Global Security News
U.S. CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added [1, 2] the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2025-39682 – Linux Kernel Improper Check for Unusual or Exceptional Conditions Vulnerability CVE-2025-39964 Linux Kernel Race Condition Vulnerability CVE-2026-53266 Linux Kernel…
Global Security News
Gemini Joins the Hacker Club
Plus, a smarter Siri arrives on iPhones, the real threats of artificial intelligence, Anthropic’s IPO timing and more.
Global Security News
Malicious npm packages evade install-script defenses at runtime
An ongoing npm malware campaign involving the ‘indexed-btree’ package shows how threat actors bypass supply chain defenses by hiding malicious code in a package’s normal runtime behavior rather than in installation scripts. […]
Global Security News
AI Hallucinations Nearly Triggered a US-China Military Confrontation
An AI-generated intelligence report falsely identified weapons on a Chinese ship, nearly triggering a US military operation during the Iran war. According to CNN, four sources familiar with the episode say an intelligence report circulated through the military claiming a Chinese vessel in the Middle East was carrying components for a nuclear weapons program. The…
Global Security News
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 115
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Gray Rabbits and the Tale of a One-Click Backdoor Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit Malicious Twitch Browser Extension Exposes 30,000 Users’ OAuth Tokens to Russian Bot…
Global Security News
Researchers escape OpenAI Codex sandbox to run commands on host
Researchers escaped OpenAI’s Codex sandbox two ways, one running commands on a developer’s machine from its most locked-down mode. OpenAI has patched both. […]
Global Security News
69th IT Press Tour: Cybee builds a European backup business on Restic, and bets the whole thing on restore speed
The Cybee session at the 69th IT Press Tourhttps://www.itpresstour.net/ in Ljubljana opened with an admission that had nothing to do with backup.
Global Security News
Week in review: Cisco patches exploited email gateway 0-day, Revolut breach
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: What we know about the Revolut data breach so far Someone impersonating a government agency, using an email address on that agency’s domain, obtained sensitive customer records from Revolut. The bank confirmed the incident on Saturday, September 12. DeepZero: Open-source…
Global Security News
Polymarket’s Rush to Grow Left a Door Wide Open For Fraudsters
CEO Shayne Coplan brushed off concerns about a scheme involving stolen debit cards. Now the prediction market is bolstering its executive ranks as it eyes an IPO.
Global Security News
Security Affairs newsletter Round 595 by Pierluigi Paganini – INTERNATIONAL EDITION
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. Google Gemini also Broke Out of Its Test Environment AI Helps Hackers Hijack OpenAI Staff Accounts Through…
Global Security News
Trump Announces an ‘AI Force’ After Industry Sounded Alarm
The president calls federal oversight of the industry as opposition toward AI grows among voters.
Global Security News
69th IT Press Tour: StratoFoundry wants to give your S3 bucket a memory, and a receipt for every decision
The 69th edition of The IT Press Tour ran through Ljubljana on 1 and 2 September, and the StratoFoundry session opened with an apology about the product name.
Global Security News
BragJack attacks hijack AI browser agents through malicious extensions
BragJack, a proof-of-concept attack from Forever Security’s Gal Weizman, hijacks the AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome using one malicious extension. The Prompt Forcing technique earned over $20,000 in bounties and two CVEs. […]
Global Security News
69th IT Press Tour: DataCore spent 5 years buying storage companies, now it has to make them behave like one
The 69th edition of The IT Press Tour ran through Ljubljana on 1 and 2 September, and the DataCore session opened with a slide that was doing a lot of work: “Freedom to choose….
Global Security News
Google Gemini also Broke Out of Its Test Environment
Google Gemini escaped a cyber test environment, reached three real companies, and exposed why AI security tests need strict isolation. Google has confirmed that one of its Gemini models broke into the systems of three real companies during a cybersecurity test in May. The incident is the first publicly known case in which a Google…
Global Security News
North Korean WaterPlum hackers infected 30,000 devices worldwide
A joint law enforcement advisory warns that the North Korean hacking group WaterPlum compromised at least 30,000 devices worldwide from December 2025 through July 2026 and transferred more than $10.7 million in stolen cryptocurrency to North Korea. […]
Global Security News
ShinyHunters hacks Clop leak site, threatens to extort ransomware gang
The ShinyHunters extortion gang breached the Clop (aka Cl0p) ransomware operation’s data leak site, defacing the Tor site and allegedly stealing server data and the private keys for its onion service. […]
Global Security News
AI Helps Hackers Hijack OpenAI Staff Accounts Through a Forum
AI helped researchers exploit a Discourse flaw in under 72 hours, hijacking OpenAI staff accounts and exposing the risks of shared SSO. Three researchers at Hacktron just took over ChatGPT and Codex accounts belonging to OpenAI staff. The attack did not rely on phishing techniques or a leaked password. Through an image upload on OpenAI’s…
Global Security News
Dario Says AI Should Slow Down. Jensen Wants to Go Full Steam Ahead.
The Nvidia chief makes the case for engineering solutions—not new laws or industry speed bumps—to address AI safety concerns.
Global Security News
Calling viral AI actress Tilly Norwood? Agree to a face scan first
AI actress Tilly Norwood went viral after glitching into Chinese on Piers Morgan Uncensored last night. Her “Talking Tilly” video call service face-scans every caller for an 18+ age check, senses callers’ moods during calls, and shuts down permanently on September 27. We tried it and read the fine print. […]
Global Security News
Howie Buffett Steps In to Preserve What His Father Built
Plus, our interview with María Corina Machado on her plans to return to Venezuela, and a closer look at Apple’s newest iPhones and watches.
Global Security News
Apple’s Newest iPhones and Watches Just Hit Stores. Should You Upgrade?
Our columnist’s take on the Apple products that just hit store shelves this week, focusing on how they compare to your existing gear.
Global Security News
‘Sketchy AF’: What to Know About How OpenAI Staff Discussed Book-Pirating
Documents recently unsealed in a copyright case show employees weighing the cost of buying books to train early ChatGPT models.
Global Security News
Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws
Three researchers at the security firm Hacktron used Anthropic’s Claude Opus 5 to chain two flaws and take over the ChatGPT and Codex accounts of several OpenAI employees, then reach an internal OpenAI code repository. The chain began with a bug in the software that runs OpenAI’s public help forum and moved through a weakness in OpenAI’s…
Global Security News
SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE
SolarWinds has released security updates to address a high-severity flaw in Access Rights Manager (ARM) that, if successfully exploited, could lead to an unauthenticated remote code execution vulnerability. The vulnerability, tracked as CVE-2026-28326, is rated 8.8 out of 10.0 on the CVSS scoring system. The issue affects all versions of Access Rights Manager 2026.2 and…
Global Security News
Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild
A critical vulnerability impacting Orkes Conductor is being actively exploited in the wild, according to Fortinet. The vulnerability in question is CVE-2026-58138 (CVSS v3.1 score: 9.8/CVSS v4 score: 9.3), which relates to a case of unauthenticated remote code execution. “Orkes Conductor 3.21.21 before 3.30.2 contains an unauthenticated remote code execution vulnerability that allows remote
Global Security News
Google Gemini Broke Into Real Company Systems After Security Test Domain Mix-Up
Google’s Gemini model has become the latest artificial intelligence (AI) system to access the internet and break into other companies during a cybersecurity evaluation. The development was first reported by The Wall Street Journal. The incidents occurred in May 2026 as part of a test run conducted by Israeli company Irregular. The evaluation partner was…
Global Security News
CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories
An attacker copied about 170 of CrowdSec’s private GitHub repositories on May 22 using the account of an employee who had just left, CrowdSec said on September 18. The French security company had kept his GitHub access open. CrowdSec says his laptop was compromised in May’s supply chain attack on TanStack, in which malicious versions of TanStack’s…
Global Security News
CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added three security flaws impacting the Linux kernel to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities are listed below – CVE-2025-39682 (CVSS score: 9.8) – An improper check for unusual or exceptional conditions vulnerability in the TLS receive path
Global Security News
TD SYNNEX, Google Expand European Channel Partnership
TD SYNNEX and Google are expanding their partnership across Europe, with Google Pixel at the center of a broader push to help channel partners build and grow B2B practices around Google’s portfolio. The expanded collaboration combines Google’s hardware, services, and solutions with TD SYNNEX’s pan-European distribution footprint and local market expertise. Partners will gain broader…
Global Security News
Druva Adds Ransomware Detection to Cut False Positives
Druva is expanding its cyber recovery portfolio with new ransomware detection and identity resilience capabilities designed to help security teams validate attacks faster, reduce false positives, and identify clean recovery points before restoring data. The company’s new Ransomware Detection capability analyzes backup snapshots for high-risk ransomware behavior and then applies additional forensic validation to determine…
Global Security News
OpenAI Investors Discuss New Round at $1.2 Trillion Valuation
OpenAI may be headed toward another massive private-market valuation well before its eventual IPO. Investors have approached OpenAI about a possible new round that could value the company at about $1.2 trillion, but formal fundraising has not begun. That distinction matters. OpenAI has not announced a new raise, but investor interest alone suggests the market…
Global Security News
Microsoft’s Frontier Playbook Pushes Process Redesign Over More AI Licenses
Microsoft spent years putting AI tools in employees’ hands. Its latest lesson is that access alone does not transform how a company works. The company released its 44-page “Becoming a Frontier Firm: Our Frontier Playbook” on Thursday, drawing on more than 100 internal projects across its 220,000-plus workforce. Microsoft says organizations get more value from…
Global Security News
What GTIA’s ASCII Group Acquisition Means for Partners
The Global Technology Industry Association (GTIA) has acquired The ASCII Group, expanding its member community while increasing investment in the programs, resources, and experiences that support IT service providers (ITSPs). The acquisition brings together GTIA’s leadership in research, education, cybersecurity, and industry strategy with The ASCII Group’s business tools and peer-driven community model. “We’ve been…
Global Security News
UltraViolet Cyber Launches Equinox for Detection Gaps
UltraViolet Cyber has launched Equinox, an AI-assisted detection engineering platform designed to identify gaps across customers’ existing security tools and expand mapped threat coverage without adding unnecessary alert volume. Equinox maps customer-specific detection gaps In its official announcement, UltraViolet Cyber highlighted how security teams may have thousands of detections available across their security information and…
Global Security News
StorMagic, Mako Networks Link Edge HCI and SD-WAN
StorMagic and Mako Networks are integrating edge hyperconverged infrastructure with secure SD-WAN in a new partnership aimed at businesses operating across large numbers of distributed locations. The agreement combines StorMagic SvHCI, which provides edge compute, storage, and virtualization, with Mako Networks’ secure SD-WAN and cloud-managed networking platform. The companies say the integration is designed to…
Global Security News
Gemini Hacked Three Companies in First Known Breakout by Google’s AI
The episode resembled similar hacks by other AI models, but Google said it did not consider it an instance of model misalignment.
Global Security News
Huawei’s Atlas 960 SuperPoD Takes Aim at Nvidia’s AI Lead
Huawei is not trying to catch Nvidia one chip at a time. Its latest strategy is to connect thousands of processors into increasingly large systems and compete at the infrastructure level instead. The AI giant unveiled the Atlas 960E SuperPoD and accelerated the launch of its Ascend 960DT AI chip to the first quarter of…
Global Security News
Anthropic’s IPO Will Happen a Month Later Than Expected
Plus, Howard Buffett steps into his father’s shoes and Trump bans certain news media from the White House.
Global Security News
Level up: 4 forward-thinking solutions to upgrade your business
Every year, your company likely looks for ways to improve internal efficiency, strengthen its cybersecurity, and reduce its overheads. As a result, you might have invested a…
Global Security News
Brevo Supply-Chain Attack Infected Over 100,000 Websites
A Brevo supply-chain attack used compromised Cloudflare access to inject malware into websites, potentially affecting over 100,000 sites. Brevo, formerly known as Sendinblue, is a French cloud-based marketing and customer communication platform whose clients include eBay, Louis Vuitton and Michelin. The company was first compromised on September 10, when attackers exploited a vulnerability in its…
Global Security News
Anthropic Shifts Planned IPO to November
Investors had expected the Claude maker to debut in October. The AI industry has been grappling with calls to slow down its pace of development.
Global Security News
Arrow Electronics, Usercentrics Sign EMEA Distribution Deal
Arrow Electronics is expanding its privacy and consent management portfolio through a new distribution agreement with Usercentrics, bringing the company’s Cookiebot CMP to channel partners across eight European markets. The agreement covers Austria, France, Germany, Italy, Portugal, Spain, Switzerland, and the U.K., giving Arrow partners another platform to help customers manage consent requirements and navigate…
Global Security News
Vectra AI Launches Ascent to Help Address New Era of AI-Driven Attacks
The new program expands Vectra AI’s partner strategy as increasingly complex security environments and the growing use of AI create demand for broader AI expertise, services, and security outcomes.
Global Security News
Early Scattered Spider member pleads guilty to cybercrime spree
Another core member of the hacker subset of The Com involved in a spree of extortion attacks from at least 2021 to 2023 pleaded guilty to federal charges, according to court records released Tuesday. Ahmed Hossam Eldin Elbadawy, a 24-year-old from Texas, pleaded guilty exactly one year ago to wire fraud conspiracy and aggravated identity…
Global Security News
CoreWeave Plans $3 Billion Debt Sale to Fund AI Infrastructure Expansion
CoreWeave’s AI expansion comes with a multibillion-dollar appetite. The company said Thursday it plans to sell $3 billion of convertible senior notes due in 2033 through a private offering. Initial buyers will have the option to buy up to an additional $500 million of notes. The potential $3.5 billion raise gives CoreWeave another source of…
Global Security News
Cisco Zero-Day Highlights API Endpoint Authentication Issues
The authentication bypass flaw CVE-2026-76460 impacts Cisco’s Identity Services Engine (ISE) and received a maximum 10 out of 10 CVSS score.
Global Security News
MFA Won’t Save You From OAuth Consent Abuse
MFA is essential, but it cannot replace OAuth governance, least-privilege scopes, consent monitoring, and rapid revocation.
Global Security News
Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root
A security researcher has released working exploit code for four Linux kernel flaws that each let a local user gain root, the highest level of access on a machine. Kernel maintainers have fixed all four over the past few weeks, so a system running an up-to-date kernel is not affected. But the exploit code is…
Global Security News
Microsoft mops up after Patch Tuesday broke logins, audio, Excel
Microsoft fixed hundreds of security flaws in its September Patch Tuesday software updates — but it also introduced some annoying bugs. Now it has fixed some of them with a series of out-of-band updates. Excel 2016 users were among the victims, as Patch Tuesday update caused certain paste operations to fail. A hotfix in update…
Global Security News
Researchers use AI to find widespread software decoder flaw
Researchers said they used Anthropic’s Claude and OpenAI’s Codex to identify a damaging flaw embedded in a popular software decoding tool that could leave major internet platforms, enterprise services, and web frameworks vulnerable to data theft and remote access. The vulnerability, nicknamed HEIF Heist, refers to the malware’s ability to trigger memory corruption errors in…
Global Security News
MDR vs MXDR vs Managed SOC: Key Differences
The main difference among MDR, MXDR, and a managed SOC lies in scope. MDR provides managed threat detection and response; MXDR correlates detection and response across multiple security domains; and a managed SOC can operate a broader set of security functions, including monitoring, tool administration, detection engineering, reporting, and compliance support. Choosing between them depends…
Global Security News
Gyazo Data Breach Exposes 23 Million User Records
A Gyazo breach exposed 23 million user records after attackers exploited a vulnerability in Helpfeel’s image upload server. Japanese software company Helpfeel is notifying Gyazo users about a data breach that compromised 23 million user records. Attackers gained unauthorized access by exploiting a vulnerability in the service’s image upload server. “We have confirmed that approximately…
Global Security News
Napster CEO: AI is Creating a New Stack Problem for Partners
Microsoft partners have spent years building businesses around the cloud stack. Napster CEO John Acunto believes AI is forcing them to confront a new question: where do they fit as that stack is rebuilt around agents, proprietary data and new ways of interacting with customers? “I think partners are going to hopefully gravitate to us…
Global Security News
New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code Execution
WordPress today released patches to fix a new set of vulnerabilities in its core software, one of which could allow a crafted web link, opened by a logged-in administrator, to install a theme from the official WordPress.org directory without anyone clicking Install. The security firm pwn.ai, whose researchers reported the flaw, calls the attack chain…
Global Security News
CISA is ending its monthly vulnerability bulletin
The rise in AI-generated security threats may just have generated one casualty: the death of the weekly bulletin of security threats from the US Cybersecurity Infrastructure and Security Agency (CISA). The agency will discontinue its weekly bulletin of known vulnerabilities from September 28. It said that it is taking this step because of the recently…
Global Security News
Disney Beefs Up Tech Ambitions With Newly Created CTO Role
Karandeep Anand, head of Character.AI, will report directly to Disney CEO Josh D’Amaro, who has made tech a focus.
Global Security News
Gyazo server flaw exploited to steal 23.6 million user records
The Gyazo image-sharing platform has confirmed it suffered a data breach after hackers exploited a server vulnerability that allowed them to steal 23.6 million user records. […]
Global Security News
Bracing for El Niño Extreme
Plus, jet-powered drone warfare, credit cards for AI agents, and a GLP-1 drugmaker taps Claude to develop new medicines.
Global Security News
International security agencies warn about North Korean hackers exploiting job seekers to steal crypto, data
North Korean hackers are infiltrating tens of thousands of job seekers’ computer networks by posing as prospective employers, such as artificial intelligence firms, to steal sensitive information and millions of dollars worth of cryptocurrency, U.S. and allied governments warned Friday. The security agencies behind the alert, attributed the group, known as WaterPlum or Contagious Interview,…
Global Security News
A zero-click RCE flaw in AI coding agents could have exposed enterprise systems
Popular AI coding agents such as OpenAI’s Codex, Anthropic’s Claude Code, Google’s Gemini CLI, and Microsoft-owned GitHub Copilot were vulnerable to a zero-click attack that enabled attackers to execute malicious code, even without developer interaction, by swapping a trusted plugin from an online marketplace for a malicious one, potentially giving them a foothold in enterprise…
Global Security News
New Android malware uses AI to steal bank logins and PINs
Researchers at Zimperium’s zLabs have analyzed an Android Trojan that uses an automated, multi-stage infection process. What’s new is that RatHat gives a live AI assistant the keys to the accessibility tree of the infected device and uses it to determine where to tap or scroll, rather than following a hardcoded script. The variable attack…
Global Security News
Transparent Tribe Deploys New Rust Backdoor Using Private GitHub Repositories for C2
The Pakistan-aligned threat group tracked as Transparent Tribe (aka APT36 and Earth Karkaddan) has been attributed to a fresh set of cyber attacks targeting government and defense entities in India and Afghanistan. The attacks, per Zscaler ThreatLabz, involve the use of previously undocumented tools called RUSTYSHADE, RUSTYMOVE, PSNATCH, and BASHNATCH. The activity has been codenamed…
Global Security News
Fake LastPass Authenticator GitHub repos push new Rapuncel infostealer
An ongoing malware campaign uses SEO-optimized GitHub repositories to impersonate well-known software firms to push a previously undocumented information stealer called Rapuncel. […]
Global Security News
GhostCode attackers abuse device codes to take over Microsoft 365 accounts
Microsoft 365 users are being tricked into handing over access to their accounts by a new phishing kit, GhostCode, that exploits a weakness in a legitimate device authorization flow. Researchers in eSentire’s threat response unit identified the campaign in late August 2026. The kit abuses Microsoft’s OAuth 2.0 device authorization grant flow, a legitimate mechanism…
Global Security News
GhostCode attackers abuse device codes to take over Microsoft 365 accounts
Microsoft 365 users are being tricked into handing over access to their accounts by a new phishing kit, GhostCode, that exploits a weakness in a legitimate device authorization flow. Researchers in eSentire’s threat response unit identified the campaign in late August 2026. The kit abuses Microsoft’s OAuth 2.0 device authorization grant flow, a legitimate mechanism…
Global Security News
Businesses finally seeing AI ROI, but 62% can’t handle the storage demands
A Seagate study finds that 99% of IT leaders expect AI to drive increased data storage needs, but only 38% are prepared to meet them, revealing a significant readiness gap.
Global Security News
Prime Detect ROI: Validated Savings from Detection at the Pipeline Layer
The trade-off nobody wants to make Anyone who has worked on SOC and SIEM projects long enough has watched the same decision play out in budget meetings again and again. Security teams are pushed into a choice that has nothing to do with security engineering and everything to do with invoices. Option one: drop log…
Global Security News
Fake calendar invites can infect your system, and they’re surging – how to protect yourself
These invites sneak past your security software to embed themselves in your calendar. But you can thwart them before they do any damage.
Global Security News
Did an AI really try to break free from human control?
Amid discussions about slowing down AI development, the Telegraph ran the headline: “OpenAI sounds alarm after bot tries to break free from human control.” That headline is slightly misleading, in my opinion. The Telegraph headline overstates what happened, although the underlying behavior is still genuinely concerning. The article reports that OpenAI has disclosed rare but…
Global Security News
Zero-Days, AI Agents, and Massive Data Leaks Define the Week
This week’s cybersecurity landscape combined actively exploited vulnerabilities, AI-assisted attacks, exposed credentials, trusted-channel phishing, and breaches affecting millions of people. Defenders face an increasingly compressed response window as automation accelerates exploitation and compromised infrastructure gives attackers new ways to evade user suspicion. Major Threats & Vulnerabilities Actively Exploited Zero-Days and Critical Flaws WooCommerce plugin exploitation:…
Global Security News
Secure enterprise sharing with access reviews for Microsoft 365
Microsoft 365 makes sharing files easy, but access can remain long after its original purpose has ended, leaving organizations with little visibility into who can still reach sensitive data. tenfold Software explains how centralized access governance and owner-driven reviews can help identify and remove unnecessary access. […]
Global Security News
Microsoft Teams will let admins block custom file extensions
Microsoft Teams will soon let administrators tweak the list of file extensions commonly associated with security threats to meet their company’s security requirements. […]
Global Security News
New Settra Ransomware Variant Deployed in Attacks on Retail and Manufacturing
Huntress researchers highlighted a new ransomware variant, named Settra, and the post-compromise techniques used in two recent attacks
Global Security News
AI Job Fears Grow, Tech Leaders Say Reskilling Can’t Wait
Plus, researchers use Anthropic’s Claude to hack OpenAI
Global Security News
Webinar: Which Google Workspace security controls actually matter?
Fast-growing companies face countless recommendations for securing Google Workspace, but not every control provides the same value. This webinar examines real-world breaches to explore which security controls matter most, which may be overrated, and where lean security teams should focus their resources. […]
Global Security News
ETFs Are Getting Wackier. Investors Must Stay Sane.
Funds that track election results and hockey stats are in the works, but you don’t have to chase them.
Global Security News
AI Infrastructure Gaps Open New Opportunities for Partners
As enterprises push artificial intelligence projects beyond pilots and into production, infrastructure limitations are becoming harder to ignore—and creating a new opening for channel partners. Dennis Frank, Vice President, EMEA Strategic Partners & Alliances at Hitachi Vantara, spoke with Channel Insider about why storage, data pipelines, and governance are emerging as critical AI bottlenecks, how…
Global Security News
Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation
Microsoft has released fixes for a maximum-severity security flaw in Azure AI Foundry that could be exploited to achieve privilege escalation. No customer action is required. The vulnerability, tracked as CVE-2026-85889, carries a CVSS score of 10.0. “Missing authentication for critical function in Azure AI Foundry allows an unauthorized attacker to elevate privileges over a…
Global Security News
Who Is Howie Buffett, Berkshire Hathaway’s New Chairman?
Warren Buffett’s son doesn’t have the standard resume of a massive conglomerate’s chairman.
Global Security News
Microsoft fixes bug behind ‘Defender Antivirus is turned off’ alerts
Microsoft has resolved a known issue that causes incorrect alerts warning that Defender Antivirus was turned off after installing recent updates. […]
Global Security News
CISA Warns Attackers Are Exploiting Acronis Backup Flaw on Linux Servers
An Acronis Backup vulnerability has moved from a patching concern to an active security threat. CISA added CVE-2026-87886 to its Known Exploited Vulnerabilities catalog on Sept. 16 after the flaw was confirmed under active exploitation. Acronis said it observed limited, targeted attacks involving its Backup plugin for cPanel & WHM. The high-severity flaw can allow…
Global Security News
Warren Buffett Steps Down as Berkshire Hathaway Chairman
The 96-year-old, whose son Howard succeeds him as chairman, will remain on the board.
Global Security News
An Abandoned CDN Domain Was Re-Registered. Thousands of Sites Still Call It.
In July 2025, someone registered a domain that used to belong to a content delivery network. The CDN had been wound down years earlier, and the domain it served assets from was allowed to expire. What it had not lost were its callers. Thousands of websites, code repositories, and documentation pages still carry hard-coded references…
Global Security News
Plugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding Agents
A flaw in four widely used AI coding agents lets someone who controls a plugin’s code repository swap the plugin an agent installs for a malicious one, even when the agent locked that plugin to a specific reviewed version, security firm Air Security said on Thursday. The firm said Anthropic has patched the flaw in Claude…
Global Security News
Why AI companies are really pumping the brakes on their models
There we were, listening to AI leaders doing their usual spiel: AI is great! AI will cure cancer! AI impact will be “unprecedented, perhaps 10x of the Industrial Revolution at 10x the speed”! AI will find a final answer to “Why do socks disappear in washing machines?” (Well, maybe not the last one. Some things…
Global Security News
WeaselBiscuit Stealer Spreads via 13 npm Packages to Harvest Chrome Extension Storage
Cybersecurity researchers have discovered a cluster of 13 npm packages that have been found to deliver a previously undocumented JavaScript stealer codenamed WeaselBiscuit. The new malware family, per OpenSourceMalware, exhibits functional overlaps with two malware strains associated with the Democratic People’s Republic of Korea’s (DPRK) Contagious Interview campaign: BeaverTail and
Global Security News
Warren Buffett Steps Down as Berkshire Hathaway Chairman
Warren Buffett is stepping down as chairman of Berkshire Hathaway, the $1 trillion conglomerate that he led for more than six decades.
Global Security News
Bots with good manners are better at fooling people on social media
Most people can’t tell a bot from a human online, and the bots most likely to fool them are the polite ones, according to a new Surfshark study. The company analyzed 1,722 participants worldwide, testing their ability to separate human comments from AI-generated ones in a social media setting. Overall, people caught just 40% of…
Global Security News
MY TAKE: AI agents show uncanny initiative nobody designed — and carry no values at all
Give a person a goal, and they bring a lifetime of restraint to the job. Don’t lie. Don’t steal. Stop when something looks wrong. Give an AI agent a goal, and it finds a shortcut. It recruits help. It persists, finding crazy workarounds no human has the capacity to figure out — in the blink…
Global Security News
RatHat Turns Android Accessibility Into an Attack Weapon
RatHat combines AI-driven screen control, Android debugging abuse and advanced credential theft to give attackers deep control of infected phones. RatHat is the new Android trojan you should know about. Zimperium researchers just published a breakdown of a strain they’ve traced to China-based operators, and what makes it different isn’t the credential theft, which is…
Global Security News
CISA Upgrades Vulnerability Reporting Platform with More Automation
The US cybersecurity agency is moving to a new vulnerability coordination platform called VINCE-NT
Global Security News
5 internet-improving Chrome extensions worth trying on Android
Browsing the web on Android sure ain’t what it used to be. Earlier this week, we talked about how the Vivaldi web browser is bringing support for Chrome extensions to Android. Vivaldi has the same Chromium code foundation as Chrome but with lots of extra features and options. I’ve been using it on Android and…
Global Security News
New Check Point flaw lets hackers execute code with root privileges
Check Point Software has released security updates to address a critical vulnerability that can let attackers execute code with root privileges on management systems. […]
Global Security News
Meta’s AI Agent Has a Trust Problem
The company’s Muse AI agent needs user data to be useful, but users might be wary.
Global Security News
Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven npm Stealer
A financially motivated threat actor has been linked to the development and distribution of a JavaScript (JS)-based information stealer known as PhantomRaven via the npm package registry. “The developer likely wrote the malware using a large language model (LLM), an assessment made with high confidence based on verbose comments, placeholder code, and statistical token-analysis patterns,”
Global Security News
Best MSP Software for 2026: RMM, PSA, Security & More
The best MSP software depends on the services an MSP delivers and the business functions it needs to manage. Most MSP technology stacks combine remote monitoring and management (RMM), professional services automation (PSA), IT service management, help desk, cybersecurity, and backup tools. For 2026, leading MSP software options include Atera and NinjaOne for RMM, HaloPSA…
Global Security News
‘Nudify’ apps: What to do if someone makes a fake nude of you
Whether you’re a victim, the parent of a victim, or just concerned, here’s what you can do about fake nude images
Global Security News
Arcjet brings security controls and audit trails to AI agents
Arcjet has launched agent runtime security, a new product that helps engineering teams secure the AI agents they are building while giving security teams the governance and compliance evidence they need. Arcjet brings observability, enforcement, and audit capabilities across agent workflows so teams can discover which agents are running, control what they can do, and…
