Kiteworks warned customers to temporarily shut down their servers after receiving credible threat intelligence that a threat actor could target some…
Tech Support Scam Kit Uses Google Ads to Deliver Fake Security Alerts
Google Ads deliver a tech support scam kit that shows fake security alerts, makes browsers appear locked and…
Critical ViewSonic vCast Vulnerabilities Allow Attackers to Gain Full Control Over the Device
Critical vulnerabilities in ViewSonic’s vCast software could allow attackers on the same network to steal screen content, install malicious Android…
Nvidia Unveils AI Agent Safety Platform With Hardware-Based Watchdog
The platform combines open source software and a reference system design to keep AI agents within set boundaries.
CISA Warns of Citrix NetScaler 0-Day RCE Vulnerabilities Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two critical Citrix NetScaler vulnerabilities to its Known Exploited…
CISA Says Attackers Are Exploiting Two Critical Citrix NetScaler Flaws Globally
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Sunday added two critical Citrix NetScaler ADC and Gateway flaws to its Known…
PHP Fixed a Bug That Could Send Your Login Credentials to the Wrong Server
PHP has fixed a security flaw that could expose login credentials, cookies, and proxy authentication data to an unintended server during HTTP redirects.…
SIRIUS SPoC network meets as EU enters new era for electronic evidence
The 7th SIRIUS Single Point of Contact (SPoC) Network Meeting, organised by Europol’s EU Internet Referral Unit (EU IRU) together with the German Federal…
Microsoft Entra TrustSink Attack Uses Rogue MFA Provider to Steal Passwords
TrustSink, a post-compromise credential-phishing technique that abuses Microsoft Entra External Authentication Methods (EAMs) to place a rogue password…
FBI agents’ blood tests and doctors’ notes surface after breach
A “shellfish and banana allergy” is among the details in medical records hackers showed reporters. They claim to hold records on thousands of FBI staff.
MCP Is Creating Major Governance Gaps, Researchers Warn
Ox Security found security shortcomings in analysis of over 15,000 MCP servers
Citrix NetScaler RCE zero-days exploited globally for weeks (CVE-2026-88771, CVE-2026-88772)
Citrix has patched eight critical and high-severity vulnerabilities in NetScaler ADC and NetScaler Gateway, two of which (CVE-2026-88771, CVE-2026-88772)…
Kiteworks Urges Server Shutdown, Finds Advanced Forms Vulnerability
The company says the measure was precautionary and that it has no evidence of Kiteworks or customer systems being compromised.
Securing AI Agents at Scale with NVIDIA
AI agents are crossing an important threshold. They are moving from assistants that respond to us to autonomous systems that reason, plan, and act on our…
IT Security News Hourly Summary 2026-09-28 12h : 9 posts
9 posts published in the last hour 09:31Security testing has to keep pace with AI-driven attackers 09:31U.S. CISA adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog 09:31Context matters when it comes to cybersecurity’s agentic operating model 09:31Lumma, RedLine…
Security testing has to keep pace with AI-driven attackers
AI attackers move at machine speed. Security validation needs to follow every meaningful change.
U.S. CISA adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog. The U.S.…
Context matters when it comes to cybersecurity’s agentic operating model
AI agents need context-aware security beyond traditional models. Workflow data provides the governance guardrails that make AI safe and scalable.
Lumma, RedLine and Vidar Infostealers Fuel Cloud Credential Theft Campaigns
Infostealer malware is increasingly becoming the bridge between a compromised developer workstation and an enterprise cloud environment, with Lumma,…
Your attack surface is bigger than you think… and hackers know that
Cyberattacks are exploiting trusted access points like compromised credentials and session cookies. Discover how organizations are gaining visibility…
Ex-US soldier gets 70 months for role in AT&T, Snowflake data thefts
A former U.S. Army soldier who was part of a group that stole data from telecom companies, including AT&T, has been sentenced to 70 months in prison.…
Green Growth Without Washington: Why US Businesses Are Still Investing in Climate Technology
As federal clean-energy support shifts, US businesses are still investing. What is driving them and can corporate demand sustain the momentum?
Operation Master Exploits GlobalProtect CVE-2026-0257 and Deploys AdaptixC2 Across Enterprise Networks
“Operation Master,” an end-to-end cybercrime operation that combined GlobalProtect VPN exploitation, web-application attacks, credential theft, data…
Citrix Patches Critical Zero Days Under Active Exploitation
Citrix has confirmed exploitation of two critical zero-day RCE bugs
