Attackers compromised three country-code top-level domains (ccTLDs) and obtained unauthorized HTTPS certificates for several Google domains, Google said…
Hunt.io Finds New Infrastructure Of BraZetsu Access Broker Months Before Disclosure
Hunt.io traced BraZetsu ‘s infrastructure and found that hosting patterns and certificate data remained useful after published IOCs became outdated.…
Can you really make more than $200M in six months without encrypting victims? It seems Silent Ransom Group can. (1)
UPDATED 2:42 pm October 8: Plot twist! Silent Ransom Group agreed to be interviewed about the Luna Moth Files but denies that the group has been breached…
Critical Sungrow Inverter Vulnerability Lets Attackers Access Solar Plants Without Passwords
A critical Sungrow inverter vulnerability could have allowed attackers to log in to the company’s iSolarCloud management platform without a valid…
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
Hackers tied to a Chinese cybersecurity company stole email from government organizations, law enforcement agencies, healthcare systems, and religious…
Microsoft, Adobe, Apple, and Foxit vulnerabilities
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed vulnerabilities in Adobe, Apple, Foxit Reader, and Microsoft. The vulnerabilities…
ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories
The crooks have trust problems of their own. One ransomware affiliate decided to keep the profits for himself. Elsewhere, an attacker left a server…
IT Security News Hourly Summary 2026-10-08 21h : 14 posts
14 posts published in the last hour 18:31Hackers Use Fake Firefox Wallet Extensions to Steal Crypto Recovery Phrases 18:31DarkSword iOS Exploit Platform Uses Coruna Malware to Steal Crypto Wallet Recovery Phrases 18:31High-severity Nvidia bug could crash GPU monitoring on exposed…
Hackers Use Fake Firefox Wallet Extensions to Steal Crypto Recovery Phrases
Hackers have used 16 malicious Firefox extensions to target cryptocurrency users with fake wallet screens that capture recovery phrases and private keys.…
DarkSword iOS Exploit Platform Uses Coruna Malware to Steal Crypto Wallet Recovery Phrases
DarkSword operators are using Coruna malware to steal cryptocurrency wallet recovery phrases from iPhones, turning browser exploits into a ready-to-use…
High-severity Nvidia bug could crash GPU monitoring on exposed servers
The GPU giant released a fix for the flaw, tracked as CVE-2026-47483
Microsoft Teams Adds Synthetic Audio and Video Detection to Fight Deepfake Meeting Attacks
Microsoft Teams is preparing to support synthetic audio and video detection to help organizations spot deepfake attacks. The feature will connect Teams…
Making sure the checks get printed
Pierre’s debut newsletter explores the messy, real-world side of risk management and how to keep vital systems running when a perfect patch isn’t an…
Tensorlake npm Package Compromised to Spread Shai-Hulud Worm and Steal Developer Secrets
A malicious release of the Tensorlake npm package has been published with a Shai-Hulud worm variant that can steal developer secrets and attempt to spread…
Russian Spies Give ‘MatchBoil’ Malware a Stealthy Facelift
Cyber-espionage actor UAC-0099 has been steadily refining its flagship dropper in campaigns targeting Ukrainian organizations.
Hikvision Camera Vulnerability Targeted in Remote Code Execution Exploitation Attempts
Scanning and remote code execution attempts targeting video surveillance devices in Ukraine rose between September 21 and October 1, 2026. Most activity…
6 alternatives to Blackpoint for your shortlist
Blackpoint is a well-regarded provider of managed detection and response services to the MSP sector. Founded by former NSA employees, their autonomous…
Legacy sign-on service comes back to bite school software provider Bromcom
Intruders retrieved email addresses from superseded tech kept running for an internal system
FakeGit malware campaign returns with 17,610 malicious GitHub repos
More than 17,000 fake repositories on GitHub are distributing the SmartLoader malware after the FakeGit campaign reactivated earlier this month to push…
SonicWall Fixes Max Severity Pre-Auth Flaw in SMA1000 Appliances
SonicWall patched a CVSS 10 pre-auth SSRF flaw in SMA1000 appliances that could let unauthenticated attackers reach internal functions. SonicWall released…
OpenAI says Iran, Russia used AI journalists, think tanks to influence Western media
The two campaigns were rated 4 and 5 out of 6 for severity, the first time OpenAI has reported what it considers a high-impact influence campaigns.
IT Security News Hourly Summary 2026-10-08 20h : 12 posts
12 posts published in the last hour 17:31Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks 17:31Solving the Continuous Authorization Conundrum 17:02FBI, French authorities seize deepfake CSAM-for-sale websites 17:02CIA officer admits to creating fake…
Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks
Attackers behind a string of personal data leaks at Japanese organizations have abused APIs for mobile apps and targeted known software flaws, the JPCERT…
Solving the Continuous Authorization Conundrum
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: Solving the Continuous Authorization Conundrum
