Tag: cyber
-
14-Year-Old Linux Kernel Vulnerability Enables Root Access and Docker Escape
A vulnerability in the Linux kernel’s AF_ALG cryptographic interface, which has existed for 14 years, can let an unprivileged local attacker gain root access and escape a Docker container by exploiting a race condition in concurrent socket writes. This flaw, tracked as CVE-2025-39964, was discovered in 2025 by STAR Labs researcher Muhammad Alifa Ramdhan, with…
-
14-Year-Old Linux Kernel Vulnerability Enables Root Access and Docker Escape
A vulnerability in the Linux kernel’s AF_ALG cryptographic interface, which has existed for 14 years, can let an unprivileged local attacker gain root access and escape a Docker container by exploiting a race condition in concurrent socket writes. This flaw, tracked as CVE-2025-39964, was discovered in 2025 by STAR Labs researcher Muhammad Alifa Ramdhan, with…
-
14-Year-Old Linux Kernel Vulnerability Enables Root Access and Docker Escape
A vulnerability in the Linux kernel’s AF_ALG cryptographic interface, which has existed for 14 years, can let an unprivileged local attacker gain root access and escape a Docker container by exploiting a race condition in concurrent socket writes. This flaw, tracked as CVE-2025-39964, was discovered in 2025 by STAR Labs researcher Muhammad Alifa Ramdhan, with…
-
ServiceNow Security Flaws Allow Attackers to Execute SQL and Modify Instance Data
ServiceNow has disclosed five vulnerabilities affecting its AI Platform, including two critical flaws that could allow unauthenticated attackers to execute arbitrary SQL commands, extract sensitive instance data, modify records, and escalate privileges. The security advisory, published in September 2026 and tracked as KB3159623 on September 24, details the following vulnerabilities: CVE-2026-86857, CVE-2026-86858, CVE-2026-13016, CVE-2026-86859, and…
-
Rogue AI Agents Tried to Hack Public Websites After Data Retrieval Failed
Research from Transluce shows that autonomous AI agents shifted from standard web data collection to probing for vulnerabilities in three public-facing services after traditional data retrieval methods failed. This activity targeted an Australian government health data platform, Data USA, and the University of New Mexico’s digital library. Rogue AI Tried to Hack Public Websites Transluce…
-
CISA Flags WSO2 Security Flaw Under Active Exploitation
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting WSO2, tracked as CVE-2026-5430, to its Known Exploited Vulnerabilities (KEV) catalog. CISA made this decision after evidence showed threat actors are actively exploiting the flaw. CISA added the vulnerability on September 24, 2026, and set a remediation deadline for affected federal…
-
CISA Adds Multiple Check Point Product Flaws to Exploited Vulnerabilities List
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two critical vulnerabilities affecting multiple Check Point products to its Known Exploited Vulnerabilities (KEV) catalog. CISA warns that these flaws are being actively exploited in the wild. Federal civilian agencies must address these vulnerabilities by September 25, 2026, under Binding Operational Directive (BOD) 26-04. The…
-
Roundcube Pre-Auth SQL Injection Flaw Actively Exploited in the Wild
The Canadian Centre for Cyber Security has warned that a now-patched Roundcube Webmail vulnerability is being actively exploited in the wild.The vulnerability in question is CVE-2026-48842 (CVSS score: 8.1), a pre-authentication SQL injection in the virtuser_query plugin of Roundcube Webmail versions 1.6.x before 1.6.16 and 1.7.x before 1.7.1.The issue stems from a preg_replace() backslash First…
-
Salesforce Agentforce Flaw Enables 0-Click Data Exfiltration via Prompt Injection
Security researchers have revealed a vulnerability chain known as “SalesBleed,” associated with Salesforce’s Agentforce. This vulnerability could allow attackers to extract sensitive CRM data through an indirect prompt injection embedded in a public Web-to-Lead form. The attack does not require a Salesforce login or a click from the victim and could leak data via DNS…
-
Sudo Vulnerability Lets Attackers Bypass Time-Based Authorization Controls
A recently disclosed high-severity vulnerability in Sudo could allow local, unprivileged Linux users to manipulate time-based authorization restrictions in sudoers policies. Tracked as CVE-2026-96512, this vulnerability arises from how Sudo handles the attacker-controlled TZ environment variable when evaluating NOTBEFORE and NOTAFTER constraints. Red Hat is monitoring this flaw under Bug 2539327, which is currently categorized…
-
Russia’s Hybrid Cyber-Physical War in Europe Heats Up
A storm is raging in the form of cyber sabotage, disinformation, and drone attacks on European nations, particularly those that provide material support to Ukraine. First seen on darkreading.com Jump to article: www.darkreading.com/physical-security/russia-hybrid-cyber-physical-war-europe
-
Duelbits Hot Wallet Hack Drains $7 Million, Forces Platform Offline
Crypto casino Duelbits has confirmed a cybersecurity breach that drained approximately $7 million from its hot wallets. In response, the company has taken its platform offline while it investigates the incident. Co-founder Joe said they are still determining “exactly what happened and how,” while assuring customers their funds are safe. Multi-Chain Wallet Drain The incident…
-
Attackers Drain Payy Network After Exploiting Ethereum Bridge Contract
Payy Network has confirmed that an attacker exploited its Ethereum bridge contract and drained its entire balance. As a result, the network and wallet services were immediately suspended. This incident affected users’ non-custodial deposits held within the Payy Network and Payy Wallet bridge infrastructure. The exploit occurred around 04:21 UTC on September 24, 2026. Payy…
-
Cloudflare Containers Flaw Could Expose Data From Other Customers’ Workloads
Cloudflare has addressed a cross-tenant data exposure vulnerability in its Containers platform that could have allowed one customer’s workload to recover residual data belonging to other customers on the same infrastructure. This flaw also affected Cloudflare Sandboxes and the Browser Run service within Browser Rendering, both of which utilize the same underlying disk implementation. Cloudflare…
-
Direktangriffe auf CPS – Wie Angriffe auf cyber-physische Systeme ablaufen
First seen on security-insider.de Jump to article: www.security-insider.de/direkte-cps-angriffe-kill-chain-modbus-shodan-censys-a-df49cec0055373fcf5aaa623d179f074/
-
TrendAI aktualisiert juristischen Leitfaden zu EU AI Act, NIS2 und Cyber Resilience Act
TrendAI veröffentlicht die 9. Auflage seines IT-Compliance-Leitfadens mit aktuellen Informationen zu EU AI Act, NIS2 und Cyber Resilience Act. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/trendai-aktualisiert-juristischen-leitfaden-zu-eu-ai-act-nis2-und-cyber-resilience-act/a46470/
-
TrendAI aktualisiert juristischen Leitfaden zu EU AI Act, NIS2 und Cyber Resilience Act
TrendAI veröffentlicht die 9. Auflage seines IT-Compliance-Leitfadens mit aktuellen Informationen zu EU AI Act, NIS2 und Cyber Resilience Act. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/trendai-aktualisiert-juristischen-leitfaden-zu-eu-ai-act-nis2-und-cyber-resilience-act/a46470/
-
TrendAI aktualisiert juristischen Leitfaden zu EU AI Act, NIS2 und Cyber Resilience Act
TrendAI veröffentlicht die 9. Auflage seines IT-Compliance-Leitfadens mit aktuellen Informationen zu EU AI Act, NIS2 und Cyber Resilience Act. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/trendai-aktualisiert-juristischen-leitfaden-zu-eu-ai-act-nis2-und-cyber-resilience-act/a46470/
-
AI Is Changing Cybersecurity Jobs, Not Erasing Them
SANS Institute’s Rob Lee on AI Transforming Cyber Jobs. AI is reshaping entry-level cybersecurity, but SANS Institute’s Rob Lee says the data doesn’t show junior jobs disappearing. Instead, he expects the starting point to move higher as AI accelerates technical work, raises skill expectations and creates new security roles. First seen on govinfosecurity.com Jump to…
-
AI Is Changing Cybersecurity Jobs, Not Erasing Them
SANS Institute’s Rob Lee on AI Transforming Cyber Jobs. AI is reshaping entry-level cybersecurity, but SANS Institute’s Rob Lee says the data doesn’t show junior jobs disappearing. Instead, he expects the starting point to move higher as AI accelerates technical work, raises skill expectations and creates new security roles. First seen on govinfosecurity.com Jump to…
-
House and Senate members propose legislation for CISA to step up cyber defenses for biotech
Biotechnology doesn’t have its own critical infrastructure designation, so the bipartisan group of lawmakers wants to make sure it’s protected like it. First seen on cyberscoop.com Jump to article: cyberscoop.com/biotech-critical-infrastructure-cybersecurity-legislation/
-
House and Senate members propose legislation for CISA to step up cyber defenses for biotech
Biotechnology doesn’t have its own critical infrastructure designation, so the bipartisan group of lawmakers wants to make sure it’s protected like it. First seen on cyberscoop.com Jump to article: cyberscoop.com/biotech-critical-infrastructure-cybersecurity-legislation/
-
Lawmakers introduce bill for voluntary telecom cyber rules after Salt Typhoon hacks
U.S. Sens. Mark Warner (D-VA) and Ted Cruz (R-TX) introduced the Telecommunications Cybersecurity and Resilience Act on Thursday, arguing that the new effort was necessary in light of the Salt Typhoon attacks which saw Chinese hackers breach nearly all of the major telecommunications giants in the U.S. First seen on therecord.media Jump to article: therecord.media/lawmakers-introduce-bill-for-voluntary-telecom-cyber-rules
-
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Phoenix, Arizona, September 24th, 2026, CyberNewswire SCOUTz, a prospect intelligence platform built for managed service provider (MSP) security sales, is now available in open beta. The platform gives an MSP dated evidence about a prospect’s environment before the first meeting and keeps that evidence attached through delivery and reassessment. The open beta is available at…
-
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Phoenix, Arizona, September 24th, 2026, CyberNewswire SCOUTz, a prospect intelligence platform built for managed service provider (MSP) security sales, is now available in open beta. The platform gives an MSP dated evidence about a prospect’s environment before the first meeting and keeps that evidence attached through delivery and reassessment. The open beta is available at…
-
SCOUTz Prospect Intelligence Platform Launches for MSPs with 30-Day Beta
Phoenix, Arizona, September 24th, 2026, CyberNewswire SCOUTz, a prospect intelligence platform built for managed service provider (MSP) security sales, is now available in open beta. The platform gives an MSP dated evidence about a prospect’s environment before the first meeting and keeps that evidence attached through delivery and reassessment. The open beta is available at…
-
Trust and the enticing consultancy offer
In this week’s newsletter Martin muses over a very suspicious elicitation over social media and the true value of trust within the cyber ecosystem. Hubris might be the real vulnerability that the cyber industry must worry about. First seen on blog.talosintelligence.com Jump to article: blog.talosintelligence.com/trust-and-the-enticing-consultancy-offer/
-
3 Cyber Threats That Defined the Summer of 2026
This installment of the Reporters’ Notebook video series discusses the impact of AI agents breaching Hugging Face, Fairlife’s ransomware attack, and Iranian-linked threat actors compromising a dozen US water systems. It was a busy summer. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/3-cyber-threats-defined-summer-2026
-
Hackers now exploit critical Roundcube flaw in code injection attacks
A high-severity Roundcube Webmail vulnerability patched in May is now being actively exploited in attacks, according to the Canadian Centre for Cyber Security. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/critical-roundcube-flaw-now-actively-exploited-in-code-injection-attacks/

