
AI SecurityThe Hacker News · 14h ago · 1 source
A critical flaw in GitLab's AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory .

AI SecurityDevelopingInfosecurity Magazine · 18h ago · 24 sources
The tech giant said that attackers are getting to the advantages of AI first, and the pressure is now on defenders to adapt quickly to close the gap.

Threat ResearchThe Hacker News · 21h ago · 1 source
Google has announced a new security measure that limits access to Android's accessibility services to verified applications classified as Accessibility Tools when Advanced Protection is enabled.

VulnerabilitiesDevelopingHelp Net Security · 23h ago · 10 sources
Fortinet is warning customers that attackers are exploiting a zero-day vulnerability (CVE-2026-104286) in FortiMail, its email security gateway.

VulnerabilitiesDevelopingInfosecurity Magazine · 23h ago · 2 sources
The Dutch Institute for Vulnerability Disclosure (DIVD) is staffed by volunteers and dedicated to ethically disclosing flaws it finds in systems to However, it became a target itself last week after noticing suspicious activity on September 24.

AI SecurityDevelopingHelp Net Security · 1d ago · 3 sources
IT teams responsible for identity security are concerned about AI agents’ ongoing access to company systems and the actions they take on users’ behalf, according to a Delinea’s 2026 Identity Security Report: The AI Enforcement Gap.

RansomwareDevelopingBleepingComputer · 1d ago · 3 sources
An international law enforcement operation dubbed seized the KillSec ransomware gang’s data leak site and servers, led to three arrests, and identified a 16-year-old as the group’s alleged administrator.

VulnerabilitiesBleepingComputer · 1d ago · 1 source
Secure file-sharing software company Kiteworks has released security updates to address 126 vulnerabilities, including a max-severity flaw affecting its Email Protection Gateway (EPG) security solution.

AI SecurityDevelopingInfosecurity Magazine · 1d ago · 2 sources
The consulting giant polled 3934 business and tech leaders across 71 countries for its 2027 Global Digital Trust Insights report, published on October 1.

AI SecurityDevelopingHelp Net Security · 2d ago · 21 sources
Thales has announced Sentinel Envelope Plus, a new addition to its Sentinel Envelope software protection solution that significantly hardens compiled applications against AI-assisted reverse engineering, automated zero-day vulnerability discovery, and automated exploit generation.

VulnerabilitiesDevelopingThe Hacker News · 2d ago · 4 sources
Security researchers have published the first public proof-of-concept for CVE-2026-86950 , an Apple CoreGraphics flaw Apple says may have been used in attacks against specific targeted individuals.

RansomwareHuntress · 2d ago · 1 source
INC is a ransomware operation associated with file encryption, ransom notes, and as seen in some Huntress investigations, data staging or exfiltration before encryption.

Cyber AttacksDevelopingThe Hacker News · 2d ago · 2 sources
Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting victims to malicious sites that employ ClickFix lures to deliver malware.

VulnerabilitiesBleepingComputer · 2d ago · 1 source
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of a new critical vulnerability in MikroTik RouterOS that could lead to remote code execution or cause a denial-of-service condition.

VulnerabilitiesBleepingComputer · 2d ago · 1 source
Remote access software company TeamViewer warned customers on Tuesday to immediately patch a set of high-severity vulnerabilities affecting its client and host software.

VulnerabilitiesDevelopingThe Hacker News · 3d ago · 7 sources
Cybersecurity researchers have disclosed technical details of a recently patched critical security flaw in Citrix NetScaler ADC and Gateway that has come under active exploitation in the wild.

Threat ResearchBleepingComputer · 3d ago · 1 source
Microsoft is taking Windows Subsystem for Linux beyond just running Linux distributions, as WSL Containers is now generally available.

Threat ResearchSC Media · 3d ago · 1 source
A study released September 29 by SkillBit found that cybersecurity managers are having difficulty onboarding new employees and finding cyber talent, and as a result, maintaining cyber resilience has become very challenging.

Cyber AttacksDevelopingInfosecurity Magazine · 3d ago · 7 sources
In research published September 28, Cleafy said the implant had changed little from late 2025 through September 2026, while its C2 panel went through three generations in six months and rebranded from BlackCat to Panda Workshop.

AI SecurityDevelopingHelp Net Security · 3d ago · 3 sources
LastPass has announced an expansion of its Business Max offering to include AI Monitoring & Protect and Web Monitoring & Protect, new visibility and governance capabilities that enable organizations to identify and secure the AI tools, SaaS applications, and websites its employees use, all from its existing browser-native extension.

AI SecurityDevelopingHelp Net Security · 3d ago · 3 sources
Postman has announced the general availability of Fabric Gateway, a protocol-agnostic control plane for governing how AI agents , LLMs, and MCP servers discover and interact with APIs, tools, and other agents.

Cyber AttacksDevelopingInfosecurity Magazine · 3d ago · 2 sources
Dubbed NeedyMantis, the malware operation has been active since at least October 2025.

Threat ResearchDevelopingThe Hacker News · 3d ago · 2 sources
Dutch authorities have confirmed that they arrested a 24-year-old man from Amsterdam in connection with the ShinyHunters group.

VulnerabilitiesThe Hacker News · 3d ago · 1 source
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on Thursday, added two critical security flaws impacting WSO2 and Adobe Commerce and Magento to its Known Exploited Vulnerabilities ( KEV ) catalog, based on evidence of active exploitation.

VulnerabilitiesHelp Net Security · 3d ago · 1 source
Apple has shipped iOS and macOS security updates to fix an actively exploited zero-day vulnerability (CVE-2026-86950) in the operating systems’ Core Graphics framework.

AI SecurityDevelopingHelp Net Security · 4d ago · 5 sources
Anthropic has released Claude Sonnet 5.5, an AI model for coding and office work.

AI SecurityThe Hacker News · 4d ago · 1 source
OpenAI on Monday shelved plans to release GPT-6.1 Astra, a next-generation artificial intelligence (AI) model that was planned for an October launch, after it failed internal safety and alignment audits.

RansomwareBleepingComputer · 4d ago · 1 source
Keio Corporation (Keio), a major private railway operator in Japan, said its network was hit by a ransomware attack over the weekend, disrupting some of its business systems.

AI SecurityDevelopingThe Hacker News · 4d ago · 7 sources
AI agents authenticate, invoke tools, and act across enterprise systems with delegated authority.

AI SecurityDevelopingThe Hacker News · 4d ago · 9 sources
A domain used as harmless placeholder text showed up in roughly 1,700 repositories.

Threat ResearchDevelopingHelp Net Security · 4d ago · 2 sources
A former U.S. Army soldier who was part of a group that stole data from telecom companies, including AT&T , has been sentenced to 70 months in prison.
Threat ResearchBleepingComputer · 5d ago · 1 source
OpenAI is testing a new always-on assistant called , and references to the unannounced feature briefly appeared online.

VulnerabilitiesDevelopingThe Hacker News · 5d ago · 2 sources
Two critical vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway that allow remote code execution have been exploited in the wild, Citrix confirmed on September 27.

AI SecurityDevelopingBleepingComputer · 5d ago · 2 sources
Anthropic has just announced a new Claude Marketplace, and it brings all AI-related tools into one place, including plugins, connectors, agents, and more.

RansomwareDevelopingBleepingComputer · 6d ago · 2 sources
The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume widespread exploitation of a flaw on vulnerable servers.

Cloud & IdentityThe Hacker News · 6d ago · 1 source
An active ClickFix campaign has been observed compromising legitimate Ukrainian business websites to inject bogus Cloudflare verification pages and trick victims into downloading a previously undocumented information stealer called Psychedelic .

AI SecurityDevelopingBleepingComputer · 6d ago · 2 sources
OpenAI has confirmed it's aware of a new security incident in which its AI agents uploaded user-provided images to third-party image-hosting services.

VulnerabilitiesDevelopingThe Hacker News · 6d ago · 2 sources
Details have emerged about a high-severity security flaw in the Elementor Website Builder WordPress plugin that could be exploited by an unauthenticated attacker to create rogue administrator accounts and take control of a site.

Cyber AttacksThe Hacker News · 7d ago · 1 source
Cryptocurrency exchange Bitget said suspected North Korean threat actors have stolen $351.6 million from its hot and warm wallets.

Cyber AttacksDevelopingThe Hacker News · 7d ago · 2 sources
Kiteworks (formerly Accellion) is urging customers to shut down their systems as a precautionary measure for nine hours over the weekend after it received threat intelligence about an imminent cyber attack.

VulnerabilitiesBleepingComputer · 7d ago · 1 source
Secure file-sharing software company Kiteworks is urging customers worldwide to temporarily shut down their servers on Saturday for a six-hour window after receiving threat intelligence warning of a potentially imminent cyberattack.

RansomwareBleepingComputer · 7d ago · 1 source
The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability.

Threat ResearchSC Media · 7d ago · 1 source
Questions arose Sept. 25 as to whether the much-reported hack on the Australian government health portal was actually the work of an OpenAI agent — or did the portal’s own code direct the agent to an unauthenticated endpoint, which means the agent did what it was told to do.

VulnerabilitiesBleepingComputer · 7d ago · 1 source
A cross-site request forgery (CSRF) vulnerability in the Elementor plugin for WordPress could allow an unauthenticated attacker to create administrator accounts.

Threat ResearchRapid7 · 7d ago · 1 source
This wrap-up comes from the beautiful country of Belgium, where the Metasploit team is team-building and team-eating while we cheer on our very own teammates giving talks - shout-out to @jburgess-r7 who gave a wonderful talk about some of his 0day research.

AI SecurityInfosecurity Magazine · 7d ago · 1 source
The findings, published September 24by Zenity’s threat research team, detail an attack chain dubbed ‘SalesBleed.’ According to the report , attackers could plant hidden prompt injection payloads inside public-facing Web-to-Lead forms, a standard Salesforce feature that allows external users to submit data that flows directly into CRM records.

AI SecurityDevelopingThe Hacker News · 7d ago · 11 sources
Security leaders keep debating whether AI will produce an entirely new class of cyberattack.

VulnerabilitiesThe Hacker News · 7d ago · 1 source
The Canadian Centre for Cyber Security has warned that a now-patched Roundcube Webmail vulnerability is being actively exploited in the wild.