Geek Guy

GTT Defense Halo Brings AI into Network Security

GTT Communications is expanding its security portfolio with Defense Halo, a new network defense platform that embeds AI-driven threat detection and remediation capabilities into the company’s global network infrastructure. Converging network, cloud, and security operations GTT Defense Halo is an AI-native network defense platform, built on GTT’s AI factory and deployed as a dedicated instance…

A Vulnerability in Cisco Catalyst SD-WAN Manager Could Allow for Authentication Bypass

A vulnerability has been discovered in Cisco Catalyst SD-WAN Manager (formerly SD-WAN vManage) that could allow for authentication bypass. Cisco Catalyst SD-WAN Manager is the centralized dashboard used to monitor and manage SD-WAN fabric devices, in some deployments up to several thousand devices from a single console. An attacker could exploit this vulnerability by sending…

United States Cost of Living Report: 2000 vs. 2026

Prepared by: Cybersecurity Market Intelligence DivisionDate: September 30, 2026Sources: BLS CES, HUD FMR, EIA, NAIC, True Driving Cost, InflationVault Executive Summary This report compares key cost-of-living metrics in the United States between 2000 and 2026. The data reveals that while nominal prices have increased substantially across all categories, average hourly earnings have outpaced inflation over…

Open Cybersecurity Roles – September 2026 Market Report

Generated: September 30, 2026Data Sources: Dice.com, Indeed, LinkedIn Jobs, GlassdoorCoverage Period: September 1-30, 2026 Executive Summary The cybersecurity job market in September 2026 shows robust demand across federal and commercial sectors. With 23,000+ open roles on Indeed alone, the field continues to outpace supply as organizations accelerate cloud security, AI/ML security, and zero trust architecture…

China Cost of Living Report: 2000 vs. 2026

Executive SummaryThis report compares key cost-of-living indicators in China between the year 2000 and 2026, with direct comparisons to the United States where data is available. The analysis covers average wages, housing costs (rent), gasoline prices, fast food pricing, and auto insurance premiums. 📊 Key Findings at a Glance Category China 2000 China 2026 Change…

Attackers Exploit Zimbra Flaw to Deploy Web Shells and Harvest Authentication Secrets

Threat actors have weaponized a now-patched security flaw in Zimbra Collaboration Suite (ZCS) to deploy web shells and access mailbox data, according to findings from the Microsoft Security Research team. The attack exploits CVE-2026-73570 (CVSS score: 8.9), an unauthenticated operating system command injection flaw that can lead to remote code execution when Simple Network Management…

Attackers Abuse MSP360 to Deploy ScreenConnect in Dual-RMM Phishing Attacks

Microsoft has warned of phishing campaigns distributing an installer for the MSP360 Remote Monitoring and Management (RMM) software under the guise of meeting invitations, PDF-themed lures, software update prompts, and other social-engineering content. “Once executed, the legitimate MSP360 installer, distributed under a deceptive file name established remote management access on affected

OneTrust Brings Policy Enforcement into AI Agent Workflows

OneTrust is launching CORIE, a new AI governance layer designed to enforce enterprise policies as AI agents operate, as the company expands its platform to address governance challenges created by increasingly autonomous AI systems. Announced as part of TrustWeek 2026, CORIE—short for Contextual Orchestration for Reasoning, Intelligence and Evidence—draws on an organization’s existing privacy, consent,…

Microsoft Opens Dragon Copilot Specialization for Healthcare Partners

Healthcare AI gives partners a deployment challenge that extends beyond getting the software running: helping clinicians use it in their daily work. Microsoft announced on September 22 that eligible partners can earn its new Clinical Applications specialization starting September 30. The recognition covers proven expertise in deploying Dragon Copilot for healthcare customers and can open…

OpenAI Marketplace Lets Enterprises Spend AI Commitments on Partner Software

OpenAI is giving enterprise customers another place to put money they have already committed to AI. The company launched OpenAI Marketplace at DevDay 2026, allowing eligible enterprise customers to apply part of their existing OpenAI commitment toward qualifying software from approved partners. The initial roster includes 32 vendors spanning cybersecurity, customer experience, development, legal technology,…

Trump’s answer to AI’s image problem: Industry self-regulation and a new name

US President Donald Trump has ordered the federal government to call artificial intelligence “Super Intelligence,” while keeping the technology’s legal definition unchanged and relying on industry to set the rules for its use. In an executive order, the White House administration said modern systems “far exceed what was envisioned when the term ‘Artificial Intelligence’ first…

Oxygen Forensics, A Russian-run forensics firm spent a decade inside European police departments

DOJ charges against Oxygen Forensics reveal the Russian-linked firm also sold forensic software to EU projects and European police forces for years. Last week’s Justice Department indictment of Oxygen Forensics looked, at first, like an American procurement scandal. CEO Lee Reiber and Russian co-founder Oleg Davydov stand accused of hiding that the company was Russian-owned…

Sherweb Rebrands MicroWarehouse, Names Ireland EMEA HQ

Sherweb is bringing Irish IT solutions provider MicroWarehouse fully under its brand and making Ireland its European headquarters as the Canadian cloud distributor expands its MSP business across Ireland and the UK. The move follows Sherweb’s 2024 acquisition of MicroWarehouse, which continued operating under its existing name while gaining access to Sherweb’s broader resources. Sherweb…

Auvik, Acronis Bring Network Management Into RMM

Auvik and Acronis are partnering to bring network monitoring and management directly into Acronis RMM, expanding the platform’s capabilities as MSPs look to consolidate more of their IT management stack. Under the OEM partnership announced Sept. 30, Auvik’s network management capabilities will be natively integrated into Acronis RMM, the remote monitoring and management offering within…

ESET Revamps Channel Security Portfolio for the AI Era

ESET has revamped its ESET PROTECT portfolio with three new security tiers designed to help channel partners shift from selling standalone cybersecurity products toward recurring, service-based security offerings. The updated portfolio combines MDR, AI security, ransomware and phishing protection, and additional services, including guided onboarding, cybersecurity awareness training, and a cyber warranty that provides up…

Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772)

“Advanced and suspected state-sponsored threat actors” are likely to be behind the initial targeted intrusions that leveraged CVE-2026-88772, one of the two recently disclosed NetScaler vulnerabilities that have been exploited as zero-days, says Mandiant CTO Charles Carmakal. Mandiant and Google Threat Intelligence Group (GTIG) know of dozens of impacted organizations across North America and Europe,…

AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub

AI coding agents asked to share screenshots of code changes for review have put internal company images in public GitHub repositories, security company Glow said. Its researchers found more than 13,000 internal images from developers at over 300 organizations, including customer billing records and screens of features not yet released. In most cases, they sat…

US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access

ANY.RUN researchers traced a US-focused CSuite phishing campaign across 351 sandbox analyses, with 51% of submissions coming from the United States. Technology, manufacturing, government, and consulting organizations showed the highest exposure. By combining Microsoft 365 session theft with remote-access tool deployment, CSuite can turn a phishing incident into broader account compromise, fraud

OpenInfra Europe’s JFrog Artifactory instance breached, packages potentially compromised

Attackers have compromised a self-hosted JFrog Artifactory instance operated by OpenInfra Europe, the regional hub of the OpenInfra Foundation warned in a security notice prominently displayed on its homepage. OpenInfra Europe’s security incident notice “Anyone who downloaded or installed artifacts from https://artifactory.nordix.org/ from August 28 and September 15, 2026 should immediately stop using them, remove…

China-nexus UAT-11587 targets government and policy organizations across Asia with Antino backdoor

Cisco Talos uncovered a cluster of activity we track as UAT-11587 targeting government and policy organizations across Asia, including in Taiwan, India, the Philippines, and Cambodia, to deliver a previously undocumented backdoor referred to as “Antino” in developer artifacts.  Talos first observed UAT-11587 activity in September 2025. By July 2026, Talos had identified at least 16…

WaterISAC reckons with range of threats after summer of cyberattacks

The computers that automate water treatment systems across the country were built for durability, not for an internet-connected world. Many still accomplish their fundamental function, but as cyberattacks on the sector mounted this summer, water industry officials say those aging systems, especially internet-exposed operational technology and programmable logic controllers, remain among the easiest ways for…

Phishing Response Protocol: 3 Essential SOC Steps Powered by ANY.RUN’s Latest Product Updates

Phishing investigations put pressure on SOC teams at several points at once: analysts need to uncover hidden activity, make a confident decision from incomplete evidence, prepare the case for escalation, and then determine whether the threat extends beyond a single incident. Every manual step adds time to the response. It also ties up analyst capacity…

Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT

Unknown threat actors have been observed exploiting a newly patched security flaw in Citrix NetScaler ADC and NetScaler Gateway appliances to target organizations in North America and Europe. The activity, observed by Mandiant Consulting and Google Threat Intelligence Group (GTIG) in September 2026, has targeted government, financial services, technology, education, and legal and professional

U.S. CISA adds Apple Multiple Products flaw to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Apple Multiple Products flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added an Apple Multiple Products flaw, tracked as CVE-2026-86950 (CVSS score of 8.8), to its Known Exploited Vulnerabilities (KEV) catalog. This week, Apple has released security updates for iOS, iPadOS…

Security tools can now scan Claude Enterprise chats and uploads for sensitive data

More than 100 security and compliance vendors have integrations with the Claude Compliance API, which lets a company send Claude activity into the monitoring tools it already uses. CrowdStrike, Microsoft Purview, Splunk, Palo Alto Networks, Cloudflare and Zscaler are among them. For a Claude Enterprise customer, the feed includes the conversations themselves, the files people…

Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution

Cybersecurity researchers have disclosed technical details of a recently patched critical security flaw in Citrix NetScaler ADC and Gateway that has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-88772 (CVSS score: 9.5), has been described as a memory overflow bug in the Datagram Transport Layer Security (DTLS) protocol handling that’s rooted…

In this new SME cybersecurity service, the AI assists and the consultants decide

BH Consulting, the Irish cybersecurity and data protection consultancy, has launched BH Haven, an ongoing service that gives Irish small and medium-sized enterprises (SMEs) access to its specialist consultants, supported by a proprietary AI tool for analysis, evidence review, regulatory mapping and reporting. Ireland and the UK come first, with the Nordic countries and other…