0Headlines, last 24 h
0Exploited CVEs added by CISA, 30 days
0New IOCs reported, 24 h
0Ransomware leak-site posts, 24 h
Security news7 sources · headlines only
ShinyHunters hacker reportedly detained in Jordan, aiding FBIYARA-X 1.21.0 Release, (Sat, Oct 3rd)MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked AcademicsWarlock Exploits SharePoint Flaws to Disable Security Tools and Deploy RansomwareDanish university DTU breach exposes data of up to 200,000 peopledoxx.net Raises $38 Million to Prevent AI Agent-on-the-Internet MisadventuresFortra Patches Critical Vulnerabilities in BoKSThe State of Cybersecurity in 2026: Key Segments, Insights, and InnovationsJudge dismisses spyware case brought by Salvadoran journalists targeted with PegasusRemoteThreat Bets Security Teams Need to Test What Happens After Defenses FailBipartisan backlash to ALPRs grows as two high-profile bills are introducedFrontline Education breach exposes school district employee dataWarlock ransomware breach SharePoint in water, telecom operator attacksGitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted ServersAntino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage CampaignDell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes NodesKiteworks & Citrix Incidents Show Challenges of Zero-Day ResponseSWIFT Banking & Government Middleware Enables RCEGitLab warns of critical RCE vulnerability in AI Gateway serviceIs Your Organization Ready for 2027's AI Accountability Era?Is It Fair to Blame 'Rogue' AI for Security Failures?US sanctions Tren de Aragua gang members in ATM hacks crackdownIn Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI ChatsMississippi mayor says ransomware incident led city to shut down systems'Warlock' ransomware used in attacks on critical infrastructure in Portuguese, Spanish-speaking countriesThe EDR blind spot: 3 ways browser attacks evade endpoint telemetryVulnerability Backlogs Are an Ownership ProblemmacOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD BackdoorMalicious Linux Implants Mimic Asian Mail Security ProductsDell asks admins to patch max severity CSM flaws as soon as possibleOpenAI Parts Ways With Three Safety Researchers Over Sensitive Information MishandlingCrypto Scammers Hijack Microsoft’s Official X AccountWhy CISOs Struggle to Answer the Board's Three Hardest Questions, and How to Fix the ReportIn Rare Move, Alleged Iranian State Hacker Extradited to USWarlock Expands SharePoint Exploitation in Critical Infrastructure AttacksMicrosoft’s X account hacked in crypto pump-and-dump schemeAI Agents Aimed SQL Injection at US and Canadian Government SitesExploited Fortinet FortiMail Zero-Day Calls for Urgent ActionAndroid 17 Advanced Protection Locks Accessibility Services to Verified Accessibility ToolsCritical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File WritesISC Stormcast For Friday, October 2nd, 2026 https://isc.sans.edu/podcastdetail/10120, (Fri, Oct 2nd)Fortinet warns of critical FortiMail flaw exploited in zero-day attacksAlleged KillSec Ransomware Mastermind a 16-Year-OldAutonomous AI agents tried to hack US, Canadian government websitesIranian accused of hacking American universities extradited from MontenegroMicrosoft says threat actors are ahead in the early AI raceZero Trust Creator Says Model Holds Firm Against AI-Assisted AttacksPolice Arrest 16-Year-Old Suspected of Running KillSec, Seize Ransomware Leak Site and ServersThreatsDay: AI-Powered Zero-Day Chain, 543K Live Secrets, Model Inspection RCE and 13 More StoriesWordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared MemoryPolice dismantle KillSec ransomware gang allegedly led by 16-year-oldThe Day-One Hole in Zero Trust ArchitectureKiteworks patches max severity code injection vulnerabilityWarlock Ransomware Hits Large Spanish, Portuguese OrgsHow Financial Services Companies Can Modernize Their Software Supply ChainOpenAI Disrupts Reasoning Extraction Campaign Linked to Moonshot AI AssociatesCISA Adds Exploited Cisco Catalyst SD-WAN Manager Auth Bypass to KEVGoogle Rolls Out Gemini 4 Argon to Trusted Cyber Defenders, Plans Guardrail-Free VersionApple CoreGraphics PoC Emerges as WhatsApp PDF Checks Hint at Possible Delivery PathScreenConnect Client (Ab)used by Attackers, (Thu, Oct 1st)Bitget Confirms Third-Party Zero-Day Behind $387.5 Million Cryptocurrency TheftMetaMask Security Incident Prompts Exit of Affected Ethereum ValidatorsCitrix NetScaler Post-Exploitation Payload Creates Superuser, Maps Web Shell to CSS-Like URLsISC Stormcast For Thursday, October 1st, 2026 https://isc.sans.edu/podcastdetail/10118, (Thu, Oct 1st)Malicious Custom GPTs Turn ChatGPT Into RAT Delivery LureTrump, Tech Giants Strike Voluntary AI Safety AccordAs AI Reshapes the SOC Career Ladder, Satisfaction Rises for 91%, but Entry Gets Harder for Nearly HalfAttackers Exploit Zimbra Flaw to Deploy Web Shells and Harvest Authentication SecretsAttackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing AttacksCisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN ManagerRussia's Star Blizzard Ditches ClickFix to Widen Phishing NetAttackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix LuresKnow Your Enemy: Browser-Based Attack Techniques in 2026AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHubUS-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote AccessAttackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOTOpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory UnencryptedSouth Africa Seeks Help After Cyberattack Targets Air Traffic ControlCitrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode ExecutionISC Stormcast For Wednesday, September 30th, 2026 https://isc.sans.edu/podcastdetail/10116, (Wed, Sep 30th)Apple Zero-Day Vulnerability Weaponized in Targeted AttacksUnsloth Studio Flaw Turns Routine Model Inspection Into Code ExecutionFrench Tax Data Theft Using Stolen Staff Passwords Went Undetected for Seven WeeksNew Spectre-v2 BTR Attack Leaks Linux Memory Despite Existing DefensesRussia's Star Blizzard Targets 100+ Organizations With Fake Event Invites to Deliver BackdoorCloudflare Announces Public Certificate Authority for the Post-Quantum Web'NeedyMantis' Provides Long-Term Access to Compromised NetworksDual NetScaler Zero-Days Trigger Chaos for Citrix CustomersKiteworks Fixes Critical Flaw Found During Nine-Hour Precautionary Shutdown101 Malicious npm Packages Add Developers' WhatsApp Accounts to Groups Without ConsentScans for Wordfence Protected Websites, (Tue, Sep 29th)Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters InvestigationOfficial MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth CredentialsOpenAI Shelves GPT-6.1 Astra After Tests Find Deception and Unauthorized ActionsOpenAI Pauses Tool Use After Agent Bypasses Internet Controls to Reach External ChatbotISC Stormcast For Tuesday, September 29th, 2026 https://isc.sans.edu/podcastdetail/10114, (Tue, Sep 29th)Apple Emergency Patch for iOS 26, macOS26, macOS15 (CVE-2026-86950), (Mon, Sep 28th)Nvidia Launches AI Agent Safety Platform to Prevent Rogue ActivitiesOne Packet Can Crash OT Servers in Industrial SectorsCarbonato Botnet Puts an AI Agent on Hacked Docker HostsApple Patches CoreGraphics Flaw Possibly Exploited in Targeted AttacksAI Agents Are Privileged Users; Who Is Auditing Their Access?Hackers Use NeedyMantis to Maintain Long-Term Access in Breached NetworksIAM for AI agents: A Practical Enterprise FrameworkBitget Says Attacker Exploited Third-Party Security Product Flaw to Steal $388MRatHat Android Malware Console Uses Gemini to Identify Higher-Value VictimsChrome Store Hosts 'Poper Blocker' Spyware Downloaded by MillionsJadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud AttackDutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation⚡ Weekly Recap: $387M Crypto Hack, Citrix Exploits, AI Agents Go Off-Script, and More ThreatsWebinar: How to Govern AI Agents, Reduce Excessive Access, and Control Shadow AICarbonato Botnet Compromises Docker Hosts to Deploy Telegram-Controlled Hermes AI AgentJADEPUFFER-Linked Attackers Used Compromised Service Principals to Delete Azure ResourcesCISA Says Attackers Are Exploiting Two Critical Citrix NetScaler Flaws GloballyISC Stormcast For Monday, September 28th, 2026 https://isc.sans.edu/podcastdetail/10112, (Mon, Sep 28th)Wireshark 4.6.9 Released, (Sun, Sep 27th)U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon ExtortionsWhy the CISO-CFO Relationship Is a Key to Cybersecurity SuccessAI Sandbox Escapes: Why Forensic Readiness Matters More Than ContainmentWhat We Missed: Google Gemini Joins the AI Escape PartyStopping IT Worker Scams Requires Revamped HR ProcessRussia's Hybrid Cyber-Physical War in Europe Heats Up'Salesbleed' Exploits Salesforce Agents to Enable Slack PhishingSectopRAT Returns, Hiding Inside a Legitimate Application3 Cyber Threats That Defined the Summer of 2026How to Build a SASE Framework for Modern CybersecurityGhost Service Accounts Enable M365 Data Theft in ChilePrompt-Injection Bug Hits $4B Agentic AI App 'Manus'SASE Converges Network & Security Into One Cloud SolutionEDR Evasion Stack Helps Process Injection Slip Past DefensesGitLab Email Addresses Can Be Weaponized for Supply Chain AttacksUAE, Saudi Arabia Face Onslaught of Increasingly Complex CyberattacksAttackers Manipulate AI Chatbots in Mass Disinformation, Phishing CampaignRelays Are Masking Chinese Access to Frontier AI Models in the USHow the CISO-CMO Alliance Builds Trust Before Crisis StrikesMicrosoft Disrupts EvilTokens Device Code Phishing ServiceDeception by Design: CISA's Guide to Tricking CybercriminalsAmid Ongoing Rogue Incidents, Debate Over AI Safety Gets RealMore Than a Third of Industrial Orgs See Cybersecurity Risk as a Top Obstacle to Growth, Study FindsShai-Hulud Attack Nips Cyber-Firm CrowdSec's GitHub DataHow AI Agents Can Trigger Runaway Costs for EnterprisesShinyHunters Hacked Cl0p. Now What About Cl0p's Victims?Data Broker Radaris Loses Domains in Privacy FightMicrosoft Plugs Nearly 1,000 Security HolesFBI Probes Service Selling 153M+ Drivers LicensesTwo Alleged ‘TeamPCP’ Hackers Arrested in AustraliaWho’s Tracking You? Use This New Service to Find OutMicrosoft Plugs Nearly 400 Security HolesCanadian Man Pleads Guilty in Snowflake ExtortionsRead This Before You Buy That TV Streaming Stick
Tags are keyword matches on the headline, not analysis.Actively exploited · CISA KEV1,733 in catalog
CVE-2026-1024902026-10-02Zammad GmbH ZammadZammad GmbH Zammad Improper Privilege Management VulnerabilityCVE-2026-1024892026-10-02Zammad GmbH ZammadZammad GmbH Zammad Session Fixation VulnerabilityCVE-2026-1042862026-10-01Fortinet FortiMailFortinet FortiMail Path Traversal VulnerabilityCVE-2026-765042026-09-30Cisco Catalyst SD-WAN ManagerCisco Catalyst SD-WAN Manager Hex Encoding VulnerabilityCVE-2026-869502026-09-29Apple Multiple ProductsApple Multiple Products Out-of-Bounds Write VulnerabilityCVE-2026-887722026-09-27Citrix NetScalerCitrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer VulnerabilityCVE-2026-887712026-09-27Citrix NetScalerCitrix NetScaler Improper Input Validation VulnerabilityCVE-2026-672792026-09-25MikroTik RouterOSMikrotik RouterOS Improper Enforcement of Behavioral Workflow VulnerabilityCVE-2026-656602026-09-25Microsoft SharePointMicrosoft SharePoint Code Injection VulnerabilityCVE-2026-879022026-09-25WordPress CoreWordPress Core Remote File Inclusion VulnerabilityCVE-2026-54302026-09-24WSO2 Multiple ProductsWSO2 Multiple Products Path Traversal Vulnerability CVE-2026-713622026-09-24Adobe Commerce and Magento Adobe Commerce and Magento Incorrect Authorization Vulnerability CVE-2026-939522026-09-22Arista VeloCloud OrchestratorArista VeloCloud Orchestrator Improper Input Validation VulnerabilityCVE-2026-941272026-09-22F5 BIG-IP APMF5 BIG-IP APM Heap-based Buffer Overflow VulnerabilityCVE-2026-936162026-09-22Check Point Multiple ProductsCheck Point Multiple Products Path Traversal VulnerabilityCVE-2026-851022026-09-22Check Point Multiple ProductsCheck Point Multiple Products Improper Certificate Validation VulnerabilityCVE-2026-72732026-09-21Zyxel GS1900 Series SwitchesZyxel GS1900 Series Switches Stack-Based Buffer Overflow VulnerabilityCVE-2025-399642026-09-18Linux KernelLinux Kernel Race Condition VulnerabilityCVE-2026-532662026-09-18Linux KernelLinux Kernel Out-of-Bounds Write VulnerabilityCVE-2025-396822026-09-18Linux KernelLinux Kernel Improper Check for Unusual or Exceptional Conditions VulnerabilityCVE-2026-587042026-09-16Google PixelGoogle Pixel Improper Authorization VulnerabilityCVE-2026-764602026-09-16Cisco Identity Services EngineCisco Identity Services Engine Incorrect Use of Privileged APIs VulnerabilityCVE-2026-878862026-09-16Acronis BackupAcronis Backup Incorrect Default Permissions VulnerabilityCVE-2026-764612026-09-14Cisco Secure Email GatewayCisco Secure Email Gateway SQL Injection VulnerabilityCVE-2026-848692026-09-11ConnectWise ScreenConnectConnectWise ScreenConnect Improper Privilege Management and Missing Authorization VulnerabilityCVE-2026-420162026-09-11JFrog ArtifactoryJFrog Artifactory Incorrect Authorization VulnerabilityCVE-2026-420182026-09-11JFrog ArtifactoryJFrog Artifactory Improper Authentication VulnerabilityCVE-2026-857062026-09-11GitLab Community Edition and Enterprise EditionGitLab Community Edition and Enterprise Edition Path Traversal VulnerabilityCVE-2026-860602026-09-10MikroTik RouterOSMikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command VulnerabilityCVE-2026-672772026-09-10MikroTik RouterOSMikroTik RouterOS Missing Authentication for Critical Function VulnerabilityCVE-2026-194902026-09-09Citrix NetScalerCitrix NetScaler Authentication Bypass Using an Alternate Path or Channel VulnerabilityCVE-2025-252492026-09-09Fortinet Multiple ProductsFortinet Multiple Products Heap-based Buffer Overflow VulnerabilityCVE-2026-874912026-09-09Google Chromium V8Google Chromium V8 Out of Bounds Write VulnerabilityCVE-2026-200792026-09-09Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementCisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel VulnerabilityCVE-2026-756502026-09-08Adobe Commerce and MagentoAdobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine VulnerabilityCVE-2026-819632026-09-08Microsoft WindowsMicrosoft Windows Link Following VulnerabilityCVE-2026-862182026-09-08N-able N-centralN-able N-central Static Code Injection VulnerabilityCVE-2026-858802026-09-08Microsoft WindowsMicrosoft Windows Heap-Based Buffer Overflow VulnerabilityCVE-2026-850462026-09-04Google Chromium V8Google Chromium V8 Type Confusion Vulnerability
Added in the last 30 days · click for NVD detailsFresh IOCsThreatFox · URLhaus · hourly
Click any indicator to run a full IOCSCAPE investigation
