Tag: cyber
-
New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data
Security researchers have recently disclosed a new enterprise AI attack technique known as Workflow Identity Hijacking. This method enables external attackers to exfiltrate sensitive corporate information by submitting seemingly harmless requests to AI-powered automations. Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or…
-
EU Cyber Resilience Act to Enforce New Reporting Requirements
Starting Friday, businesses operating in the EU will have just 24 hours to notify the government any time they discover serious product security incidents. First seen on darkreading.com Jump to article: www.darkreading.com/cybersecurity-operations/eu-cyber-resilience-act-reporting-requirements
-
Hackers Use LLMs to Generate Exploit Scripts and Automate Post-Exploitation Across Latin America
Threat actors targeting organizations across Latin America are increasingly embedding commercial large language models (LLMs) into intrusion workflows, using AI-assisted scripting, troubleshooting, and proxy deployment to accelerate post-exploitation and data theft. The campaigns show that AI is no longer limited to phishing, content generation, or reconnaissance. Instead, attackers appear to be using LLMs as an…
-
Hackers Deploy Hundreds of AI Agents to Compromise 440 PaperCut Servers
Tags: ai, authentication, cve, cyber, exploit, flaw, hacker, intelligence, russia, threat, vulnerabilityThreat intelligence firm GreyNoise has identified an AI-driven intrusion campaign, likely orchestrated by a Russian-speaking threat actor, that compromised at least 440 PaperCut NG/MF servers across 395 organizations in 48 countries. This campaign began on August 31, 2026, exploiting two vulnerabilities in PaperCut: CVE-2026-81578, an authentication bypass flaw, and CVE-2026-82078, a vulnerability that allows unsafe…
-
China-Linked Hackers Exploit Chrome and Windows Zero-Days in BlueMoon Attacks
Researcher has discovered a rapidly spreading exploit kit called BlueMoon, which combines vulnerabilities in the Chrome browser with a Windows kernel privilege-escalation flaw to compromise targets in espionage campaigns. This activity was first observed on August 28, 2026, and at least four threat clusters have adopted it, most of which are suspected to have ties…
-
US disrupts Xinbi Guarantee marketplace fueling the cyber scam economy
The U.S. government also carried out a seizure of $52.8 million from 52 wallets connected to the platform. First seen on therecord.media Jump to article: therecord.media/us-disrupts-xinbi-guarantee-marketplace-cybercrime
-
Multiple Chinese hacking groups seen using identical Chrome zero-day exploit
A Google Chrome bug identified in August was exploited by at least four China-linked cyber-espionage groups, according to researchers. First seen on therecord.media Jump to article: therecord.media/china-hackers-chrome-browser-zero-day-multiple-groups
-
7 questions for assessing Cyber Resilience Act codebase readiness
September is here, and for different people it means different things”, kids begin their school years, teens are off to university, and manufacturers of products with digital elements that sell them in the European Union are getting ready for mandatory reporting… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/7-questions-for-assessing-cyber-resilience-act-codebase-readiness/
-
CISOs are feeling the security burden of accelerated AI use
A report shows CISOs face increased pressures related to cyber resilience and business continuity. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/cisos-feeling-security-burden-accelerated-ai-use/829930/
-
UK government proposes AI first responders for cyber attacks
The UK government will use money set aside for defensive investments to build an agentic cyber incident response capability, ministers say First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650021/UK-government-proposes-AI-first-responders-for-cyber-attacks
-
Government rejects Computer Misuse Act amendment to protect cyber professionals
The government has rejected an amendment to the Cyber Security and Resilience Bill intended to protect cyber security professionals, but says reforms are a priority First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650173/Government-rejects-Computer-Misuse-Act-amendment-to-protect-cyber-professionals
-
France Establishes New Government-Focused Cyber Incident Response Unit
After a major cyber-attack targeted France’s national tax authority, the Prime Minister called for the establishment of a new dedicated cyber incident response capability First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/france-new-government-cyber/
-
Hackers Impersonate IT Support on Microsoft Teams to Take Control of Employee PCs
A human-operated intrusion campaign in which attackers abuse Microsoft Teams external collaboration to impersonate internal IT or helpdesk staff, persuade employees to grant remote control of their PCs, and then move toward critical enterprise infrastructure. The campaign does not exploit a Microsoft Teams vulnerability. Instead, it weaponizes trust in familiar support workflows, combining Teams chats…
-
Reflectiz Launches Agentic Pentesting for Websites: Up to 10x Coverage vs Conventional Pentests
Boston, MA, USA, September 8th, 2026, CyberNewswire Specialized team of AI agents that discover, attack, and validate web vulnerabilities, leveraging pre-existing site context to eliminate noise and speed remediation. Reflectiz, the continuous web exposure management company, today launched a multi-agent penetration testing platform for websites. Multiple specialized AI agents discover, attack, and validate vulnerabilities across…
-
Dell Secure Connect Gateway Critical Flaws Allow Unauthenticated Remote Code Execution and Admin Access
Dell has released security updates for the Secure Connect Gateway (SCG) Application and Appliance after discovering three critical vulnerabilities. These flaws can expose enterprise deployments to unauthenticated administrative access, remote command execution, and potential host-level compromise. Detailed in Dell Security Advisory DSA-2026-382, these issues affect SCG 5.0 appliance versions earlier than 5.36.00.16 and application versions…
-
Dell Secure Connect Gateway Critical Flaws Allow Unauthenticated Remote Code Execution and Admin Access
Dell has released security updates for the Secure Connect Gateway (SCG) Application and Appliance after discovering three critical vulnerabilities. These flaws can expose enterprise deployments to unauthenticated administrative access, remote command execution, and potential host-level compromise. Detailed in Dell Security Advisory DSA-2026-382, these issues affect SCG 5.0 appliance versions earlier than 5.36.00.16 and application versions…
-
Claude Mythos Executes EndEnd Intrusion From Initial Access to Full Domain Compromise
Anthropic’s Claude Mythos Preview has demonstrated the ability to complete an end-to-end enterprise intrusion simulation, progressing from initial access through chained exploitation and network traversal to the defined compromise objective. The result marks a material shift in frontier-model cyber capability: the model did not merely solve isolated CTF-style tasks, but autonomously connected weaknesses commonly found…
-
WhatsApp Testing Guest Calls for People Without a WhatsApp Account
WhatsApp is developing a guest-call feature that would let people without a WhatsApp account join encrypted calls through a web link. This capability would extend WhatsApp’s existing Call Links feature to include guests, letting invited participants join calls directly from a browser without installing the mobile app or creating an account. Currently, the feature is…
-
ASUS Control Center Critical Flaw Allows Unauthenticated Attackers to Gain Root Access
ASUS has released a security update for the Control Center Express Agent to address CVE-2026-19397, a high-severity vulnerability related to missing authentication. This vulnerability allows an unauthenticated nearby attacker to potentially take control of an affected host through a direct connection to the agent. The issue affects versions before 1.7.24 and was published and updated…
-
The 12 Best Antivirus (Endpoint Protection) Software for Business, Compared and Priced
Best value overall: Microsoft Defender for Endpoint, if you hold Microsoft 365 E5, you already own competitive enterprise endpoint protection and the marginal cost is zero. Best published pricing: Bitdefender and ESET, both of which let you budget without a sales call. Best detection: CrowdStrike. Best cleanup tool: Malwarebytes. One vendor on the standard […]…
-
SAP September 2026 Security Update Fixes 4 Critical Vulnerabilities and 15 Other Flaws
SAP released 19 new Security Notes addressing four critical vulnerabilities and 15 additional flaws throughout its enterprise portfolio. The vendor also updated one note from August. The most urgent issue is CVE-2026-44756, a memory-corruption vulnerability in Extended Passport (EPP) Processing with a CVSS score of 10.0. This flaw affects numerous SAP Kernel and Web Dispatcher…
-
The 12 Best Managed Firewall Services, Compared and Priced
Best value overall: Fortinet. Delivered directly and through the largest partner network in security, at price points the premium providers can’t approach provided you vet the actual delivery partner. Best detection quality: Secureworks. Best global reach: NTT Data. Best if you want to stop owning firewalls: Cato Networks. Best for SMB: Barracuda MSP. Managed firewall…
-
The 12 Best Network Security Policy Management Tools, Compared and Priced
Best value overall: Opinnate. It targets the gap the enterprise vendors leave open policy automation at a price mid-market organizations can actually approve and it’s the most accessible commercial model in this list. Best capability: AlgoSec and Tufin. Best for change detection: FireMon. Cheapest credible entry: ManageEngine, which is the only vendor here with genuinely…
-
The 12 Best Network Security Policy Management Tools, Compared and Priced
Best value overall: Opinnate. It targets the gap the enterprise vendors leave open policy automation at a price mid-market organizations can actually approve and it’s the most accessible commercial model in this list. Best capability: AlgoSec and Tufin. Best for change detection: FireMon. Cheapest credible entry: ManageEngine, which is the only vendor here with genuinely…
-
The Best DNS Security Solutions, Compared and Priced (2026)
DNS security delivers more blocked attacks per dollar than any other network control when you buy the right shape at the right tier. The value verdict: DNSFilter and SafeDNS own transparent per-user pricing for SMBs, Cloudflare Gateway starts free and scales to national infrastructure (it now runs the UK’s public-sector PDNS with Accenture), Cisco Umbrella…
-
U.S. Offers $10 Million Reward for Iranian IRGC Cyber Chief Amir Yaryab
The U.S. Department of State’s Rewards for Justice (RFJ) program has announced a reward of up to $10 million for information leading to the identification or location of Amir Yaryab, a senior official in Iran’s Islamic Revolutionary Guard Corps Cyber-Electronic Command (IRGC-CEC). This reward applies to information about individuals acting under the direction of, or…

