The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume widespread exploitation of a flaw on vulnerable servers. […]
Global Security News
Placeholder Domains Used by 349 AI Agent Skills Found Redirecting to Scams
Manifold Security found placeholder domains cited in 359,000 GitHub files and 349 AI agent skills serving cloaked scam…
Global Security News
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
The Psychedelic Stealer malware distributed via compromised Ukrainian websites using ClickFix-style Cloudflare verification checks is part of a wider malware-as-a-service (MaaS) platform called Lunex. The new findings come from Ontinue, which described the activity as a four-stage attack chain aimed at targeting Ukrainian-speaking users. “The attack chain begins with a fake CAPTCHA page and
Global Security News
Claude Opus 5.5 uses 95% fewer em dashes, but its answers are getting longer
Anthropic’s Claude Opus 5.5 appears to be changing how it writes, with new analysis showing fewer obvious AI writing patterns, shorter sentences, and simpler wording compared with Opus 5. […]
Global Security News
Microsoft pauses KB5002907 update after Office license deactivations
Microsoft has paused the rollout of the KB5002907 Microsoft 365 update after users report that it deactivated, or in some cases completely removed, perpetual Office 2016 and Office 2019 installations. […]
Global Security News
OpenAI Agents Accessed US Government Websites Without Authorization
OpenAI is investigating AI agents that accessed US gov websites without authorization, including an attempted Education Department hack. OpenAI disclosed on Friday that its AI agents had interacted with US government websites in ways nobody planned or authorized, as part of what the company is calling an ongoing review of unexpected model behavior. The affected…
Global Security News
Exploit.in Database Reveals the Roots of Today’s Ransomware Ecosystem
Exploit.in data shows how a 2005 cybercrime forum helped shape today’s ransomware ecosystem, with users and practices surviving for decades. Ransomnews researcher Dancho Danchev dug up a database dump of Exploit.in covering its first three years, from February 2005 to May 2008, and the numbers inside it tell a story about Russian cybercrime that enforcement…
Global Security News
GitHub Actions re-enabled with Mini Shai-Hulud payload still active
Two third-party GitHub Actions previously compromised in a Mini Shai-Hulud campaign were re-enabled by their maintainer and remained accessible for more than a week despite still pointing to malicious code. […]
Global Security News
ShinyHunters Bypass WAF Rules to Resume Oracle PeopleSoft Attacks
ShinyHunters exploit CVE-2026-35273 in Oracle PeopleSoft using URL encoding to bypass WAF rules, deploy web shells and spread the SIDEEYE backdoor.
Global Security News
OpenAI’s AI agents accidentally uploaded user-provided images to third-party sites
OpenAI says its AI agents uploaded user-provided images to third-party image-hosting services while carrying out research and evaluation tasks. […]
Global Security News
Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells
Google is warning of renewed mass exploitation of a known security vulnerability in Oracle PeopleSoft as part of a campaign targeting multiple sectors globally. The ShinyHunters-linked activity involves the weaponization of CVE-2026-35273 (CVSS score: 9.8), a critical security flaw that could result in unauthenticated remote code execution. The vulnerability was first exploited as a zero-day
Global Security News
Zero Trust for AI Agents Starts With Fixing Zero Visibility
The way we talk about AI agents is shifting, and the way we implement them requires an even more fundamental shift. While earlier discourse focused on how quickly organizations could stand up agents and how much productivity they could promise, a string of recent incidents, including a widely discussed intrusion at Hugging Face during an…
Global Security News
Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link
Details have emerged about a high-severity security flaw in the Elementor Website Builder WordPress plugin that could be exploited by an unauthenticated attacker to create rogue administrator accounts and take control of a site. The cross-site request forgery (CSRF) vulnerability, which has yet to be assigned a CVE identifier, carries a CVSS score of 8.8…
Global Security News
SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security flaws impacting Microsoft SharePoint and Mikrotik RouterOS to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities in question are as follows – CVE-2026-65660 (CVSS score: 8.8) – A code injection vulnerability in Microsoft Office SharePoint
Global Security News
Kiteworks Urges Customers to Shut Down Systems for 9 Hours Over Possible Cyber Attack
Kiteworks (formerly Accellion) is urging customers to shut down their systems as a precautionary measure for nine hours over the weekend after it received threat intelligence about an imminent cyber attack. “Kiteworks received credible threat intelligence from federal intelligence authorities indicating that a threat actor may attempt to target some Kiteworks systems,” said Frank Balonis,…
Global Security News
U.S. CISA adds WordPress flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds WordPress flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a WordPress Core flaw, tracked as CVE-2026-87902 (CVSS score of 9.2), to its Known Exploited Vulnerabilities (KEV) catalog. CVE-2026-87902 allows an unauthenticated attacker to make the get_page_template() function include a readable local…
Global Security News
AI Drafts, Code Decides: The Guardrails a Removalist Built Around AI in Its Own Software
Every business software vendor is now selling AI. Very few of the people buying it have had to decide exactly where that AI is allowed to touch their numbers.
Global Security News
OpenAI Agents Hacked U.S. Government Websites
The company said its artificial-intelligence agents engaged in rogue behavior on the Commerce Department and Securities and Exchange Commission sites.
Global Security News
OpenAI Hack on Medicare
The most concerning question is: if OpenAI hadn’t disclosed this incident, how quickly would it have been detected?
Global Security News
VAST Data Introduces DataEnclave to Bring Leading AI Models and Enterprise Data Together on Trusted Infrastructure
New Confidential AI runtime within the VAST AI Operating System allows leading models from Cohere, Deepgram, Factory, Fundamental, NVIDIA, TwelveLabs and others to securely run…
Global Security News
Manhattan Associates Announces EditionsTM for its Industry-Leading Solutions, Making Them Accessible at Every Stage of Growth
New offering gives commercial and growing enterprises the right-sized path to start their journey with Manhattan, and scale on the same platform as their business grows
Global Security News
Avalara Brings Agentic AI Speed to Enterprise Integration with Versori by Avalara
Specialised AI agents plan, connect, build, and deploy production-grade connectors in days, dramatically reducing the time and cost to unlock the value of integrations
Global Security News
Delinea Appoints Timothy Regan as Chief Financial Officer
Former Dropbox CFO who helped take the company public joins as Delinea scales its identity security platform for the AI era
Global Security News
Hotel Des Arts Saigon Increases RevPAR by 20% with IDeaS G3 RMS
IDeaS, the world’s leading provider of AI-powered hospitality revenue management software, today announced that Hotel Des Arts Saigon has achieved a 21.6% increase in revenue…
Global Security News
The rostering challenge in higher education: Managing complexity in a hybrid campus
Australia’s universities are operating in one of the most complex workforce environments in the country. Academic calendars are no longer predictable, student demand fluctuates…
Global Security News
BeyondTrust Launches New Integrations with CrowdStrike Falcon Next-Gen SIEM
New integrations bring BeyondTrust’s identity and privilege intelligence into the Falcon platform, correlating identity relationships and privilege exposure with Falcon threat…
Global Security News
UiPath Launches UiPath Cartographer, Helping Enterprises Turn Scattered Process Knowledge into an Actionable View of How Their Business Runs
Builds the Map of Work, a living and governed artifact unique to every enterprise process, generating design documents and build-ready specs that reflect the real-world context…
Global Security News
BlueVoyant Launches Solution to Accelerate Agentic Security Adoption of Microsoft’s New Integrated Security Operations Center
Deployment services to help Microsoft 365 E5, E7 and Microsoft Defender Suite customers build the foundation for an agentic SOC
Global Security News
Azul Launches AI Assistant That Tells IT and Security Teams Where Java Licensing and Security Risk Is Hiding
As AI shrinks exploit timelines from weeks to hours, Azul Intelligence Cloud lets teams query runtime data in plain language to identify unpatched Java — before it becomes an…
Global Security News
He’s Completely Terrified of AI—and He’s About to Make Billions Off It
One of Anthropic’s earliest investors, Jaan Tallinn dances hip-hop and warns about “racing to build a technology that could end humanity.”
Global Security News
The forward-facing camera knows who braked first: how AI dashcams in commercial fleets are rewriting fault in truck-car collisions
For most of the last century, a truck-car collision left investigators with the same tools: skid marks, witness statements, the physical geometry of the wreck, and whatever the…
Global Security News
How smarter eye-mapping technology is personalizing laser vision correction
Laser vision correction may sound straightforward: measure a person’s prescription, use a laser to reshape the cornea, and reduce their dependence on glasses or contact lenses….
Global Security News
How Alexa routines, Nest histories, and Ring timelines are becoming exhibits in contested separations
Most separating couples assume the smart home goes silent the moment one spouse moves out. The opposite is closer to the truth. The house keeps talking to Amazon, to Google, to…
Global Security News
U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon Extortions
A U.S. Army soldier who pleaded guilty to hacking into multiple telecommunications companies and stealing mobile call and text metadata for more than 100 million AT&T customers in 2024 was sentenced to 70 months in federal prison today and ordered to pay nearly $300,000 in restitution to victims. One of several selfies from the Facebook…
Global Security News
Kiteworks urges 6-hour server shutdown over potential zero-day attacks
Secure file-sharing software company Kiteworks is urging customers worldwide to temporarily shut down their servers on Saturday for a six-hour window after receiving threat intelligence warning of a potentially imminent cyberattack. […]
Global Security News
How retail computer vision, smart floors, and IoT cameras are changing the slip-and-fall record
Did the store’s cameras record your fall, and can anyone still get the footage? In many modern retail environments, yes. The cameras also flagged the spill before you walked…
Global Security News
Army soldier sentenced for spree of attacks on AT&T, Snowflake and other major companies
A former Army soldier responsible for a series of attacks and extortion attempts on telecom companies, including AT&T, was sentenced to 70 months in prison, the Justice Department said Friday. Cameron John Wagenius engaged in a cybercrime spree for years, including while he was on active duty on a base in Texas. Prior to his…
Global Security News
Your home router is now part of the corporate network. Who’s securing it?
The cheapest way into a corporate network in 2026 is not a phishing email or a zero-day. It’s the black plastic box the ISP mailed to an employee three years ago, plugged in…
Global Security News
U.S. CISA adds Microsoft SharePoint and Mikrotik RouterOS flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft SharePoint and Mikrotik RouterOS flaws flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2026-65660 (CVSS score of 8.8) Microsoft SharePoint Code Injection Vulnerability CVE-2026-67279 Mikrotik RouterOS Improper Enforcement of Behavioral Workflow…
Global Security News
ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw
The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability. […]
Global Security News
Roundcube Webmail Under Attack: 523,000 Instances Exposed Online
Shadowserver is tracking more than 523,000 internet-accessible Roundcube Webmail instances as attackers exploit a high-severity vulnerability that can be abused without authentication. The Canadian Centre for Cyber Security updated its security advisory on Sept. 21 to warn that CVE-2026-48842 is being exploited in the wild. Roundcube originally patched the vulnerability in May, meaning organizations that…
Global Security News
InfraTrust Report Flags Exploited Network Management Flaws
Network management consoles are becoming prime targets as attackers look for one shortcut into entire enterprise environments. Threat actors are increasingly bypassing individual network devices to compromise central management platforms, according to the September edition of Eclypsium’s InfraTrust Pulse report. Between August 25 and September 17, tracking revealed 158 new security advisories across 17 vendors,…
Global Security News
Seattle Council Votes to Restrict Personalized Grocery Prices
Seattle is putting a new rule between grocery shoppers and algorithms that may decide what they can afford. The Seattle City Council has approved an ordinance preventing certain grocery retailers from using artificial intelligence and personal data to set different prices for individual shoppers, making the city the first in the US to adopt such…
Global Security News
BrainTrust Launches AI Tools to Improve Enterprise ROI
BrainTrust Partners has launched two AI products aimed at tackling separate barriers to enterprise AI adoption: deciding where AI investments can deliver measurable returns and connecting fragmented business data to support AI agents and automation. The company introduced BrainTrust AI BluePrint Builder, which assesses organizations’ technology environments and business priorities to identify and rank AI…
Global Security News
59% of UK CISOs Say Attackers Have the AI Advantage
Fifty-nine percent of UK CISOs say attackers currently hold the advantage as artificial intelligence accelerates cyber threats, even as 94% describe their organizations as prepared to exploit AI-driven vulnerabilities, according to new research from cybersecurity company Kai. That confidence contrasts with the pace of remediation on the ground. Kai found that 67% of respondents take…
Global Security News
AWS Approved for NATO RESTRICTED Cloud Workloads
AWS has become the first cloud provider approved for NATO RESTRICTED workloads across all NATO member nations, giving allies and defense industry partners access to approved AWS services across 15 regions and a common security baseline designed to streamline national accreditation processes. NATO allies gain access to approved AWS cloud services This milestone indicates that…
Global Security News
Apple Renews Qualcomm Patent Deal as It Expands In-House Modems
Apple and Qualcomm are keeping their patent relationship alive, even as Apple steadily pulls more of its modem technology in-house. Qualcomm said Thursday that Apple has renewed its global patent licensing agreement, with the new arrangement taking effect April 1, 2027. The company did not disclose how long the renewed agreement will last. For suppliers…
Global Security News
5G-Shark Lures Phones to Rogue 5G Cells Without Network Jamming
Researchers have developed 5G-Shark to lure phones onto rogue base stations, collect subscriber IDs, force network downgrades and…
Global Security News
BNP Paribas Expands Google Cloud Deal for Gemini Banking Agents
BNP Paribas is giving its bankers a new AI co-worker as it expands its Google Cloud partnership into agentic AI. BNP Paribas and Google Cloud announced a five-year agreement on September 24 that will expand the bank’s access to Google Cloud infrastructure, Gemini models and Gemini Enterprise. The partnership is part of BNP Paribas’ effort…
Global Security News
Google Takes AI Infrastructure Into Orbit With SpaceX Test
Google is preparing to send part of its AI infrastructure into orbit, with four Tensor Processing Units scheduled to launch Oct. 1 aboard SpaceX’s Transporter-18 rideshare mission. Planet built the prototype spacecraft, which will let Google study how its AI hardware handles launch conditions and sustained operation in orbit. The experiment is part of Project…
Global Security News
Akamai Secures $11.6 Billion Deal to Power Anthropic’s AI Workloads
Akamai Technologies has landed one of the largest contracts in its cloud expansion, signing a $11.6 billion computing agreement with Anthropic. The seven-year agreement will see Anthropic tap into Akamai Cloud’s distributed infrastructure and software to support rapidly scaling central processing unit (CPU) workloads. The contract also includes room for an additional $9 billion expansion,…
Global Security News
Hosvara Acquires MSP Backup Provider Dr. Backup
Hosvara Inc. has acquired Dr. Backup, a cloud backup provider serving nearly 100 MSPs across the United States and Canada, expanding the holding company’s portfolio of MSP-focused businesses. While the terms of the transaction were not disclosed, Dr. Backup will operate as Dr. Backup, A Hosvara Company, with founder Mitch Romm remaining as a strategic…
Global Security News
Cisco Survey: 51% Use Agentic AI in Production NetOps
AI agents are beginning to make changes to production networks, raising a practical question for the partners who manage them: how much autonomy can customers safely allow? Cisco has released a report titled “The Impact of Agentic AI on Network Operations” which says that AI is moving from helping IT teams diagnose problems to taking…
Global Security News
Multiple Vulnerabilities in ServiceNow’s AI Platform Could Allow for Unauthorized Access
Multiple vulnerabilities have been discovered in ServiceNow’s AI Platform, the most severe of which could allow for unauthorized access. The ServiceNow AI Platform is a unified, cloud-based foundation that integrates artificial intelligence, data, and workflow automation to execute business operations across entire enterprises. Successful exploitation of the most severe of these vulnerabilities could allow for…
Global Security News
AI Sandbox Escapes: Why Forensic Readiness Matters More Than Containment
When autonomous AI agents “escape the sandbox,” the real story isn’t rogue machines — it’s the same access-control failures we’ve seen for decades.
Global Security News
Elementor WordPress flaw lets attackers create admin accounts
A cross-site request forgery (CSRF) vulnerability in the Elementor plugin for WordPress could allow an unauthenticated attacker to create administrator accounts. […]
Global Security News
Cryptocurrency exchange Bitget Says North Korea-Linked Hackers Stole $351.6 Million
Bitget says suspected North Korea-linked actors stole $351.6M from hot and warm wallets. Withdrawals were suspended while Mandiant investigates. Cryptocurrency exchange Bitget says suspected North Korea-linked threat actors stole $351.6 million from a limited number of hot and warm wallets. The company detected unauthorized transfers on September 24 and temporarily suspended withdrawals. At 18:31 UTC…
Global Security News
What We Missed: Google Gemini Joins the AI Escape Party
In this video conversation, Dark Reading editors discuss some of the news they didn’t get a chance to cover, from Google Gemini models breaking containment to ShinyHunters ratting on TeamPCP hackers.
Global Security News
AI tools help hacker break in for $25 per target
It’s cheap to set yourself up as a hacker these days using AI. Someone attacked 105 online retailers over a period of five days, compromising 27 of them — all for an average of $25 per attack, according to research by Israeli security company Gambit. But the attacks have been going on for much longer.…
Global Security News
Supreme Court permits states to use SAVE database for citizenship checks
The U.S. Supreme Court ruled Friday that states may use the federal SAVE database to verify voter citizenship, reversing lower court decisions that found the database was inaccurate and would likely disenfranchise eligible voters. In its opinion, the majority wrote that “the Federal Government has an obligation to respond to requests from state and local election…
Global Security News
AI tools help hacker break in for $25 per target
It’s cheap to set yourself up as a hacker these days using AI. Someone attacked 105 online retailers over a period of five days, compromising 27 of them — all for an average of $25 per attack, according to research by Israeli security company Gambit. But the attacks have been going on for much longer.…
Global Security News
OpenAI wants you to use AI — but not to train its AI
Here’s an interesting concept: an AI company that fires people for using AI. It sounds like a strange way to run a company but there’s a real reason behind it. OpenAI has been hiring contractors who have been tasked with reading ChatGPT users’ prompts to help improve responses by providing some real human input. Unfortunately…
Global Security News
CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
The Cybersecurity and Infrastructure Security Agency (CISA) warns that hackers are exploiting a critical authentication bypass vulnerability (CVE-2026-5430) affecting multiple products from enterprise software provider WSO2. […]
Global Security News
Microsoft’s new Copilot unifies enterprise context for chat and code
Microsoft’s Copilot super-app has arrived, two months after CEO Satya Nadella confirmed it was in development. It combines conversational Chat, the autonomous Cowork agent, a redesigned coding environment named Code, and Autopilot, the persistent agent formerly known as Scout, into a single Copilot experience. The idea is to make those capabilities look less like separate…
Global Security News
This one WatchOS 27 feature just solved my biggest issue with Apple Watch
Sometimes less is more, and the most helpful software update is the simplest.
Global Security News
Adobe’s next platform for Creative Cloud? Your AI assistant
Adobe is preparing for a future where users increasingly interact with its software through AI assistants, rather than always going directly to its applications. That’s the idea behind its expanded integration with Anthropic’s Claude, as well as the first connector for Google’s Gemini, announced Thursday. The updated Claude integration adds new ways for users to…
Global Security News
Documentation placeholder domain used in ClickFix attacks
The domain name third-party[.]com is being used to serve malware to users — bad news for those following a little too literally online documentation that uses it as a placeholder for any third-party domain. The site is serving a ClickFix lure to Windows machines, which sidesteps existing protection and can effect changes to PowerShell, according…
Global Security News
iOS 27: Why you should learn to love Impersonation Risk Detection
I once had a friend who gave $1,000 to an online fraudster who claimed to be a tax assessor. My own father (bless his soul) once managed to hand over several hundred pounds to a lawyer from Africa promising to send him funds. We know it happens. We know people impersonate trusted entities to trick us into…
Global Security News
Anthropic rolls out up to $250 in free Claude Code credits, but only for cloud sessions
Anthropic now allows you to run Claude Code via cloud sessions without signing up for the research preview, and it’s offering up to $250 in free usage credits, so more users can give it a try. […]
Global Security News
Dirty Work Goes Driverless at the Dump
Plus, a world alliance racing to control AI, the tech elite’s alternative to college, and K-pop’s bet on bots.
Global Security News
Build versus buy: the detection-engineering cost model
Build versus buy is the decision about which threat detections a security team authors in-house and which it sources as ready-made detection content. The answer is almost never all build or all buy. Buy the commodity layer, build what is unique to your environment, and measure both sides by time-to-coverage: the elapsed time from a…
Global Security News
GitLab issue email’s only security is obscurity
It was meant to make life simpler: a secret email address to which developers can send a message and create an issue in their GitLab project. But poor security defaults and a long-lived token embedded in the address mean that anyone who knows the address can potentially modify protected repositories. If project owners publish or…
Global Security News
LinkedIn adds new checks for fake profiles and work histories
LinkedIn is adding trust and verification features aimed at making fake professional identities, invented work histories, and company impersonation harder to pull off. The company is responding to an environment in which generative AI enables imposters to create an entirely made-up professional persona. It reduces the cost of creating convincing headshots, biographies, résumés, outreach messages,…
Global Security News
AI-Powered Cyber Attacks: When the Hacker Is Also Running a Language Model
Not long ago, spotting a phishing email was almost a game. Odd phrasing, a mismatched logo, a sender address that didn’t quite add up — the tells were usually there if you looked closely enough. That’s changing fast, because the tools behind today’s campaigns have gotten dramatically better and dramatically cheaper at the same time.…
Global Security News
Kothamine malware uses Tailscale’s tailcat to evade network detection
We discovered an undocumented remote-access Trojan (RAT) called Kothamine Agent. It supports more than 30 commands and it gives attackers control of an infected Windows computer: they can run commands, read and change files, and add new capabilities. Some versions can also steal browser data and record through the camera and microphone. We found Kothamine…
Global Security News
OpenAI is preparing a $500 ChatGPT Pro Max plan with faster Codex
OpenAI appears to be preparing a new ChatGPT Pro Max subscription that could cost $500 per month, but it’s unclear when it’ll begin rolling out. […]
Global Security News
With the Rise of AI Agents, SOC 2 Should Adapt or Risk Irrelevance
AI agents can operate through human credentials and take actions that existing SOC 2 controls may not distinguish from human activity. Token Security explains why SOC 2 needs to adapt to address the security gaps created by agent identities. […]
Global Security News
Stopping IT Worker Scams Requires Revamped HR Process
Training human-resource managers in the latest tactics and warning signs goes a long way toward blunting the threat, but automated analysis can help even more.
Global Security News
Compromised GitHub Actions Came Back Online and Resumed Executing Mini Shai-Hulud Malware
Two actions-cool GitHub Actions have been disabled for a second time after the repositories became accessible last week, months after they were compromised during the May 2026 Mini Shai-Hulud campaign. The affected GitHub Actions are listed below – actions-cool/issues-helper actions-cool/maintain-one-comment Visiting either of the repositories now shows the message: “Access to this
Global Security News
Zero-Days, AI Agents, and Identity Attacks Define Cybersecurity Week
This week’s security landscape combined actively exploited zero-days, widespread patching gaps, credential-driven attacks, software supply chain threats, and mounting concern over autonomous AI systems. Critical infrastructure and healthcare organizations faced operational risks, major breaches exposed sensitive records, and researchers demonstrated how AI can accelerate both offensive security work and unintended access. Major Threats & Vulnerabilities…
Global Security News
Benjamin Rosen, Who Persuaded Wall Street to Take PCs Seriously, Dies at 93
After bringing Apple to Morgan Stanley for its IPO, he financed Compaq and Lotus, and helped make PCs standard-issue in America’s homes and offices.
Global Security News
ClickFix Campaign Abuses Trusted Websites to Deploy Psychedelic Stealer
Attackers hijacked Ukrainian websites to deliver a fake Cloudflare CAPTCHA that installs Psychedelic Stealer and steals browser and crypto credentials. Psychedelic Stealer is being distributed through compromised Ukrainian business websites. Attackers injected hidden iframes into legitimate pages and used them to display a fake Cloudflare verification screen to visitors. The affected sites included a hair-treatment…
Global Security News
AI Is a Regulator’s Nightmare
There is no template for a technology that is both immensely beneficial and deeply dangerous.
Global Security News
How subscription commerce platforms are solving the recurring billing problem for cloud businesses
Australian MSPs, IT distributors and telcos are moving fast toward recurring-revenue models. It’s an easy decision on paper: predictable income, stickier customers, better…
Global Security News
ATT&CK-Based Detection for Federal Agencies
ATT&CK-based detection for a federal agency is the practice of deploying detection rules mapped to MITRE ATT&CK techniques, translating those rules to the agency’s own SIEM, and measuring coverage so the agency can produce auditable evidence that detection is working. Federal agencies operate under executive orders, OMB memos, and performance goals that point to one…
Global Security News
Zero-Click Vulnerabilities in Salesforce Agentforce Expose Wider AI Agent Risk
The ‘SalesBleed’ set of weaknesses in Salesforce’s Agentforce agents exposed CRM data to attackers via prompt injection and DNS exfiltration
Global Security News
PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence
Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain. The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method. “Where earlier variants embedded…
Global Security News
Agents can now set up your website’s security with Turnstile Spin
In 2023, Cloudflare declared itself free from CAPTCHAs with the launch of Turnstile, our privacy-first client-side challenge. Turnstile is free to use, works on any site (no need to proxy traffic through Cloudflare), and never asks a visitor to solve a puzzle. Now, we are launching Turnstile Spin, an agent-mediated end-to-end implementation of Turnstile. Initially…
Global Security News
AI Revs the Economic Engine
Plus, the U.N. debates on who gets a say on AI.
Global Security News
Meta floats project to lay first petabit submarine fiberoptic cable
The 7,000 km (4,350 mile) cable, called Petal, will connect the US and France. Meta is partnering with NEC and Sumitomo Electric Industries to build it, and working with French telecommunications company Orange to coordinate the landing of the cable on the French coast. Petal will have more than double the capacity of today’s fastest…
Global Security News
Only 26% of Detected CISA Known Exploited Vulnerabilities Were Fully Remediated
A recent Verizon study found that vulnerability exploitation became the most common initial access vector, appearing in 31%…
Global Security News
Criminals turn placeholder domain into ClickFix trap
A domain that has long appeared in software documentation, code examples, and developer test material is now being used to push a ClickFix attack against Windows users. A placeholder domain stands in for a website in an example. The best-known is probably example.com. Another, third-party[.]com, has often been used in documentation to represent an external…
Global Security News
Microsoft plans to deprecate Windows Deployment Services
Microsoft announced it will deprecate the Windows Deployment Services (WDS) server role starting with the next Windows Server release. […]
Global Security News
CISA Unveils Election Security Plan Ahead of 2026 Midterms
The CISA plan provides guidance and resources for election officials to secure systems such as voter registration databases and voting machines
Global Security News
Your LG smart TV is constantly collecting your data – here’s how to stop it
Factory resetting your LG TV is the only way to remove certain data logs from its hardware.
Global Security News
ANY.RUN at RootedCON Valencia 2026: Where Cybersecurity Meets the Next Wave of AI
ANY.RUN once again joined the RootedCON community this year, taking part in Rooted Valencia 2026 on September 18. The event brought together cybersecurity professionals, researchers, hackers, and technology enthusiasts from across the global cybersecurity community. For our team, the event became yet another opportunity to meet security professionals, speak with clients, and demonstrate how interactive…
Global Security News
Google plans Gemini 4 release before year-end
Google’s Gemini 4 AI model is in the early days of post-training, the phase in which a base AI model is refined to behave reliably, and should be released “much earlier” than the end of this year, Google DeepMind head Koray Kavukcuoglu told The Information at its AI Agenda Live Summit. Some Google observers have…
Global Security News
Everpure Adds AI-Ready Data Management Capabilities
Everpure has expanded its data management platform with native MCP integration and new AI infrastructure capabilities designed to give AI agents secure access to enterprise data. The capabilities further Everpure’s Data Primacy vision, which was introduced at its Pure//Accelerate conference in Las Vegas in June. Everpure connects enterprise data to AI agents Everpure has positioned…
Global Security News
Threat detection dashboards are masking security coverage gaps
A detection rule can show up as deployed on a coverage dashboard and still never fire when an attacker uses the technique it was built to catch. Conifers assessed 14,652 detections in its customer base, including rules written by customers and detections managed by vendors in SIEM, endpoint, cloud, identity, email and network tools. The…
Global Security News
Microsoft’s new Copilot app puts everything in one place – but the price is ‘evolving’
Microsoft says Copilot has gotten ‘actually really good.’ The new app has AI agents and can write code. So how much is all this going to cost?
