Cyber Security
PoeLLM Malware Hides C2 Addresses in GitHub Poems, Infects 3,000+
FBI, Secret Service: FortiBleed Attackers Lock Victims Out of Fortinet
Tensorlake npm Package Compromised to Spread Shai-Hulud Worm
MonsterCloud Owner Charged With Secretly Paying Ransoms, $19M Billed
US Offers $10 Million for Tips on Zhang Yu, Charged in HAFNIUM Hacks
Georgia Power, Alabama Power Portal Breach Hits 400,000 Accounts
Chrome 155 Patches 247 Vulnerabilities, Including Four Critical
Four US States Sue TP-Link Over China Risks and Security Claims
Atlassian CVE-2026-21589 Exploited Within Two Hours of PoC Details
Adversa AI: Encrypted Instructions Can Make Copilot CLI Leak Secrets
ASOS Confirms Breach After Hackers Hijack App Push Notifications
Ninja Forms, WPC Product Bundles XSS Flaws Used to Backdoor Sites
Pwn2Own Ireland 2026 Day One: 32 Zero-Days, $388,500 in Payouts
Attackers Scan for Rejetto HFS Session-Forgery Flaw CVE-2026-61500
Dell Patches Root-Level Flaw CVE-2026-86360 in System Update Tool
Android October 2026 Update Patches 25 Flaws, Seven Rated Critical
LibreOffice, OpenOffice Flaws Run Code From Spreadsheets Silently
Gentlemen Ransomware Affiliate Used MCP as Command Channel
UIC College of Medicine Hit by Booba Ransomware, 344 GB Claimed
Denmark CPR Breach Exposes Data of 8.8 Million People
Atlassian Fixes Critical CVE-2026-21589 in Eight Data Center Products
FBI Drops Accenture Contractor After ShinyHunters PeopleSoft Breach
Nikkei Discloses Microsoft 365 and Google Workspace Account Breaches
Ex-Engineer Gets 32 Months for Locking 3,000 Employer Devices
Senate Passes Health Care Cybersecurity and Resilience Act
ClickFix Variant Smuggles Payloads Through Browser Cache
ClingSTUN Botnet Abuses STUN Protocol for C2, Exploits Dozens of Flaws
Rejetto HFS Flaw Lets Hackers Forge Admin Sessions for RCE
Citrix Patches New NetScaler Zero-Day Hit by Active Attacks
South Korea’s President Orders Probe Into Bank Data Breaches
Cybersecurity
Glow Security Finds 13,000 Exposed AI Agent Screenshots
Glow Security found over 13,000 sensitive screenshots from AI coding agents publicly exposed on GitHub across 343 companies in a finding called PixelLeak.
Application Security
Kiteworks Patches Critical Flaw Found During Precautionary Shutdown
Kiteworks discovered and patched a previously unknown critical flaw during a precautionary shutdown ordered after a federal warning of an imminent attack.
Cybersecurity
Ex-Air Force Members Sentenced to 189 Months for BEC Scams
Two former US Air Force members received a combined 189-month federal prison sentence for running a multi-year business email compromise and phishing scheme.
Cybersecurity
Vietnamese National Charged in $16 Million Crypto Scam
A Vietnamese national was charged with money laundering after a pig-butchering scam defrauded a victim out of $16 million in cryptocurrency, prosecutors say.
Application Security
Apple Patches CoreGraphics Zero-Day Used in Targeted Attacks
Apple patched CVE-2026-86950, an out-of-bounds write vulnerability in CoreGraphics exploited in extremely sophisticated targeted attacks reported by Meta.
Application Security
MCP Python SDK Flaw Exposes OAuth Credentials to Malicious Servers
Vulnerability in MCP Python SDK pre-1.30.0 allowed malicious servers to steal OAuth credentials including client secrets and authorization codes.
Cybersecurity
OpenAI Shelves GPT-6.1 Astra After Safety Failures and Rogue Actions
OpenAI canceled GPT-6.1 Astra release after agents bypassed access controls, attacked Australian government sites, and failed alignment testing.
Cybersecurity
Ransomware Attack Disrupts Keio Corporation Business Systems
Keio Corporation confirmed a ransomware attack disrupted business systems over the weekend. Railway operations continued but administrative functions impacted.
Cybersecurity
Times Car Breach Exposes 6.6 Million Japanese Car-Sharing Accounts
Times Car confirmed a cyberattack compromised approximately 6.6 million user accounts, representing a significant portion of Japan's car-sharing market.
Cybersecurity
JadePuffer Deploys AI Agents to Destroy Azure Cloud Infrastructure
JadePuffer ransomware group used autonomous AI agents to delete Azure virtual machines, databases, and storage after hijacking service principals.
Cybersecurity
Dutch Police Arrest ShinyHunters Member in Amsterdam Operation
A 24-year-old man was arrested in Amsterdam in early September as part of an investigation into the prolific ShinyHunters hacking group.
Application Security
Over 16,000 Supabase Databases Exposed Due to Misconfiguration
Security researchers found more than 16,000 misconfigured Supabase databases with publicly readable tables exposing PII, passwords, and tokens.
Cybersecurity
NeedyMantis Malware Maintains Long-Term Access in Targeted Intrusions
Microsoft disclosed NeedyMantis malware used in targeted attacks against telecommunications, universities, medical nonprofits, and government contractors.
Application Security
Bitget Attributes $388M Theft to Third-Party Security Product Flaw
Bitget disclosed that attackers exploited a third-party security product vulnerability to steal $388 million on September 24. North Korean actors suspected.
Cybersecurity
RatHat Android Trojan Uses Gemini AI to Identify High-Value Victims
RatHat malware-as-a-service banking trojan analyzes stolen Android data with Google Gemini AI to prioritize victims with higher financial value.
Infostealer Logs Expose AI Credentials from 80,000+ Organizations
Cybersecurity
Infostealer Logs Expose AI Credentials from 80,000+ Organizations
Stolen infostealer data exposed AI service credentials from over 80,000 corporate domains, enabling account takeover and LLMjacking attacks.
Cybersecurity
Former US Soldier Gets 70 Months for Hacking AT&T and Verizon
Cameron John Wagenius sentenced to 70 months in prison for hacking 10 U.S. technology and telecommunications companies while on active duty.
Application Security
Carbonato Botnet Hijacks Docker Hosts to Deploy Telegram-Controlled AI
Carbonato malware installs Hermes Agent AI framework on exposed Docker daemons, then controls the agent via Telegram with a modified 39-line prompt.
DC Health Agency Exposes 400,000 Medicaid Beneficiary Records Online
Application Security
DC Health Agency Exposes 400,000 Medicaid Beneficiary Records Online
Washington D.C. Department of Health Care Finance exposed approximately 400,000 Medicaid beneficiary records through a misconfigured web portal accessible without authentication.
Cybersecurity
Suspected North Korean Hackers Steal $351.6M from Bitget Exchange
Bitget cryptocurrency exchange disclosed a $351.6 million theft from hot and warm wallets on September 25, with attribution pointing to North Korean hackers.

TOP CYBERSECURITY HEADLINES

This Week’s Security Spotlight

Application Security
Atlassian CVE-2026-21589 Exploited Within Two Hours of PoC Details
CVE Vulnerability Alerts
Dell Patches Root-Level Flaw CVE-2026-86360 in System Update Tool
CVE Vulnerability Alerts
Android October 2026 Update Patches 25 Flaws, Seven Rated Critical
Cybersecurity
Senate Passes Health Care Cybersecurity and Resilience Act
Trending

Daily Briefing Newsletter

Subscribe to the Daily Security Review Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Featured Videos​

  • All
  • Application Security
  • Blog
  • CVE Vulnerability Alerts
  • Cybersecurity
  • Cybersecurity Newsletter
  • Data Security
  • Endpoint Security
  • Identity and Access Management
  • Information Security
  • Network Security
  • News
  • Phishing
  • Podcasts
  • Product Reviews
  • Ransomware
  • Ransomware Victims
  • Resources
  • Security Spotlight
  • Sponsored
  • Threat Actors
  • Threat Actors
  • Threat Detection Tools
Vietnamese National Charged in $16 Million Crypto Scam
A Vietnamese national was charged with money laundering after a pig-butchering scam defrauded a victim out of $16 million in cryptocurrency, prosecutors say.
Apple Patches CoreGraphics Zero-Day Used in Targeted Attacks
Apple patched CVE-2026-86950, an out-of-bounds write vulnerability in CoreGraphics exploited in extremely sophisticated targeted attacks reported by Meta.
MCP Python SDK Flaw Exposes OAuth Credentials to Malicious Servers
Vulnerability in MCP Python SDK pre-1.30.0 allowed malicious servers to steal OAuth credentials including client secrets and authorization codes.
OpenAI Shelves GPT-6.1 Astra After Safety Failures and Rogue Actions
OpenAI canceled GPT-6.1 Astra release after agents bypassed access controls, attacked Australian government sites, and failed alignment testing.
Ransomware Attack Disrupts Keio Corporation Business Systems
Keio Corporation confirmed a ransomware attack disrupted business systems over the weekend. Railway operations continued but administrative functions impacted.
Times Car Breach Exposes 6.6 Million Japanese Car-Sharing Accounts
Times Car confirmed a cyberattack compromised approximately 6.6 million user accounts, representing a significant portion of Japan's car-sharing market.
JadePuffer Deploys AI Agents to Destroy Azure Cloud Infrastructure
JadePuffer ransomware group used autonomous AI agents to delete Azure virtual machines, databases, and storage after hijacking service principals.
Dutch Police Arrest ShinyHunters Member in Amsterdam Operation
A 24-year-old man was arrested in Amsterdam in early September as part of an investigation into the prolific ShinyHunters hacking group.
Over 16,000 Supabase Databases Exposed Due to Misconfiguration
Security researchers found more than 16,000 misconfigured Supabase databases with publicly readable tables exposing PII, passwords, and tokens.
NeedyMantis Malware Maintains Long-Term Access in Targeted Intrusions
Microsoft disclosed NeedyMantis malware used in targeted attacks against telecommunications, universities, medical nonprofits, and government contractors.
Bitget Attributes $388M Theft to Third-Party Security Product Flaw
Bitget disclosed that attackers exploited a third-party security product vulnerability to steal $388 million on September 24. North Korean actors suspected.
RatHat Android Trojan Uses Gemini AI to Identify High-Value Victims
RatHat malware-as-a-service banking trojan analyzes stolen Android data with Google Gemini AI to prioritize victims with higher financial value.
Infostealer Logs Expose AI Credentials from 80,000+ Organizations
Stolen infostealer data exposed AI service credentials from over 80,000 corporate domains, enabling account takeover and LLMjacking attacks.
Former US Soldier Gets 70 Months for Hacking AT&T and Verizon
Cameron John Wagenius sentenced to 70 months in prison for hacking 10 U.S. technology and telecommunications companies while on active duty.
Carbonato Botnet Hijacks Docker Hosts to Deploy Telegram-Controlled AI
Carbonato malware installs Hermes Agent AI framework on exposed Docker daemons, then controls the agent via Telegram with a modified 39-line prompt.
DC Health Agency Exposes 400,000 Medicaid Beneficiary Records Online
Washington D.C. Department of Health Care Finance exposed approximately 400,000 Medicaid beneficiary records through a misconfigured web portal accessible without authentication.
Suspected North Korean Hackers Steal $351.6M from Bitget Exchange
Bitget cryptocurrency exchange disclosed a $351.6 million theft from hot and warm wallets on September 25, with attribution pointing to North Korean hackers.
Roundcube Webmail SQL Injection Flaw Exploited Four Months After Patch
Canadian Centre for Cyber Security confirmed active exploitation of CVE-2026-48842, an unauthenticated SQL injection flaw in Roundcube Webmail patched in May.
Cloudflare Containers Flaw Exposed Leftover Customer Disk Data
Cloudflare disclosed a vulnerability allowing customers to read leftover disk data from other customers' previous containers, violating tenant isolation controls.
CISA Adds WSO2 and Adobe Commerce Flaws to KEV Catalog
CISA added CVE-2026-5430 in WSO2 API Control Plane and an Adobe Commerce flaw to its Known Exploited Vulnerabilities catalog following active exploitation.