RATHat Android malware uses Gemini AI to help take control of infected phones beyond normal app permissions. The banking trojan abuses a developer feature…
Hackers Abuse MSP360 and ScreenConnect RMM Tools for Persistent Access and Credential Theft
The phishing campaigns that weaponize legitimate remote monitoring and management software to establish persistent access and support credential theft on…
Unsloth Studio RCE Flaw Lets Malicious Hugging Face Models Execute Code
A now-patched vulnerability in Unsloth Studio allowed a malicious Hugging Face model repository to execute Python code when a user merely selected the…
More than half of UK businesses lack confidence in basic cyber skills
Government survey puts the figure at 808k, says detecting and removing malware most common weakness
New OperTraitors Tool Reveals Dangerous Privilege Escalation Paths in Kubernetes Operators
A new open-source security tool, OperTraitor, has revealed how Kubernetes operators can create dangerous privilege escalation paths when they receive…
ShinyHunters Defiant After FBI Calls on Members to Come Forward
In the wake of a suspected leader’s arrest, ShinyHunters says it never intended to publish data stolen from the FBI.
AI Agent Finds Linux Kernel Bug That Turns a Tiny Memory Write Into Root Access
Autonomous security research platform XBOW has disclosed CVE-2026-72018, a high-severity Linux kernel vulnerability that converts a tightly constrained…
Attackers Use PaperCut RCE Chain to Steal Tokens and Access Domain Controller
Threat actors exploited a chained pair of PaperCut MF zero-day vulnerabilities to compromise an education-sector environment, steal a domain-privileged…
China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor
Cisco Talos uncovered a cluster of activity we track as UAT-11587 targeting government and policy organizations across Asia, including in Taiwan, India,…
Signal brings encrypted local backups to iOS and desktop, adds cross-platform restore
Signal users who switch from an Android phone to an iPhone, or the other way around, can take their message history with them, and backups can be restored…
Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT
Unknown threat actors have been observed exploiting a newly patched security flaw in Citrix NetScaler ADC and NetScaler Gateway appliances to target…
RSA Agent ID Secures AI Agents and MCP Servers With Identity-Based Access Controls
RSA has launched RSA Agent ID, an identity security platform that discovers, secures, and governs AI agents and Model Context Protocol (MCP) servers in…
OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted
A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash the program, OpenSSL said on September 29 as it released…
Hackers Exploit Citrix NetScaler Zero-Day to Gain Root Access and Deploy Web Shells
Threat actors are actively exploiting a critical zero-day vulnerability in Citrix NetScaler, identified as CVE-2026-88772, to gain unauthenticated…
IT Security News Hourly Summary 2026-09-30 12h : 5 posts
5 posts published in the last hour 09:31Attackers Abuse ChatGPT Custom GPTs to Deploy a Full-Featured RAT 09:028 Top Red Teaming Service Providers for Enterprise Adversary Emulation 09:02Apple Patches CoreGraphics Zero Day Exploited in Attacks 09:01Cybersecurity Month: 4 essential security…
Attackers Abuse ChatGPT Custom GPTs to Deploy a Full-Featured RAT
Threat actors abused fake ChatGPT Custom GPTs and ClickFix to deliver a multi-stage RAT. ChatGPT’s Custom GPT feature is the latest legitimate surface…
8 Top Red Teaming Service Providers for Enterprise Adversary Emulation
Compare 8 top red teaming providers for enterprise adversary emulation, from DeepSeas and Mandiant to CrowdStrike, IBM, SpecterOps, TrustedSec and NCC…
Apple Patches CoreGraphics Zero Day Exploited in Attacks
Apple has patched CVE-2026-86950, a zero-day bug in the iOS CoreGraphics engine
Cybersecurity Month: 4 essential security habits
For Cybersecurity Awareness Month, we’re sharing a list of tips to encourage greater safety and protection among all computer users.
IT Security News Hourly Summary 2026-09-30 11h : 9 posts
9 posts published in the last hour 08:31OperTraitor Finds Kubernetes Operators With Cluster-Wide Secret Access and Admin Paths 08:31WHIPSHOT and SLAPSHOT: the tools behind an active Citrix NetScaler campaign 08:31UK rail cops’ £320K face-scanning spree nets zero matches 08:31U.S. CISA…
OperTraitor Finds Kubernetes Operators With Cluster-Wide Secret Access and Admin Paths
OperTraitor, an open-source, LLM-powered engine that identifies Kubernetes operators whose RBAC (Role-Based Access Control) privileges exceed their…
WHIPSHOT and SLAPSHOT: the tools behind an active Citrix NetScaler campaign
Mandiant and GTIG detail active exploitation of a Citrix NetScaler zero-day, deploying custom web shells WHIPSHOT and SLAPSHOT for root access. Mandiant…
UK rail cops’ £320K face-scanning spree nets zero matches
British Transport Police’s six-month facial recognition pilot produced one alert, and it was a false positive
U.S. CISA adds Apple Multiple Products flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Apple Multiple Products flaw to its Known Exploited Vulnerabilities catalog. The U.S.…
