The Muse artificial intelligence assistant from Meta has been found to be vulnerable to an attack which allows malicious software to redirect its…
Six arrests for smuggling migrants via Schengen airports
Europol supported a migrant smuggling investigation involving law enforcement authorities from 17 countries. The criminal network was also engaged in…
Fake Crypto Wallet App Delivers PamStealer Malware That Hijacks Mac Credentials
A new variant of the macOS infostealer PamStealer is being distributed through a fake cryptocurrency wallet application, using a server-assisted…
Microsoft Disrupts AI-Powered Phishing Platform EvilTokens
Microsoft has successfully disrupted EvilTokens, a sophisticated phishing platform that integrated artificial intelligence across its entire attack…
Fake Claude Max giveaway tricks users into handing over their Google account credentials
A fake Claude Max giveaway uses a spoofed Google sign-in window to steal users’ login credentials, Malwarebytes researchers have found.…
Workforce AI Security Policy Management Is Now Conversational
In this article The new Workforce AI MCP is Check Point’s own Model Context Protocol server for Workforce AI Security. Connect a compatible AI client and…
LinkedIn adds new tools to fight fake profiles and bogus work histories
LinkedIn is rolling out new verification tools that let members vouch for colleagues’ work experience and give companies more control over accounts that…
Barracuda brings AI security and governance within reach of smaller organizations
Barracuda Networks has launched Barracuda AI Data Security, the AI security and governance solution purpose-built for resource-constrained organizations…
Okta positions identity as control plane for AI agents
Okta has announced an expanded platform for managing AI agent identities, positioning itself as a leader in securing what CEO Todd McKinnon calls “the…
DarkMe RAT trades zero-days for plain phishing emails
DarkMe, a remote access trojan and info-stealer that has previously been associated with a threat group that targeted financial market traders and…
Master of Malt confirms customer data breach
Master of Malt has confirmed a customer data breach affecting personal information after attackers compromised a third-party application integrated with…
Lookout targets smishing, voice cloning, and vishing with real-time mobile protection
Lookout has launched Social Engineering Protection (SEP), a new module within the Lookout Mobile AI Security Platform. SEP provides automated, real-time…
New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control
A flaw in cPanel’s CalDAV and CardDAV service lets anyone with a cPanel hosting account run code as root and take “full control of the server,” the…
Chinese Hackers Exploit ZyXEL Switch Flaw to Steal Data From Nearly 1,000 Devices
A Chinese threat actor has been using the recently discovered vulnerability in ZyXEL GS1900 switches to steal crucial information from the devices around…
Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests
Anthropic and OpenAI on Tuesday announced new models, with both artificial intelligence (AI) companies noting that they are continuing to invest in…
Fake Claude Max giveaway hides a Google account phishing trap
A convincing offer of a free Claude Max subscription uses a fake browser window to steal Google login information.
Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape
A use-after-free in the Linux kernel’s AF_UNIX socket subsystem can be used to escape a container and gain root on the host, security firm DepthFirst said…
Meta’s Muse AI Assistant Rolled Out With a Serious Security Flaw
Meta says it issued a fix for the Muse zero-day vulnerability that would have let attackers do “whatever” they wanted on a victim’s Mac, highlighting the…
545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent
Autonomous security agents are getting good at finding bugs. Nobody has a good way to measure how good. Point one at a realistic target and what comes…
IT Security News Hourly Summary 2026-09-23 15h : 16 posts
16 posts published in the last hour 12:31Honeywell: OT Security Teams Embrace AI, but Autonomy Still Rare 12:31ShinyHunters claims FBI breach was revenge for “false” report 12:31Exvicy ClickFix Malware-as-a-Service Copies ErrTraffic to Hijack WordPress Sites 12:03How to Secure AI Models:…
Honeywell: OT Security Teams Embrace AI, but Autonomy Still Rare
Only 21% of industrial security leaders report a complete OT asset inventory, even as 88% call their programs mature.
ShinyHunters claims FBI breach was revenge for “false” report
The extortion group says it stole sensitive data on FBI agents and job applicants, and wants the bureau to retract a warning about its tactics.
Exvicy ClickFix Malware-as-a-Service Copies ErrTraffic to Hijack WordPress Sites
A new Malware-as-a-Service platform, Exvicy, is actively abusing compromised WordPress websites to deliver ClickFix lures disguised as Cloudflare…
How to Secure AI Models: Model Security and Adversarial Attacks (2026)
By HOC Team | Updated: October 2026 | Read time: ~22 min In October 2024, researchers at Anthropic…
