Cybersecurity and other IT news aggregator
LATEST FEEDS
-
Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories
Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories 2026-10-10 at 00:22 By Cybersecurity researchers have disclosed details of an ongoing credential-theft campaign that has compromised two high-profile open-source maintainer accounts to push a malicious workflow into over 340 repositories. “Using the account of Takashi Kitao, author of the 18,400-star game engine pyxel,…
-
OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks
OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks 2026-10-10 at 00:07 By Associated Press The ChatGPT maker said the researchers “violated clear policies on handling sensitive information.” The post OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
US plans to seize $1B in crypto linked to Iran this week: Scott Bessent
US plans to seize $1B in crypto linked to Iran this week: Scott Bessent 2026-10-09 at 23:39 By Cointelegraph by Turner Wright The Treasury Department has announced several digital asset seizures related to sanctions on Iran as part of US sanctions. This article is an excerpt from Cointelegraph.com News View Original Source
-
Here are 10 terms you need to know to understand artificial intelligence
Here are 10 terms you need to know to understand artificial intelligence 2026-10-09 at 23:32 By Taylor Herzlich, Emily Lang From AGI and recursive self-improvement to p(doom), we’ve got you covered. This article is an excerpt from Latest Technology News | New York Post View Original Source
-
New York permanently bars Celsius founder Mashinsky in $35M fraud settlement
New York permanently bars Celsius founder Mashinsky in $35M fraud settlement 2026-10-09 at 23:14 By Cointelegraph by Nate Kostar The agreement resolves a 2023 civil fraud lawsuit against the Celsius founder and permanently bars him from the cryptocurrency, securities and commodities industries. This article is an excerpt from Cointelegraph.com News View Original Source
-
TP-Link Sued by Four More U.S. States Over Router Security and China Ties
TP-Link Sued by Four More U.S. States Over Router Security and China Ties 2026-10-09 at 22:33 By Four more U.S. states sued router maker TP-Link Systems on October 6, bringing the total to five, with Texas filing a suit in February. Florida, Iowa, Montana and Nebraska allege the California company misled buyers about how secure…
-
Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access
Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access 2026-10-09 at 22:33 By Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection. AnyDesk patched the flaw in version 8.0.3 in June, but its changelog described the…
-
Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects
Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects 2026-10-09 at 22:33 By Anthropic on Thursday unveiled OSS Scanner as an opt-in vulnerability scanner to help secure the open-source ecosystem using artificial intelligence (AI). “It’s an opt-in service informed by our experience using Claude to find vulnerabilities during Project Glasswing,” Anthropic said. “Projects that join…
-
THORChain exec accuses Tether of temporarily freezing USDT vaults
THORChain exec accuses Tether of temporarily freezing USDT vaults 2026-10-09 at 22:04 By Cointelegraph by Turner Wright Chad Barraford, technical co-founder of the network, said that the funds were frozen and then unfrozen without explanation. This article is an excerpt from Cointelegraph.com News View Original Source
-
FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack
FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack 2026-10-09 at 20:45 By The FBI has arrested another suspected co-conspirator of ShinyHunters, FBI Director Kash Patel said on October 9 in a post on X. ShinyHunters is the extortion group that said in September it had breached the FBI’s jobs portal and stolen sensitive data…
-
P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands
P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands 2026-10-09 at 19:29 By Cybersecurity researchers have disclosed details of a previously unseen variant of the DarkSword iOS exploit kit called P7 DarkSword. “Compared with the variants we usually observe, P7 reduces its on-device footprint, adds on-device keychain and crypto-wallet theft, and…
-
8,500+ European Wind, Solar Systems Exposed
8,500+ European Wind, Solar Systems Exposed 2026-10-09 at 19:00 By The Dutch National Cyber Security Centre (NCSC-NL) and cybersecurity organization Modat discovered more than 8,500 exposed systems linked to European wind farms and solar parks. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Stock bull market nears 4-year anniversary driven by AI spending — but there are looming risks
Stock bull market nears 4-year anniversary driven by AI spending — but there are looming risks 2026-10-09 at 18:13 By Reuters As bull markets go, the current one could be classified as middle-aged. This article is an excerpt from Latest Technology News | New York Post View Original Source
-
AI-Powered Pentest Tool Used to Breach South Korean Banks
AI-Powered Pentest Tool Used to Breach South Korean Banks 2026-10-09 at 18:00 By Infrastructure for a targeted campaign against South Korean financial institutions has been discovered. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
High-severity NVIDIA vulnerability lets unauthenticated attackers crash GPU monitoring
High-severity NVIDIA vulnerability lets unauthenticated attackers crash GPU monitoring 2026-10-09 at 16:27 By Sinisa Markovic Hundreds of internet-exposed graphics processing unit (GPU) servers were open to a high-severity flaw in NVIDIA’s DCGM Exporter (CVE-2026-47483) that lets unauthenticated attackers crash the monitoring service and may disrupt AI workloads, according to Lava. Lava reported the flaw to…
-
Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies
Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies 2026-10-09 at 16:27 By The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked threat actor known as Flax Typhoon. The vulnerabilities in question…
-
The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition
The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition 2026-10-09 at 15:29 By As enterprises race to deploy autonomous AI agents to accelerate business, a new report reveals they are tethered to security architectures built for a different era. The “Horizons of Identity Security” report from SailPoint highlights a critical “velocity paradox,” in…
-
In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years
In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years 2026-10-09 at 15:03 By SecurityWeek News Noteworthy stories that might have slipped under the radar: Tensorlake npm SDK compromised, Empire Market co-founder gets 40 years, exposed NVIDIA GPU monitors leak telemetry. The post In Other News: AI Used in…
-
Google Domains Impacted by Recent ccTLD Hijacks
Google Domains Impacted by Recent ccTLD Hijacks 2026-10-09 at 14:43 By Ionut Arghire Hackers hijacked the .gh, .sl, and .as ccTLDs and obtained HTTPS certificates for several Google domains. The post Google Domains Impacted by Recent ccTLD Hijacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
ESMA seeks evidence tokenized collateral can be cashed out in crisis
ESMA seeks evidence tokenized collateral can be cashed out in crisis 2026-10-09 at 13:49 By Cointelegraph by Ezra Reguerra ESMA is seeking industry feedback on the legal, liquidity and operational risks of tokenized collateral before deciding whether additional EU regulatory measures are necessary. This article is an excerpt from Cointelegraph.com News View Original Source
-
UK sanctions three crypto exchanges tied to Russian illicit funds
UK sanctions three crypto exchanges tied to Russian illicit funds 2026-10-09 at 13:34 By Cointelegraph by Zoltan Vardai The UK sanctioned crypto exchanges and payment processors, some of which were tied to thousands of Russian entities and the sanctioned HTX exchange. This article is an excerpt from Cointelegraph.com News View Original Source
-
Unpatched AhsayCBS Vulnerabilities Exploited in the Wild
Unpatched AhsayCBS Vulnerabilities Exploited in the Wild 2026-10-09 at 13:23 By Ionut Arghire The flaws, CVE-2026-105133 and CVE-2026-105134, allow attackers to bypass authentication and inject OS commands. The post Unpatched AhsayCBS Vulnerabilities Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
French lawmakers back stablecoin swap tax in 2027 budget bill
French lawmakers back stablecoin swap tax in 2027 budget bill 2026-10-09 at 13:16 By Cointelegraph by Zoltan Vardai France’s Finance Committee backed taxes on stablecoin swaps, as well as unrealized crypto gains when households with more than 800,000 euros move abroad. This article is an excerpt from Cointelegraph.com News View Original Source
-
Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries
Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries 2026-10-09 at 12:55 By Kevin Townsend Midnight Mimosa is the name given to a malware campaign primarily running preinstalled on low-cost Android devices. The post Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries appeared first on SecurityWeek. This article is an excerpt from…
-
Anthropic offers free AI security scans to open-source maintainers
Anthropic offers free AI security scans to open-source maintainers 2026-10-09 at 12:55 By Anamarija Pogorelec Anthropic’s OSS Scanner is a new, free service that uses the company’s strongest AI models to find security vulnerabilities in open-source software. Maintainers who opt in receive periodic scans and reports explaining suspected flaws, how to reproduce them and, when…
-
FBI disrupts Flax Typhoon hacking tools used in global cyberattacks
FBI disrupts Flax Typhoon hacking tools used in global cyberattacks 2026-10-09 at 12:44 By Sinisa Markovic The FBI seized seven domains used to operate Microscan and FishHub, two hacking tools linked to Chinese state-sponsored hackers known as Flax Typhoon that were used to target critical infrastructure and other organizations in the US and abroad. Seizure…
-
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys 2026-10-09 at 12:03 By A bug in GoBalance, a tool many dark-web sites use to stay reachable during attacks, lets anyone work out the secret key that controls a site’s .onion address using only public information, and then take that address over. Searchlight Cyber,…
-
Key Considerations for Outsourcing Security
Key Considerations for Outsourcing Security 2026-10-09 at 12:00 By It’s no doubt that security should be an essential part of daily operations. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source
-
Product showcase: SimpleLogin keeps your email address private with aliases
Product showcase: SimpleLogin keeps your email address private with aliases 2026-10-09 at 11:51 By Anamarija Pogorelec SimpleLogin is an email alias service from Proton that forwards messages to an existing mailbox. Users create addresses for registrations, purchases, and correspondence, giving them control over where their primary email address is shared. The service is open source…
-
US Disrupts Chinese State-Sponsored Hacking Tools
US Disrupts Chinese State-Sponsored Hacking Tools 2026-10-09 at 11:36 By Ionut Arghire Flax Typhoon and other APTs used MicroScan and FishHub to scan and hack US and foreign critical infrastructure. The post US Disrupts Chinese State-Sponsored Hacking Tools appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own
Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own 2026-10-09 at 11:26 By Three research teams broke into Google’s Pixel 10 on October 8 at Pwn2Own Ireland, a hacking contest in Cork whose rules require every target to be fully patched. The contest pays researchers to show working exploits and passes…
-
Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security
Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security 2026-10-09 at 11:19 By Eduard Kovacs OSS Scanner sends unreviewed, model-generated vulnerability reports to open source maintainers that opt in. The post Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security appeared first on SecurityWeek. This…
-
Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments
Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments 2026-10-09 at 11:11 By Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions. “CVE-2026-107406 is a memory overflow vulnerability that may lead to…
-
Citrix Urges Immediate Patching of Critical NetScaler Vulnerability
Citrix Urges Immediate Patching of Critical NetScaler Vulnerability 2026-10-09 at 09:53 By Ionut Arghire The security defect, tracked as CVE-2026-107406, could lead to remote code execution or denial-of-service. The post Citrix Urges Immediate Patching of Critical NetScaler Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source
-
FBI Seizes 7 Domains, Disrupts Flax Typhoon Tools Used in Critical Infrastructure Intrusions
FBI Seizes 7 Domains, Disrupts Flax Typhoon Tools Used in Critical Infrastructure Intrusions 2026-10-09 at 09:39 By The U.S. Federal Bureau of Investigation (FBI) and Department of Justice (DoJ) have announced the disruption of malicious tools used by a China-linked advanced persistent threat group known as Flax Typhoon. To that end, the agencies seized several…
-
October 2026 Patch Tuesday forecast: Time for an Office cleanup
October 2026 Patch Tuesday forecast: Time for an Office cleanup 2026-10-09 at 09:32 By Help Net Security September 2026 Patch Tuesday set an all-time record with 973 CVEs addressed across the Microsoft portfolio. We’re only four months into the Patch Apocalypse and everyone seems to be numb with respect to the insane number of CVEs…
-
What the BPFDoor backdoor tells us about attacks on the network edge
What the BPFDoor backdoor tells us about attacks on the network edge 2026-10-09 at 09:00 By Mirko Zorz A backdoor that makes no noise is hard to catch, and that’s the point of BPFDoor. The Linux malware waits for a special “magic packet” before it acts. In this interview with Help Net Security, Christiaan Beek,…
-
Thousands of wind and solar park systems sit exposed on the internet across Europe
Thousands of wind and solar park systems sit exposed on the internet across Europe 2026-10-09 at 08:30 By Mirko Zorz Modat and NCSC-NL, the Dutch government’s cybersecurity center, found 8,547 internet-facing systems at wind farms and solar parks in 35 countries in and around the EU that should not be reachable from the internet. The…
-
PCI SSC calls for human approval of AI agent actions involving cardholder data
PCI SSC calls for human approval of AI agent actions involving cardholder data 2026-10-09 at 08:00 By Anamarija Pogorelec The PCI Security Standards Council (PCI SSC) has published Security Considerations for AI Systems, guidance covering the protection of data supplied to AI systems in payment environments and defenses against AI-assisted attacks. Developed with industry stakeholders,…
-
Companies want autonomous IT operations but hesitate to let AI act alone
Companies want autonomous IT operations but hesitate to let AI act alone 2026-10-09 at 07:30 By Anamarija Pogorelec Ninety percent of companies want to move toward autonomous IT operations over the next two years, with agentic AI, software that plans and carries out multi-step tasks on its own, doing the work. Yet 77 percent say…
-
Formula Predicts When AI Chatbots Are at Risk of Turning Bad
Formula Predicts When AI Chatbots Are at Risk of Turning Bad 2026-10-09 at 07:12 By Kevin Townsend Researchers from George Washington University have published a paper examining whether the time and cause of AI going rogue can be predicted. The post Formula Predicts When AI Chatbots Are at Risk of Turning Bad appeared first on…
-
Thailand finalizes rules paving way for Bitcoin, Ether ETFs
Thailand finalizes rules paving way for Bitcoin, Ether ETFs 2026-10-09 at 06:08 By Cointelegraph by Felix Ng The rules are set to take effect next week, allowing crypto ETFs to trade exclusively on the Stock Exchange of Thailand. This article is an excerpt from Cointelegraph.com News View Original Source
-
Meta bans social media TikTok ads across the US
Meta bans social media TikTok ads across the US 2026-10-09 at 05:37 By Reuters Meta has banned advertisements from TikTok’s parent company ByteDance on Facebook and Instagram in the US, Canada, Egypt, Indonesia, Japan, Thailand, and Vietnam. This article is an excerpt from Latest Technology News | New York Post View Original Source
-
Cantor Fitzgerald faces Senate Democrat’s probe over Tether ties
Cantor Fitzgerald faces Senate Democrat’s probe over Tether ties 2026-10-09 at 03:46 By Cointelegraph by Felix Ng The letter follows a report by the Democratic investigators last month alleging Tether’s USDT has become a key tool for Iran’s shadow banking network. This article is an excerpt from Cointelegraph.com News View Original Source
-
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails 2026-10-09 at 02:36 By Hackers tied to a Chinese cybersecurity company stole email from government organizations, law enforcement agencies, healthcare systems, and religious institutions in Southeast Asia, the FBI and agencies in 6 other countries said on October 8. The company, Integrity…
-
ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories
ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories 2026-10-09 at 02:36 By The crooks have trust problems of their own. One ransomware affiliate decided to keep the profits for himself. Elsewhere, an attacker left a server exposed, complete with tools and traces of an intrusion. Apparently, keeping things secure is…
-
China’s P2P stablecoin wallets surge 43x, Korea’s $450B crypto economy: Asia Express
China’s P2P stablecoin wallets surge 43x, Korea’s $450B crypto economy: Asia Express 2026-10-09 at 01:35 By Cointelegraph by Andrew Fenton Despite ongoing bans, China has seen a big surge in peer-to-peer stablecoin use. New figures show South Korea’s $450B crypto economy is the largest in East Asia. This article is an excerpt from Cointelegraph.com News…
-
Anthropic to users: be nice to Claude AI — new policy bars ‘abusive or cruel behavior’ to tech
Anthropic to users: be nice to Claude AI — new policy bars ‘abusive or cruel behavior’ to tech 2026-10-09 at 01:29 By Ariel Zilber Anthropic on Thursday updated its usage policy to bar people from “abusive or cruel behavior” behavior toward its Claude AI – even though it’s not, ya know, actually alive. This article…
-
Securitize stock jumps over 10% after launching tokenized US equities on Solana
Securitize stock jumps over 10% after launching tokenized US equities on Solana 2026-10-08 at 22:31 By Cointelegraph by Nate Kostar Securitize’s new offering gives eligible investors access to tokenized shares of 12 US companies, with dividend and voting rights and plans for round-the-clock trading. This article is an excerpt from Cointelegraph.com News View Original Source
-
NFL backs New Jersey authorities in SCOTUS petition over Kalshi
NFL backs New Jersey authorities in SCOTUS petition over Kalshi 2026-10-08 at 22:17 By Cointelegraph by Turner Wright According to the league, Kalshi and other prediction markets “threaten game integrity” because many event contracts are “highly susceptible to manipulation.” This article is an excerpt from Cointelegraph.com News View Original Source
Browse older archives
- October 2026
- September 2026
- August 2026
- July 2026
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023