IT Security News Roundup: 2026-09-28

IT Security News: today roundup

  1. Guardicore analyzed cryptomining malware hidden inside audio WAV files.
  2. RDP brute-force attacks deployed previously undetected Trojan.sysscan malware.
  3. CrowdStrike and NVIDIA partnered to extend security across AI stacks.
  4. Apple patched a CoreGraphics flaw actively used in targeted attacks.
  5. Cybercriminals hijacked Microsoft Azure identities to destroy cloud computing resources.
  6. SOCRadar discovered hundreds of corporate AI credentials exposed in infostealer logs.
  7. Microsoft warned that NeedyMantis malware maintains persistent access in breached networks.
  8. CrowdStrike launched Falcon Guardian to enhance enterprise artificial intelligence protection.
  9. Europol helped arrest seven key members of an international trafficking ring.
  10. A new guide details identity management frameworks for autonomous AI agents.
  11. Cleafy found RatHat Android malware uses Gemini AI to filter victims.
  12. WatchTowr warned attackers are actively exploiting unpatched Citrix NetScaler zero-days.
  13. Bitget lost $388 million after attackers exploited third-party security software.
  14. Dutch police arrested a hacker connected to the Odido breach.
  15. Modulate secured $25 million to develop real-time voice deepfake detection.
  16. A critical path traversal flaw in GitLab allows unauthenticated file access.
  17. Amazon Web Services will test operating its European cloud entirely disconnected globally.
  18. Microsoft identified modular NeedyMantis malware targeting telecom firms and government contractors.
  19. Akamai joined the Athena Coalition to automatically shield APIs from zero-days.
  20. Florida's Attorney General requested a court order restricting OpenAI's model deployments.
  21. Imperva uncovered remote denial-of-service flaws in the widespread GraphQL Java library.
  22. Citrix urged immediate server patching following widespread attacks on NetScaler devices.
  23. Microsoft detailed how NeedyMantis malware maintains persistent, covert network access.
  24. Kiteworks lifted a precautionary customer shutdown warning based on law enforcement alerts.
  25. SecurityWeek opened presentation submissions for the upcoming 2026 CISO Forum summit.
25
articles summarized
13
sources

Sources in this roundup

Blog
6 article(s)
The Hacker News
5 article(s)
Cyber Security News
2 article(s)
Cybersecurity Dive – Latest News
2 article(s)
securityweek
2 article(s)
AWS Security Blog
1 article(s)
CySecurity News – Latest Information Security and Hacking Incidents
1 article(s)
Hackread – Cybersecurity News, Data Breaches, AI and More
1 article(s)
Microsoft Security Blog
1 article(s)
News
1 article(s)
OffSec
1 article(s)
Security Affairs
1 article(s)
www.theregister.com – Articles
1 article(s)

Most-mentioned keywords

attacks
3 mention(s)
exploited
3 mention(s)
malware
3 mention(s)
security
3 mention(s)
access
2 mention(s)
citrix
2 mention(s)
cloud
2 mention(s)
crowdstrike
2 mention(s)

Sources

  1. Threats Making WAVs – Incident Response to a Cryptomining Attack
  2. The Oracle of Delphi Will Steal Your Credentials
  3. A Win for Defenders: CrowdStrike and NVIDIA Extend Security Across the AI Stack
  4. Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
  5. JadePuffer crims hijacked Azure identities and used them to blow up cloud resources
  6. AI Accounts Are Becoming the New Target for Infostealers
  7. Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
  8. CrowdStrike Falcon Guardian Defines the Next Generation of AI Security
  9. Seven arrests in Brazil during crackdown on South America-Europe cocaine pipeline
  10. IAM for AI agents: A Practical Enterprise Framework
  11. RatHat Android Malware Console Uses Gemini to Identify Higher-Value Victims
  12. Citrix NetScaler Zero-Days Exploited in Attacks
  13. Bitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388M
  14. Previously Convicted Dutch Hacker Arrested in ShinyHunters Odido Probe
  15. Modulate Raises $25 Million to Advance Deepfake Detection
  16. CVE-2026-85706: GitLab Unauthenticated Arbitrary File Read via the Repository Commits API
  17. AWS European Sovereign Cloud: Demonstrating an independent operation
  18. Microsoft Finds New Malware Used by Hackers to Maintain Secret Access Inside Target Networks
  19. Akamai Joins Athena Coalition to Shield Users from New Vulnerabilities
  20. Florida AG Seeks Emergency Injunction to Restrict OpenAI and ChatGPT Over AI Safety Risks
  21. New Remote DoS Attacks Against GraphQL Java
  22. Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
  23. NeedyMantis: Unpacking a post-compromise malware family used in targeted operations
  24. Kiteworks lifts advisory after precautionary warning for customers to shut down systems
  25. Call for Presentations Open for 2026 CISO Forum Virtual Summit