Top level domain theft, Yandex attacked, Cisco Nexus flaws

Attackers hijack three top level domains to obtain Google certificates

https://www.infosecurity-magazine.com/news/attackers-hijack-cctlds-obtain/

Major Yandex data center in Russia hit by Ukrainian drone

https://therecord.media/yandex-russia-drone-ukraine

Cisco warns of critical flaws allowing Nexus switch takeover

https://www.bleepingcomputer.com/news/security/cisco-warns-of-critical-flaws-allowing-nexus-switch-takeover/

Attackers target Atlassian vulnerability shortly after PoC publication

https://www.securityweek.com/attackers-target-critical-atlassian-vulnerability-within-hours-of-poc-publication/

Wazza Phishkit targets banking, government, and manufacturing

https://thehackernews.com/2026/10/wazza-phishkit-targets-banking.html

Shai-Hulud worm moves to AI infrastructure with Tensorlake compromise

https://www.theregister.com/security/2026/10/08/shai-hulud-worm-makes-jump-to-ai-infrastructure-with-tensorlake-compromise/5302054

Japan sees sharp rise in web data leaks

https://thehackernews.com/2026/10/japan-sees-sharp-rise-in-web-data-leaks.html

DOJ charges ransomware recovery CEO for secretly paying hackers

https://therecord.media/ransomware-recovery-charges-doj

Get the show notes here: https://cisoseries.com/cybersecurity-news-top-level-domain-theft-yandex-attacked-cisco-nexus-flaws/

Huge thanks to our sponsor, Vanta

Risk and regulation ramping up—and customers expect proof of security just to do business. Vanta's automation brings compliance, risk, and customer trust together on one AI-powered platform. So whether you're prepping for a SOC 2 or running an enterprise GRC program, Vanta keeps you secure—and keeps your deals moving. Learn more at vanta.com/ciso.

This article has been indexed from Cybersecurity Headlines

Read the original article: