Cybercriminals are posing as recruiters to turn routine job interviews into malware traps for software developers. Their latest campaign delivers two…
Five Venezuelan Nationals Plead Guilty in Kansas ATM Jackpotting Attempt
Five Venezuelan nationals pleaded guilty after failed ATM jackpotting attempts in Kansas. The FBI recorded 700+ cases in 2025, causing $20M in losses.…
Hackers Actively Exploiting Critical Langflow RCE and Rails Vulnerability
Two critical vulnerabilities affecting Langflow and Ruby on Rails deployments are being actively exploited, with attackers quickly moving from public…
Vishing campaign abuses Microsoft Teams to give attackers a foothold in company networks
A coordinated voice-phishing (vishing) campaign, named Spring Ring, used fake IT support accounts on Microsoft Teams to trick employees into installing…
Five Hackers Plead Guilty to ATM Jackpotting Attacks Using Malware to Dispense Cash
Five Venezuelan nationals have pleaded guilty in a U.S. federal case involving attempted ATM jackpotting attacks. This criminal technique uses malware to…
Cyber Briefing: 2026.09.01
Attackers are compromising routers, authentication systems, AI accounts, and healthcare applications to steal credentials and sensitive data, while…
Boston Scientific Cyberattack Disrupts Medical Device Manufacturing and Global Operations
Boston Scientific is investigating a cybersecurity incident that disrupted parts of its global operations, affecting manufacturing, order processing, and…
Lazarus Group moves $30M through Hyperliquid
Blockchain analysts have identified $30 million in digital assets moving through Hyperliquid, a decentralized exchange, from wallets associated with the…
Polygon patches validator security flaws
Polygon Labs has successfully patched several security vulnerabilities affecting its proof-of-stake blockchain network through two coordinated hard fork…
Anthropic signs $35bn cloud deal with Lambda
Anthropic has entered a $35 billion cloud computing agreement with Lambda, a cloud provider backed by Nvidia, to secure access to a major data center…
65% of Enterprises Have Seen AI Agents Act Out of Scope
EMA survey finds 65% of enterprises have seen AI agents act beyond intended scope
VMware Expands Memory Tiering Tech in VCF 9.1
VMware has expanded its memory tiering capabilities in vSphere Cloud Foundation 9.1, targeting organizations looking to reduce infrastructure costs as…
Hackers Exploit Critical Langflow and Ruby on Rails Flaws in Active RCE Attacks
Threat actors are actively exploiting two newly disclosed remote code execution vulnerabilities affecting Langflow and Ruby on Rails. These campaigns…
DaVita Settles $15M Ransomware Breach Lawsuit
Healthcare provider DaVita has reached a $15 million settlement to resolve class action litigation stemming from an April 2025 ransomware attack that…
IT Security News Hourly Summary 2026-09-01 16h : 11 posts
11 posts published in the last hour 13:31Mirage Kitten Hackers Use Fake Coding Challenges to Deploy NodeRabbit and PollCat RATs 13:31Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests 13:31Hackers Exploit Langflow RCE Flaw to Harvest OpenAI…
Mirage Kitten Hackers Use Fake Coding Challenges to Deploy NodeRabbit and PollCat RATs
Iran-linked threat actor Mirage Kitten is targeting software developers with fake recruitment assessments that hide two newly identified cross-platform…
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests
The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families that highlight the continued evolution of…
Hackers Exploit Langflow RCE Flaw to Harvest OpenAI and AWS Credentials
Threat actors are actively exploiting a critical remote code execution vulnerability in Langflow, a low-code platform used for building AI-powered…
White House Launches Pilot Program in Texas to Protect Water Infrastructure
Project Watershed 250 will see water providers in Texas provided with federal and private sector cybersecurity resources amid rising nation-state threats
Experiment: Porting a PLC Exploit With AI Takes Hours and Hundreds of Dollars
Forescout researchers used Claude AI to port a remote code execution exploit between WAGO PLC models.
Hackers Abuse Legitimate ChatGPT Shared Links to Deploy NetSupport RAT
Threat actors are abusing legitimate ChatGPT shared-conversation URLs to host social-engineering lures that steer victims into a ClickFix-style infection…
Filigran Adds AI-Powered Attack Chaining to OpenAEV for Autonomous Pentesting
Filigran has launched a new attack chaining capability for its OpenAEV platform, designed to help security teams test how multiple weaknesses can be…
Five Plead Guilty to Using ATM Jackpotting Malware in Cash Theft Scheme
Five Venezuelan nationals have pleaded guilty in a federal case involving attempts to deploy ATM jackpotting malware against cash machines in Kansas. This…
TerminalFix looks like ClickFix, but delivers a very different payload
The familiar ClickFix fake CAPTCHA trick has been adapted to deliver a payload that can give attackers access to the victim’s wider network.
