Cybercrime Police Shut Down KillSec Ransomware, Identify Alleged Teen Leader Police took control of KillSec’s leak site and secured at least 110 terabytes of data stolen from victims. Eduard Kovacs10 hours ago
Vulnerabilities Cisco Patches Exploited Catalyst SD-WAN Zero-Day Vulnerability The flaw could allow remote, unauthenticated attackers to access vulnerable appliances with administrative privileges. Ionut Arghire16 hours ago
Artificial Intelligence Google Launches Gemini 4 Argon With Guardrail-Free Access for Vetted Defenders The company says its new frontier AI model found a critical vulnerability in software used by hospitals worldwide. Eduard Kovacs16 hours ago
Vulnerabilities Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks Several security firms have confirmed seeing exploitation of the NetScaler vulnerabilities CVE-2026-88771 and CVE-2026-88772. Eduard Kovacs1 day ago
Artificial Intelligence Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking Lawsuit Attacks by autonomous AI agents are moving out of the lab and into the courtroom, raising unsettled questions about who is liable for what... Eduard Kovacs2 days ago
Cybercrime ShinyHunters Defiant After FBI Calls on Members to Come Forward In the wake of a suspected leader’s arrest, ShinyHunters says it never intended to publish data stolen from the FBI. Ionut Arghire2 days ago
Artificial Intelligence Trump Says Top Tech Firms Have Signed Accord to ‘Self-Police’ AI Development The accord opened the door to future regulation but focused on four voluntary steps for the companies to take. Associated Press2 days ago
Data Breaches Pentagon Personnel Agency Data Breach Impacts 3 Million People The data breach affects the Defense Manpower Data Center (DMDC), which maintains personnel records for the Department of Defense. Eduard Kovacs2 days ago
Mobile & Wireless Apple Patches Zero-Day Linked to ‘Extremely Sophisticated Attack’ Apple released iOS and macOS updates to patch a zero-day vulnerability (CVE-2026-86950) reported by Meta’s product security team. Eduard Kovacs3 days ago
Cybercrime Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign The extortion group has modified its exploit in new attacks targeting the PeopleSoft vulnerability CVE-2026-35273. Ionut Arghire4 days ago
Artificial Intelligence Nvidia Unveils AI Agent Safety Platform With Hardware-Based Watchdog The platform combines open source software and a reference system design to keep AI agents within set boundaries. Eduard Kovacs4 days ago
Vulnerabilities Citrix Confirms 2 NetScaler Zero-Days After Admins Pulled the Plug Citrix has released patches for the critical NetScaler vulnerabilities tracked as CVE-2026-88771 and CVE-2026-88772. Eduard Kovacs4 days ago
Vulnerabilities Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in Attacks CISA added CVE-2026-65660 to its KEV catalog, giving federal agencies a patching deadline of September 28. Eduard Kovacs5 days ago
Artificial Intelligence China and US Agree to Establish AI Safety Channel and Continue Trade and Military Talks The US and China agreed to set up a communication mechanism for artificial intelligence-related incidents. Associated Press5 days ago
Cybercrime North Korea Suspected in $351 Million Bitget Crypto Heist Bitget’s security systems caught the unauthorized transfers on September 24, and some wallet addresses linked to the attacker have been frozen. Eduard Kovacs6 days ago
Data Protection Windows, Linux, Android File Notification Systems Leak User Activity Researchers show that file-change notification systems can leak keystroke timing, browsing activity, and WhatsApp media events. Eduard Kovacs7 days ago
Email Security Roundcube Webmail Vulnerability in Attackers’ Crosshairs Tracked as CVE-2026-48842, the exploited bug is an SQL injection that can be exploited without authentication. Ionut Arghire7 days ago
Artificial Intelligence OpenAI Agents Probed Websites for Vulnerabilities While Fetching Public Data Australia disclosed that an OpenAI agent gained unauthorized access to non-public government information. Eduard KovacsSeptember 24, 2026
Vulnerabilities Critical WordPress Vulnerability Exploited Immediately After Disclosure Tracked as CVE-2026-87902, the path traversal flaw allows remote, unauthenticated attackers to execute arbitrary code. Ionut ArghireSeptember 24, 2026
ICS/OT Honeywell: OT Security Teams Embrace AI, but Autonomy Still Rare Only 21% of industrial security leaders report a complete OT asset inventory, even as 88% call their programs mature. Eduard KovacsSeptember 23, 2026