurity Newsletter Bulletin – Pentagon Data Breach, Citrix, Fortimail and Apple 0-days and 20+ stories
- 02:01ISC Stormcast For Monday, October 5th, 2026 https://isc.sans.edu/podcastdetail/10122, (Mon, Oct 5th)
- 02:01Citrix NetScaler SAML 0-Day Vulnerability Actively Exploited in Attacks
- 01:01Another ShinyHunters Leader Busted
- 00:31TTY Logs and the Data it Captures, (Sun, Oct 4th)
- 22:01Citrix patches NetScaler SAML zero-day exploited in attacks
