8 posts published in the last hour 19:31ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories 19:31Healthcare Giant McKesson Investigates Data Breach Incident 19:31Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity…
ThreatsDay: CEO Phishing Kits, 5K Dropbox Account Hacks, OAuth Traps + 17 More Stories
The worst part is how normal these attacks look. A call from IT. A shared file. A trusted app. A simple request to click “Allow.” Why break in when…
Healthcare Giant McKesson Investigates Data Breach Incident
ShinyHunters claims to have stolen 284 million records from McKesson
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity
Threat actors are exploiting two critical flaws impacting Langflow and Ruby on Rails, according to new findings from VulnCheck. The vulnerabilities in…
Attackers Actively Exploiting Critical Vulnerability in Super Forms Plugin
On July 9th, 2026, we publicly disclosed a critical Unauthenticated Arbitrary File Upload vulnerability in Super Forms, a WordPress plugin with an…
Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set
Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in…
Claude sessions hijacked, AI jolts global finance, agents get too many keys
Claude sessions get hijacked Anthropic is warning that common infostealer malware is stealing active Claude browser sessions, letting attackers get into…
Abliteration.ai is making a business out of removing AI guardrails
Abliteration.AI is making powerful AI models without guardrails easier to access, arguing that giving defenders the same tools as bad actors could…
IT Security News Hourly Summary 2026-09-03 21h : 11 posts
11 posts published in the last hour 18:31Wordfence Intelligence Weekly WordPress Vulnerability Report (August 24, 2026 to August 30, 2026) 18:31Questel – 1,226,209 breached accounts 18:31Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoC 18:02Hackers Use QR Codes in Phishing…
Wordfence Intelligence Weekly WordPress Vulnerability Report (August 24, 2026 to August 30, 2026)
Last week, there were disclosed in and that have been added to the Wordfence Intelligence Vulnerability Database, and there were that contributed to…
Questel – 1,226,209 breached accounts
In August 2026, the French intellectual property software and services company Questel was the target of a ShinyHunters “pay or leak” extortion campaign .…
Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoC
A shared security ‘Nightmare’
Hackers Use QR Codes in Phishing Emails to Steal Login Credentials
Hackers are putting QR codes in phishing emails to steal login credentials. Known as quishing, the method hides a dangerous web address inside a square…
Hijacked ScreenConnect Installs Are Spreading Malware Like a Worm, Huntress Warns
Cybersecurity firm Huntress has uncovered a wave of malicious installations of ScreenConnect, a widely used remote-support tool, that spread between…
New $7 SweepLED Device That Allows Anyone to Detect Hidden Cameras in Hotels
Researchers have developed SweepLED, a low-cost smartphone accessory designed to help travelers find concealed cameras in hotel rooms and short-term…
The story behind the intelligence
From engaging with cybercriminals to surviving a live Flamin’ Hot Cheetos taste test, Hazel reflects on the latest Beers with Talos with Azim, where they…
153 Million Driver’s License Scans Surface on Dark Web as FBI Opens Investigation
A dark web identity theft service known as Nexus has reportedly offered scans of more than 153 million driver’s licenses from people in the United States…
Museum heists turn violent: new Europol report on cultural property theft tactics
The spotlight features some key findings:Increasing violence: Museum thefts are becoming more aggressive, with offenders using tools like sledgehammers,…
Claude AI Faces Outage Impacting Mythos 5.1, Fable 5.1, and Opus 5
Anthropic’s Claude AI experienced a partial outage on September 3, 2026, disrupting requests across several Claude models and affecting developers,…
IT Security News Hourly Summary 2026-09-03 20h : 18 posts
18 posts published in the last hour 17:32Chaotic Eclipse Claims Avast Antivirus 0-Day Vulnerability – PoC Released 17:32Agents of Chaos: A New $100K Agentic Security Challenge 17:32ASCII smuggling crosses over from AI prompt injection to phishing evasion 17:32ISC Stormcast For…
Chaotic Eclipse Claims Avast Antivirus 0-Day Vulnerability – PoC Released
Researcher Chaotic Eclipse has claimed to have discovered a zero-day privilege-escalation vulnerability affecting Avast Antivirus and released a public…
Agents of Chaos: A New $100K Agentic Security Challenge
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: Agents of Chaos: A New $100K Agentic Security Challenge
ASCII smuggling crosses over from AI prompt injection to phishing evasion
Invisible Unicode characters popularized for hiding instructions from AI models are now being used to obfuscate words before email filters parse them.
ISC Stormcast For Tuesday, September 1st, 2026 https://isc.sans.edu/podcastdetail/10076, (Tue, Sep 1st)
This post has no text preview — click the link below to read the original article. This article has been indexed from SANS Internet Storm Center, InfoCON: green Read the original article: ISC Stormcast For Tuesday, September 1st, 2026 https://isc.sans.edu/podcastdetail/10076,…