September 23, 2026

IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderIonQ Says Sin

IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderIonQ Says Sin 2026-09-23 at 22:32 By Kevin Townsend IonQ’s new single processor quantum error decoder minimizes the classical computing overhead in quantum error correction. The post IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderIonQ Says Sin appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderIonQ Says Sin Read More »

Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry

Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry 2026-09-23 at 21:06 By Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Terraform providers, marking the first time threat actors are using the centralized repository hosted by HashiCorp as a distribution vector for malicious payloads. According to Aikido, […]

Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry Read More »

Worries About an AI Internet Takeover Gain New Urgency Among Doomsday Scenarios

Worries About an AI Internet Takeover Gain New Urgency Among Doomsday Scenarios 2026-09-23 at 21:05 By Associated Press The idea that AI could break away and work toward its own agenda is looking increasingly plausible to researchers and experts. The post Worries About an AI Internet Takeover Gain New Urgency Among Doomsday Scenarios appeared first […]

Worries About an AI Internet Takeover Gain New Urgency Among Doomsday Scenarios Read More »

Enumerating Users and MFA via Microsoft’s Password Reset Portal

Enumerating Users and MFA via Microsoft’s Password Reset Portal 2026-09-23 at 20:13 By Matthew Coady Microsoft’s Self-Service Password Reset (SSPR) portal is a legitimate feature designed to let users recover their accounts without calling the helpdesk. As it turns out, it also tells you quite a lot about the accounts in a tenant — whether […]

Enumerating Users and MFA via Microsoft’s Password Reset Portal Read More »

A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You

A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You 2026-09-23 at 19:53 By The private email address GitLab gives you for filing issues by email is a credential. Anyone who gets it can email a patch that GitLab commits in your name, to any branch you can push […]

A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You Read More »

MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key

MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key 2026-09-23 at 19:06 By Two MikroTik RouterOS SSH vulnerabilities chained together let attackers take full administrative control of Internet-exposed routers without a password, SSH key, or completed authentication. The chain, which CERT Polska calls MikroTrick, combines an SSH state-machine flaw (CVE-2026-67279) […]

MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key Read More »

545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent

545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent 2026-09-23 at 18:34 By Autonomous security agents are getting good at finding bugs. Nobody has a good way to measure how good. Point one at a realistic target and what comes back is a report the agent wrote about itself: confident prose, […]

545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent Read More »

Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests

Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests 2026-09-23 at 18:34 By Anthropic and OpenAI on Tuesday announced new models, with both artificial intelligence (AI) companies noting that they are continuing to invest in improving alignment to combat risky behavior. Opus 5.5, per Anthropic, is a “major step up from Opus 5,” […]

Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests Read More »

This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move

This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move 2026-09-23 at 17:17 By A Windows malware called CLOSEDQUORUM is built to take orders from a vote of up to four AI models instead of an attacker’s server, Cisco Talos said on September 22. The models can choose to steal […]

This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move Read More »

Cofense measures employee readiness against real-world phishing threats

Cofense measures employee readiness against real-world phishing threats 2026-09-23 at 17:01 By Industry News Cofense has announced an expansion of its AI-driven Phishing Defense Platform through Cofense Command Center, its orchestration layer for measurement and reporting. The new Competency Dashboard measures how employees recognize, report and respond to phishing threats, giving security teams evidence of […]

Cofense measures employee readiness against real-world phishing threats Read More »

80,000 relay servers help users in China slip past U.S. AI region bans

80,000 relay servers help users in China slip past U.S. AI region bans 2026-09-23 at 16:57 By Sinisa Markovic More than 80,000 relay servers are helping users in China bypass geographic restrictions on leading U.S. AI models, according to Team Cymru. “What we have uncovered is an entire ecosystem designed explicitly to break the frontier […]

80,000 relay servers help users in China slip past U.S. AI region bans Read More »

Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI

Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI 2026-09-23 at 16:52 By Unknown threat actors have managed to compromise two legitimate MemTensor packages across the npm and Python Package Index (PyPI) repositories to push a platform-specific Go-based implant dubbed sckit designed for Windows, Linux, and macOS. According to reports from Aikido, SafeDep, […]

Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI Read More »

Portnox detects and removes unauthorized AI applications from managed devices

Portnox detects and removes unauthorized AI applications from managed devices 2026-09-23 at 16:49 By Industry News Portnox has announced new capabilities to detect unauthorized AI applications and agents on managed devices and automatically enforce security policy, restricting, quarantining, or removing unapproved or risky applications the moment they’re detected. The capability addresses shadow AI: generative AI […]

Portnox detects and removes unauthorized AI applications from managed devices Read More »

Network Solutions Dark Web Monitoring alerts small businesses to domain-linked data exposure

Network Solutions Dark Web Monitoring alerts small businesses to domain-linked data exposure 2026-09-23 at 16:40 By Industry News Network Solutions has launched Dark Web Monitoring, a new security capability that alerts small businesses when information associated with their domain appears in known breach data and provides steps they can take to reduce risk. Stolen credentials […]

Network Solutions Dark Web Monitoring alerts small businesses to domain-linked data exposure Read More »

DarkMe RAT trades zero-days for plain phishing emails

DarkMe RAT trades zero-days for plain phishing emails 2026-09-23 at 16:24 By Zeljka Zorz DarkMe, a remote access trojan and info-stealer that has previously been associated with a threat group that targeted financial market traders and cryptocurrency users, has been spotted again. This time around, its distribution has been simplified: instead of leveraging zero-day exploits, […]

DarkMe RAT trades zero-days for plain phishing emails Read More »

Scroll to Top