EvilTokens turns a Microsoft sign-in into a route to corporate email fraud. The phishing kit, first seen in February 2026, tricks people into approving an…
Cybercriminals Abandon Domains but Keep the Hosting Networks Behind Malware Campaigns
Cybercriminals are rapidly rotating lure domains, cloud storage buckets and command-and-control channels, but one infrastructure component is proving far…
The Malware Hiding in Developer Tools That Turned Terraform Providers Into Attack Paths
Malware has moved into tools developers use to build and manage cloud infrastructure. A campaign linked to Graphalgo planted a remote access program in…
IT Security News Hourly Summary 2026-09-23 14h : 13 posts
13 posts published in the last hour 11:31Drug trafficking investigation leads to some of the world’s biggest underground bankers 11:31EvilTokens made phishing-as-a-service look easy. Then it got taken down 11:31Research on Models Engaging in Genie-Like Behavior 11:31AI-Powered Phishing Platform EvilTokens…
Drug trafficking investigation leads to some of the world’s biggest underground bankers
The investigation, led by the Spanish National Police (Policía Nacional) and supported by Europol, has resulted in the arrest of 21 suspects for offences…
EvilTokens made phishing-as-a-service look easy. Then it got taken down
Microsoft, Coinbase and law enforcement took down EvilTokens, a phishing kit that compromised 12,000 inboxes through device-code phishing and AI.…
Research on Models Engaging in Genie-Like Behavior
New paper: “ Self-Jailbreaking: Language Models Can Reason Themselves Out of Safety Alignment After Benign Reasoning Training .” Abstract: We discover a…
AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft
The cybercrime platform leveraged AI at every step of the attack chain, including writing social engineering messages and deciding targets.
Turning security complexity into useful intelligence: What’s new in Red Hat Lightspeed
In a post-Mythos world, IT teams face a mounting crisis. Many are doing more with the same staff, and security work hasn’t gotten simpler. Alerts still…
Zero-day hackers ditch exploits for a fake image file in new DarkMe campaign
A threat group best known for exploiting previously unknown flaws in WinRAR and Windows has switched to a much simpler method: an email link to what…
Forgot Your Android PIN? Google Is Testing a New Recovery Option
Google is testing an Android feature that could let users recover access to a locked phone with their Google Account instead of factory resetting it.
Thousands of horses caught up in Europe-wide trafficking scheme
Europol has supported a major operation against a criminal network suspected of trafficking horses across Europe using falsified documents and manipulated…
Chrome 154 Patches 108 Vulnerabilities
The browser update resolves several critical-severity memory safety and memory corruption flaws.
CrowdStrike Accelerates Real-Time Data Classification with On-Device AI
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: CrowdStrike Accelerates Real-Time Data Classification with On-Device AI
2026 update: The road to quantum-safe cryptography in Red Hat OpenShift
A year ago, I wrote about the road to quantum-safe cryptography in Red Hat OpenShift. At the time, much of that road was forward-looking: TLS 1.3 was not…
CRA Reporting Is Live: What Manufacturers, Vendors, and Distributors Need to Know
By Matthew Brady, Senior Security Engineering Manager, Black Duck As of September 11, 2026, Article 14 of the EU Cyber Resilience Act (CRA) is in force.…
IT Security News Hourly Summary 2026-09-23 13h : 8 posts
8 posts published in the last hour 10:32ShinyHunters Claims FBI Hack Via PeopleSoft Zero Day 10:31Outerlimit Raises $16 Million to Stop Rogue AI Agents From Causing Harm 10:31Microsoft Warns of EvilTokens AI Phishing Service Hijacking Thousands of Accounts 10:31Attackers hit…
ShinyHunters Claims FBI Hack Via PeopleSoft Zero Day
Infamous threat group ShinyHunters claims to have personal information on thousands of FBI employees
Outerlimit Raises $16 Million to Stop Rogue AI Agents From Causing Harm
Emerging from stealth with $16 million in pre-seed funding, Outerlimit offers a decentralized authorization layer designed to discover, observe, and block…
Microsoft Warns of EvilTokens AI Phishing Service Hijacking Thousands of Accounts
Microsoft has warned that the EvilTokens phishing-as-a-service platform has become a major driver of AI-enabled device-code phishing, compromising more…
Attackers hit Check Point Management Servers and Spark firewalls, F5 BIG-IP APM instances
Check Point Software has released emergency fixes for a critical Check Point Management Server vulnerability (CVE-2026-93616) that has been exploited as…
A Look at AI Doomsday Scenarios That Researchers Say Could Put Humanity at Risk
Debates over the plausibility of these doomsday scenarios have heated up since several executives endorsed slowing the technology’s development for safety…
Graphalgo Malware Uses Malicious Terraform Providers and Go Modules to Deploy RAT
A threat actor linked to the ongoing Graphalgo software supply-chain campaign has expanded beyond npm and PyPI, using malicious Terraform providers and Go…
GPT-6 Sol and Luna arrive with 50% lower API prices
OpenAI has expanded GPT-6 with the GPT-6 Sol and GPT-6 Luna models. Both are available in ChatGPT Work and Codex for Plus, Pro, Business, Enterprise, and…
