The U.K.’s domestic intelligence agency, MI5, has warned that more than 100 U.K.-linked academics have contributed to research projects allegedly funded…
AI slop submissions force Google to freeze its open-source bug bounty
Google has stopped accepting new product vulnerability reports through its Open Source Software Vulnerability Reward Program (OSS VRP), after a wave of…
Alert Overload, Tool Sprawl and Evasive Phishing: The 5 Bottlenecks Slowing Down US SOCs
US security operations centers are not short on security products. They are short on time, people and context. Current industry research suggests the…
China-Aligned TA419 Uses Microsoft AitM Phishing Against U.S. AI Policy Experts
A China-linked cyber-espionage group is targeting Microsoft credentials belonging to U.S. policy and regulatory specialists in artificial intelligence,…
How RMM abuse gives attackers a way in that looks like business as usual
Huntress found attackers using legitimate remote monitoring and management (RMM) software in 45% of the endpoint-related incidents it recorded in the…
Discord Users’ Data Exposed in Security Bot Double Counter Security Breach
Double Counter, a Discord security bot, has disclosed a breach that exposed user data after an attacker broke into its cloud systems on October 4, 2026.…
Keyorix: Open-source secrets management for teams that can’t use SaaS
Keyorix is an open-source secrets manager that runs entirely on a company’s own servers. A secrets manager is the locked store where an application…
⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests
A blank field. A public repo. One reply to an email. A box left exposed. None of this sounds dramatic, which is partly the problem. This week’s threats…
Nueva EPS, Colombia’s largest regional healthcare promoting entity has allegedly been hacked (1)
Colombia’s largest health-promoting entity, Nueva EPS, has allegedly been hacked by an individual demanding $15 million not to leak the data. Colombia’s…
Citrix issues patch for third exploited flaw in NetScaler
The memory overflow vulnerability could lead to a denial-of-service condition under certain circumstances.
SonicWall Fixes Max Severity Pre-Auth Flaw in SMA1000 Appliances
SonicWall patched a CVSS 10 pre-auth SSRF flaw in SMA1000 appliances that could let unauthenticated attackers reach internal functions. SonicWall released…
Legacy sign-on service comes back to bite school software provider Bromcom
Intruders retrieved email addresses from superseded tech kept running for an internal system
California Man Charged in Alleged $300M AI Server Smuggling Scheme to China
A California tech executive faces federal charges over an alleged $300 million scheme to route export-controlled AI servers to China through Southeast…
Google pauses open source bug bounty program after rise in AI submissions
Google has frozen its OSS VRP product vulnerability submissions to stop the flood of AI generated vulnerability reports.
Debian’s latest kernel security update has 1,313 reasons to patch
AI-assisted bug hunting adds to maintainers’ workload, while broad CVE rules help explain the sprawling tally
IT Security News Hourly Summary 2026-10-07 21h : 25 posts
25 posts published in the last hour 18:31ClingSTUN Malware Turns Unpatched IoT Devices Into Proxy Nodes 18:31Dread Dark Web Forum Hijacked, Operators Claim Control of Domain Keys 18:31Proposed anti-Flock bills could spell trouble for license plate readers 18:31Hackers steal 8…
ClingSTUN Malware Turns Unpatched IoT Devices Into Proxy Nodes
ClingSTUN exploits known IoT flaws and abuses public STUN servers to keep proxy access to devices
Dread Dark Web Forum Hijacked, Operators Claim Control of Domain Keys
Dread dark web forum appears hijacked after a pinned post claimed control of the project and domain keys, while denying plans to leak user data.
Proposed anti-Flock bills could spell trouble for license plate readers
Two sets of US lawmakers introduced bills in late September and early October to tackle the growing concerns about automated license plate readers.
Hackers steal 8 million citizens’ records from Danish government database
The Danish government said the breach of names, addresses, and state-issued ID numbers affects 8 million people, including people living abroad and the…
Denmark ’s Population Registry Breached, 8.8 Million Affected
Hackers accessed names, addresses and CPR numbers of 8.8 million people in Denmark through a third-party company with legal registry access. A hacker…
Q&A With Oliver Simonnet at CultureAI: AI Security In 2026: Most Organisations Deploy AI And Hope For The Best
Over the past few years, AI has gone from something understood and used by a select few to a cornerstone of almost every organisation. As businesses race…
Secure the Grid: What Executive Order 14421 Means for Zero Trust
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: Secure the Grid: What Executive Order 14421 Means for Zero Trust
Ordering violence from abroad: five suspects arrested in Spain, Morocco, and France
Five suspects linked to the organisation and recruitment of serious violence have been arrested in Spain, Morocco, and France, in the latest results of…
