access ai android api apple attack authentication backdoor breach business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email endpoint exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added five security flaws impacting JFrog Artifactory, ConnectWise ScreenConnect, and MikroTik RouterOS to its Known Exploited Vulnerabilities (KEV) catalog, following reports of active exploitation in the wild.Details of the vulnerabilities are as follows – CVE-2026-42016 (CVSS score: 8.1) – An incorrect authorization First seen on thehackernews.com…
-
Anthropic: AI Misuse Is Entering a New Phase: From Cybercrime to Surveillance, Propaganda and Weapons
AI is becoming an operational force for cybercrime, surveillance, propaganda, fraud and weapons development, lowering the cost and scale of attacks. Artificial intelligence (AI) is becoming more than a tool for people who want to do something malicious. It is increasingly becoming part of the operational machinery itself. That is the main message emerging from…
-
Google-Play-Frühzugang wird für Betrug missbraucht
Bitdefender warnt: Betrüger nutzen Googles Early-Access-Programm, um Warnungen anderer Nutzer zu verhindern. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/google-play-betrug also interesting: Cybersecurity Snapshot: CISA Hands Down Cloud Security Directive, While Threat from North Korean IT Workers Gets the Spotlight Cybersecurity Snapshot: AI Security Skills Drive Up Cyber Salaries, as Cyber Teams Grow Arsenal of…
-
Managing endlife software risks
End-of-life software is not just an IT housekeeping issue. For a small business, it can become a cost problem, a reliability problem, and a reputation problem all at once. Once software reaches the point where the supplier no longer provides… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/managing-end-of-life-software-risks/ also interesting: Exploring the Pros and Cons…
-
Saturday Security: AI Industrializes Phishing
This week’s Saturday Security Story shows how AI is industrializing an old scam, and doing it at a scale that should get everyone’s attention. Microsoft spotted a campaign that blasted more than 1 million fraudulent emails across a three-day… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/saturday-security-ai-industrializes-phishing/ also interesting: Privacy Roundup: Week 3 of Year…
-
Anthropic stoppt russische Cyberspionage mit Claude
Die russische Gruppe Midnight Blizzard nutzte Claude, um Schadsoftware automatisiert vor Sicherheitsprodukten zu verstecken. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/anthropic-cyberspionage also interesting: Void Blizzard: New Russian Cyberespionage Group Targets NATO and Ukraine Void Blizzard nimmt NATO-Organisationen ins Visier Russische APT-Gruppe greift westliche KRITIS-Betreiber an Hacker linked to Void Blizzard faces charges over cyberespionage…
-
KI: Anthropic entlarvt Claude-Missbrauch für russische Drohnenschwärme
Russische Entwickler hatten mit Claude einen autonomen Kamikaze-Drohnenschwarm zum Einsatz gegen die Ukraine gebaut. First seen on golem.de Jump to article: www.golem.de/news/ki-anthropic-entlarvt-claude-missbrauch-fuer-russische-drohnenschwaerme-2609-212949.html also interesting: What security pros can learn about AI from the Russia-Ukraine war Ukraine sees surge in AI-Powered cyberattacks by Russia-linked Threat Actors Cyberkriminalität: Europas KMU im Visier Ukraine says Russia is deploying…
-
Six Nigerians extradited to US over $6M online romance scam
Alleged members of Black Axe criminal network that swindled US women out of $6m flown from South AfricaSix Nigerian nationals linked to an organized criminal network that allegedly swindled American women out of more than $6m through <a href=”https://apnews.com/article/scams-online-scams-ai-internet-safety-phishing-fraud-takeaways-b1350fd421cce73ac585a649b07332d5″>online romance scams were extradited to the United States on Friday.<a href=”https://www.theguardian.com/world/southafrica”>South African police confirmed they were…
-
Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent
The Dutch Nationaal Cyber Security Centrum (NCSC) is warning of imminent exploitation of two critical flaws in Check Point VPN tracked as CVE-2026-85102 and CVE-2026-85103. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/dutch-ncsc-critical-check-point-vpn-flaws-exploitation-is-imminent/ also interesting: Top 12 ways hackers broke into your systems in 2024 WatchGuard patches ‘critical’ VPN flaw in firewalls that could lead…
-
Revolut confirms customer data breach through fake government requests
Revolut said it notified affected customers and alerted the relevant government agency, law enforcement, and financial regulators. First seen on techcrunch.com Jump to article: techcrunch.com/2026/09/12/revolut-confirms-customer-data-breach-through-fake-government-requests/ also interesting: How defenders use the dark web 13 cybersecurity myths organizations need to stop believing TDL 007 – Cyber Warriors Digital Shadows: Insights from Canada’s Cybersecurity Leader Rogues gallery:…
-
Daily OT Security News: September 12, 2026
Today’s briefing covers five OT/IoT developments: maritime operational-technology monitoring challenges, expanded U.S. critical-infrastructure support, the start of EU Cyber Resilience Act vulnerability reporting for actively exploited flaws, a U.S. Department of Energy request for input on bulk-power system risks, and… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/daily-ot-security-news-september-12-2026/ also interesting: What to Know About CyberAv3ngers:…
-
Cisco bestätigt Angriffe auf kritische FMC-Sicherheitslücke
Die Schwachstelle CVE-2026-20079 im Cisco Secure FMC hat den Höchstwert 10.0 und wird laut Cisco bereits aktiv ausgenutzt. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/cisco-sicherheitsluecke also interesting: Altgeräte bedrohen Sicherheit in Unternehmen Cisco confirms cyberattacks on Smart Licensing Utility flaw Ungepatchte Lücken ermöglichen Übernahme von GitLab-Konten Hacker nutzen gravierende Schwachstelle bei SAP S/4HANA aus
-
When the Whole Company Adopts AI: What It Does to Your SOC
Over the past year, we watched a new class of alert appear in enterprise security operations centers and grow faster than anything else in the stream: alerts that were triggered by AI tools and agents. Not attacks against AI, but the ordinary, everyday footprint of an organization using it, from developers running coding agents and…
-
From Hacks to Bioweapons, Claude Misuse Is Now Everywhere
Plus: The US disrupts the internet’s biggest black market, a Conti ransomware hacker gets prison time, Meta fails to stop AI-generated videos of child abuse. First seen on wired.com Jump to article: www.wired.com/story/security-news-this-week-from-hacks-to-bioweapons-claude-misuse-is-now-everywhere/ also interesting: Cybersecurity Snapshot: Study Raises Open Source Security Red Flags, as Cyber Agencies Offer Prevention Tips Against Telecom Spying Attacks Top…
-
Detecting commandcontrol traffic at the network layer
Command-and-control traffic, often shortened to C2, is the communication path an attacker uses to control a compromised system after initial access. Once malware or a hands-on operator has a foothold, C2 is how they issue commands, move data, stage tools,… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/detecting-command-and-control-traffic-at-the-network-layer/ also interesting: The state of ransomware: Fragmented…
-
OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers
The “major malicious attack” that targeted RubyGems in May 2026 was the work of a swarm of OpenAI agents, according to a new report published by researchers Spencer Kitts, Thomas Larsen, and Sydney Von Arx.On May 12, Maciej Mensfeld, senior product manager for software supply chain security at Mend.io, disclosed details of a coordinated cyber…
-
(g+) Sidecar-Angriffsfläche: Die Dienste, die kein Portscan sieht
Tags: unclassifiedEin Postgresql-Helfer riss Splunk auf. Solche Dienste laufen überall mit, ungezählt. Worauf Admins achten müssen. First seen on golem.de Jump to article: www.golem.de/news/sidecar-angriffsflaeche-die-dienste-die-kein-portscan-sieht-2609-212900.html also interesting: 10 Holiday Gifts for Stressed-Out Security Pros Fünf Schritte zur Cyberresilienz – So schützen Unternehmen sich vor millionenschweren Schäden The Future of eCommerce: How Custom Apps Help You Get Ahead…
-
China-Linked Hackers Chain Chrome Zero-Day With Windows Kernel Flaw in Attacks
China-linked threat actors UTA0560 and JungleBamboo chained a Google Chrome zero-day with a Windows kernel privilege-escalation flaw in phishing campaigns targeting NGOs and other victims. Volexity documented the operations, detected on September 1, 2026, as using identical browser-to-kernel exploit components but ultimately installing separate espionage payloads: the GRIMWEDGE JScript backdoor and the LONGTALE credential-stealing Chrome…
-
Threat Actors Use Claude AI Agents to Automate Cyberattacks and Steal Sensitive Data
Threat actors are increasingly using Claude-based AI workflows to automate cyberattacks, accelerate data theft, and reduce the technical expertise needed to run complex intrusions. Anthropic’s report details cyber espionage, financially motivated extortion, supply-chain compromise, and hacktivist activity disrupted between December 2025 and August 2026. Rather than using an AI chatbot only for occasional coding assistance,…
-
OpenAI Agents Flood RubyGems With 2,000 Packages and Exploit Build System for RCE
A swarm of AI agents believed to be operated internally by OpenAI uploaded more than 2,000 malicious packages to RubyGems in May 2026, abusing the ecosystem’s documentation build process to execute code remotely and attempting to steal user API keys through a then-undisclosed server-side flaw. Researchers Spencer Kitts, Thomas Larsen, and Sydney Von Arx said…
-
New Phishing Campaign Abuses Windows Mshta.exe to Steal Credentials and Secrets
A newly identified phishing campaign is abusing the legitimate Windows utility mshta.exe to execute malicious HTML Application (HTA) files, conduct system reconnaissance, and potentially deploy payloads designed to steal credentials and local secrets. Fortra’s Intelligence and Research Experts (FIRE) said the activity began in June and remains active, with operators regularly recompiling malware samples to…
-
Cybersecurity May Be AI’s Next Compute Market
Jensen Huang recently described cybersecurity as one of NVIDIA’s next major AI growth opportunities. The obvious interpretation is that NVIDIA sees another large enterprise market for AI. But I think there is a more interesting idea underneath it: cybersecurity may… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/cybersecurity-may-be-ais-next-compute-market/ also interesting: DeepSeek hit by cyberattack and…
-
CISA Warns of Critical GitLab Vulnerability Exploited in Attacks
Tags: attack, cisa, cve, cyber, cybersecurity, exploit, flaw, gitlab, infrastructure, Internet, kev, mitigation, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical GitLab flaw, tracked as CVE-2026-85706, to its Known Exploited Vulnerabilities catalog after confirming it was exploited in attacks. The issue affects both GitLab Community Edition and Enterprise Edition and requires urgent mitigation, particularly for internet-accessible GitLab instances. CVE-2026-85706 is a path traversal vulnerability…
-
Trotz Meldepflichten: Nur 3 % der deutschen Industrieunternehmen sind vollständig auf EU Cyber Resilience Act vorbereitet
PwC-Studie: Bewusstsein für CRA-Anforderungen ist hoch, operative Umsetzung bleibt weit dahinter zurück. Jedes zweite Unternehmen hat noch nicht mit der CRA-Umsetzung begonnen. Mittelständische Unternehmen liegen in nahezu allen Bereichen hinter größeren Unternehmen. Die Meldepflichten des EU Cyber Resilience Act (CRA) gelten seit dem 11. September 2026. Doch die deutsche Industrie ist auf die neue… First…
-
KI als Taktgeber und Schutzschild: Wie Unternehmen ihre IoT-Flotten zukunftssicher schützen
KI verschärft die Cyberbedrohung für vernetzte Geräte und wird zugleich zum zentralen Instrument ihrer Abwehr. Entscheidend sind dabei nicht nur intelligente Analysen, sondern eine durchgängige Sicherheitsarchitektur aus Geräteidentität, geschützter Konnektivität, Netzwerksegmentierung und menschlicher Kontrolle. Das Interview mit Timo Ross zeigt, welche Maßnahmen Unternehmen jetzt priorisieren sollten. Management Summary KI erhöht Tempo und Skalierung… First seen…
-
Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems
OpenAI confirmed their agents were behind a campaign in May that researchers say flooded the popular online code repository with malicious software packages. First seen on cyberscoop.com Jump to article: cyberscoop.com/openai-agents-malicious-rubygems-packages/ also interesting: Gen AI is transforming the cyber threat landscape by democratizing vulnerability hunting Supply Chain Attacks Surge in March 2026 6 ways attackers…
-
Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems
OpenAI confirmed their agents were behind a campaign in May that researchers say flooded the popular online code repository with malicious software packages. First seen on cyberscoop.com Jump to article: cyberscoop.com/openai-agents-malicious-rubygems-packages/ also interesting: Gen AI is transforming the cyber threat landscape by democratizing vulnerability hunting Supply Chain Attacks Surge in March 2026 6 ways attackers…
-
We Read 1,000 SOC Job Postings. Security Teams Are Hiring Three Builders for Every Analyst.
The last SOC requisition your team wrote says more about the future of security operations than analyst forecasts. It has a title, a salary range, and a duties list that a budget owner signed. Multiply that by 665 and you… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/we-read-1000-soc-job-postings-security-teams-are-hiring-three-builders-for-every-analyst/ also interesting: AI disinformation didn’t upend 2024…
-
Your AI Keys Are The Loot Now
Anthropic published its September 2026 threat intelligence report this week. It runs 154 pages and documents activity disrupted between December 2025 and August 2026 across seven harm areas, from state espionage to weapons development to a network of fake dating… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/your-ai-keys-are-the-loot-now/ also interesting: 7 biggest cybersecurity stories of…
-
Agentic Investigation for Identity Alerts: A Field Comparison
Tags: identityVendor claims below are dated at first sourcing and re-checked periodically; see the Source & Date column in the comparison table. Third-party positions are quoted from each vendor’s public materials, with dates as labeled. We hold D3 Morpheus to the… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/agentic-investigation-for-identity-alerts-a-field-comparison/ also interesting: Children Increasingly Targeted For Identity…
-
Cybersecurity Budgets Hold Up as AI Costs Force IT Spending Cuts
Cybersecurity spending is holding up better than many other areas of enterprise IT as organizations redirect spending toward artificial intelligence, according to recent survey data from Enterprise Technology Research. ETR’s Summer 2026 Macro Views Survey found that security software spending was expected to grow 7.8%, the fastest rate among the software categories it tracks. Overall..…
-
Ukrainian Conti Ransomware Developer Gets 4 Years in US Prison
Lytvynenko Admitted Developing Malware and Stealing Data for Conti. A U.S. court sentenced Ukrainian national Oleksii Lytvynenko to four years in prison after he admitted developing malware and stealing data for Conti, the ransomware operation blamed for more than 1,000 victims and $150 million in payments. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/ukrainian-conti-ransomware-developer-gets-4-years-in-us-prison-a-32805 also…
-
Anthropic Says AI Is Lowering the Bar for Sophisticated Attacks
Threat Report Finds Multi-Agent Tools Let Less-Skilled Actors Scale Complex Operations. Anthropic’s Threat Intelligence team identified a series of attempted attacks using its AI systems by malicious actors. The report focuses not on how fast AI systems develop exploits at scale, but on how broader, deeper attacks can emerge with just a few resources. First…
-
Anthropic Says AI Is Lowering the Bar for Sophisticated Attacks
Threat Report Finds Multi-Agent Tools Let Less-Skilled Actors Scale Complex Operations. Anthropic’s Threat Intelligence team identified a series of attempted attacks using its AI systems by malicious actors. The report focuses not on how fast AI systems develop exploits at scale, but on how broader, deeper attacks can emerge with just a few resources. First…
-
Anthropic Says AI Is Lowering the Bar for Sophisticated Attacks
Threat Report Finds Multi-Agent Tools Let Less-Skilled Actors Scale Complex Operations. Anthropic’s Threat Intelligence team identified a series of attempted attacks using its AI systems by malicious actors. The report focuses not on how fast AI systems develop exploits at scale, but on how broader, deeper attacks can emerge with just a few resources. First…
-
Cylake Gets $245M to Build Cloud-Free Cybersecurity Platform
Nir Zuk’s Startup Targets Firms Unable to Send Sensitive Security Data to the Cloud. Cylake, led by Palo Alto Networks founder Nir Zuk, raised $245 million to build an on-premises cybersecurity system combining hardware, storage, security software and local AI for regulated organizations that can’t send sensitive data to external clouds. First seen on govinfosecurity.com…
-
ID Verification Firm IDScan.net Confirms Data Breach
IDScan.net Confirms Breach – But Leaves Victim Count and Point of Entry Unanswered. A Louisiana identity verification company has confirmed a breach reportedly tied to the darkweb sale of more than 153 million U.S. and Canadian driver’s licenses, but its notice does not say how many people were affected or how attackers got in. First…
-
Cyberattack causes a flight delay? Airlines won’t owe you a hotel or meal
A Department of Transportation rule published last week says that airlines complying with cybersecurity regulations will have reduced customer obligations in the event of an attack. First seen on cyberscoop.com Jump to article: cyberscoop.com/dot-rule-airline-cyberattack-flight-delays/ also interesting: HHS Office for Civil Rights Proposes Measures to Strengthen Cybersecurity in Health Care Under HIPAA UK Cybersecurity Weekly News…
-
Hackers abused Claude to extract secrets from 1.8M Android apps
Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model for malicious purposes. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-abused-claude-to-extract-secrets-from-18m-android-apps/ also interesting: The 2024 cyberwar playbook: Tricks used by nation-state actors Top 10 Cybersecurity Predictions for 2026 Cybersecurity Snapshot:…
-
AI Agents, Foldables, Cyberthreats, and Chip Deals Define This Week in Tech
Tags: aiSee what you missed in Daily Tech Insider from Sept. 711. The post AI Agents, Foldables, Cyberthreats, and Chip Deals Define This Week in Tech appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/ai-agents-foldables-cyberthreats-and-chip-deals-define-this-week-in-tech/ also interesting: RSAC: Researchers Share Lessons from the World’s First AI Security Incident Response Team Sysdig führt AI…
-
ISMG Editors: Can Humans Still Keep AI Agents in Check?
Also: AI Agents Breathe New Life in Zero Trust, OpenAI’s Chip Puts Nvidia on Notice. In this week’s panel, four ISMG editors discussed the growing challenge of keeping human beings in control of AI agents, what security leaders are saying about AI and cloud risk, and whether OpenAI’s new chip could pose a serious challenge…
-
FTC rescinds policy statement requiring health apps to notify customers after a breach
The policy, passed under the Biden administration, forced health apps to disclose when users’ personal health records were exposed in a breach or shared without authorization. First seen on cyberscoop.com Jump to article: cyberscoop.com/ftc-rescinds-health-app-data-breach-policy/ also interesting: Prudential Financial data breach impacted over 2.5 million individuals Massive NBI Data Breach Exposes Millions of Users Records Online…
-
FTC rescinds policy statement requiring health apps to notify customers after a breach
The policy, passed under the Biden administration, forced health apps to disclose when users’ personal health records were exposed in a breach or shared without authorization. First seen on cyberscoop.com Jump to article: cyberscoop.com/ftc-rescinds-health-app-data-breach-policy/ also interesting: Prudential Financial data breach impacted over 2.5 million individuals Massive NBI Data Breach Exposes Millions of Users Records Online…
-
Florida says motor vehicle data breach tied to credentials stolen from officer’s personal device
The Florida Department of Motor Vehicles confirmed a data breach claimed by the cybercrime group ShinyHunters, saying it originated with the theft of credentials stored on a police officer’s personal device. First seen on therecord.media Jump to article: therecord.media/florida-shiny-hunters-motor-vehicle also interesting: Romanian elections targeted with cyberattacks by foreign state-sponsored actors Cybersecurity Snapshot: Study Raises Open…
-
Threat Actor Generates 1M Personalized Fraud Emails in 3 Days
Cybercriminals behind malicious email campaigns no longer have to compromise volume for credibility, or vice versa, thanks to AI. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/1m-personalized-fraud-emails-3-days also interesting: Operation Endgame 2.0: DanaBusted Top 10 Cybersecurity Predictions for 2026 13 ways attackers use generative AI to exploit your systems 13 ways attackers use generative AI…
-
Florida confirms DMV database breached via stolen police account
The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed that its DAVID driver database suffered a data breach, saying the attackers gained access using credentials belonging to a police department employee. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/florida-confirms-dmv-database-breached-via-stolen-police-account/ also interesting: What is Security Posture Management and Why is it Important? What…
-
Florida confirms DMV database breached via stolen police account
The Florida Department of Highway Safety and Motor Vehicles (FLHSMV) has confirmed that its DAVID driver database suffered a data breach, saying the attackers gained access using credentials belonging to a police department employee. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/florida-confirms-dmv-database-breached-via-stolen-police-account/ also interesting: What is Security Posture Management and Why is it Important? What…
-
US lawmakers call for UK court to lift secrecy over Apple ‘backdoor’ surveillance
Congress warns that the UK’s unprecedented secrecy over a ‘backdoor’ surveillance order against Apple is straining relations between the two countries First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650365/US-lawmakers-call-for-UK-court-to-lift-secrecy-over-Apple-backdoor-surveillance also interesting: Apple pulls iCloud endend encryption feature for UK users after government demanded backdoor Apple encryption row: Does law enforcement need to use Technical Capability…

