access ai android api apple attack authentication backdoor breach business ceo china cisa cisco ciso cloud compliance control credentials crypto cve cyber cyberattack cybercrime cybersecurity data data-breach defense detection email endpoint exploit finance flaw framework fraud google governance government group hacker hacking healthcare identity infrastructure intelligence Internet jobs law leak linux malicious malware microsoft monitoring network open-source password phishing privacy ransomware remote-code-execution resilience risk russia scam service software strategy supply-chain technology theft threat tool unclassified update usa vulnerability windows zero-day
-
Best Security Awareness Platforms for Personalized Employee Training
Comparing five leading security awareness platforms, based on the level of personalization they offer. First seen on hackread.com Jump to article: hackread.com/security-awareness-platforms-employee-training/ also interesting: 10 most critical LLM vulnerabilities Phishing kit Salty2FA washes away confidence in MFA TDL 007 – Cyber Warriors Digital Shadows: Insights from Canada’s Cybersecurity Leader Same Old Security Problems: Cyber Training…
-
Citrix Confirmed Two New NetScaler Flaws Exploited as Zero-Day
Citrix confirmed two critical NetScaler zero-days were exploited before patches were available, with attackers able to remotely execute code. Citrix confirmed that two critical zero-day vulnerabilities in NetScaler ADC and NetScaler Gateway were exploited before the company released patches. The flaws allow remote code execution, meaning attackers can potentially take control of affected appliances. The…
-
Citrix confirms two NetScaler RCE zero-days exploited in attacks
Citrix has confirmed that two critical NetScaler remote code execution vulnerabilities, tracked as CVE-2026-88771 and CVE-2026-88772, are being exploited in attacks and that it has released security updates to fix the flaws. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/citrix-admins-warned-to-shut-down-netscalers-over-2-exploited-zero-days/ also interesting: CVE-2025-7775: Citrix NetScaler ADC and NetScaler Gateway Zero-Day Remote Code Execution Vulnerability Exploited…
-
Citrix admins warned to shut down NetScalers over 2 exploited zero-days
Two unpatched Citrix NetScaler zero-day vulnerabilities are reportedly being exploited in attacks, with cybersecurity agencies, security researchers, and IT providers privately warning organizations about the flaws ahead of patches expected next week. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/citrix-admins-warned-to-shut-down-netscalers-over-2-exploited-zero-days/ also interesting: Critical infrastructure under attack: Flaws becoming weapon of choice Attackers exploiting NetScaler ADC…
-
SECURITY AFFAIRS AI-CYBERSECURITY NEWSLETTER ROUND 1
Security Affairs AI-CYBERSECURITY newsletter includes a collection of the best articles and research on AI in the international landscape Artificial intelligence is rapidly changing cybersecurity, reshaping both the techniques used by attackers and the tools available to defenders. AI agents can automate tasks, analyze large amounts of data, discover vulnerabilities and accelerate offensive operations. At…
-
Gefälschte Stimme: Bank-Chef überwies wegen KI-Scam 95 Millionen Euro
Ein italienischer Bank-Chef ließ sich von Betrügern mit einer gefälschten Stimme blenden. Das Ergebnis: ein Schaden von rund 95 Millionen Euro. First seen on golem.de Jump to article: www.golem.de/news/gefaelschte-stimme-bank-chef-ueberwies-wegen-ki-scam-95-millionen-euro-2609-213473.html also interesting: Spotting AI-generated scams: Red flags to watch for Top 12 ways hackers broke into your systems in 2024 Chainalysis Expands Fraud Detection With Alterya…
-
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 116
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Threat Intel – One Kit, Forty Companies: How a Malware-as-a-Service Platform Used GitHub as a Distribution Network for its Campaign Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO ChainScript: Tracing a Node.js RAT…
-
Anlagebetrug mit dem ‘Schwarm”: 21 Millionen Euro und ein Luxusleben
Tags: unclassifiedAnlagebetrug mit dem ‘Schwarm”: 21 Millionen Euro von Anlegern, Luxusleben und ein Schneeballsystem beschäftigen das LG Saarbrücken. First seen on tarnkappe.info Jump to article: tarnkappe.info/artikel/rechtssachen/anlagebetrug-schwarm-21-millionen-luxusleben-333849.html also interesting: Digitale Regulierung konsistent umsetzen: die Rolle etablierter ISO-Standards Synology warnt: Kritische NAS-Lücken ermöglichen Datenklau Attackers Abuse npm Trusted Publishing in GHAPPIER Campaign Smart-TVs: Youtuber entfernt WLAN-Modul aus neuem…
-
Anthropic turns Claude into an AI marketplace with 2,000+ plugins and connectors
Anthropic has just announced a new Claude Marketplace, and it brings all AI-related tools into one place, including plugins, connectors, agents, and more. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/artificial-intelligence/anthropic-turns-claude-into-an-ai-marketplace-with-2-000-plus-plugins-and-connectors/ also interesting: Polymorphic AI malware exists, but it’s not what you think CASB buyer’s guide: What to know about cloud access security brokers before…
-
Cloudflare fixes Containers cross-tenant flaw exposing customer data
Cloudflare has fixed a vulnerability in Containers and Sandboxes that allowed customers with a Workers Paid account to recover residual data from other customers’ containers on the same physical host. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cloudflare-fixes-containers-cross-tenant-flaw-exposing-customer-data/ also interesting: Wiz’s Security GraphDB vs. DeepTempo’s LogLM Incomplete Patch in NVIDIA Toolkit Leaves CVE-2024-0132 Open to…
-
Security Affairs newsletter Round 597 by Pierluigi Paganini INTERNATIONAL EDITION
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. OpenAI Agents Accessed US Government Websites Without Authorization Exploit.in Database Reveals the Roots of Today’s Ransomware Ecosystem…
-
KI mit Kontrollverlust: OpenAI stoppt Training seiner Top-Modelle
Ein KI-System knackt seine eigene Isolationsumgebung und veröffentlicht ungefragt Nutzerbilder. Daraufhin setzt OpenAI das Training aus. First seen on golem.de Jump to article: www.golem.de/news/ki-mit-kontrollverlust-openai-stoppt-training-seiner-top-modelle-2609-213470.html also interesting: LLMs easily exploited using run-on sentences, bad grammar, image scaling Cybersecurity Snapshot: Cyber Pros Emerge as Bold AI Adopters, While AI Changes Data Security Game, CSA Reports Say When…
-
Psychedelic Stealer greift ukrainische Nutzer an
Tags: captchaArctic Wolf Labs deckt eine Kampagne auf, bei der gekaperte ukrainische Websites die Schadsoftware Psychedelic Stealer über ein gefälschtes CAPTCHA verbreiten. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/psychedelic-stealer-ukraine also interesting: New Rust-Based InfoStealer Uses Fake CAPTCHA to Deliver EDDIESTEALER PhantomCaptcha RAT Uses Weaponized PDFs and “ClickFix” Cloudflare CAPTCHA Pages to Deliver Malware Neue ClickFix-Kampagne…
-
Nach KI-Vorfällen: China und USA richten KI-Kommunikationskanal ein
China und die USA ringen um die Vorherrschaft bei der KI-Entwicklung. Dennoch wollen beide Länder sich über Zwischenfälle gegenseitig informieren. First seen on golem.de Jump to article: www.golem.de/news/nach-ki-vorfaellen-china-und-usa-richten-ki-kommunikationskanal-ein-2609-213468.html also interesting: Microsoft warnt, dass China die Wahlen in den USA, Südkorea und Indien mittels KI stören könnte Microsoft startet neues europäisches Sicherheitsprogramm China just two years…
-
Rydox Admin Faces 20 Years After Selling Stolen Data and Fraud Tools
Kosovo national Ardit Kutleshi pleaded guilty to running Rydox, a cybercrime marketplace that sold stolen identities and credentials for years. Ardit Kutleshi, 28 years old and a citizen of Kosovo, pleaded guilty last week to building and running the cybercrime marketplace Rydox. The Rydox marketplace has been active since February 2016; it facilitated over 7,600…
-
(g+) pnpm: Blitzschnelles und smartes Paketmanagement für Node.js
Tags: unclassifiedpnpm beschleunigt und vereinfacht die Paketverwaltung für Node.js durch innovative Konzepte. Wie genau funktioniert das? First seen on golem.de Jump to article: www.golem.de/news/pnpm-blitzschnelles-und-smartes-paketmanagement-fuer-node-js-2609-213448.html also interesting: US Scholarships Aim to Close Anonymitätsdebatte : Fotos, gemacht von widerlichen Typen… Telekopye: Mammut-Jagd mit Telegram-Bot Foundry-Umfrage von Keepit – Unveränderbarer Speicher ist unverzichtbar
-
Warning: Two Unpatched Citrix NetScaler RCE Zero-Days Under Active Exploitation
Two new unpatched zero-day vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway appliances that allow remote code execution are being actively exploited in the wild, security firm watchTowr said on September 26.Citrix has not confirmed the flaws or published a fix. Some administrators say they have taken appliances offline rather than wait for one to…
-
Week in review: Gyazo breach exposes 23.6M user data, TASK#STOMP steals documents
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Know what was tested before your SAP ECC migration goes live In this Help Net … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/27/week-in-review-gyazo-breach-exposes-23-6m-user-data-taskstomp-steals-documents/ also interesting: HPE’s sensitive data exposed in alleged IntelBroker hack China-Nexus Nation State Actors Exploit SAP…
-
Die neue Logistikrealität: Wie KI, Ethik und augmentierte Arbeitswelten die Branche transformieren
Ein Überblick über die zentralen Trends des DHL Logistics Trend Radar 8.0. Künstliche Intelligenz rückt in der Logistik von der Assistenz in die operative Steuerung. Damit verändern sich Handel, Lieferketten und Arbeitsplätze gleichzeitig. Für das Management zählt jetzt nicht der nächste isolierte Pilot, sondern ein belastbares Betriebsmodell, das Daten, Governance, Cybersicherheit und Qualifizierung zusammenführt. KI……
-
‘Mum, where did my Robux go?’ The Roblox scam targeting children
Criminals are trying to glean login details to harvest players’ in-game currency and personal dataYour 10-year-old son has started playing Roblox, when he realises all of his in-game currency, Robux, is gone.When you try to find out what happened, he says he was recently promised extra Robux if he followed a link on YouTube. When…
-
OpenAI halts training of latest models as reports mount of AI agents going rogue
Decision follows disclosures that OpenAI agents searching government websites had acted in unexpected waysOpenAI said it has paused training of its latest artificial intelligence models as reports of AI agents going rogue mount.The decision to halt development came just hours after the company disclosed Friday that it was reviewing several incidents from the summer in…
-
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
The Psychedelic Stealer malware distributed via compromised Ukrainian websites using ClickFix-style Cloudflare verification checks is part of a wider malware-as-a-service (MaaS) platform called Lunex.The new findings come from Ontinue, which described the activity as a four-stage attack chain aimed at targeting Ukrainian-speaking users.”The attack chain begins with a fake CAPTCHA page and First seen on…
-
ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks
The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume widespread exploitation of a flaw on vulnerable servers. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/shinyhunters-uses-waf-bypass-trick-in-oracle-peoplesoft-attacks/ also interesting: CVE-2025-61882: Frequently Asked Questions About Oracle E-Business Suite (EBS)…
-
Placeholder Domains Used by 349 AI Agent Skills Found Redirecting to Scams
Manifold Security found placeholder domains cited in 359,000 GitHub files and 349 AI agent skills serving cloaked scam… First seen on hackread.com Jump to article: hackread.com/placeholder-domains-ai-agent-skills-redirect-scams/ also interesting: From Clawdbot to Moltbot to OpenClaw: Security Experts Detail Critical Vulnerabilities and 6 Immediate Hardening Steps for the Viral AI Agent Placeholder Domains Used by 349 AI…
-
Placeholder Domains Used by 349 AI Agent Skills Found Redirecting to Scams
Manifold Security found placeholder domains cited in 359,000 GitHub files and 349 AI agent skills serving cloaked scam… First seen on hackread.com Jump to article: hackread.com/placeholder-domains-ai-agent-skills-redirect-scams/ also interesting: From Clawdbot to Moltbot to OpenClaw: Security Experts Detail Critical Vulnerabilities and 6 Immediate Hardening Steps for the Viral AI Agent Placeholder Domains Used by 349 AI…
-
Microsoft pauses KB5002907 update after Office license deactivations
Microsoft has paused the rollout of the KB5002907 Microsoft 365 update after users report that it deactivated, or in some cases completely removed, perpetual Office 2016 and Office 2019 installations. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-365-kb5002907-update-paused-after-office-license-deactivations/ also interesting: Microsoft Patch Tuesday security updates for November 2024 fix two actively exploited zero-days Microsoft Office Updates…
-
Claude Opus 5.5 uses 95% fewer em dashes, but its answers are getting longer
Tags: aiAnthropic’s Claude Opus 5.5 appears to be changing how it writes, with new analysis showing fewer obvious AI writing patterns, shorter sentences, and simpler wording compared with Opus 5. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/artificial-intelligence/claude-opus-55-uses-95-percent-fewer-em-dashes-but-its-answers-are-getting-longer/ also interesting: In the News | What Organizations Need To Know About AI-driven Cybersecurity House Dem urges FCC…
-
OpenAI Agents Accessed US Government Websites Without Authorization
OpenAI is investigating AI agents that accessed US gov websites without authorization, including an attempted Education Department hack. OpenAI disclosed on Friday that its AI agents had interacted with US government websites in ways nobody planned or authorized, as part of what the company is calling an ongoing review of unexpected model behavior. The affected…
-
Exploit.in Database Reveals the Roots of Today’s Ransomware Ecosystem
Exploit.in data shows how a 2005 cybercrime forum helped shape today’s ransomware ecosystem, with users and practices surviving for decades. Ransomnews researcher Dancho Danchev dug up a database dump of Exploit.in covering its first three years, from February 2005 to May 2008, and the numbers inside it tell a story about Russian cybercrime that enforcement…
-
Zero Trust for AI Agents Starts With Fixing Zero Visibility
The way we talk about AI agents is shifting, and the way we implement them requires an even more fundamental shift. While earlier discourse focused on how quickly organizations could stand up agents and how much productivity they could promise, a string of recent incidents, including a widely discussed intrusion at Hugging Face during an…
-
Attackers Bypass WAFs to Exploit Oracle PeopleSoft Flaw and Deploy Web Shells
Google is warning of renewed mass exploitation of a known security vulnerability in Oracle PeopleSoft as part of a campaign targeting multiple sectors globally.The ShinyHunters-linked activity involves the weaponization of CVE-2026-35273 (CVSS score: 9.8), a critical security flaw that could result in unauthenticated remote code execution.The vulnerability was first exploited as a zero-day First seen…
-
GitHub Actions re-enabled with Mini Shai-Hulud payload still active
Two third-party GitHub Actions previously compromised in a Mini Shai-Hulud campaign were re-enabled by their maintainer and remained accessible for more than a week despite still pointing to malicious code. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/github-actions-re-enabled-with-mini-shai-hulud-payload-still-active/ also interesting: Malicious Visual Studio projects on GitHub push Keyzetsu malware Attackers hide malicious code in Hugging…
-
ShinyHunters Bypass WAF Rules to Resume Oracle PeopleSoft Attacks
ShinyHunters exploit CVE-2026-35273 in Oracle PeopleSoft using URL encoding to bypass WAF rules, deploy web shells and spread the SIDEEYE backdoor. First seen on hackread.com Jump to article: hackread.com/shinyhunters-bypass-waf-rules-oracle-peoplesoft-attacks/ also interesting: CISA Warns of Attacks Exploiting Old Oracle WebLogic Vulnerability Patch Tuesday priorities: Vulnerabilities in SAP NetWeaver and Microsoft NTLM and Hyper-V CISA Warns of…
-
OpenAI’s AI agents accidentally uploaded user-provided images to third-party sites
OpenAI says its AI agents uploaded user-provided images to third-party image-hosting services while carrying out research and evaluation tasks. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/artificial-intelligence/openais-ai-agents-accidentally-uploaded-user-provided-images-to-third-party-sites/ also interesting: 9 top bug bounty programs launched in 2025 9 top bug bounty programs launched in 2025 Security for AI: How Shadow AI, Platform Risks, and Data…
-
Old-School Credit Card Scams Are Far From Dead
In an era of increasingly sophisticated AI-fueled scams, a retro threat may be lurking in your mailbox. First seen on wired.com Jump to article: www.wired.com/story/kernel-panic-old-timey-credit-card-scams/ also interesting: Privacy Roundup: Week 6 of Year 2025 Cybersecurity Snapshot: Global Agencies Target Criminal “Bulletproof” Hosts, as CSA Unveils Agentic AI Risk Framework Old-School Credit Card Scams Are Far…
-
Old-School Credit Card Scams Are Far From Dead
In an era of increasingly sophisticated AI-fueled scams, a retro threat may be lurking in your mailbox. First seen on wired.com Jump to article: www.wired.com/story/kernel-panic-old-timey-credit-card-scams/ also interesting: Privacy Roundup: Week 6 of Year 2025 Cybersecurity Snapshot: Global Agencies Target Criminal “Bulletproof” Hosts, as CSA Unveils Agentic AI Risk Framework Old-School Credit Card Scams Are Far…
-
Old-School Credit Card Scams Are Far From Dead
In an era of increasingly sophisticated AI-fueled scams, a retro threat may be lurking in your mailbox. First seen on wired.com Jump to article: www.wired.com/story/kernel-panic-old-timey-credit-card-scams/ also interesting: Privacy Roundup: Week 6 of Year 2025 Cybersecurity Snapshot: Global Agencies Target Criminal “Bulletproof” Hosts, as CSA Unveils Agentic AI Risk Framework Old-School Credit Card Scams Are Far…
-
Lieferdienst: Flink-Kunden werden von Hackern erpresst
Der Lieferdienst Flink ist gehackt worden. Nun werden seine Kunden erpresst und sollen in Krypto bezahlen. Flink selbst lehnt sämtliche Lösegeldzahlungen ab. First seen on golem.de Jump to article: www.golem.de/news/lieferdienst-flink-kunden-werden-von-hackern-erpresst-2609-213466.html also interesting: Coinbase offers $20 million bounty after extortion attempt with stolen data How defenders use the dark web Ransomware recovery perils: 40% of paying…
-
Lieferdienst: Flink-Kunden werden von Hackern erpresst
Der Lieferdienst Flink ist gehackt worden. Nun werden seine Kunden erpresst und sollen in Krypto bezahlen. Flink selbst lehnt sämtliche Lösegeldzahlungen ab. First seen on golem.de Jump to article: www.golem.de/news/lieferdienst-flink-kunden-werden-von-hackern-erpresst-2609-213466.html also interesting: Coinbase offers $20 million bounty after extortion attempt with stolen data How defenders use the dark web Ransomware recovery perils: 40% of paying…
-
Omada integriert EmpowerID und erweitert Identity Governance um Runtime-Kontrollen für KI-Agenten
Omada übernimmt EmpowerID und erweitert seine Identity-Governance-Plattform um Runtime-Autorisierung und Echtzeit-Kontrolle für autonome KI-Agenten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/omada-integriert-empowerid-und-erweitert-identity-governance-um-runtime-kontrollen-fuer-ki-agenten/a46480/ also interesting: 12 most innovative launches at RSA 2025 Zwischen Automatisierung und Verantwortung: KI-Agenten in der Identity Governance AI agents can bypass guardrails and put credentials at risk, Okta study finds OAuth-Token als…
-
Kiteworks Urges Customers to Shut Down Systems for 9 Hours Over Possible Cyber Attack
Kiteworks (formerly Accellion) is urging customers to shut down their systems as a precautionary measure for nine hours over the weekend after it received threat intelligence about an imminent cyber attack.”Kiteworks received credible threat intelligence from federal intelligence authorities indicating that a threat actor may attempt to target some Kiteworks systems,” said Frank Balonis, Chief…
-
SharePoint RCE and MikroTik RouterOS Flaws Actively Exploited in the Wild
Tags: cve, cybersecurity, exploit, flaw, infrastructure, injection, kev, microsoft, office, rce, remote-code-execution, vulnerabilityThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added two security flaws impacting Microsoft SharePoint and Mikrotik RouterOS to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.The vulnerabilities in question are as follows – CVE-2026-65660 (CVSS score: 8.8) – A code injection vulnerability in Microsoft Office SharePoint First seen on…
-
Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link
Details have emerged about a high-severity security flaw in the Elementor Website Builder WordPress plugin that could be exploited by an unauthenticated attacker to create rogue administrator accounts and take control of a site.The cross-site request forgery (CSRF) vulnerability, which has yet to be assigned a CVE identifier, carries a CVSS score of 8.8 out…
-
Elementor CSRF Flaw Lets Attackers Take Over Sites After Admin Clicks Crafted Link
Details have emerged about a high-severity security flaw in the Elementor Website Builder WordPress plugin that could be exploited by an unauthenticated attacker to create rogue administrator accounts and take control of a site.The cross-site request forgery (CSRF) vulnerability, which has yet to be assigned a CVE identifier, carries a CVSS score of 8.8 out…
-
KI-Choke: Bill Gates warnt vor tödlicher Waffe
Tags: aiBill Gates drängt den US-Kongress zu strengen KI-Regularien. Während Donald Trump jede Aufsicht ablehnt, entdecken Sicherheitsforscher alarmierende Lücken. First seen on golem.de Jump to article: www.golem.de/news/ki-choke-bill-gates-warnt-vor-toedlicher-waffe-2609-213461.html also interesting: IBM Reasserts Its Identity: A Modern Security Partner Rooted in Experience Trusted Cloud Edge in Practice: Transforming Critical Industries LotL Attack Hides Malware in Windows Native AI…
-
Kiteworks Warns Users to Take Systems Offline Amid Suspected Zero-Day Threat
Kiteworks has urged customers worldwide to temporarily shut down their servers after receiving credible law-enforcement intelligence that a threat actor may target Kiteworks deployments over the weekend. The emergency advisory is preventive, but the company said the potential activity may involve an unknown zero-day vulnerability. The secure file-sharing and managed content communications provider asked organizations…
-
Windows 11 Update Causes Black Screen and Desktop Loading Issues After Sign-In
Microsoft has confirmed a Windows 11 issue that can leave users with a black screen after sign-in or prevent the desktop from loading automatically. The problem affects devices that installed the August 2026 non-security preview updates and potentially later cumulative updates, with Azure Virtual Desktop environments using FSLogix profile containers most frequently affected. The issue…
-
Red Heron Exploits Critical Gitea Flaw to Steal Repositories and Deploy Linux Rootkit
Tags: access, cve, cyber, data-breach, exploit, flaw, Internet, linux, remote-code-execution, threat, vulnerabilityA threat actor tracked as Red Heron has exploited the critical Gitea remote code execution vulnerability CVE-2026-60004 to steal source-code repositories, establish persistent access, and deploy a covert Linux toolset consisting of the JITTERLY implant and SIXZUT LD_PRELOAD rootkit. Acronis reported that the actor rapidly weaponized the flaw against internet-exposed Gitea environments, turning initial access…
-
U.S. CISA adds WordPress flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds WordPressflaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a WordPress Core flaw, tracked as CVE-2026-87902 (CVSS score of 9.2), to its Known Exploited Vulnerabilities (KEV) catalog. CVE-2026-87902 allows an unauthenticated attacker to make the get_page_template() function include a readable local…
-
OpenAI Says Misaligned AI Agents Hacked Hugging Face and Bypassed Security Controls
OpenAI has disclosed that autonomous AI agents compromised portions of Hugging Face’s infrastructure during internal cybersecurity evaluations after pursuing misaligned strategies to complete difficult tasks. The company said the event was not simply a platform-security failure, but its most severe identified example of model-driven cyber activity and a warning that advanced agents can pursue objectives…

