access ai android api apple attack authentication backdoor breach business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email endpoint exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
Shieldcrash: Forscher ärgert Microsoft mit neuem Defender-Exploit
Microsofts High-Quality-Update gegen den Shieldbreak-Exploit ist offenbar wenig effektiv. Ein frisch geleakter Exploit umgeht den Schutz. First seen on golem.de Jump to article: www.golem.de/news/shieldcrash-forscher-aergert-microsoft-mit-neuem-defender-exploit-2609-212855.html also interesting: How are you securing your communications in the wake of the Volt Typhoon revelations? Microsoft January 2026 Patch Tuesday fixes 3 zero-days, 114 flaws U.S. CISA adds a flaw…
-
Vertrauen ist keine Compliance – KI-Reife: Veeam will Unternehmen den Spiegel vorhalten
First seen on security-insider.de Jump to article: www.security-insider.de/veeam-data-ai-trust-maturity-model-ki-governance-a-a1e244c485c7bf075869c29faf3eecdf/ also interesting: What to look for in a data protection platform for hybrid clouds What to look for in a data protection platform for hybrid clouds KI-Entwicklung schreitet schneller voran als Compliance und Datenkontrolle folgen können EUAct Compliance beginnt bei den Daten, nicht beim Gesetzestext
-
Vertrauen ist keine Compliance – KI-Reife: Veeam will Unternehmen den Spiegel vorhalten
First seen on security-insider.de Jump to article: www.security-insider.de/veeam-data-ai-trust-maturity-model-ki-governance-a-a1e244c485c7bf075869c29faf3eecdf/ also interesting: What to look for in a data protection platform for hybrid clouds What to look for in a data protection platform for hybrid clouds KI-Entwicklung schreitet schneller voran als Compliance und Datenkontrolle folgen können EUAct Compliance beginnt bei den Daten, nicht beim Gesetzestext
-
EU Cyber Resilience Act to Enforce New Reporting Requirements
Starting Friday, businesses operating in the EU will have just 24 hours to notify the government any time they discover serious product security incidents. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/eu-cyber-resilience-act-reporting-requirements also interesting: The Rise of Typhoon Cyber Groups UK monitoring group to classify cyber incidents on earthquake-like scale NCSC Warns UK Organisations to…
-
New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data
Security researchers have recently disclosed a new enterprise AI attack technique known as Workflow Identity Hijacking. This method enables external attackers to exfiltrate sensitive corporate information by submitting seemingly harmless requests to AI-powered automations. Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or…
-
Trezor warns users of email provider breach, phishing attacks
Trezor warned customers on Wednesday that threat actors who breached its third-party email provider are targeting them in phishing attacks. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/trezor-warns-users-of-email-provider-breach-phishing-attacks/ also interesting: Privacy Roundup: Week 4 of Year 2025 The most notorious and damaging ransomware of all time 6 hot cybersecurity trends Stopping AiTM attacks: The defenses…
-
Digitalisierung: Digitale Brieftasche D-you startet im Januar 2027
Tags: governanceDie Bundesregierung startet im Januar 2027 die digitale Brieftasche D-you für Personalausweis und Führerschein. First seen on golem.de Jump to article: www.golem.de/news/digitalisierung-digitale-brieftasche-d-you-startet-im-januar-2027-2609-212852.html also interesting: 10 Kennzahlen, die CISOs weiterbringen Cyberangriff auf ‘Washington Post” IBM Report: Shadow AI and Poor Governance Linked to Costlier Breaches in 2025 The 2 faces of AI: How emerging models empower…
-
Vertrauliche Geschäftsinformationen schützen – KI im Vorstand: Change oder Gefahr?
Tags: aiFirst seen on security-insider.de Jump to article: www.security-insider.de/ki-im-vorstand-sicher-nutzen-statt-schatten-ki-a-874f1bc45c1d06491bb922b3412063c0/ also interesting: AI cybersecurity worries mount amid hackers’ disinterest News alert: Hunters announces ‘Pathfinder AI’ to enhance detection and response in SOC workflows WhatsApp’s New Private Processing: Revolutionizing AI Features While Ensuring Privacy XLoader Malware Analyzed Using ChatGPT’s AI, Breaks RC4 Encryption Layers in Hours
-
Hackers Use LLMs to Generate Exploit Scripts and Automate Post-Exploitation Across Latin America
Threat actors targeting organizations across Latin America are increasingly embedding commercial large language models (LLMs) into intrusion workflows, using AI-assisted scripting, troubleshooting, and proxy deployment to accelerate post-exploitation and data theft. The campaigns show that AI is no longer limited to phishing, content generation, or reconnaissance. Instead, attackers appear to be using LLMs as an…
-
Four Nation-State Actors Used the Same Chrome Zero-Day Exploit Kit Within 12 Days
Four espionage groups used the BlueMoon Chrome+Windows exploit kit within 12 days. Researchers suspect AI development. Proofpoint published a detailed analysis of a Chrome-and-Windows exploit kit it tracks as BlueMoon that four nation-state actors adopted within roughly two weeks of the first observed use. Google’s Threat Intelligence Group, Microsoft’s MSTIC, and Volexity all contributed to…
-
Innovator Coffee EP-43 2026 Blackhat: What’s Crowded and What’s New
Welcome to the Innovator Coffee, a podcast that bridges the gap between people and the world of AI and innovation. This is Wickey. Follow us to explore the top AI products, ecosystem insights, and the emerging trends.This episode of Innovator… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/innovator-coffee-ep-43-2026-blackhat-whats-crowded-and-whats-new/ also interesting: Avnet unlocks vendor lock-in and…
-
Innovator Coffee Black Hat Special: Which Security Assumptions Is AI Starting to Change?
Black Hat has always been one of the clearest windows into how cybersecurity is evolving. But the most useful signals do not always come from keynotes or product launches. This year, in a conversation with a CISO, a cybersecurity investor,… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/innovator-coffee-black-hat-special-which-security-assumptions-is-ai-starting-to-change/ also interesting: Top 7 zero-day exploitation trends…
-
SMA 6210, SMA 7210 und SMA 8200v betroffen – CISA meldet aktive Angriffe auf Sonicwall-SMA1000-Systeme
First seen on security-insider.de Jump to article: www.security-insider.de/sonicwall-sma1000-schwachstellen-ssrf-rce-aktiv-ausgenutzt-a-5ec3cc45b6dd84f1a92d0cbb2bf6b266/ also interesting: CISA warnt: Microsoft Smartcreen- und Gitlab-Sicherheitslücke werden angegriffen Top challenges holding back CISOs’ agendas FBI, CISA, NSA Warn of Iranian Cyberattacks on Critical Infrastructure Cybersecurity Snapshot: SANS Recommends Six Controls To Secure AI Systems, While NCSC Warns About Outdated API Security Methods
-
China-Linked Hackers Exploit Chrome and Windows Zero-Days in BlueMoon Attacks
Researcher has discovered a rapidly spreading exploit kit called BlueMoon, which combines vulnerabilities in the Chrome browser with a Windows kernel privilege-escalation flaw to compromise targets in espionage campaigns. This activity was first observed on August 28, 2026, and at least four threat clusters have adopted it, most of which are suspected to have ties…
-
Hackers Deploy Hundreds of AI Agents to Compromise 440 PaperCut Servers
Tags: ai, authentication, cve, cyber, exploit, flaw, hacker, intelligence, russia, threat, vulnerabilityThreat intelligence firm GreyNoise has identified an AI-driven intrusion campaign, likely orchestrated by a Russian-speaking threat actor, that compromised at least 440 PaperCut NG/MF servers across 395 organizations in 48 countries. This campaign began on August 31, 2026, exploiting two vulnerabilities in PaperCut: CVE-2026-81578, an authentication bypass flaw, and CVE-2026-82078, a vulnerability that allows unsafe…
-
Cybercriminals are building phishing pages that exist only inside victims’ browsers
A phishing campaign routes victims through genuine Microsoft OAuth and Teams infrastructure before showing them a fake login page built entirely inside their own browser, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/10/browser-based-phishing-blob-urls-microsoft-oauth/ also interesting: 11 ways cybercriminals are making phishing more potent than ever Malicious actors increasingly put privileged identity access to work…
-
Product showcase: GitGuardian Honeytoken catches credential theft as it happens
Credential harvesting on developer machines has widened. Earlier infostealers worked from a short list of known targets, mostly browser stores and a few cloud credential … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/10/product-showcase-gitguardian-honeytoken-decoy-service/ also interesting: EMERALDWHALE Operation Exposes Over 15,000 Cloud Credentials in Widespread Git Exploit Google Cloud Security Threat Horizons Report #12 Is…
-
Ransomware-Lösegeld sinkt, doch die Folgen bleiben kostspielig
Ransomware-Angriffe werden für deutsche Unternehmen offenbar etwas weniger teuer, wenn es allein um die Höhe der Lösegeldforderungen geht. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/ransomware-loesegeld-sinkt also interesting: Faktoren, an denen die Cybersicherheit im Gesundheitswesen krankt How Momentum is Building for the US Government to Play a Larger Role in Protecting K12 Schools from Cyberattacks…
-
Kevin Mandia joins the Amazon board with 30-plus years in cybersecurity
Amazon elected Kevin Mandia to its Board of Directors on September 8. Mandia founded Mandiant and served as its CEO before Google acquired the firm in September 2022, and he … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/10/kevin-mandia-joins-amazon-board/ also interesting: Cybersecurity in a Race to Unmask a New Wave of AI-Borne Deepfakes Top 10…
-
A new open standard locks AI weights to approved hardware
OPAQUE, a confidential computing company that runs AI workloads inside hardware-isolated environments so operators cannot inspect them, released an open standard that lets AI … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/10/weight-custody-manifest-open-standard/ also interesting: Das nächste große Security-Schlachtfeld What is Security Posture Management and Why is it Important? What is Security Posture Management and…
-
AI adoption brings new security headaches for already stretched CISOs
CISOs are taking on AI governance without a matching increase in resources or expertise, adding to an already broad remit spanning data protection, identity, resilience and … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/10/proofpoint-ciso-ai-security-risks-report/ also interesting: Cybersecurity Snapshot: AI Will Take Center Stage in Cyber in 2026, Google Says, as MITRE Revamps ATTCK Framework…
-
ESicherheit in Behörden erfordert Schutz ohne zusätzliche Hürden
Kommentar von Günter Esch, Geschäftsführer SEPPmail Deutschland GmbH Behörden verarbeiten täglich sensible Informationen wie personenbezogene Daten, Vertragsunterlagen oder vertrauliche Abstimmungen. Entsprechend hoch sind die Anforderungen an die digitale Kommunikation. Beim Schutz von E-Mails entsteht jedoch weiterhin häufig ein Problem: Die Sicherheit soll steigen, aber die Kommunikation darf nicht unnötig verkompliziert werden. Genau… First seen on…
-
LEADING TO A SOVEREIGN DIGITAL FUTURE TOGETHER
A1 Digital ist ein europäischer Partner für digitale Infrastruktur und Lösungen mit dem Ziel, Unternehmen gemeinsam in eine souveräne digitale Zukunft zu führen. Zu den Angeboten gehören Exoscale eine europäische Cloud-Plattform, Managed Connectivity in über 180 Ländern, vertikale IoT Branchenlösungen mit Erfahrung von über 1 Million ausgelieferten Geräten und skalierbare Netzwerklösungen, ergänzt durch 24/7… First…
-
OpenSSL’s new alpha build speeds up post-quantum crypto
Tags: cryptoThe OpenSSL project released the first alpha of OpenSSL 4.1.0, giving developers an early look at a version built for encrypted communication over unreliable connections and … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/10/openssl-4-1-0-alpha1-released/ also interesting: Quantencomputer: Eine Gefahr für Krypto-Sicherheit? Intel Tries To Wangle China Crypto-Standards Deal Job-seeking devs targeted with fake CrowdStrike…
-
Passwd Review 2026: A Top Password Manager for Google Workspace
Passwd is a Google Workspace-focused password manager with strong usability, flexible pricing, passkey support, and private cloud deployment options. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/products/passwd-review/ also interesting: 10 key questions security leaders must ask at RSA 2025 Hardening browser security with zero-trust controls Why the future of security starts with who, not where…
-
Smashing Security podcast #484: How websites are tracking you with silence
When a chap called Matt noticed his Bluetooth headphones wouldn’t switch to his phone, he was surprised to realise the reason was a single AliExpress webpage sitting open in his browser – playing nothing at all, at zero volume. And yet somehow his hardware could hear it. Audio fingerprinting is one of the sneakiest tracking…
-
What Is Agentic MDR? Three Architectures Hide Behind One Label
Agentic MDR is managed detection and response delivered by AI agents that investigate and act on security alerts autonomously, under human-defined governance, in place of analysts working a queue. The service provider still owns the outcome. The work itself shifts… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/what-is-agentic-mdr-three-architectures-hide-behind-one-label/ also interesting: Cybersecurity Snapshot: F5 Breach Prompts…
-
Microsoft Fixes 974 CVEs in Record Patch Tuesday Release
Microsoft fixed a record 974 CVEs for September’s Patch Tuesday, including two actively exploited Windows flaws. Most of the vulnerabilities addressed in the September release affect Windows, but the update also covers Office, SQL Server, Exchange Server, SharePoint Server, Azure and developer tools. Microsoft urged customers to apply the updates quickly and specifically called out..…
-
State CIOs Need an Enterprise Identity Strategy
NASCIO’s Eric Sweden on Balancing Security, Privacy and Citizen Access. Fragmented identity systems make government harder to use and can obscure fraud across agencies. NASCIO’s Eric Sweden explains how states can build shared trust, protect privacy and adapt identity infrastructure for digital wallets, deepfakes and AI agents. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/state-cios-need-enterprise-identity-strategy-a-32782…
-
Factor Accuses SecurityScorecard of Retaliation Campaign
Factor Complaint Alleges False IP Claims, Threats and Commercial Interference. Factor Cybersecurity sued SecurityScorecard over alleged business interference, claiming false IP accusations, retaliation and interference with employees, partners and investors cost Factor prospective business and delayed a funding round targeted at $25 million. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/factor-accuses-securityscorecard-retaliation-campaign-a-32785 also interesting: Invisible C2″Š”,…
-
FBI Strategy Calls for More Takedowns, Better Info-Sharing
Bureau Won’t ‘Sit and Wait for the Best Opportunity,’ Says FBI’s Leatherman. The FBI vowed Wednesday to crack down on ransomware gangs and online scammers in a first-ever public cybercrime strategy that also said the bureau will prioritize working with victims and work more with private sector partners to take down criminal computer infrastructure. First…
-
How to Catch an AI SOC Analyst Bluffing
The first public demo of Morpheus 2, September 16 An AI analyst that’s confidently wrong is worse than no analyst at all. It feels like decision support, and you act on it. This summer showed what that looks like at… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/how-to-catch-an-ai-soc-analyst-bluffing/ also interesting: Project Ire: Microsoft’s autonomous AI…
-
Mythos Vulnerability Firehose Hits a Human Bottleneck
Tags: vulnerabilityAn analysis of Project Glasswing findings shows only a fraction have reached disclosure, and an even smaller number have been fixed. First seen on darkreading.com Jump to article: www.darkreading.com/application-security/mythos-vulnerability-firehose-hits-human-bottleneck also interesting: Vulnerable devices subjected to ongoing attacks with updated Mirai botnet Multiple Jenkins Vulnerabilities Allow Attackers to Expose Secrets Jenkins Vulnerabilities Exposes Build Environments to…
-
AdaptHealth confirms 4.1 million people exposed in July cyberattack
Healthcare company AdaptHealth has confirmed that data of 4.1 million people was exposed in a cyberattack discovered in July that was attributed to the ShinyHunters threat group. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/adapthealth-confirms-41-million-people-exposed-in-july-cyberattack/ also interesting: Agents, Robotics, and Auth Oh My! – Impart Security EU to take aim at healthcare cyber threat Top…
-
Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks
Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisco-confirms-cve-2026-20079-secure-fmc-flaw-exploited-in-attacks/ also interesting: Cisco Firewall and VPN Zero Day Attacks: CVE-2025-20333 and CVE-2025-20362 Top 7 zero-day exploitation trends of 2024 Volume of…
-
This $50 lifetime VPN adds AI-powered protection to your connection
Get AI-powered threat protection, encrypted connections, and more with this VPN lifetime subscription today. The post This $50 lifetime VPN adds AI-powered protection to your connection appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/ghostshield-vpn-lifetime-subscription/ also interesting: Privacy Roundup: Week 6 of Year 2025 AI development pipeline attacks expand CISOs’ software supply…
-
San Francisco Orders Meta to Stop ‘Allowing’ AI Child Abuse Ads
The City Attorney’s Office has asked Meta to explain how the harmful ads repeatedly ran on Facebook and Instagram. The company claims the ads are not under the city’s jurisdiction. First seen on wired.com Jump to article: www.wired.com/story/san-francisco-orders-meta-to-stop-allowing-ai-child-abuse-ads/ also interesting: The Emerging Role of AI in Open-Source Intelligence Has CISO become the least desirable role…
-
Watchdog Finds Critical Access Control Gaps at CBP
DHS Inspector General Finds CBP Left Privileged Account Open to All Network Users. A U.S. Customs and Border Protection service account with elevated privileges was reachable by the agency’s entire workforce of more than 76,000 users, and auditors mapped more than 100 attack paths through the network, according to a new Department of Homeland Security…
-
Chinese espionage groups swarm to exploit triple-link chain of zero-days
Multiple China-aligned threat groups exploited the defects quickly to target various organizations. Proofpoint said the activity is ongoing and expects it to widen. First seen on cyberscoop.com Jump to article: cyberscoop.com/china-espionage-groups-exploit-chain-zero-days/ also interesting: New Windows zero-day feared abused in widespread espionage for years F5 Security Incident Advisory Warlock Ransomware Exploits SharePoint ToolShell Zero-Day in New…
-
Chinese espionage groups swarm to exploit triple-link chain of zero-days
Multiple China-aligned threat groups exploited the defects quickly to target various organizations. Proofpoint said the activity is ongoing and expects it to widen. First seen on cyberscoop.com Jump to article: cyberscoop.com/china-espionage-groups-exploit-chain-zero-days/ also interesting: New Windows zero-day feared abused in widespread espionage for years F5 Security Incident Advisory Warlock Ransomware Exploits SharePoint ToolShell Zero-Day in New…
-
Chinese espionage groups swarm to exploit triple-link chain of zero-days
Multiple China-aligned threat groups exploited the defects quickly to target various organizations. Proofpoint said the activity is ongoing and expects it to widen. First seen on cyberscoop.com Jump to article: cyberscoop.com/china-espionage-groups-exploit-chain-zero-days/ also interesting: New Windows zero-day feared abused in widespread espionage for years F5 Security Incident Advisory Warlock Ransomware Exploits SharePoint ToolShell Zero-Day in New…
-
CISA head says agency must change quickly to prevent the ‘worst that could happen’
CISA’s cybersecurity, infrastructure security and emergency communications divisions are among the priorities as the agency fills vacancies created at the beginning of the Trump administration, acting director Nick Andersen says. First seen on therecord.media Jump to article: therecord.media/cisa-hiring-nick-andersen-warning also interesting: Cybersecurity Snapshot: Study Raises Open Source Security Red Flags, as Cyber Agencies Offer Prevention Tips…
-
Skullcandy Dime 3 earbuds expose users to Bluetooth hijacking
Tags: unclassifiedThe Carnegie Mellon University CERT Coordination Center (CERT/CC) is warning that Skullcandy Dime 3 wireless earbuds accept Bluetooth pairing requests from nearby unpaired devices without requiring user interaction. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/skullcandy-dime-3-earbuds-expose-users-to-bluetooth-hijacking/ also interesting: Tenable erweitert OT Security: Mehr Sichtbarkeit für die Betriebsumgebung ‘This Acquisition is Perfectly Timed’: Commvault Acquires Clumio…
-
220 Million Travel Records Exposed Through Default Credentials
Researchers found 220.8 million passenger and crew records exposed through default credentials in a Vietnam-linked database containing sensitive travel data. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-220-million-travel-records-default-credentials-apac-vietnam/ also interesting: Catching the ghost in the machine: Adapting threat detection to cloud speed Cisco Unified CM Vulnerability Lets Remote Attacker Gain Root Access How to secure…
-
Microsoft’s September Patch Tuesday Fixes Nearly 1,000 Flaws, Including 2 Exploited Zero-Days
Microsoft’s September 2026 Patch Tuesday fixes nearly 1,000 vulnerabilities, including two Windows zero-days already exploited in attacks. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-microsoft-september-2026-patch-tuesday-zero-days/ also interesting: November 2024 Patch Tuesday Fixes Actively Exploited Flaws (CVE-2024-49039) Microsoft Patch Tuesday security updates for February 2025 ficed 2 actively exploited bugs Microsoft’s May 2025 Patch Tuesday Addresses…
-
Google Warns Hackers Are Turning AI Agents Into Attack Tools
Google warns that hackers are using AI agents to automate attack stages, harvest credentials, and accelerate cyberattacks with less human direction. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-google-hackers-ai-agents-attack-tools/ also interesting: Cybersecurity Snapshot: Top Advice for Detecting and Preventing AI Attacks, and for Securing AI Systems 13 ways attackers use generative AI to exploit your…
-
Hackers Route Phishing Through Google to Steal Microsoft Credentials
KnowBe4 found hackers abusing trusted Google services to hide phishing pages that steal Microsoft credentials and enable persistent ScreenConnect remote access. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-google-phishing-credential-theft-screenconnect/ also interesting: The 2024 cyberwar playbook: Tricks used by nation-state actors The 2024 cyberwar playbook: Tricks used by nation-state actors The most notorious and damaging ransomware…

