OpenAI’s ChatGPT, Reddit, Roblox all gain designations under EU’s Digital Services Act, subjecting them to stricter standards
Global public-private operation disrupts Sality botnet active for two decades
An international operation supported by Europol has disrupted the Sality peer-to-peer (P2P) botnet, a long-running criminal infrastructure used to…
Critical HPE Fabric Composer Flaw Lets Unauthenticated Attackers Execute Commands as Privileged User
Hewlett Packard Enterprise (HPE) has released security updates addressing 52 vulnerabilities in HPE Networking Fabric Composer, including two critical…
IT Security News Hourly Summary 2026-09-02 11h : 16 posts
16 posts published in the last hour 08:32FulcrumSec Claims Responsibility for Manchester Airport Group Breach 08:32Hackers Target Langflow in CVE-2026-0768 Attacks 08:32Hugging Face Transformers Flaw Writes Malicious Python Code to Disk Before User Consent 08:32Anthropic Revamps Pricing With Fable 5.1…
FulcrumSec Claims Responsibility for Manchester Airport Group Breach
Threat group FulcrumSec claims MAG breach and leaks 550GB of data online
Hackers Target Langflow in CVE-2026-0768 Attacks
Hackers are exploiting a critical Langflow flaw that lets unauthenticated attackers remotely execute Python code on vulnerable systems. Hackers have…
Hugging Face Transformers Flaw Writes Malicious Python Code to Disk Before User Consent
A newly disclosed vulnerability in the Hugging Face Transformers library could allow attacker-controlled Python files to be written to a victim’s system…
Anthropic Revamps Pricing With Fable 5.1
Start-up slashes prices for reuse of cached data in latest frontier model release, as it faces open-weight competition
CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: CrowdStrike Threat Hunts for Shell Command Obfuscation on VMware ESX
Keepnet launches free SMS/Call Reporter for iOS
Keepnet, an Extended Human Risk Management (xHRM) and Secure Behavior Management platform, today launched the Keepnet SMS/Call Reporter. It is a free app…
There is no Zero Trust in Zero Trust
In January, the Cloud Security Alliance asked security professionals how they handle the identities on which their AI systems run. Fewer than a quarter of…
Hackers Hide Reverse Shell Traffic Behind Signed Apps and AWS API Gateway
Threat actors are using a layered fake IT-support campaign to obtain remote access, deploy a malicious MSI package and conceal hands-on-keyboard activity…
Manus Resumes Independent Operations After Meta Split
Chinese-founded agentic AI start-up says users can now restore months’ worth of data deleted during transition back to independence
Hackers Hide a Full Remote Access Trojan Inside a Real Exodus Crypto Wallet
Cybercriminals have been caught using a tampered installer for the Exodus cryptocurrency wallet to plant a full remote access trojan. The program looks…
Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another
Forescout Research – Vedere Labs said it used Anthropic’s Claude to port a working pre-authentication remote code execution (RCE) exploit from one WAGO…
Hugging Face Flaw Lets Malicious AI Models Plant Python Code on User Systems
A newly disclosed vulnerability in Hugging Face Transformers could allow malicious AI model repositories to place attacker-controlled Python files on a…
Authorities Turn Sality’s P2P Network Against Itself, Cutting Off New Malware Payloads
The U.S. Department of Justice (DoJ) on Tuesday announced the takedown of a long-standing peer-to-peer (P2P) botnet known as Sality as part of a…
Google Fixes 26 Chrome Vulnerabilities, Including 2 Critical Use-After-Free Flaws
Google has released Chrome 152.0.7977.75/.76 for Windows and macOS and Chrome 152.0.7977.75 for Linux, addressing 26 security vulnerabilities across the…
Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials
Threat actors are exploiting a severe security vulnerability in Sangoma Switchvox, an enterprise VoIP platform, that could allow unauthenticated remote…
IT Security News Hourly Summary 2026-09-02 10h : 9 posts
9 posts published in the last hour 07:31FTC Sues Amazon Over Ad Price ‘Manipulation’ 07:31Fable 5.1 released, USPS “untested” IT, Exchange hijack vulnerability 07:31What is a brushing scam? 07:02DuckDB stays open source while the team behind it goes to work…
FTC Sues Amazon Over Ad Price ‘Manipulation’
US consumer regulator alleges Amazon boosted profits by secretly manipulating prices paid by advertisers
Fable 5.1 released, USPS “untested” IT, Exchange hijack vulnerability
Anthropic announces safety changes and new models USPS installs “untested” IT systems for mail-in ballots Thousands of Exchange servers vulnerable to…
What is a brushing scam?
Last month, the FTC Consumer Advice raised the alarm about a new type of scam gaining popularity in the USA. This fraudulent activity, called a…
DuckDB stays open source while the team behind it goes to work for Amazon
Hannes Mühleisen and Mark Raasveldt started as AWS employees. The two built DuckDB, an analytical database that runs inside your process instead of on a…
