IT Security News: today roundup
- Guardicore analyzed cryptomining malware hidden inside audio WAV files.
- RDP brute-force attacks deployed previously undetected Trojan.sysscan malware.
- CrowdStrike and NVIDIA partnered to extend security across AI stacks.
- Apple patched a CoreGraphics flaw actively used in targeted attacks.
- Cybercriminals hijacked Microsoft Azure identities to destroy cloud computing resources.
- SOCRadar discovered hundreds of corporate AI credentials exposed in infostealer logs.
- Microsoft warned that NeedyMantis malware maintains persistent access in breached networks.
- CrowdStrike launched Falcon Guardian to enhance enterprise artificial intelligence protection.
- Europol helped arrest seven key members of an international trafficking ring.
- A new guide details identity management frameworks for autonomous AI agents.
- Cleafy found RatHat Android malware uses Gemini AI to filter victims.
- WatchTowr warned attackers are actively exploiting unpatched Citrix NetScaler zero-days.
- Bitget lost $388 million after attackers exploited third-party security software.
- Dutch police arrested a hacker connected to the Odido breach.
- Modulate secured $25 million to develop real-time voice deepfake detection.
- A critical path traversal flaw in GitLab allows unauthenticated file access.
- Amazon Web Services will test operating its European cloud entirely disconnected globally.
- Microsoft identified modular NeedyMantis malware targeting telecom firms and government contractors.
- Akamai joined the Athena Coalition to automatically shield APIs from zero-days.
- Florida's Attorney General requested a court order restricting OpenAI's model deployments.
- Imperva uncovered remote denial-of-service flaws in the widespread GraphQL Java library.
- Citrix urged immediate server patching following widespread attacks on NetScaler devices.
- Microsoft detailed how NeedyMantis malware maintains persistent, covert network access.
- Kiteworks lifted a precautionary customer shutdown warning based on law enforcement alerts.
- SecurityWeek opened presentation submissions for the upcoming 2026 CISO Forum summit.
Sources in this roundup
| Blog |
|
6 article(s) |
| The Hacker News |
|
5 article(s) |
| Cyber Security News |
|
2 article(s) |
| Cybersecurity Dive – Latest News |
|
2 article(s) |
| securityweek |
|
2 article(s) |
| AWS Security Blog |
|
1 article(s) |
| CySecurity News – Latest Information Security and Hacking Incidents |
|
1 article(s) |
| Hackread – Cybersecurity News, Data Breaches, AI and More |
|
1 article(s) |
| Microsoft Security Blog |
|
1 article(s) |
| News |
|
1 article(s) |
| OffSec |
|
1 article(s) |
| Security Affairs |
|
1 article(s) |
| www.theregister.com – Articles |
|
1 article(s) |
Most-mentioned keywords
| attacks |
|
3 mention(s) |
| exploited |
|
3 mention(s) |
| malware |
|
3 mention(s) |
| security |
|
3 mention(s) |
| access |
|
2 mention(s) |
| citrix |
|
2 mention(s) |
| cloud |
|
2 mention(s) |
| crowdstrike |
|
2 mention(s) |
Sources
- Threats Making WAVs – Incident Response to a Cryptomining Attack
- The Oracle of Delphi Will Steal Your Credentials
- A Win for Defenders: CrowdStrike and NVIDIA Extend Security Across the AI Stack
- Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
- JadePuffer crims hijacked Azure identities and used them to blow up cloud resources
- AI Accounts Are Becoming the New Target for Infostealers
- Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
- CrowdStrike Falcon Guardian Defines the Next Generation of AI Security
- Seven arrests in Brazil during crackdown on South America-Europe cocaine pipeline
- IAM for AI agents: A Practical Enterprise Framework
- RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
- Citrix NetScaler Zero-Days Exploited in Attacks
- Bitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388M
- Previously Convicted Dutch Hacker Arrested in ShinyHunters Odido Probe
- Modulate Raises $25 Million to Advance Deepfake Detection
- CVE-2026-85706: GitLab Unauthenticated Arbitrary File Read via the Repository Commits API
- AWS European Sovereign Cloud: Demonstrating an independent operation
- Microsoft Finds New Malware Used by Hackers to Maintain Secret Access Inside Target Networks
- Akamai Joins Athena Coalition to Shield Users from New Vulnerabilities
- Florida AG Seeks Emergency Injunction to Restrict OpenAI and ChatGPT Over AI Safety Risks
- New Remote DoS Attacks Against GraphQL Java
- Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
- NeedyMantis: Unpacking a post-compromise malware family used in targeted operations
- Kiteworks lifts advisory after precautionary warning for customers to shut down systems
- Call for Presentations Open for 2026 CISO Forum Virtual Summit
