WordPress today released patches to fix a new set of vulnerabilities in its core software, one of which could allow a crafted web link, opened by a…
Tag: EN
SE Labs Launches PIVOT Testing Program
SE Labs, a UK-based security testing provider, unveiled PIVOT on September 15, a new six-month testing program designed to evaluate cybersecurity vendor…
Spain gets its first taste of AI-aided cyber attack
Data protection chiefs call for ‘immediate review’ of data protection models
Cisco Secure Email Gateway Zero-Day Exploited for Root Command Execution
Cisco Secure Email Gateway flaw CVE-2026-76461 is under active exploitation, with no workaround and urgent patching required for affected AsyncOS systems.
UK Cloud Control: Why Sovereignty Has to Move Beyond Data Location
UK Cloud Control: Why Sovereignty Has to Move Beyond Data Location andrew.gertz@t… Fri, 09/18/2026 – 16:52 Data Security Cloud Security Sebastien Pavie |…
An Undercover Google Analyst Infiltrated a Notorious Supply-Chain Hacking Gang
TeamPCP pulled off the worst-ever software supply-chain hacking spree and breached thousands of companies. Now Google’s threat intelligence group says it…
Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation
Google has disclosed that a high-severity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as…
Docker Fixes Critical Sandboxes Flaw That Could Expose Host Files
Docker has patched two vulnerabilities in Docker Sandboxes that could allow malicious code running inside an isolated sandbox to cross its intended…
Researchers used Claude to hack OpenAI employees’ ChatGPT accounts
Agentic exploits for the win (again)
Cyber-Attacks Cost Organizations $52,000 on Average
Hiscox highlighted the huge financial and operational costs of cyber-attacks, with the average cost of an incident at $52,000
North Korea’s fake job interviews infected 30,000 devices
WaterPlum recruiters used bogus coding tests to backdoor jobseekers and raid more than 7,000 crypto wallets
Threat Intelligence Alone Won’t Close the Exploitation Gap
A leaked credential shows up in a criminal marketplace, or a vulnerability gets a disclosure advisory, and either one can be weaponized against a real…
Don’t Call Us, We’ll Call Your APIs | TraderTraitor Backdoors Resurface on Victim With No Crypto Ties
North Korean operators built a foothold on a DevOps engineer’s Mac in a campaign whose job interview lures deliver malware via Terraform lock files.
An Undercover Google Analyst Infiltrated a Notorious Supply Chain Hacking Gang
TeamPCP pulled off the worst-ever software supply chain hacking spree and breached thousands of companies. Now Google’s threat intelligence group says it…
Fake CAPTCHA Scams
New variant of an old scam: Use the framing of a CAPTCHA to get an unsuspecting user to download and run a malicious program.
International investigation identifies over 70 potential victims exploited in Indian restaurants
The coordinated action conducted on 18 September 2026 led to two arrests. Allegedly, the traffickers forced their victims to work up to 16 hours per day,…
Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks
Acronis has warned that a high-severity security flaw in its Backup plugin for cPanel and Web Host Manager (WHM) deployments has been exploited in the…
Hackers Got Inside a Flock Camera. Its Data Shows How the System Really Works
A hacker collective pulled down a Flock camera and dumped its data. The files included thousands of videos and logs showing that the device captured 1.6…
Google Opens Google Home to Claude and Other AI Agents — Here’s What They Can Control
Google Home now lets Claude and other compatible AI agents inspect devices, review activity, and perform approved actions through Home MCP.
Settra ransomware variant deployed in recent attacks
Security researchers warned that hackers are using VPN credentials for initial access and deploying RMM tools.
