Tag: service
-
Wikimedia Foundation: OpenAI agents tried to edit pages and compromise notes tool
Beyond the potential misuses of its services, Wikimedia said activity by AI agents can be a drain on web platforms that are already operating with limited resources. First seen on therecord.media Jump to article: therecord.media/wikimedia-foundation-openai-agents-report
-
Citrix Patches Yet Another Under-Fire Zero-Day in NetScaler
Denial of Service May Be Targeted to Help Exploit Other Recently Patched Flaws. Just one week after patching two zero-day vulnerabilities being actively exploited in its NetScaler appliances, Citrix has issued another emergency patch for a denial-of-service vulnerability also being actively exploited, potentially to more rapidly take down unpatched appliances. First seen on govinfosecurity.com Jump…
-
Citrix Patches Yet Another Under-Fire Zero-Day in NetScaler
Denial of Service May Be Targeted to Help Exploit Other Recently Patched Flaws. Just one week after patching two zero-day vulnerabilities being actively exploited in its NetScaler appliances, Citrix has issued another emergency patch for a denial-of-service vulnerability also being actively exploited, potentially to more rapidly take down unpatched appliances. First seen on govinfosecurity.com Jump…
-
Citrix issues patch for third exploited flaw in NetScaler
The memory overflow vulnerability could lead to a denial-of-service condition under certain circumstances. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/citrix-patch-third-exploited-flaw-netscaler/832128/
-
South Korea probes bank breaches amid suspected AI-powered attacks
South Korea’s Financial Services Commission (FSC) held an emergency meeting following a series of cyberattacks targeting financial institutions in the country. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/south-korea-probes-bank-breaches-amid-suspected-ai-powered-attacks/
-
South Korea probes bank breaches amid suspected AI-powered attacks
South Korea’s Financial Services Commission (FSC) held an emergency meeting following a series of cyberattacks targeting financial institutions in the country. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/south-korea-probes-bank-breaches-amid-suspected-ai-powered-attacks/
-
The Credential Layer Is Expanding Faster Than Security Teams Can See It
Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected capabilities: Detect, Remediate, and Prevent. The journey starts with detection, because organizations first need to understand what credentials exist, where they live, and…
-
Citrix NetScaler Targeted Via New Zero Day
The memory buffer vulnerability can result in denial of service to customers, with CISA warning it poses “significant risks” to the federal government First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/citrix-netscaler-zero-day/
-
Citrix NetScaler SAML Vulnerability Enables Unauthenticated Remote DoS Attacks
Citrix has released emergency security updates to address a high-severity memory overflow vulnerability in NetScaler ADC and NetScaler Gateway. This flaw, tracked as CVE-2026-88779, could allow unauthenticated remote attackers to cause persistent denial-of-service conditions. The vulnerability specifically affects appliances configured for SAML authentication, whether set as a Service Provider (SP) or an Identity Provider (IdP).…
-
Citrix NetScaler SAML Vulnerability Enables Unauthenticated Remote DoS Attacks
Citrix has released emergency security updates to address a high-severity memory overflow vulnerability in NetScaler ADC and NetScaler Gateway. This flaw, tracked as CVE-2026-88779, could allow unauthenticated remote attackers to cause persistent denial-of-service conditions. The vulnerability specifically affects appliances configured for SAML authentication, whether set as a Service Provider (SP) or an Identity Provider (IdP).…
-
Unsichtbare Zugänge, reales Risiko: So gelingt Governance für Maschinenidentitäten
Service Accounts, API-Schlüssel, Cloud-Workloads und KI-Agenten handeln längst in einer Größenordnung, die klassische IAM-Prozesse überfordert. Die Studie »2026 Identity Security Landscape« beschreibt eine Identitätswelt, in der Maschinen menschliche Nutzer zahlenmäßig weit übertreffen und fragmentierte Kontrollen die Reaktion auf Vorfälle verlangsamen. Der Praxisleitfaden zeigt, wie Unternehmen in 90 Tagen Transparenz schaffen, Verantwortlichkeiten festlegen, langlebige Secrets abbauen……
-
Citrix patches NetScaler SAML zero-day exploited in attacks
Citrix has released emergency updates for a new NetScaler denial-of-service vulnerability tracked as CVE-2026-88779 that has been exploited in zero-day attacks, with researchers investigating whether it can also be exploited for remote code execution. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/citrix-patches-netscaler-saml-zero-day-exploited-in-attacks/
-
Citrix patches NetScaler SAML zero-day exploited in attacks
Citrix has released emergency updates for a new NetScaler denial-of-service vulnerability tracked as CVE-2026-88779 that has been exploited in zero-day attacks, with researchers investigating whether it can also be exploited for remote code execution. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/citrix-patches-netscaler-saml-zero-day-exploited-in-attacks/
-
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 117
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Lunex Unmasked: A New Information Stealer Deployed Through BYOVD Storm-3168: Agentic-driven cloud attacks using compromised service principals Don’t Call Us, We’ll Call Your APIs – TraderTraitor Backdoors Resurface on Victim With No Crypto Ties…
-
Week in review: Researcher breaks into Microsoft analytics service, NetScaler RCE 0-day exploited
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 16-year-old researcher breaks into Microsoft analytics service with access to … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/10/04/week-in-review-researcher-breaks-into-microsoft-analytics-service-netscaler-rce-0-day-exploited/
-
MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academics
The U.K.’s domestic intelligence and security agency has warned that more than 100 academics have helped China boost its intelligence gathering efforts on behalf of Beijing’s state security service.In a “Security Service Espionage Alert” issued on September 30, 2026, MI5 said the “primary purpose of the China General Technology Research Institute (CGTRI) ä¸å›½é€šç, ¨æŠ€æœ¯ç , 究院…
-
AWS AI Agent Vulnerabilities Let Attackers Bypass Authentication and Steal Credentials
Tags: access, ai, authentication, cloud, credentials, cyber, flaw, open-source, service, vulnerabilityAWS has released security fixes for four vulnerabilities affecting its open-source Loom AI agent orchestration platform and Amazon SageMaker Unified Studio. The flaws could allow attackers to bypass authentication, steal OAuth2 tokens and temporary cloud credentials, access internal services, and execute arbitrary code in another user’s SageMaker environment. AWS disclosed the issues in security bulletins…
-
GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers
A critical flaw in GitLab’s AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory.The gateway is the service that connects a GitLab instance to AI models, and only organizations that host their own gateway need to act. The flaw…
-
GitLab warns of critical RCE vulnerability in AI Gateway service
GitLab warned customers today to immediately patch a critical AI Gateway vulnerability that could let attackers run arbitrary commands on vulnerable instances. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/gitlab-warns-of-critical-rce-vulnerability-in-ai-gateway-service/
-
Mississippi mayor says ransomware incident led city to shut down systems
Government services were temporarily disrupted by ransomware in Vicksburg, Mississippi. Mayor Willis Thompson said the FBI and other authorities are investigating. First seen on therecord.media Jump to article: therecord.media/vicksburg-mississippi-government-ransomware-attack
-
Milk Dragon Phishing Kit Uses Facebook and TikTok Discounts to Steal Cards and Bypass MFA
A phishing-as-a-service operation dubbed Milk Dragon, also known as NaiLong, is abusing discount-themed Facebook and TikTok posts to steal payment-card data and intercept multi-factor authentication (MFA) challenges. Group-IB identified 258 phishing pages linked to the kit since October 2025, with victims across 66 countries. Rather than relying on classic delivery-failure notices, bank alerts, or account-lockout…
-
Android 17 Advanced Protection Locks Accessibility Services to Verified Accessibility Tools
Google has announced a new security measure that limits access to Android’s accessibility services to verified applications classified as Accessibility Tools when Advanced Protection is enabled.With malicious Android applications abusing the API serving as the main conduit for malware and financial fraud, the tech giant said the move would block a major attack pathway. Advanced…
-
New Infostealer Can Steal Passwords, Cards, Cookies and Wi-Fi Keys From Windows PCs
A Python-based infostealer builder that enables threat actors to generate customized Windows payloads capable of stealing browser credentials, payment-card data, session cookies, Discord tokens, Wi-Fi passwords and extensive system information. Rather than functioning as a single-use stealer, the package includes a builder interface and an embedded payload, providing a model consistent with Malware-as-a-Service operations. Operators…
-
Apache HTTP Server Flaws Enable Remote Code Execution and DenialService Attacks
Apache HTTP Server administrators are urged to apply security updates following the disclosure of multiple vulnerabilities affecting Apache HTTP Server 2.4. These vulnerabilities include flaws that could allow for remote code execution (RCE), server crashes, memory exhaustion, and other denial-of-service (DoS) conditions. They impact various components of this widely used web server, particularly configurations that…
-
Police disrupt KillSec ransomware, arrest suspected teenage leader
European police said raids against the KillSec ransomware-as-a-service operation included the arrest of a high-profile teen suspect. First seen on therecord.media Jump to article: therecord.media/killsec-ransomware-raas-arrests-europe
-
The Cyber Express Weekly Roundup: Renfe Confirms Breach, Australia Warns of Hijacked AI Keys, and Europol Sounds the Alarm on AI-Driven Crime
This weekly roundup covers a customer data breach at Spain’s national rail operator, an Australian government warning about attackers hijacking corporate AI services, a patient data theft from a Polish medical software platform, phishing campaigns that turn legitimate remote management tools against their victims, and a gathering of Europe’s police leaders focused on how AI…
-
Queensland Cybersecurity Department Loses $809,000 in Cyberattack
The Queensland government department in charge of the state’s cybersecurity efforts has disclosed a loss of roughly $800,000 from a cyberattack during the last financial year. Details of the CDSB cyberattack, which involved a third-party messaging service being “misused” for financial gain, appear in the QLD cybersecurity department’s latest annual report, released on Friday. First…
-
Airlock macht IAM as a Service mit Swisscom breiter zugänglich
Ab sofort ist der Cloud-Service für Customer-Identity und Access-Management (cIAM) von Airlock Teil des Dienstleistungsspektrums von Swisscom. Kunden vertrauen damit auf fortschrittliche Schweizer IAM-Technologie <> und werden bei Einführung und Betrieb von einem etablierten Schweizer Anbieter begleitet. Davon profitieren insbesondere Organisationen, die eine cIAM-Lösung nutzen möchten, ohne dafür eigenes Know-how oder eine eigene […] First…
-
Axios Flaws Let Attackers Bypass Proxy Controls and Trigger SSRF Attacks
Axios maintainers have disclosed several high-severity security vulnerabilities that could allow attackers to bypass proxy and DNS controls in server-side applications, potentially enabling server-side request forgery (SSRF) against internal services and cloud metadata endpoints. The most critical issue, tracked as GHSA-3pq3-5fj3-cg6v, affects Axios’s HTTP/2 request path. This vulnerability arises because the HTTP/2 adapter establishes sessions…
-
How Financial Services Companies Can Modernize Their Software Supply Chain
Every security leader at a bank, insurer, or asset manager has had a version of this conversation: Security wants to eliminate a class of vulnerabilities. Engineering explains what it would take to upgrade the platform where they live. Somebody prices out the regression testing. Somebody else raises the change-freeze calendar. The finding gets an exception,…

