A large email fraud campaign used fake CEO messages and invoices to push employees toward payments of nearly $50,000. The operation did not rely on a…
Russian State-Sponsored Hackers Use Claude to Rebuild Malware After Detection
Anthropic on Thursday revealed it disrupted a campaign mounted by a Russian state-sponsored threat actor that abused Claude for developing an AI-assisted…
Russia-Aligned Hackers Use GuardBreaker Prompt Injection to Disrupt AI Malware Analysis
Russia-aligned operators are testing a new way to make artificial intelligence overlook malicious code. The technique, called GuardBreaker, hides a…
August 2026 Cyber Threat Landscape: GenAI Data Exposure Emerges as a New Enterprise Risk as Attacks, Phishing, and Ransomware Accelerate
Key takeaways GenAI usage continued to grow, with the average user generating 106 prompts in August, up from 95 in July and around 78 in June, while…
Passkey-themed social engineering leads to identity and cloud compromise
Passkey-themed social engineering is being used to compromise identities and enable broader cloud attacks. Learn how threat actors establish MFA…
US Agencies Warn Chinese AI Firms Are Extracting Advanced AI Models
US agencies accuse six Chinese AI firms of extracting billions of tokens from US AI models to accelerate development and copy advanced capabilities. NSA,…
Fake GTA6 ‘Leaked Download’ Caught Spreading RATs, Infostealer and Wiper Ransomware
Cybersecurity firm Huntress has uncovered a malware campaign that preys on excitement for Grand Theft Auto VI (GTA6), packaging remote access trojans, an…
Scans for Proxmox Servers, (Wed, Sep 9th)
About a week ago, Proxmox published an advisory revealing a vulnerability in older versions of Proxmox VE, its flagship Virtual Environment product. The…
Pipelines on Fire: Why Your CI/CD Tools Are the New Cyber Battlefield
Fifteen years in, and the conversation I have most often with security leads still starts the same way: how’s your perimeter, how’s your endpoint…
The Self-Expanding Stolen Inference Supply Chain: An AI Agent Harvesting and Re-Serving LLM Access, (Fri, Sep 11th)
I identified an attacker using a semi-autonomous coding agent to run an offensive operation: finding poorly secured LLM resale gateways, acquiring API…
IT Security News Hourly Summary 2026-09-11 17h : 24 posts
24 posts published in the last hour 14:32You Can Now Destroy Flock Cameras for Cash in GTA V 14:32Serial Microsoft 0-day hunter drops yet another Defender exploit 14:31In Other News: InjectEave Attack, SIM Swapper Sentenced, Glasswing Findings Review 14:31Europol celebrates…
You Can Now Destroy Flock Cameras for Cash in GTA V
A new GTA mod lets you smash and shoot Flock’s automatic license plate readers around the fictional Los Santos.
Serial Microsoft 0-day hunter drops yet another Defender exploit
A bypass of a bypass of a bypass
In Other News: InjectEave Attack, SIM Swapper Sentenced, Glasswing Findings Review
Noteworthy stories that might have slipped under the radar: Invisible Unicode slips past phishing filters, US puts $10 million bounty on Iranian cyber…
Europol celebrates the International Day of Police Cooperation
On 7 September, Europol is marking the International Day of Police Cooperation together with its partners to recognise the central role our network plays…
McKesson Data Leak Includes 6.4M Email Addresses After $55.2M Extortion Demand
McKesson breach data includes 6.4 million unique email addresses after ShinyHunters allegedly demanded $55.2 million to keep the records private.
How to Convert OST to PST When Outlook Won’t Open
OST and PST are the data file formats that Microsoft Outlook uses to store the mailbox data, depending…
N0va Phishkit Targets North America and Europe Through Microsoft Logins
The N0va phishkit abuses Microsoft device-code authentication to obtain tokens even after users complete MFA.
Cyber Briefing: 2026.09.11
Crypto wallets, banking apps, and public-sector systems are being targeted by malicious activity, while defenders and regulators are tightening controls…
Microsoft Defender’s ShieldBreak Fix May Already Have Another Bypass
A researcher says ShieldCrash bypasses Microsoft’s latest Defender fix, extending a patch-and-bypass chain involving RoguePlanet and ShieldBreak.
Hackers Favor US Eastern Business Hours in M365 Phishing Campaign
KnowBe4 researchers observed a new phishing campaign leveraging Microsoft 365’s Direct Send to send malicious emails
Driver’s License Data for Sale
A database of 153 million drivers licenses is for sale on the dark web. Brian Krebs has more detail .
‘Gambling with our lives’: Anthropic researcher quits, warns against self-improving AI
Anthropic researcher Jacob Coxon resigned over AI extinction fears, calling for pacing agreements between labs.
NIS2 Compliance in the AI Age: Why Traditional Cybersecurity Isn’t Enough
Discover why achieving NIS2 compliance is more challenging in the AI age, the four key challenges organizations face, and why segmentation is essential.