Karina Portugal has spent more than ten years working in digital identity, fraud prevention, anti-money laundering and Know…
Global Security News
Alert: FortiBleed remains active campaign, can lock out users or lead to ransomware attacks
FortiBleed, a credential compromise campaign targeting Fortinet firewalls and VPN gateways, is an ongoing threat that can lock users out of their Fortinet accounts and also lead to ransomware attacks, the FBI and Secret Service said in an alert published Tuesday. “Affected organizations may find themselves locked out of their systems if threat actors disable accounts…
Global Security News
Ninja Forms plugin flaw exploited to hack WordPress sites
Hackers are exploiting stored cross-site scripting (XSS) vulnerabilities in two unrelated WordPress plugins, Ninja Forms and WPC Product Bundles for WooCommerce, to install backdoors and create rogue admin accounts. […]
Global Security News
ClickFix Attacks Evolve to Better Hide Malicious Payloads
Threat actors are now hiding payloads by using DNS TXT records and browser cache pre-fetching, making it tougher to spot early attack stages.
Global Security News
Wiretapping change sparks big privacy fight in the Golden State
A bipartisan update to a California wiretapping law will eliminate the right to sue over internet-based surveillance, ending a key provision of a 57-year-old wiretapping law. Advocates say it is an overdue correction meant to prevent frivolous lawsuits, while privacy advocates call it a blow to digital consumer privacy rights. The California Invasion of Privacy…
Global Security News
TD SYNNEX Adds SignWell eSignature Platform for Partners
TD SYNNEX is adding SignWell’s eSignature platform to its U.S. portfolio, giving reseller partners access to SaaS and API-based tools for electronic signatures, document automation, and embedded signing. The agreement also gives partners access to annual subscriptions, usage-based API plans, partner pricing, and deal registration for qualifying opportunities. TD SYNNEX expands eSignature options for U.S.…
Global Security News
Hackers exploit 32 zero-days on first day of Pwn2Own Ireland
On the first day of the Pwn2Own Ireland 2026 competition, security researchers hacked the Samsung Galaxy S26 twice and earned $388,500 after exploiting 32 zero-days. […]
Global Security News
Improving SPIRE security and resiliency with AWS managed services
In cloud-centered environments, establishing trust between workloads is fundamental to securing machine-to-machine communication. Traditional approaches such as API keys, shared secrets, and static service account credentials weren’t designed for the scale and ephemeral nature of cloud workloads. This drives an organizational need to shift from long-term, static credentials to short-lived cryptographic workload identities. Organizations are…
Global Security News
SONiC Adds Lenovo, NADDOD and NEXAI to AI Networking Ecosystem
AI networking depends on coordination across software, switches, silicon, and high-speed connections. Collaboration among those vendors could give channel partners more options for building AI networks, although compatibility, integration, and support still require evaluation. The Software for Open Networking in the Cloud (SONiC) Foundation has announced the addition of Lenovo, NADDOD and Zhanwang (NEXAI) as…
Global Security News
Fake ChatGPT, Gemini, and Claude Ad Portals Capture Credentials and MFA Codes
Cybersecurity researchers have disclosed details of a “human-operated phishing platform” that impersonates advertising products for artificial intelligence (AI) chatbots like Google Gemini, Anthropic Claude, OpenAI ChatGPT, Perplexity, Meta Muse, and Manus. The products, which claim to offer campaign optimization, spend audits, and business-account connections, are designed with one goal in
Global Security News
Microsoft, Meta Cut Internal Claude Use as In-House AI Tools Take Priority
Microsoft and Meta are reportedly putting their own AI tools ahead of Anthropic’s Claude for more internal work, but neither company appears to be walking away from Claude altogether. The changes center on employee use, where AI costs and competing in-house tools are pushing both companies to rethink how much they rely on third-party models.…
Global Security News
FBI removes contractor working with its PeopleSoft system after data breach, says report
The US Federal Bureau of Investigation has removed an Accenture contractor working on its PeopleSoft installation over their role in a data breach that exposed personal details of FBI employees, Reuters reported Monday. This is the first time that anyone other than the hacker group Shinyhunters that claimed responsibility for the breach has linked it…
Global Security News
Linux Backdoors Impersonate Email Security Tools to Evade Detection in Korea and Taiwan
Linux backdoors targeting telecom and network appliances in South Korea and Taiwan have been disguising their traffic as email services and seemingly legitimate processes to blend in and evade detection. Threat actors are known to name their malicious software after a legitimate operating system component or a process as a defense evasion measure. By borrowing…
Global Security News
Use Gemini for free? You’ll soon be limited to its weakest AI model
Google is cutting off free users from the Flash and Pro models. AI Plus subscribers are losing out too
Global Security News
Google’s PageBreak AI Agent Finds 500 Flaws in Its Web Apps
The situation illustrates a trend toward using AI and deterministic validation to identify flaws and exploitability, and provide a risk assessment.
Global Security News
Former NSA chief Nakasone says agency overhaul is ‘probably needed’
Former National Security Agency Director Paul Nakasone said a reported broad reorganization of the agency is “probably necessary” as it confronts faster-moving cyberthreats, artificial intelligence and competition with China, but he cautioned that the outcome will depend on how the changes are carried out. Speaking Tuesday at VulnCheck’s ThreatCon1 conference, Nakasone addressed a recent report…
Global Security News
Tanium Unveils New SecOps Capabilities
Tanium has announced new security operations capabilities that give IT and security operators greater detection depth, response options, and AI-native hunting to investigate, contain, and resolve threats faster within live endpoint intelligence. The Tanium Security Operations capabilities are powered by Tanium Atlas, the company’s autonomous operating system that allows customers to build a self-driving SOC…
Global Security News
Atlassian warns of critical file-access flaw in Jira, Confluence
Atlassian is warning customers of a critical vulnerability, tracked as CVE-2026-21589, that can be exploited for arbitrary file-access in multiple self-hosted Data Center products, including Confluence, Jira, and Bitbucket. […]
Global Security News
‘BigDiskBuster’ Leaves Microsoft Defender Running While Blocking Updates
Not quite an EDR-killer, but the proof-of-concept cyber technique creates a silent virus detection gap while service runs normally, no exploit required.
Global Security News
AI Neocloud Lambda Is Raising $4 Billion in Final Round Before Planned IPO
The Nvidia-backed company is targeting an IPO in 2027.
Global Security News
FBI Removes Accenture Contractor Over ShinyHunters Job Site Data Breach
The FBI removed a contractor over a ShinyHunters-linked breach. Reuters sources identified Accenture and an unpatched Oracle PeopleSoft system.
Global Security News
Office 2021 support ends this month – you have 5 options
Microsoft is ending support and updates for Office 2021 on October 13. What does that mean, and what are your alternatives?
Global Security News
ASOS confirms data breach after “HACKED” in-app notifications
UK fashion retailer ASOS confirmed a data breach Tuesday after hackers sent unauthorized push notifications through its mobile app while claiming to have stolen customer data from the company’s Snowflake environment. […]
Global Security News
Tech jobs decline as US hit with rising costs and economic instability
A number of studies reported a decline in tech jobs in September as the US continues to get squeezed by geopolitical and economic instability. Tech consortium CompTIA said 10,350 positions in the technology sector were lost in September, lower than the 14,700 positions cut in August. But economy-wide, tech jobs — which include IT roles…
Global Security News
Identity-aware AI data agents with AWS Lake Formation and Trusted Identity Propagation
You’re building a data agent that lets business users ask questions about lakehouse data in natural language. You’ve already built governance policies that control who can access which datasets. The challenge is making the agent respect those rules without rebuilding them in your application code. When a user asks a question, the agent maps it…
Global Security News
A Data-Center Crunch is Coming
Plus, AI agents attack South Korean banks, and will we spend as much on AI as we do on food?
Global Security News
RobCo Hits $1 Billion Valuation as AI Robot Moves Toward Factory Deployment
RobCo has joined the robotics unicorn club as manufacturers look for more flexible ways to automate factory work. The Munich-based startup said Monday that it surpassed a $1 billion valuation through a transaction combining new investment with a secondary share sale, giving long-standing employees an opportunity to sell part of their holdings. The milestone comes…
Global Security News
Fake ChatGPT, Gemini Sites steal advertising accounts, MFA codes
A new campaign targeting ad account managers uses fake ChatGPT, Gemini, Claude, and Perplexity sites that steal login credentials and multi-factor authentication (MFA) codes through browser-in-browser attacks. […]
Global Security News
How to mitigate the risk from AI-generated apps built by your ‘citizen coder’ employees
AI tools let non-technical employees build workplace apps in minutes with natural language prompts. While these AI-generated apps boost productivity, they can create severe security and data risks. As Cybersecurity Awareness Month kicks off, we’re sharing how Tenable adopted a structured governance framework that allows our “citizen coders” to build secure and compliant apps with…
Global Security News
ClickFix Attack Hides VBScript Payload in Browser Cache
ClickFix sites stage a VBScript payload in the browser cache to bypass the Run dialog’s length limit
Global Security News
CVE-2026-96940: Microsoft Exchange Vulnerability Allows Unauthorized Mailbox Access
Microsoft has released an out-of-band security update addressing CVE-2026-96940, a high-severity vulnerability in Microsoft Exchange Server that could allow authenticated attackers to access other users’ mailboxes and read sensitive emails and attachments. The flaw carries a CVSS score of 8.8 and affects multiple on-premises Exchange Server versions. The vulnerability comes amid growing security concerns surrounding…
Global Security News
CVE-2026-21589: Critical Atlassian Vulnerability Exposes Sensitive Files Across Eight Products
Atlassian has disclosed CVE-2026-21589, a critical arbitrary file access vulnerability affecting eight widely used Data Center products, including Jira, Confluence, and Bitbucket. The flaw, assigned a CVSS 4.0 score of 9.3, could allow unauthenticated attackers to access sensitive files on vulnerable servers without requiring valid credentials or user interaction. The vulnerability highlights the growing risks…
Global Security News
5 Astrix and Aembit Alternatives for AI Agent Identity Security
Cisco completed its acquisition of Astrix Security on June 29, 2026, after reportedly agreeing to pay approximately $400…
Global Security News
Apple’s AI privacy trick could be the compromise the EU needs
When it comes to consumer protections, Europe is following its own path. That may be visible in its quixotic-seeming decisions that allegedly prevent Apple from introducing Siri AI in the European Union. It’s time to begin to grapple with what those decisions mean. I think the EU has got it wrong in how it has chosen to enforce…
Global Security News
ASOS “hackers” send push notifications to customers
Thousands of global fashion retailer ASOS customers have received a push notification through the ASOS app this morning alleging that the company has been hacked. The notification, addressed to ASOS’s data protection officer and IT, says: “ASOS HACKED Dear Asos DPO and IT, we have fully compromised the Snowflake instance. Engage with us, or we…
Global Security News
CVE-2026-96940: Microsoft Fixes Exchange Server Flaw For Which Exploitation Is More Likely
Microsoft released emergency updates for Exchange Server to fix CVE-2026-96940, a high-severity flaw that can let attackers gain higher privileges. Microsoft has released out-of-band security updates for Exchange Server to fix a high-severity vulnerability tracked as CVE-2026-96940 (CVSS score of 8.8). The flaw is caused by weak authorization and can allow an authenticated attacker to…
Global Security News
How to secure RMM software: 8 controls MSPs should test
RMM platforms give MSPs privileged access across customer environments, making their security controls critical to limiting risk. Acronis outlines eight controls MSPs should test when evaluating RMM software, from patching and privileged access to recovery and tenant isolation. […]
Global Security News
Nikkei Discloses Two Employee Cloud Account Compromises
Nikkei says two employee cloud accounts were accessed, with one used to send 9,000 phishing emails
Global Security News
Anaconda combines agent swarms with autonomous security testing
Anaconda has announced new capabilities across the Anaconda Platform that pair agentic development with autonomous security testing. The expansion brings agent swarms and autonomous red-team agents together with trusted packages, models, and environments to help builders ship faster and address security weaknesses before production. Builders gain greater choice in the tools and models they use,…
Global Security News
Rogue OpenAI agents made unauthorized Wikipedia edits and millions of requests to Wikimedia
Rogue OpenAI agents made unauthorized edits on Wikimedia wikis and sent millions of automated requests to Wikimedia’s public APIs, traffic that may have contributed to a partial outage of the Wikidata Query Service in May, the Wikimedia Foundation said on Monday. “The Wikimedia Foundation conducted its own investigation to see whether Wikimedia websites had been…
Global Security News
AppViewX targets shadow AI risks with agent discovery and runtime enforcement
AppViewX has expanded capabilities for Agent Identity Security, a solution enabling enterprises to discover every agent, whether sanctioned or shadow; govern their posture and maintain audit-ready activity logs; and monitor and control in real time every action that the agent performs. AppViewX now also issues quantum-resilient agent identities, so trust in every agent holds as…
Global Security News
New Relic adds terminal-based investigation and recovery checks with Ground Truth CLI
New Relic has announced New Relic Ground Truth CLI augmented with New Relic Autopilot API, bringing headless observability straight to developers and AI agents in their natural workflows. The new command-line interface (CLI) allows teams to investigate production issues, assess recovery criteria, and embed live system evidence into their daily workflows without leaving the terminal.…
Global Security News
NinjaOne RMM Review 2026: Features, Pricing & Pros and Cons
NinjaOne RMM is a cloud-based remote monitoring and management platform designed for managed service providers (MSPs) and internal IT teams managing distributed endpoints. Formerly known as NinjaRMM, the platform combines endpoint monitoring, patch management, automation, scripting, alerting, and remote access in a centralized console. Our assessment finds NinjaOne particularly well suited to MSPs and IT…
Global Security News
NinjaOne RMM Review 2026: Features, Pricing & Pros and Cons
NinjaOne RMM is a cloud-based remote monitoring and management platform designed for managed service providers (MSPs) and internal IT teams managing distributed endpoints. Formerly known as NinjaRMM, the platform combines endpoint monitoring, patch management, automation, scripting, alerting, and remote access in a centralized console. Our assessment finds NinjaOne particularly well suited to MSPs and IT…
Global Security News
SailPoint adds AI agent discovery, temporary access and compliance automation
SailPoint has announced significant new capabilities across SailPoint Agentic Fabric (SAF) and SailPoint Human Fabric (SHF), the two purpose-built products of its Identity Security solution, built on SailPoint Atlas. These innovations give enterprises visibility into every hidden AI tool, continuous compliance across human and machine workflows, the replacement of permanent access keys with temporary permissions,…
Global Security News
September Channel M&A: GTIA, Softcat Lead Deal Activity
September delivered another wave of consolidation across the IT channel, with GTIA acquiring The ASCII Group, Softcat striking a $1.05 billion deal for General Datatech, and MSP, cybersecurity and AI providers expanding through acquisitions. The deals spanned managed services, security, cloud infrastructure and AI, underscoring continued pressure on channel companies to add scale, geographic reach…
Global Security News
Aembit Extends Access Controls to Personal AI Agents
Silver Springs, United States / Maryland, 6th October 2026, CyberNewswire
Global Security News
AI Cyber Pressure Is on the Rise
Plus, NYC lawmakers weigh AI guardrails
Global Security News
Red Hat’s Lightwell Project Remediates 400 Open-Source Vulnerabilities
The IBM subsidiary has also announced its Lightwell Clearinghouse is now available to all customers
Global Security News
Criminal IP Introduces AITEM as the Next Evolution of Attack Surface Management
Torrance, Californina, 6th October 2026, CyberNewswire
Global Security News
AppViewX Adds Shadow AI Visibility and a Runtime Kill Switch to Agent Identity Security
New York, New York, 6th October 2026, CyberNewswire
Global Security News
Mistral’s new Le Chonk model brings AI cybersecurity to your business – and you control it
Open models are vying to become the everyman defense solution for a growing swarm of agent breaches.
Global Security News
September 2026 IT Channel Leadership Moves and Hires
September brought a wave of leadership changes across the IT channel, with new CEOs, channel chiefs and senior executives taking roles across cybersecurity, AI, cloud and managed services. Among the month’s most notable moves, Apple named John Ternus CEO, KnowBe4 appointed Kurt Mills as channel chief, while Proofpoint, TensorWave and Lightning AI expanded their executive…
Global Security News
Intellias Agentic ServiceOps applies governed AI across IT operations
Intellias has launched Agentic ServiceOps a managed IT service that applies governed agentic AI across IT service management (ITSM) and IT operations management (ITOM), from the service desk to the infrastructure behind it. It helps organizations resolve more IT work end to end, breaking the link between rising complexity and rising costs. Intellias’ Agentic ServiceOps…
Global Security News
AXON Datum enforces data access policies before AI systems act
AXON Networks has announced AXON Datum, a data management and secure sovereign governance layer that helps service providers, enterprises, and institutions such as governments control how information is accessed, protected and moved in an AI world. Critical to the success of every telecom and government moving into agentic AI who want the data and AI…
Global Security News
Atlassian urges immediate patching of critical Data Center file access vulnerability (CVE-2026-21589)
Attackers who know where to look can read files from Atlassian Data Center installations without logging in, the company has warned. About CVE-2026-21589 CVE-2026-21589, a critical arbitrary file access vulnerability with a 9.3 CVSS score, affects all versions of Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo…
Global Security News
Critical Medical Devices Unable to Support PQC Transition
Forescout found that just 6% of Internet of Medical Things (IoMT) and 16% of medical OT are capable of supporting post quantum cryptography
Global Security News
Facebook Marketplace scam uses your name and number
Facebook users are reporting receiving a message with a fake Facebook Marketplace listing that has their name as the seller. It works like this. You receive a message (in this case iMessage) asking “Is this still available for purchase?” Attached to the message is a fabricated Facebook Marketplace listing. Tapping on the picture, you might…
Global Security News
LibreOffice and OpenOffice Flaws Let Malicious Spreadsheets Run Code Without Macro Warnings
A malicious spreadsheet can make LibreOffice and Apache OpenOffice run an attacker’s code as soon as the file is opened, security researchers have shown. There is no warning first, of the kind either program shows before it runs a macro. The attack works only when the program’s Java support is enabled. So far, it has…
Global Security News
New Linux malware turns vulnerable IoT devices into proxy nodes
A new Linux backdoor is turning vulnerable internet-facing devices into remotely controlled proxy nodes, while using the public Session Traversal Utilities for NAT (STUN) infrastructure to blend into normal VoIP and WebRTC traffic. Fortinet’s FortiGuard Labs said it has been tracking the malware, dubbed ClingSTUN, across multiple attacks exploiting known vulnerabilities in routers, IoT devices,…
Global Security News
ISC Stormcast For Tuesday, October 6th, 2026 https://isc.sans.edu/podcastdetail/10124, (Tue, Oct 6th)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Global Security News
ASOS Customers Receive Bizarre “Hacked” Message Amid Suspected Snowflake Compromise
ASOS customers have received a seemingly legitimate push notifications claiming the retailer’s IT systems have been breached through a Snowflake breach
Global Security News
How to build a ‘safe-to-fail’ culture for IT teams — and why you should
Companies continue to invest in AI, automation, developer tools, and other new technologies. But they may not get the results they expect if IT workers don’t have the time, resources, or freedom to learn how to use them. IT workers may be afraid to try new tools if they think a failed experiment could hurt…
Global Security News
Wikimedia: Rogue OpenAI agents behind unauthorized Wikipedia edits
The Wikimedia Foundation says rogue OpenAI agents made unauthorized Wikipedia edits and may have been partially responsible for a May outage. […]
Global Security News
Here’s how experts think CISA should tell agencies to protect OT
A coalition of cyber firms and critical infrastructure operators on Tuesday spelled out its views on the tasks that the Cybersecurity and Infrastructure Security Agency should assign federal agencies to protect operational technology systems after this summer’s attacks on water utilities. The Operational Technology Cybersecurity Coalition said a CISA binding operational directive (BOD) for OT…
Global Security News
IronChain Ransomware Threatens Businesses with Permanent Data Loss and Costly Downtime
Editor’s note: This research was conducted by Himanshu Anand, an independent cybersecurity researcher (follow Himanshu on X). During Cybersecurity Awareness Month, ransomware remains one of the clearest examples of how a cyber incident can become a business continuity issue. IronChain shows why. It puts business-critical data at risk of permanent loss and can bring operations…
Global Security News
Wikimedia Says OpenAI Agents Tried to Compromise Etherpad and Use Wiki Tools as Proxies
The Wikimedia Foundation, which hosts Wikipedia, has confirmed that it has discovered activity by rogue OpenAI agents on its platforms, including unsuccessful efforts to compromise Etherpad, a public note-taking tool, and edit Wikipedia pages. “The unauthorized bot activities included edits to our wikis, some unsuccessful attempts to exploit a public note-taking tool we host, and…
Global Security News
Domino’s customers targeted in credential stuffing attacks
Domino’s Pizza customers tell us they have received emails saying they account has been accessed by a third party. Domino’s says its internal systems weren’t breached, but that individual accounts were logged into using a password and email combination stolen from another online account owned by the customer. This is known as credential stuffing. Here’s…
Global Security News
Welcome to the Jungle: What We Found Inside 15,465 Public MCP Servers
In 2024, MCP (Model Context Protocol) set out to become the USB-C of AI: one standard for connecting models, agents, and IDEs to tools and data. The protocol delivered. Thousands of developers built servers, and enterprises plugged them into agent workflows. The ecosystem around it fell short. Earlier this year, our team at OX Security, …
Global Security News
Pacing the AI frontier won’t solve agentic cybersecurity’s most urgent problems
When Anthropic CEO Dario Amodei urged other leading AI labs to “pace the frontier” last week, his calls for caution were echoed by other prominent voices in tech. Both Sam Altman and Elon Musk agreed with Amodei’s assessment that pausing AI development was essential to prevent the extinction of the human race. Amodei listed several…
Global Security News
Dell System Update flaw allows attackers to gain root privileges (CVE-2026-86360)
Dell is urging customers to patch a vulnerability (CVE-2026-86360) in Dell System Update (DSU) that could allow an unauthenticated remote attacker to execute arbitrary code with root privileges. DSU is a tool used by enterprise IT administrators to apply driver, BIOS, and firmware updates to Dell PowerEdge servers. About CVE-2026-86360 CVE-2026-86360 is a path traversal…
Global Security News
Using Technology to Fight Distraction and Improve Focus
Learn how to use technology to fight distraction and improve focus with notification controls, site blockers, focus timers and task lists.
Global Security News
Microsoft’s New Frontier Specialization Opens AI Agent Opportunities for Partners
Less than a week after Microsoft opened its new Frontier Partner specialization, eligible partners can now pursue a designation built around one of the company’s biggest channel priorities: AI agents. The specialization became available Sept. 30 and targets partners that can design, build, deploy, govern, and secure agents across Microsoft’s cloud, productivity, development, and security…
Global Security News
Exclusive Networks Launches ServiceNow Business for EMEA Partners
Exclusive Networks launched a dedicated ServiceNow business on Oct. 1 to support partners across Europe and the Middle East, putting its July distribution agreement into operation. The cybersecurity distributor is targeting two groups with the rollout. Existing ServiceNow partners can use the business to expand into security, while Exclusive Networks partners can add ServiceNow-based workflows…
Global Security News
Ontinue extends ION MXDR with managed dark web monitoring
Ontinue has announced the launch of ION for Dark Web Monitoring (DWM), a new managed add-on service that extends ION MXDR to continuously identify exposed credentials, detect brand impersonation attempts, and uncover emerging external threats before attackers can exploit them. Compromised credentials are traded across criminal forums, lookalike domains are created to impersonate trusted brands,…
Global Security News
Google’s bug bounty pause highlights growing AI vulnerability triage challenge
AI is accelerating the discovery of software vulnerabilities, but it is also creating a new bottleneck for defenders: deciding which machine-generated findings warrant investigation. Google has decided to temporarily stop accepting certain bug bounty submissions after a surge of largely invalid automated reports highlights a growing challenge for security teams as AI-driven vulnerability discovery begins…
Global Security News
The AI app builder your team trusts has a root-level backdoor
The fastest-growing category of enterprise software right now is also the least scrutinized from a security standpoint. AI application platforms — tools that let teams build, connect and automate AI-powered workflows without writing much code — are landing in production environments faster than security teams can assess them. They connect to your APIs, your databases,…
Global Security News
Forbion Raises $2.6 Billion in Boost to European Biotech Industry
Dutch haul comes despite European drugmakers and investors warning the region is losing ground.
Global Security News
Transcend Rails brings policy enforcement and spending controls to AI agents
Transcend has launched Transcend Rails, a new category of agent management that goes beyond identity and access control to govern what an agent does. Every enterprise scaling AI agents hits the same wall: the board asks what agents did last quarter, and no one can reconstruct it. Or an agent deletes, exports, browses, or spends…
Global Security News
FBI Confirms Multiple Arrests in ShinyHunters Investigation
The FBI confirmed multiple arrests in its ShinyHunters investigation after suspected member Saif al-Din Khader was reportedly detained in Jordan.
Global Security News
Why Are Disrupters So Hard to Spot?
Global Security News
Hack The Box helps enterprises evaluate AI agents for cybersecurity roles
Hack The Box has introduced AI Range Enterprise Edition, making its platform for testing and measuring AI security agent effectiveness available to enterprise security teams. The offering enables organizations to evaluate whether their own AI agents can perform the cybersecurity roles assigned to them and make informed decisions about how to use agents across the…
Global Security News
More RMM Tools In the Wild, (Tue, Oct 6th)
It seems that a trend started… I continue my journey discovering more RMM (“Remote Management & Monitoring”) tools abused by threat actors! A few days ago, I wrote a diary[1] about ScreenConnect used in the wild. Today, I found another one. Same scenario, it started with a phishing email that delivers a fake PDF invoice to the victim:…
Global Security News
What Oura’s Stalled IPO Tells Us About One-Hit Wonders
Oura pitched itself as a tech platform, but investors saw through that.
Global Security News
GitHub’s ReviewBench puts AI code reviewers to the test
GitHub’s ReviewBench measures how well AI code review tools detect problems before software is released. Available in research preview through its website, the benchmark lets users compare review agents and evaluate their own tools. Code review involves checking proposed changes for mistakes. ReviewBench measures AI reviewers’ ability to identify issues and avoid false alarms. Users…
Global Security News
FBI Drops Accenture Contractor After Sensitive Data Breach
Accenture lost an FBI contract after a missed security patch exposed sensitive employee data, raising serious concerns over operational security. The FBI pulled an Accenture contractor off its account on Monday, and the reason is almost mundane compared to the damage it caused. One update didn’t get installed on time. “The Federal Bureau of Investigation…
Global Security News
Nikkei discloses breaches of employees’ Microsoft, Google email accounts
Over the weekend, Japanese publishing giant Nikkei disclosed that unknown attackers recently breached two employee email accounts and used one to send thousands of phishing emails. […]
Global Security News
Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports
Google has stopped accepting product vulnerability reports through its bug bounty program for its open-source software. The change, in effect since October 1, means researchers can no longer submit security flaws in the code of projects such as Go, Angular, and Protocol Buffers there for a reward. Reports about supply chain compromises are still accepted,…
Global Security News
Police Urge Passkey Use After Surge in Cybercrime Profits
Report Fraud says cybercrime revenue stemming from account takeover increased 417% annually
Global Security News
Data breach at Denmark’s population register exposes 8.8 million people
A data breach at Denmark’s Central Population Register (CPR) has exposed the personal information of 8.8 million people. These include people living in Denmark, deceased people and citizens who have moved abroad. The CPR is Denmark’s national register of residents, and the 10-digit CPR number it assigns to each person is used for everything from…
Global Security News
Meta Adds Small Business Workflows to Muse AI Agent
Small businesses often have limited staff to handle marketing, customer service, and financial analysis. Meta’s latest Muse update aims to help automate some of that work, while giving MSPs and solution providers another tool to evaluate for customers. Meta announced Muse for Small Business on Sept. 29, adding business-focused skills and connectors to its existing…
Global Security News
What exactly is ISOC? And what does it mean for you?
Gartner recently released a new category of security tools: the Integrated Security Operations Center (ISOC). This new category acknowledges the need to expand beyond traditional SIEM tools in the creation of a security portfolio, though, as they note in the introductory report, Security Information and Event Management (SIEM) isn’t going anywhere. Gartner’s evolution away from…
Global Security News
Motorola Signature 27 Heads to US: What the Premium Android Launch Means for the Channel
Motorola is preparing to bring another premium Android option to the US, potentially giving channel partners a new device to consider for customers looking beyond Samsung and Google. Motorola has confirmed the Signature 27 will launch in the US, while Android Authority reports that the phone is coming in November. The company has not announced…
Global Security News
Ransomware Affiliate Double-Crosses RaaS Operator to Steal Victim Funds
An affiliate of The Gentlemen RaaS group ran a parallel leak site during extortion of two dozen victims
Global Security News
AI accelerates n-day attacks, as flaw disclosures and exploits double
Attackers are increasingly weaponizing already-disclosed flaws rather than new zero-days, and AI tools may be accelerating how quickly they do it. According to a report from Google’s Threat Intelligence Group (GTIG), attackers have exploited more vulnerabilities in the wild thus far this year than they did all of last year. With the number of flaws…
Global Security News
Engineer sentenced for locking over 3,000 devices on employer network
A former core infrastructure engineer at an industrial company headquartered in New Jersey was sentenced to 32 months in prison for locking thousands of devices on his employer’s network in a ransomware-style attack. […]
Global Security News
Dell Urges Customers to Patch Critical DSU Flaw That Can Give Attackers Root Access
Dell warns that a critical DSU flaw lets attackers run code as root. Customers should patch affected PowerEdge systems as soon as possible. Dell urged customers to patch a critical flaw, tracked as CVE-2026-86360 (CVSS score of 9.6), in its System Update (DSU) tool. The vulnerability is a path traversal issue that can let attackers…
Global Security News
Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products
A critical flaw in 8 Atlassian Data Center products, which customers host themselves, allows an attacker with no login access to read specific files in each product’s web application root directory. The attacker must already know a file’s exact name and path and cannot list what the directory holds. Atlassian disclosed the flaw, CVE-2026-21589, on October…
Global Security News
FBI Removes Accenture Contractor After Patch Failure Led to ShinyHunters Breach
The U.S. Federal Bureau of Investigation (FBI) has removed an Accenture contractor for their alleged role in a ShinyHunters-breach that led to the theft of personal details of thousands of bureau employees. That’s according to a report from Reuters, citing two sources familiar with the matter. “To date, our review has determined that the incident…
Global Security News
ClingSTUN Linux Backdoor Abuses Public STUN Infrastructure
Fortinet details ClingSTUN, a Linux backdoor exploiting unpatched IoT devices and abusing public STUN servers to route traffic past NAT. FortiGuard Labs researchers spotted a Linux malware family they call ClingSTUN, and the name gives away its trick immediately. Instead of relying on a dedicated command server, the malicious code leans on STUN, the protocol…
