The FBI is warning that FortiBleed attacks are still ongoing, targeting exposed Fortinet FortiGate firewalls and SSL VPN gateways and locking out legitimate administrators. […]
Global Security News
How AI Is Changing the MSP Business
AI is changing more than the technology MSPs deploy. It’s reshaping how providers demonstrate value, build services, work with customers, and differentiate their businesses. In this episode of Channel Insider: Partner POV, Victoria Durgin sits down with Peter Fidler, president and founding partner of WCA Technologies, to discuss what AI adoption looks like inside an…
Global Security News
Oracle, Broadcom and SpaceX Seek Blockbuster Debt Deals To Pay for AI Chips
Apollo, Blackstone and Goldman are among the lenders in talks to finance megadeals worth tens of billions of dollars apiece.
Global Security News
Anthropic Gives Vetted Defenders Fewer Claude Guardrails
Anthropic has merged Project Glasswing into a tiered access program for its advanced cyber LLMs, including Opus, Sonnet, and Mythos.
Global Security News
Hackers hijack Google domains after breaching ccTLD registries
Hackers obtained unauthorized HTTPS certificates for several Google domains and hijacked domains in the country-code top-level domains (ccTLDs) for Ghana, American Samoa, and Sierra Leone after compromising third-party operators and modifying authoritative DNS records. […]
Global Security News
Stellar Cyber 7.0 Adds AI Triage and SOC Management APIs for MSSPs
MSSPs looking to automate more of the SOC without handing every decision to AI have a new set of controls to consider. Stellar Cyber announced version 7.0 of its security operations platform on Oct. 5, adding AI-assisted case handling and multi-tenant automation for managed security service providers (MSSPs) running security operations centers (SOCs). For providers…
Global Security News
Insider Threat Risks Rise Amid Layoffs and Workforce Changes
We are in the midst of an uncertain job market. Rising economic costs and corporate restructuring are contributing to significant workforce volatility, while AI is adding another source of disruption. AI was cited as a reason for nearly a quarter of announced U.S. job cuts through July 2026, suggesting its role in workforce reductions is…
Global Security News
SailPoint Finds AI Agent Adoption Far Outpacing Identity Security
Enterprise adoption of AI agents is moving significantly faster than organizations’ ability to secure their identities, with new SailPoint research finding that 79% of organizations are already running AI agents in production, yet only 2% use purpose-built identity security tools to govern them. The gap is emerging as enterprises give autonomous agents greater access to…
Global Security News
Major rules for federal contractors handling sensitive data are nearing the finish line
Federal government contractors that handle sensitive information could soon face a “sea change” in rules about how they protect that information and report when it has been part of a breach. Pending federal regulations on the handling of “controlled unclassified information,” or CUI, a category of sensitive data that falls short of classified — including…
Global Security News
OpenAI Agent Escape Causes Wikimedia Service Outage
Autonomous agents also tried to abuse other websites and services hosted by the foundation, using them as proxies for unauthorized activities.
Global Security News
Microsoft, Adobe, Apple, and Foxit vulnerabilities
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed vulnerabilities in Adobe, Apple, Foxit Reader, and Microsoft. The vulnerabilities mentioned in this blog post have been patched by their respective vendors, in adherence to Cisco’s third-party vulnerability disclosure policy. For Snort coverage that can detect the exploitation of these vulnerabilities, download the latest rule sets…
Global Security News
Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains
Attackers compromised three country-code top-level domains (ccTLDs) and obtained unauthorized HTTPS certificates for several Google domains, Google said on October 6. Google’s own systems were not breached, but any domain ending in .gh (Ghana), .sl (Sierra Leone) or .as (American Samoa) was put at risk. With such a certificate, an attacker could pose as the real…
Global Security News
OpenAI and Atlassian Expand Partnership to Bring GPT-6 to Rovo
AI agents are becoming co-workers in project workflows. Instead of simply suggesting next steps, these autonomous actors are taking on the next actions while keeping you on track. OpenAI and Atlassian have announced an expanded partnership to give AI agents access to the organizational context stored in Jira and Confluence, while enabling them to take…
Global Security News
Meta Joins Walmart, Shopify, Stripe to Back New AI Agent Standard for Business
Meta is joining Walmart, Shopify, Stripe, and other major technology and commerce companies to establish common rules for how personal AI agents interact with businesses. The companies are backing the Personal Agent Protocol, an open standard being developed by Meta and enterprise AI startup Sierra with Genesys, Instinct, Rocket, Shopify, Stripe, and Walmart. The framework…
Global Security News
Dread Dark Web Forum Hijacked, Operators Claim Control of Domain Keys
Dread dark web forum appears hijacked after a pinned post claimed control of the project and domain keys, while denying plans to leak user data.
Global Security News
SonicWall Fixes Max Severity Pre-Auth Flaw in SMA1000 Appliances
SonicWall patched a CVSS 10 pre-auth SSRF flaw in SMA1000 appliances that could let unauthenticated attackers reach internal functions. SonicWall released hotfixes for four vulnerabilities in its SMA1000 remote access appliances, including a critical flaw tracked as CVE-2026-102255 (CVSS score of 10.0. The issue is a pre-authentication SSRF bug in the WorkPlace portal that could…
Global Security News
Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer
Cybersecurity researchers have disclosed details of a long-running npm supply chain malware campaign that pushes information stealers and remote access trojans (RAT) to compromised hosts. The campaign has been codenamed MALFEX by CloudSEK and Checkmarx. The activity is assessed to be the work of a lone threat actor who appears to have published 12 packages…
Global Security News
FBI, French authorities seize deepfake CSAM-for-sale websites
The FBI and French authorities have arrested an individual and seized a pair of websites that were used to disseminate child sexual exploitation material, including AI generated deepfake media, according to court documents. The websites, NudeLeaksTeens and NLTVIDS, were seized and shut down by the FBI this week. According to the Department of Justice, the…
Global Security News
How DNS, Firewalls and Endpoint Tools Block Websites
Website filtering can be enforced at four points in a request’s lifecycle. What each layer sees, what routes around it, and why network filters miss traffic.
Global Security News
Building an evidence-grounded agentic security operations harness on Cloudflare
Security alerts rarely arrive one at a time. A single alert can cause a spike across the environment, requiring a human analyst to decide which alerts are related and what they mean. When multiple arrive at the same time, it can quickly overwhelm even a seasoned security analyst. Enter the alert paradox. Now, our built-in,…
Global Security News
Part 1 – Cybersecurity journeys: I didn’t plan this
If you’ve ever wondered whether your background qualifies you for a career in cybersecurity, you’re not alone — and you’re probably more prepared than you think. My name is Shannon Brazil, and I work in security communications at Amazon Web Services (AWS). I have been in the security space for over a decade, and my…
Global Security News
SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances
SonicWall has released hotfixes for four flaws in its SMA1000 appliances, the gateways that give remote workers access to a company’s network and applications. The most serious could allow an attacker without a login to send requests through the appliance and reach internal functions. SonicWall rates it 10.0 on the CVSS scale and says it…
Global Security News
American Fire Departments Are Short on People. AI Might Be the Answer.
Volunteer firefighters are crucial to public safety in the U.S., and their numbers have dropped dramatically.
Global Security News
Microsoft Outlook to block MSIX attachments starting November
Microsoft announced that it will add .msix and .msixbundle attachments to the list of blocked attachments in Outlook Web and the new Outlook Windows client starting next month. […]
Global Security News
Coffee with the Council Podcast: PCI SSC Introduces Key Management and Operations (KMO) Standard v1.0
Welcome to our podcast series, Coffee with the Council. I’m Alicia Malone, Director of Communications and Public Relations for the PCI Security Standards Council. Recently, the Council published its newest standard, the Key Management and Operations, or KMO Standard. But what exactly is KMO, and how does it fit into the Council’s portfolio of…
Global Security News
Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely
A critical vulnerability in LMCache, open-source software that speeds up large language model (LLM) servers such as vLLM, lets an attacker run code on the cache server without logging in, and no fixed version is available. The flaw is in LMCache’s multiprocess mode, where the cache runs as a standalone server that LLM workers reach over…
Global Security News
PoeLLM Malware Infects 3,400+ Servers to Expand Crypto Mining Botnet
Cybersecurity researchers are calling attention to a new malware family that has been observed targeting exposed artificial intelligence (AI) and large language model (LLM) infrastructure with an aim to deploy cryptocurrency miners and further expand the scale of the botnet. The financially motivated campaign, dubbed Canto Incognito, has been found to install cryptocurrency miners, including
Global Security News
Cisco brings collaborative agents and Claude into Webex chats
Cisco is adding AI agents to Webex group chats so colleagues can assign them work and share the results, part of a wider revamp of the Webex app. Announced at the WebexOne conference Wednesday, users will soon be able to @mention agents in Webex “spaces” to help schedule meetings, take notes, and track tasks. “You…
Global Security News
Both AI skeptics and AI enthusiasts in cyber are wrong
Our industry is now split into two cohorts – AI skeptics and AI enthusiasts. I get to spend plenty of time with people from both of these camps. Each side has its own merits and its own pretty solid arguments. All that said, I have recently come to the conclusion that both AI skeptics and…
Global Security News
PoeLLM malware infects exposed AI servers in cryptomining attacks
A cryptomining campaign targeting exposed AI services is using PoeLLM malware to turn compromised servers into scanners and exploit launchpads. […]
Global Security News
PoeLLM malware has assembled a sweeping botnet, taking technical cues from a poem
Malware that takes technical cues from a poem to assemble a growing botnet by targeting open-source AI services has compromised more than 3,400 servers since April, Lumen Technologies’ Black Lotus Labs said in a report Wednesday. The poem, which a threat actor wrote and posted on a GitHub repository, seems innocuous but it’s driving a…
Global Security News
Scans for Atlassian vulnerablity (CVE-2026-21589), (Wed, Oct 7th)
On October 5th, Atlassian published patches for multiple products to fix an “Arbitrary File Access” vulnerability [CVE-2026-21589]. An attacker can read arbitrary files in the web application’s directory, potentially exposing sensitive information such as configuration files. This directory traversal vulnerability is a little bit different from the textbook case. Atlassian products replace slashes with the pattern…
Global Security News
70th IT Press Tour: CTERA forward deploys engineers on site to get enterprise AI out of the pilot phase
Everyone is buying AI. GPUs, models, tokens, copilots, the lot. What almost no-one can do yet is prove it has paid for itself, and that’s the gap CTERA came to Silicon Valley…
Global Security News
Exploitation attempts against critical Atlassian flaw have begun (CVE-2026-21589)
One day after Atlassian released patches fixing a critical arbitrary file access vulnerability (CVE-2026-21589) in its self-managed Data Center products, and a few hours after watchTowr researchers published a technical rundown of the flaw, attackers have been spotted attempting to exploit it. CVE-2026-21589 PoC in action (Source: watchTowr) “Exploitation attempts have now started to hit…
Global Security News
OT Coalition Urges CISA to Mandate Federal OT Security
OTCC urged CISA to mandate baseline security requirements for federal operational technology
Global Security News
Precisely Targets Fragmented Enterprise Data With New AI Platform
Enterprise AI can automate decisions faster, but it can also scale the consequences of bad data. Precisely introduced the Precisely Platform on Tuesday, a unified data management system designed to help organizations prepare and govern data for AI without moving everything into a single environment. The platform combines data integration, quality, governance and enrichment across…
Global Security News
Ransomware has a new target. Is your backup ready?
Ransomware groups are increasingly targeting backup infrastructure to eliminate recovery options and increase pressure on victims to pay. Kaseya explains why organizations need isolated, immutable, and regularly tested backups that attackers cannot easily reach. […]
Global Security News
Gremlin Foresight AI finds system weaknesses and verifies the fixes
Gremlin has announced the general availability of Gremlin Foresight AI. Following a successful beta, Gremlin Foresight AI has proven it can identify and address reliability risks before they become incidents, helping engineering teams move at AI speed without compromising the resilience of mission-critical production systems. “AI-driven development means shipping code at 10X velocity; it also…
Global Security News
Cisco Webex Adds AI Agents, RoomOS 27 and CX Tools
Cisco is expanding Webex with collaborative AI agents designed to work across applications, manage longer-running tasks, and support employees beyond traditional prompt-based assistants. Announced at WebexOne 2026, the updates extend Cisco’s agentic AI strategy across collaboration, physical workplaces, and customer experience. They include new Webex AI agents, Intelligent Workplace Experiences, RoomOS 27, and Dialog, an…
Global Security News
Imply Lumi connects SIEM tools and AI agents to more security data
Imply has unveiled its expanded vision for the security information and event management (SIEM) market, with Imply Lumi providing the data platform for the agentic SIEM. Imply is bringing modern data architecture to security teams facing growing data volumes, rising costs and new demands from AI-driven investigations, while preserving the SIEM tools and workflows they…
Global Security News
FortiBleed hit 86,000 firewalls by exploiting something nobody can patch away
FBI and Secret Service warn FortiBleed, a credential-harvesting campaign against Fortinet firewalls, has compromised 86,644 devices and is locking out admins. The FBI and the U.S. Secret Service issued a joint advisory about FortiBleed, and the headline number alone is worth sitting with: more than 86,644 compromised Fortinet FortiGate devices across 194 countries, according to…
Global Security News
ShinyHunters Extorted Boeing Spin-off Prior to Arrests
A teenager from Amman, Jordan suspected of leading the prolific data theft and extortion group ShinyHunters has been detained and is reportedly cooperating with the FBI to identify other members of the hacking gang. KrebsOnSecurity has learned that the suspect, who uses the hacker handle “Rey,” was detained as ShinyHunters was in the process of…
Global Security News
FortiBleed is still active, with attackers locking admins out of Fortinet firewalls
Some organizations hit by the FortiBleed campaign have been locked out of their own Fortinet firewalls, according to a joint FBI and U.S. Secret Service advisory. FortiBleed targets internet-facing Fortinet FortiGate firewalls and SSL VPN gateways. The advisory cites SOCRadar, which has verified more than 86,644 compromised devices in 194 countries. “Based on initial responses,…
Global Security News
Vijil DART tests AI agents for security flaws and policy violations
Vijil has released Diamond Adaptive Red Teaming for Agents (DART), an automated testing system that finds security vulnerabilities and policy violations in enterprise AI agents. DART employs multiple adversarial agents of its own to probe the target’s defenses with multi-turn attacks that learn and adapt tactics across turns, episodes, and engagements. Using DART, AI developers…
Global Security News
Edgescan Atomic validates attack paths with controlled AI testing
Edgescan announced the launch of Edgescan Atomic, an autonomous penetration-testing capability built on agentic AI and Edgescan’s existing security intelligence. Edgescan Atomic can run on top of Edgescan’s existing continuous security platform or run as a stand along Agentic Penetration Testing solution. Organizations need confidence that they are safe from AI-powered cyber-attacks. Edgescan Atomic is…
Global Security News
Google issues Android security updates: who can get them and how
Google has published security fixes for Android. The October updates are available for Android operating system versions 14, 15, 16, 16-qpr2, and 17 where “qpr” stands for Quarterly Platform Release. QPRs are interim updates Google pushes out between major yearly cycles. These Android security bulletins contain valuable information for Android users. The updates are important…
Global Security News
Trustero automates vendor document reviews with human approval
Trustero has announced the launch of Trustero Third-Party Risk Management (TPRM). TPRM extends Trustero’s AI engine beyond a company’s own compliance program to the vendors and partners it depends on. Instead of collecting and reading vendor documentation, teams review and approve a recommended risk determination. Vendor risk management is largely a logistics problem: chasing attestations,…
Global Security News
CERT-UA: Fake Cloudflare Checks Deliver LunexStealer Malware
Over 100 hacked websites used fake Cloudflare checks to trick visitors into installing LunexStealer through ClickFix commands. The lure is the now-familiar ClickFix technique, dressed up as Cloudflare’s standard bot check. The fake page asks you to run a command, supposedly to confirm you’re not a bot, and that command quietly downloads and installs an…
Global Security News
DeepSeek Eyes Up to $15B in New Funding Ahead of 2027 IPO
DeepSeek’s next phase could come with nearly $15 billion in fresh capital. The Chinese AI startup is close to raising at least 80 billion yuan ($12 billion) in new funding, with the round potentially reaching 100 billion yuan ($14.9 billion) as Tencent and battery giant CATL commit some of the largest investments, according to Bloomberg.…
Global Security News
Hoxhunt expands Respond to automate phishing investigations and email removal
Hoxhunt has announced expanded capabilities for Hoxhunt Respond, its email incident response automation platform for security operations teams. Respond can reduce phishing tickets requiring analyst attention by up to 99% and remediate confirmed malicious campaigns in under one minute. Effective phishing training creates a valuable result: employees recognize and report more real threats. It also…
Global Security News
Tanium adds endpoint behavior detection and AI-assisted threat hunting
Tanium has relaunched Tanium Security Operations to address AI-assisted attacks in which adversaries use legitimate administrative tools to blend into normal activity and spread across endpoints. The platform is designed to detect this behavior, support response across affected endpoints and help analysts investigate threats. With AI, attackers no longer need malware that a scanner can…
Global Security News
Attackers Hide AI Prompt Injections Inside Phishing Emails
Barracuda finds phishing emails designed to manipulate both human users and AI assistants
Global Security News
Anthropic widens access to AI cyber capabilities for vetted security teams
Anthropic is expanding its Cyber Verification Program to give more security teams access to advanced cyber capabilities with reduced safeguards on its most advanced AI models. The expanded program has three access tiers based on the type of cybersecurity work an organization is authorized to perform. The tiers cover defensive security work, authorized red teaming,…
Global Security News
Hackers exploit critical Atlassian flaw after public PoC release
A critical vulnerability (CVE-2026-21589) affecting multiple Atlassian product families, including Jira, Confluence, and Bitbucket, is being exploited in attacks that do not require authentication. […]
Global Security News
Denmark’s national ID system breach exposes personal data of 8.8M
Denmark is reviewing security controls around its national citizen registry after unauthorized parties exploited a company’s access credentials to harvest records on approximately 8.8 million people over a 10-day period. The breach covers people living in Denmark as well as individuals who have died or moved abroad, while people with protected names and addresses were…
Global Security News
Moët Hennessy Directs AI to Sniff Out a Stubborn Problem in Winemaking
Plus: Neocloud Lambda is raising $4 billion
Global Security News
Why MSP Security Opportunities Are Growing in 2027
Cybersecurity spending is rising, AI is creating new security challenges, and vendors are building more infrastructure for MSPs to capitalize on the demand. In this episode of Inside the Headlines, Channel Insider looks at two developments pointing to a growing opportunity for managed service providers: Wiz’s new MSP program for managed cloud and AI security…
Global Security News
Dell AI Data Platform Adds Agentic AI, GPU Capabilities
Dell Technologies is expanding its AI Data Platform with new enterprise context, GPU acceleration, and managed infrastructure capabilities to help organizations move AI workloads from pilot projects into production. The updates include a Unified Semantic Layer, Enterprise Knowledge Graph, and knowledge agents designed to give AI systems governed business context, alongside NVIDIA-accelerated data processing, a…
Global Security News
The Sixth Voice of the CISO Data Shows Cyber Risk Has Moved Inside the Workflow
The 2026 findings are not just a year-over-year shift. They mark the latest point in a five-year arc where resilience, AI governance, human risk, and board scrutiny are converging inside the systems where work actually happens. For years, the enterprise cybersecurity story has been told as a straight line of escalation: more attacks, more data…
Global Security News
Telegram Account Behind ASOS Rogue Notification Tied to Gaming Trading
A Group-IB researcher has found the Telegram account linked to the unauthorized ASOS customer notification previously engaged in gaming-item trading
Global Security News
FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials
The U.S. Federal Bureau of Investigation (FBI) and Secret Service (USSS) on Tuesday warned that the FortiBleed credential harvesting campaign remains an active threat aimed at internet-facing Fortinet FortiGate firewalls and secure socket layer (SSL) virtual private network (VPN) gateways. “The campaign exploits reused or leaked credentials and legacy SHA-256 password storage, enabling threat
Global Security News
Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details
Threat actors have begun to exploit a newly disclosed critical security flaw impacting Atlassian Data Center products that could allow access to sensitive files under certain conditions. The arbitrary file access flaw, tracked as CVE-2026-21589 (CVSS score: 9.3) affects multiple products, including Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software
Global Security News
Encrypted instructions trick Copilot CLI into spilling developer secrets
GitHub Copilot CLI can be made to read sensitive files from a developer’s machine and send their contents to an attacker from a single web page. Security researchers at Adversa AI said the new attack technique, dubbed Cryptographic Context Injection (CCI), hides malicious instructions inside encrypted content. These instructions are treated as trusted context when…
Global Security News
What Is Agentic Pentesting? What It Proves, and Where It Stops.
If you’re evaluating an agentic pentesting solution right now, you’ve probably heard the same pitch more than once: point it at a target, and it discovers, validates, and exploits attack paths autonomously, the way a real attacker would. That promise is worth taking seriously. It’s also worth pressure testing, and three questions do the heavy…
Global Security News
SonicWall warns of max severity SSRF flaw in SMA1000 gateways
SonicWall has released hotfixes to address a maximum-severity server-side request forgery (SSRF) flaw in SMA1000 series appliances. […]
Global Security News
Hackers hijack three country-code domain registries, obtain HTTPS certificates for Google domains
Attackers who took control of three country-code top-level domains (ccTLDs) used that access to obtain HTTPS certificates for several Google domains and for domains run by other large organizations, Google disclosed on Tuesday. Attackers compromised the third-party operators of the .gh (Ghana), .sl (Sierra Leone) and .as (American Samoa) ccTLDs, putting every domain under those…
Global Security News
How to navigate the Windows Insider Program
Are you a Windows fan? Do you like getting sneak peeks at features before they’re released to the public? Microsoft created its Windows Insider Program for you. The program made its debut in October 2014 with the release of the Windows 10 technical preview. It provided a way for enthusiastic users, developers, and IT admins…
Global Security News
AI-powered phishkit arms criminals with account-hijacking tools in 10 minutes
In August, the Malwarebytes research team reported on a new malicious turnkey kit that makes it possible for almost anyone to launch a sophisticated online scam. The kit was not simply a fake website. It bundled the command center, victim tracking, and administrative tools into a ready-to-use package, reducing the technical knowledge needed to operate…
Global Security News
SonicWall fixes pre-auth SSRF flaw in SMA 1000 appliances (CVE-2026-102255)
SonicWall has patched four vulnerabilities in its popular Secure Mobile Access (SMA) 1000 series of appliances, including one (CVE-2026-102255) that could allow remote unauthenticated attackers “to direct the appliance to issue requests on their behalf and reach internal functionality and perform unauthorized operations.” “There is currently no evidence any of the vulnerabilities addressed in this…
Global Security News
Musician sent to prison for $10 million streaming fraud using AI bots
A North Carolina musician was sentenced to 18 months in prison for collecting more than $10 million in royalties from Spotify, Apple Music, Amazon Music, and YouTube Music in a massive streaming royalty fraud scheme. […]
Global Security News
Advantest confirms personal information stolen in ransomware attack
Advantest Corporation is notifying affected individuals that a ransomware attack earlier this year exposed their personally identifiable data. […]
Global Security News
Update Chrome and ChromeOS to fix critical security issues
Google has released updates for the Chrome browser and the ChromeOS operating system. On October 6, Google released a Stable Channel Update for Desktop. This is the most important one for desktop users. It brings Chrome to version 155.0.8059.39 for Linux and versions 154.0.8037.39/.40 for Windows and Mac. The update includes 247 security fixes including four rated Critical. On…
Global Security News
Your Windows PC can now reach other PCs through Windows App
Microsoft has made remote PC connections generally available in Windows App on Windows. Users can access physical or virtual Windows PCs alongside Windows 365, Azure Virtual Desktop, and Microsoft Dev Box resources. Windows App brings remote Windows devices and applications into a single interface. It replaces the Remote Desktop app distributed through the Microsoft Store…
Global Security News
Half of Cybersecurity Pros Still Rely on Passwords Despite Security Concerns
A Yubico survey identified a significant gap between awareness and adoption of secure methods of authentication in enterprises
Global Security News
Anthropic Creates Three Tiers for Claude Cyber Access
Anthropic created three access tiers for Claude’s offensive security use, matching cyber capabilities and safeguards to the user’s level of trust. Anthropic is trying to solve the difficult balance between using AI for cybersecurity and preventing misuse. The same model that helps security teams fix vulnerabilities can also help attackers break into systems. Its answer,…
Global Security News
Another ShinyHunters suspect arrested
The net is tightening around the Shiny Hunters cybercrime group following the reported arrest of a second member. On Saturday, Reuters said that 16 year-old Saif al-Din Khader had been arrested in Jordan and was in FBI custody. This follows the arrest earlier in September of another member in the Netherlands. Third party reports named…
Global Security News
One breach, please, and make no mistakes
For some time now, the cybersecurity community has seen examples of autonomous agents, built inside AI labs, attacking public infrastructure (to name a few, Hugging Face, DSEWiki, and RubyGems). Of course, frontier labs have built-in security to prevent these attacks from occurring, but every now and then, the training or prompting appears to be insufficient…
Global Security News
Pressure Mounts at Bessent’s Treasury Amid Staff Turnover and Unmet Goals
Plus, hear the radio commands enforcing the U.S. blockade of Iran, and meet the young Americans who moved to Israel after Oct. 7.
Global Security News
New Report Reveals “Awareness Gap” in Australian Enterprise Security with 86% of Technical Staff Knowing Passkeys Are Safer, Yet Nearly Half Still Rely on Passwords
Global research from Yubico and Okta reveals that 61% of Australian tech pros are issued legacy passwords on Day 1, while 72% demand strict human sign-off on AI agents and 43%…
Global Security News
September 2026 Cyber Attacks Statistics Infographic
September 2026 saw 181 confirmed cyber incidents, roughly one every four hours. Cybercrime drove 73.8% of attacks and espionage 19.1%. Malware led the techniques with 53 campaigns, ahead of Remote Code Execution with 32. More than a quarter of breaches started with an exploited public-facing application, and the United States was the most targeted country…
Global Security News
September 2026 Cyber Attacks Statistics
September 2026 recorded 182 cyber incidents, and Cyber Crime drove roughly three in four of them (73.9%). Malware was the top attack vector at 27.8%, exploitation of public-facing applications led initial access at 28.9%, and Information & Communication was the most targeted sector. Explore the full statistics, from the daily trend to the geographic distribution.
Global Security News
ASOS confirms data breach after “hacked” app alert reaches shoppers
UK fashion retailer ASOS has confirmed a data breach after a notification claiming hackers had broken into its data was sent to shoppers through its app. ASOS was founded in 2000 and has 16.5 million active customers in more than 100 markets. According to the company’s update to investors, the unauthorised notification went out to…
Global Security News
100+ Ukrainian Websites Hacked to Install Lunex Stealer with ClickFix Lure
Over 100 hacked Ukrainian websites used fake Cloudflare checks to install Lunex Stealer and steal browser passwords, tokens and cryptocurrency wallets.
Global Security News
Pwn2Own Hackers Find 32 Zero-Day Vulnerabilities on Day One
Ethical hackers have already found 32 zero days in various products at Pwn2Own Ireland
Global Security News
Anthropic loosens Claude’s cyber restrictions for verified defenders
Anthropic expanded its Cyber Verification Program (CVP), giving approved security professionals access to advanced Claude capabilities with fewer automated blocks on work such as malware analysis and vulnerability testing. Three tiers for cybersecurity work The program now has three tiers based on the scope of applicants’ cybersecurity work. The expansion combines CVP and Project Glasswing…
Global Security News
Your enterprise doesn’t need six BOM programs. It needs one evidence graph
In infrastructure and security programs, I have watched visibility projects follow a familiar path. The first dashboard feels like progress. Then the data grows, ownership blurs and the team discovers that visibility without identity and action has become another estate to operate. Bill-of-materials programs are reaching that point now. Most CIOs know the Software Bill…
Global Security News
AI is turning offensive security into a continuous necessity
The rise of AI has CISOs facing even more vulnerabilities than ever, resulting in increasingly difficult decisions around what fixes to prioritize. “When I was a CIO, the hardest part of my job was deciding what not to do,” Snehal Antani, CEO of pentesting platform Horizon3.ai, tells CSO. “And if I chose not to fix…
Global Security News
Danish CPR Breach Highlights Challenge of Supply Chain Risk
A breach of 8.8 million citizens on the Danish Central Register of Persons (CPR) occurred via third-party access
Global Security News
Anthropic Expands Claude Access for Vetted Cyber Teams as Glasswing Finds 129,000 Flaws
Anthropic on Tuesday said it’s expanding a program that allows vetted cybersecurity professionals to test its advanced artificial intelligence (AI) models with reduced safeguards and blocking classifiers, as the company claimed its Project Glasswing initiative uncovered at least 129,000 verified software vulnerabilities between April and July 2026. The company said it also found an additional
Global Security News
Wikimedia Finds Unauthorized OpenAI Agent Activity on Wikipedia
Wikimedia found unauthorized OpenAI agent activity on its platforms, including unapproved edits, proxy attempts and millions of automated API requests. Wikimedia ran its own investigation after other organizations started reporting rogue AI agents breaking into websites, and the answer came back yes, it happened here too. The foundation found unauthorized bot activity tied to OpenAI…
Global Security News
8 Leading replacements for AWS DMS in streaming workloads
AWS Database Migration Service AWS DMS was originally designed for a specific task: lifting relational databases off on-premises servers and moving them into managed Amazon RDS…
Global Security News
5 Critical Pain Points of Modern US SOCs and How to Solve Them
US SOC teams are under pressure to detect and contain threats faster, but the real challenge is often not a lack of security solutions. It’s the growing amount of alerts, fragmented investigation data, evasive attack techniques, and the time analysts spend connecting the dots. As attacks become harder to validate and easier to hide inside…
Global Security News
A Developer’s Guide to Automating Web Data Extraction with Dynamic IP
A small extraction script can work well through one IP until the workload grows. More pages, parallel workers, and regional data can introduce rate limits or unstable…
Global Security News
100+ Compromised Websites Use Fake Cloudflare Checks to Deliver LunexStealer
The Computer Emergency Response Team of Ukraine (CERT-UA) has identified more than 100 compromised websites that have been injected with malicious JavaScript to serve an information-stealing malware called LunexStealer (aka Psychedelic Stealer). The activity, which was observed by the agency in September 2026, has been attributed to a threat cluster dubbed UAC-0277. It did not…
Global Security News
AI Agent Gateway: Open-source tool keeps credentials out of agent configs
Tuskira’s AI Agent Gateway is an open-source solution that sits between AI agents and everything they call: the MCP tool servers that connect them to services like GitHub and Jira, and the model providers they send prompts to. The gateway runs in your own environment without a Tuskira account. The full picture (Source: Tuskira) A…
Global Security News
Video downloader APKs: the question page one never answers
Start with Google’s count More than 27 million. That is how many new malicious apps Google says its real-time scanning identified outside Google Play in 2025. It is from…
Global Security News
OpenSSH 10.6 enables a post-quantum signature algorithm, so experimental keys need replacing
The OpenSSH team released version 10.6 on Oct. 6 and said it will ship releases more often for now to get bugfixes into users’ hands more quickly. The maintainers have received a large number of security reports, many found by AI models or with AI help, and in a number of cases a different researcher…
GeekGuyBlog
ClickFix Attacks Evolve to Better Hide Malicious Payloads
Global Security News
AI endpoint management: Visibility, compliance, and remediation
Endpoint estates are growing faster than the teams that look after them. Hybrid work, cloud adoption, contractor laptops, a steady stream of new CVEs, and rising compliance pressure mean security teams manage more devices, more software, and more exceptions than a spreadsheet or a monthly scan can hold. Manual tracking and manual remediation no longer…
Global Security News
From Guest Complaints to Malware: Blockchain Abuse Targets Hotels
By: Kahng An, Intelligence Team Cofense Intelligence has been tracking a series of email campaigns that target the accommodation industry with fake guest complaints or reviews that deliver blockchain technology-abusing malware. These emails appear to likely be a continuation of a prior series of predominantly Booking.com-spoofing emails that were seen delivering various remote access trojans…

