Tag: cyber
-
FreeRDP 3.31.0 Fixes 22 Security Flaws Including Heap Overflow and Pre-Auth DoS Bugs
FreeRDP version 3.31.0 has been released as a significant security and stability update, addressing 22 disclosed security vulnerabilities in the widely used open-source implementation of the Remote Desktop Protocol (RDP). Project maintainers have termed this release a “huge bug fix and security release” and strongly encourage distributors to update promptly due to the serious nature…
-
Critical SonicWall SMA 1000 Vulnerabilities Actively Exploited in the Wild
SonicWall has issued an urgent security advisory regarding two vulnerabilities affecting its SMA 1000 Series secure access appliances. The company warns that there have been cases indicating active exploitation in the wild. The vulnerabilities are tracked as CVE-2026-83548 and CVE-2026-83549 and impact SonicWall SMA 1000 models 6210, 7210, and 8200v that are running vulnerable platform…
-
Hackers Breach Brazilian Financial Firms and Execute Hundreds of Fraudulent Transactions
A financially motivated threat actor tracked as BREEZE COMET has breached Brazilian financial, retail, and eCommerce organizations, using privileged access to payment platforms to execute hundreds of fraudulent transactions in tightly timed waves. The activity overlaps with clusters publicly identified as Plump Spider and SHADOW-AETHER-064, although GTIG’s reporting frames this as operational overlap rather than…
-
Critical HPE Fabric Composer Flaw Lets Unauthenticated Attackers Execute Commands as Privileged User
Hewlett Packard Enterprise (HPE) has released security updates addressing 52 vulnerabilities in HPE Networking Fabric Composer, including two critical flaws that could allow unauthenticated remote attackers to gain administrative control or execute commands as a privileged operating-system user. These issues affect Fabric Composer versions 7.3.3 and earlier. HPE Fabric Composer Flaw The most severe vulnerability,…
-
Google Patches 26 Chrome Vulnerabilities, Including Critical WebGL and Shared Tab Groups Flaws
Google has released a new update for the Chrome Stable Channel on desktop platforms, addressing 26 security vulnerabilities. This includes two critical use-after-free flaws affecting WebGL and Shared Tab Groups. The update upgrades Chrome to version 152.0.7977.75 on Windows and macOS, while Linux users receive version 152.0.7977.76. Google stated that the update will be rolled…
-
Hugging Face Transformers Flaw Writes Malicious Python Code to Disk Before User Consent
A newly disclosed vulnerability in the Hugging Face Transformers library could allow attacker-controlled Python files to be written to a victim’s system before the user approves the execution of remote code. This vulnerability is tracked as CVE-2026-80047 and affects Transformers versions 4.49.0 through 5.8.1. According to the CERT Coordination Center Vulnerability Note VU#456290, the flaw…
-
Hackers Hide Reverse Shell Traffic Behind Signed Apps and AWS API Gateway
Threat actors are using a layered fake IT-support campaign to obtain remote access, deploy a malicious MSI package and conceal hands-on-keyboard activity behind legitimate signed applications and AWS API Gateway infrastructure. The operation demonstrates how attackers can divide execution, command-and-control and interactive shell functions across multiple processes to frustrate conventional endpoint and network detections. Once…
-
Fake Microsoft Edge, Kaspersky and Razer Installers Used to Compromise Windows Systems
Tags: cyber, government, healthcare, infrastructure, kaspersky, malware, microsoft, software, technology, windowsAn active malware campaign that abuses counterfeit download pages for trusted software brands including Microsoft Edge, Kaspersky and Razer to compromise Windows devices. Victims span healthcare, manufacturing, gaming, technology, logistics, government and education, highlighting the broad appeal of software-download lures. Microsoft has not attributed the activity to a nation-state actor, but the campaign’s infrastructure, payload…
-
OWASP Launches OASIS to Use AI and AppSec Experts to Fix Open-Source Vulnerabilities
OWASP has launched the Open Automated Security Initiative for Software (OASIS), a new community project aimed at accelerating the remediation of vulnerabilities in open-source software through AI-generated patches and human application-security validation. Announced on August 26, 2026, OWASP OASIS seeks to address a longstanding security gap: organizations and researchers can identify vulnerabilities faster than maintainers…
-
Trojanized Exodus Wallet Installer Deploys RAT to Steal Browser Credentials and Cookies
A sophisticated malware campaign has abused a trojanized installer for the legitimate Exodus cryptocurrency wallet to deploy a modular remote access trojan (RAT) capable of stealing browser credentials, session cookies, and extension data. The campaign prioritizes long-term interactive access over direct cryptocurrency theft, combining hidden VNC, SOCKS proxying, file management and browser-data theft in an…
-
Anthropic Unveils Claude Fable 5.1 and Mythos 5.1 With Powerful Cybersecurity Capabilities
Anthropic has launched Claude Fable 5.1 and Claude Mythos 5.1, two versions of the same advanced AI model designed to enhance capabilities in coding, knowledge work, scientific research, and cybersecurity operations. While Fable 5.1 is available to the general public, Mythos 5.1 is restricted to vetted organizations through trusted-access programs focused on cyber defense and…
-
Bright Security Expands its AI SDLC security Platform Launches an AI PT Module
San Rafael, United States, September 1st, 2026, CyberNewswire Bright Security Expands AI SDLC Security Platform, Launches AI PT: AI-Powered Penetration Testing That Cuts Weeks Down to Hours As AI compresses the gap between vulnerability disclosure and exploitation to nearly zero, the new AI Pentesting Module gives security teams continuous, AI-driven penetration testing built on Bright’s…
-
George Kurtz’s 5 Boldest AI Statements At CrowdStrike Fal.Con 2026
Amid the unprecedented threat of hacking by autonomous agents, it’s increasingly pivotal to bring frontier AI capabilities to cyber defense teams”, something CrowdStrike is now seeking to do for the first time in the industry, CrowdStrike CEO George Kurtz said during his Fal.Con 2026 keynote. First seen on crn.com Jump to article: www.crn.com/news/security/2026/george-kurtz-s-5-boldest-ai-statements-at-crowdstrike-fal-con-2026
-
CISO role evolves with cyber resilience, AI integration
First seen on scworld.com Jump to article: www.scworld.com/news/ciso-role-evolves-with-cyber-resilience-ai-integration
-
OpenAI Is About to Release Its First AI Model With ‘Critical’ Cyber Abilities
The company will give select partners early access to its Astra AI model”, so they have time to shore up their defenses. First seen on wired.com Jump to article: www.wired.com/story/openai-astra-first-ai-model-with-critical-cyber-abilities/
-
Chancellor unveils plans to entice UK tech startups
The UK government aims to build out home-grown research and development in artificial intelligence and cyber security First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366649878/Chancellor-unveils-plans-to-entice-UK-tech-startups
-
Project Watershed 250: White House Tests Water Cyber Defenses in Texas
Project Watershed 250 brings free AI tools, red teaming and private-sector expertise to Texas water utilities during a six-month cybersecurity pilot. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/news/project-watershed-250-white-house-tests-water-cyber-defenses-texas/
-
Leaked Russian Cyber-Operations Training Materials
This is interesting: The records describe a force-generation mechanism for several General Staff components, including the GRU, Main Operational Directorate, and 8th Directorate, which is associated with protected communications, cryptography, and information security….The reporting also linked a 2024… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/leaked-russian-cyber-operations-training-materials/
-
Leaked Russian Cyber-Operations Training Materials
This is interesting: The records describe a force-generation mechanism for several General Staff components, including the GRU, Main Operational Directorate, and 8th Directorate, which is associated with protected communications, cryptography, and information security….The reporting also linked a 2024… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/leaked-russian-cyber-operations-training-materials/
-
Daily OT Security News: September 01, 2026
Viakoo Daily OT Security News, September 01, 2026: concise summaries of five stories affecting OT operators, device manufacturers, and industrial software supply chains. UK NCSC Warns of Growing Risk From Internet-Exposed OT The UK National Cyber Security Centre warned… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/daily-ot-security-news-september-01-2026/
-
Mirage Kitten Hackers Use Fake Coding Challenges to Deploy NodeRabbit and PollCat RATs
Iran-linked threat actor Mirage Kitten is targeting software developers with fake recruitment assessments that hide two newly identified cross-platform remote access trojans: NodeRabbit and PollCat. The campaign uses recruiter impersonation on LinkedIn and other job-search platforms, weaponized Node.js projects, and cloud-hosted ZIP archives to gain covert access to developer endpoints across Windows, Linux, and macOS.…
-
Hackers Exploit Critical Langflow and Ruby on Rails Flaws in Active RCE Attacks
Tags: ai, attack, cloud, control, credentials, cve, cyber, exploit, flaw, hacker, rce, remote-code-execution, theft, threat, vulnerabilityThreat actors are actively exploiting two newly disclosed remote code execution vulnerabilities affecting Langflow and Ruby on Rails. These campaigns focus on cloud credential theft, host reconnaissance, and the establishment of command-and-control (C2) functions. VulnCheck researchers have reported exploitation targeting CVE-2026-0768 in Langflow, a low-code platform for building AI-powered applications and automated workflows. This vulnerability…
-
Cyber Insurance Pentest Requirements: What Insurers Ask For
Key TakeawaysMost carriers now require an annual third party penetration test for cyber insurance policies above 1 million dollars in coverage, and internal vulnerability scans do not satisfy this requirement on their own.Policies at 5 million dollars and above typically… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/cyber-insurance-pentest-requirements-what-insurers-ask-for/
-
Iranian cyber spies target aviation, fintech developers with new malware
In a report published Tuesday, Kaspersky said it first discovered NodeRabbit on a system in Afghanistan and later identified variants on systems in Egypt and Ethiopia. First seen on therecord.media Jump to article: therecord.media/iranian-cyber-spies-target-aviation-fintech-new-malware
-
Cyber risk from frontier AI poses ‘most immediate concern’ to global financial system, watchdog warns
Andrew Bailey, chair of the Financial Stability Board, called on financial institutions and technology providers to “prepare for more severe scenarios involving simultaneous disruption across multiple firms or shared technology dependencies.” First seen on therecord.media Jump to article: therecord.media/cyber-risk-from-frontier-ai-most-immediate-concern-to-global-finance
-
Cyber risk from frontier AI poses ‘most immediate concern’ to global financial system, watchdog warns
Andrew Bailey, chair of the Financial Stability Board, called on financial institutions and technology providers to “prepare for more severe scenarios involving simultaneous disruption across multiple firms or shared technology dependencies.” First seen on therecord.media Jump to article: therecord.media/cyber-risk-from-frontier-ai-most-immediate-concern-to-global-finance
-
Hackers Exploit Langflow RCE Flaw to Harvest OpenAI and AWS Credentials
Tags: ai, credentials, cve, cyber, exploit, flaw, hacker, openai, rce, remote-code-execution, threat, vulnerabilityThreat actors are actively exploiting a critical remote code execution vulnerability in Langflow, a low-code platform used for building AI-powered applications and automating workflows. This vulnerability, tracked as CVE-2026-0768, affects the code validator in Langflow’s custom component editor. According to Caitlin Condon, VP of Security Research at VulnCheck, the flaw allows unauthenticated remote code execution…
-
Five Plead Guilty to Using ATM Jackpotting Malware in Cash Theft Scheme
Five Venezuelan nationals have pleaded guilty in a federal case involving attempts to deploy ATM jackpotting malware against cash machines in Kansas. This case highlights a growing cyber-physical threat targeting financial institutions across the United States. The case arose from an FBI investigation into an alleged scheme to force automated teller machines (ATMs) to dispense…

