The Indian government has directed Google to take down dozens of websites and databases hosted on Firebase after finding that cybercriminals were…
Brevo Breach Sends Trezor Phishing Email to 347,000 Subscribers
A Brevo breach allowed attackers to send Trezor phishing emails to 347,000 subscribers, exposing security risks created by trusted third-party vendors.
Apple parental controls in iOS 27 let kids ask before opening new websites
Apple has overhauled the child-safety tools that ship across iPhone, iPad, and Mac. One idea runs through the redesign. Give a child a device that does…
AI Slowdown Debate Leaves Security Teams With a Bigger Problem
As AI leaders debate slowing development, security teams must secure the agents already operating in their environments.
HBO Max Reddit account compromised to serve ClickFix attacks
Part of a ‘massive 48-hour malvertising blitz’ targeting macOS and Windows machines with malware
Japan Government Network Breach Puts 246,000 People at Risk
A vulnerability in Japan’s shared government network may have exposed personal information tied to 246,000 workers across 23 organizations.
Cybersecurity jobs available right now: September 15, 2026
AI & Security Architect SecNinjaz Technologies | India | On-site – View job details As an AI & Security Architect, you will design secure and reliable AI…
IT Security News Hourly Summary 2026-09-15 00h : 4 posts
4 posts published in the last hour 21:55IT Security News Roundup: 2026-09-14 21:55IT Security News Daily Summary 2026-09-14 21:01ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up 21:00IT Security News Hourly Summary 2026-09-14 23h :…
IT Security News Daily Summary 2026-09-14
144 posts published today 21:01ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up 21:00IT Security News Hourly Summary 2026-09-14 23h : 5 posts 20:31Microsoft 365 Passkey Phishing Turns Login Into a Cloud Breach 20:02Telegram Desktop…
ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up
Frontier AI is compressing the attack lifecycle from vulnerability discovery to exploitation, forcing defenders to detect, patch and respond at machine…
IT Security News Hourly Summary 2026-09-14 23h : 5 posts
5 posts published in the last hour 20:31Microsoft 365 Passkey Phishing Turns Login Into a Cloud Breach 20:02Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports 20:02whitelist-bypass – WebRTC Tunnels Through Video-Calling Platforms 20:013BB Attacker Used MeshCentral Backdoor…
Microsoft 365 Passkey Phishing Turns Login Into a Cloud Breach
Microsoft warns that passkey-themed phishing is hijacking Microsoft 365 accounts, adding rogue MFA methods, and slowly stealing business cloud data.
Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports
A flaw in Telegram Desktop let a bot’s message plant hidden JavaScript inside chats that users exported to HTML files, security researchers at ExPatch…
whitelist-bypass – WebRTC Tunnels Through Video-Calling Platforms
whitelist-bypass tunnels traffic through commercial video calls, for networks that allow only approved domains. How its two tunnels work, and the claim to…
3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials
An attacker was operating inside the network of 3BB, one of Thailand’s largest broadband providers, and maintained remote control of internal machines…
IT Security News Hourly Summary 2026-09-14 22h : 6 posts
6 posts published in the last hour 19:31Upcoming Speaking Engagements 19:02China Calls Amodei’s AI Proposal a New Cold War Playbook 19:02New hardware device can RAM into encrypted memory, expose your data 19:02Attackers Actively Exploiting Critical Vulnerability in WooCommerce Wholesale Lead…
Upcoming Speaking Engagements
This is a current list of where and when I am scheduled to speak: I’m speaking online (via Zoom) at a League of Women Voters event on Tuesday, September…
China Calls Amodei’s AI Proposal a New Cold War Playbook
China rejects Amodei’s AI slowdown proposal, calling it fearmongering and a US attempt to contain China’s technology sector. The debate over whether the…
New hardware device can RAM into encrypted memory, expose your data
Attackers would need physical access to the server to pull off the DDR5 trick
Attackers Actively Exploiting Critical Vulnerability in WooCommerce Wholesale Lead Capture Plugin
On February 20th, 2026, a critical Unauthenticated Arbitrary File Upload vulnerability was publicly disclosed in WooCommerce Wholesale Lead Capture, a…
Apple Updates Everything, (Mon, Sep 14th)
Today, Apple released its annual update across all its operating systems. With that, Apple not only released new features but also patched 261 different…
IT Security News Hourly Summary 2026-09-14 21h : 10 posts
10 posts published in the last hour 18:31OpenAI’s malicious bot swarm attacked RubyGems 18:31ClickFix attacks are tricking Mac and Windows users into hacking themselves 18:02Hackers Exploit FortiGate SSL-VPN Vulnerability to Attack Broadband Provider 18:02Microsoft Offers Up to $30,000 for Critical…
OpenAI’s malicious bot swarm attacked RubyGems
Ruby are you ok? Ruby are you ok? Are you ok Ruby?
ClickFix attacks are tricking Mac and Windows users into hacking themselves
If you clicked on a fake HBO Max ad on Reddit in the past week, you might have fallen victim to a rising ‘ClickFix’ security threat.
