7 days agoOne Packet Can Crash OT Servers in Industrial SectorsSeverity: HighAction: ReviewExploitation: SuspectedDark Reading
7 days agoJapan's Keio confirms ransomware attack disrupted business systemsSeverity: HighAction: Be awareBleepingComputer
7 days agoTimes Car confirms data breach affecting 6.6 million user accountsSeverity: HighAction: Be awareBleepingComputer
7 days agoCarbonato Botnet Puts an AI Agent on Hacked Docker HostsSeverity: ElevatedAction: Be awareDark Reading
8 days agoVU#762428: Authlib library contains a signature‑verification bypass vulnerabilitySeverity: ElevatedAction: Be awareCERT/CC Vulnerability Notes
8 days agoShinyHunters exploiting workarounds for Oracle PeopleSoft bug, Mandiant warnsSeverity: ElevatedAction: Be awareThe Record by Recorded Future News
8 days agoOver 16,000 Supabase databases expose PII, passwords, auth tokensSeverity: InformationalBleepingComputer
8 days agoAI Agents Are Privileged Users; Who Is Auditing Their Access?Severity: InformationalDark Reading
8 days agoNew Mexico jury finds Meta deceived consumers about data privacy practicesSeverity: InformationalThe Record by Recorded Future News
8 days agoChrome Store Hosts 'Poper Blocker' Spyware Downloaded by MillionsSeverity: ElevatedAction: Be awareDark Reading
8 days agoUS, UK warn of exploited Citrix NetScaler zero-day bugsSeverity: HighAction: ReviewExploitation: SuspectedThe Record by Recorded Future News
8 days agoJadePuffer agentic AI attacks target Azure, destroy cloud resourcesSeverity: HighAction: Be awareBleepingComputer
8 days agoJadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud AttackSeverity: ElevatedAction: Be awareDark Reading
8 days agoDutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters InvestigationSeverity: HighAction: Be awareKrebs on Security
8 days agoNeedyMantis: Unpacking a post-compromise malware family used in targeted operationsSeverity: ElevatedAction: Be awareMicrosoft Security Blog & MSRC
8 days ago80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjackingSeverity: ElevatedAction: Be awareBleepingComputer
9 days agoWireshark 4.6.9 Released, (Sun, Sep 27th)Severity: ElevatedAction: PatchSANS Internet Storm Center
9 days agoCritical Zero-Day Vulnerabilities Exploited in Citrix NetScaler ADC, GatewaySeverity: CriticalAction: Act nowExploitation: ExploitedCISA KEVCISA Cybersecurity Advisories2 sources
9 days agoCISA Adds Two Known Exploited Vulnerabilities to CatalogSeverity: CriticalAction: Act nowExploitation: ExploitedCISA KEVCISA Known Exploited Vulnerabilities8 sources
10 days ago3 Consulting Myths Debunked by Unit 42 ExpertsSeverity: InformationalPalo Alto Networks Unit 42
11 days agoAI Sandbox Escapes: Why Forensic Readiness Matters More Than ContainmentSeverity: InformationalDark Reading
11 days agoWhat We Missed: Google Gemini Joins the AI Escape PartySeverity: ElevatedAction: Be awareDark Reading
11 days agoVU#699627: Readwise Reader for Android, version 8.7.2, contains multiple XSS vulnerabilitiesSeverity: ElevatedAction: Be awareCERT/CC Vulnerability Notes
11 days agoStorm-3168: Agentic-driven cloud attacks using compromised service principalsSeverity: HighAction: Be awareMicrosoft Security Blog & MSRC
11 days agoStopping IT Worker Scams Requires Revamped HR ProcessSeverity: ElevatedAction: Be awareDark Reading
11 days agoA Closer Look at Malware From the Macfinger ClickFix Campaign, (Fri, Sep 25th)Severity: ElevatedAction: Be awareSANS Internet Storm Center
11 days agoWordPress Core Remote File Inclusion Vulnerability (CVE-2026-87902) is being actively exploited, CISA warnsSeverity: HighAction: PatchExploitation: ExploitedCISA KEVCISA Known Exploited Vulnerabilities