2026

‘SalesBleed’ Flaws in Salesforce Agentforce Enabled Zero-Click Data Exfiltration

‘SalesBleed’ Flaws in Salesforce Agentforce Enabled Zero-Click Data Exfiltration 2026-09-25 at 12:27 By Ionut Arghire Three vulnerabilities in Salesforce Agentforce allowed hackers to hijack trusted agents, steal data, and launch phishing attacks. The post ‘SalesBleed’ Flaws in Salesforce Agentforce Enabled Zero-Click Data Exfiltration appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

‘SalesBleed’ Flaws in Salesforce Agentforce Enabled Zero-Click Data Exfiltration Read More »

MacSync info-stealing malware hides malicious commands in an iCloud calendar

MacSync info-stealing malware hides malicious commands in an iCloud calendar 2026-09-25 at 12:22 By Sinisa Markovic A new MacSync variant targets Mac users with an infostealer and persistent backdoor designed to steal credentials, crypto wallet data, and files, according to Kaspersky. Researchers found the malware spreading through a crypto wallet app called Toria, which had […]

MacSync info-stealing malware hides malicious commands in an iCloud calendar Read More »

Inside the Telecom Attack Surface: SS7, BGP Hijacking, and the Technical Reality of Nation-State Intrusions 

Inside the Telecom Attack Surface: SS7, BGP Hijacking, and the Technical Reality of Nation-State Intrusions  2026-09-25 at 11:50 By Ashish Khaitan Nation-state operators rarely need a zero-day to get inside a carrier. Much of the telecom stack still runs protocols designed when every participant was a known, trusted operator. SS7 assumes that the node sending […]

Inside the Telecom Attack Surface: SS7, BGP Hijacking, and the Technical Reality of Nation-State Intrusions  Read More »

Docker introduces OCI-based Kits to package agents and their guardrails

Docker introduces OCI-based Kits to package agents and their guardrails 2026-09-25 at 10:57 By Industry News Docker has announced Docker Cloud Sandboxes, a new solution for secure, isolated AI agent execution that enables complex agentic workflows to continue running in the cloud long after a developer’s laptop shuts down. Launched at WeAreDevelopers North America, Docker […]

Docker introduces OCI-based Kits to package agents and their guardrails Read More »

Fake payroll desktop apps hand attackers a route to company paychecks

Fake payroll desktop apps hand attackers a route to company paychecks 2026-09-25 at 10:52 By Sinisa Markovic An attacker has been offering “desktop apps” for three large US payroll and HR platforms that have never released one, Allure Security have found. Anyone who runs the installer gets a copy of ScreenConnect, a legitimate remote access […]

Fake payroll desktop apps hand attackers a route to company paychecks Read More »

Abnormal AI brings governance, cloud security, and threat investigation into one suite

Abnormal AI brings governance, cloud security, and threat investigation into one suite 2026-09-25 at 10:46 By Industry News Abnormal AI has unveiled the newest additions to its AI Security suite, designed to help enterprises adopt AI securely while protecting against new threats created or accelerated by AI. The suite brings together Abnormal AI Governance, which […]

Abnormal AI brings governance, cloud security, and threat investigation into one suite Read More »

Bitcoin ETF inflows slow to $191M as six-day streak reaches $2.8B

Bitcoin ETF inflows slow to $191M as six-day streak reaches $2.8B 2026-09-25 at 10:41 By Cointelegraph by Helen Partz US spot Bitcoin ETFs drew $191 million Thursday as daily inflows slowed for a third day, lifting year-to-date net flows to $787 million. This article is an excerpt from Cointelegraph.com News View Original Source

Bitcoin ETF inflows slow to $191M as six-day streak reaches $2.8B Read More »

SentinelOne extends Wayfinder coverage across endpoints, identities, and cloud workloads

SentinelOne extends Wayfinder coverage across endpoints, identities, and cloud workloads 2026-09-25 at 10:36 By Industry News SentinelOne has announced the expansion of Wayfinder Threat Hunting to the major public cloud services: AWS, Azure, and Google Cloud. It’s the latest offering from SentinelOne’s Wayfinder team and combines the power of SentinelOne’s AI-powered Singularity Platform telemetry with […]

SentinelOne extends Wayfinder coverage across endpoints, identities, and cloud workloads Read More »

Roundcube Webmail Vulnerability in Attackers’ Crosshairs

Roundcube Webmail Vulnerability in Attackers’ Crosshairs 2026-09-25 at 09:57 By Ionut Arghire Tracked as CVE-2026-48842, the exploited bug is an SQL injection that can be exploited without authentication. The post Roundcube Webmail Vulnerability in Attackers’ Crosshairs appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Roundcube Webmail Vulnerability in Attackers’ Crosshairs Read More »

Stop watching what AI agents say and start watching what they do

Stop watching what AI agents say and start watching what they do 2026-09-25 at 08:30 By Mirko Zorz In this interview with Help Net Security, Ariel Assaraf, CEO of Coralogix, explains why a system prompt can describe a boundary for an AI agent but cannot enforce one. Assaraf covers how his team builds AI agent […]

Stop watching what AI agents say and start watching what they do Read More »

Half of threat hunters say bad data is their biggest problem

Half of threat hunters say bad data is their biggest problem 2026-09-25 at 08:00 By Anamarija Pogorelec Half of security professionals name data quality or quantity as their biggest barrier to effective threat hunting, according to the SANS 2026 Threat Hunting Survey. Teams with working playbooks describe the logs as their ceiling, and gaps in […]

Half of threat hunters say bad data is their biggest problem Read More »

Your incident count is missing a few incidents

Your incident count is missing a few incidents 2026-09-25 at 07:30 By Anamarija Pogorelec If you run security for a brand with hundreds or thousands of locations, the tools you’ve bought may have little to do with whether an attack stays at one store. A new VikingCloud survey asked 200 security and IT leaders at […]

Your incident count is missing a few incidents Read More »

New infosec products of the month: September 2026

New infosec products of the month: September 2026 2026-09-25 at 07:00 By Anamarija Pogorelec Here’s a look at the most interesting products from the past week, featuring releases from Akeyless, Akuity, Bitsight, BugBase, Cloud Range, Cohesity, Dataminr, Gurucul, Nozomi Networks, Orchid Security, Ping Identity, Scytale, Securin, Superna, and Tuskira. Ping Identity introduces enterprise security for […]

New infosec products of the month: September 2026 Read More »

Bitget CEO suspects North Korea behind $352M hack, citing IP clues

Bitget CEO suspects North Korea behind $352M hack, citing IP clues 2026-09-25 at 03:32 By Cointelegraph by Felix Ng Bitget CEO Gracy Chen said a preliminary investigation found IP addresses matching VPN choices associated with a DPRK hacking group. This article is an excerpt from Cointelegraph.com News View Original Source

Bitget CEO suspects North Korea behind $352M hack, citing IP clues Read More »

Silicon Valley ‘sex assault list’ with ‘over 100 ’ names circulated, warning female tech workers of predators to avoid

Silicon Valley ‘sex assault list’ with ‘over 100 ’ names circulated, warning female tech workers of predators to avoid 2026-09-25 at 03:17 By Vivi Lin “Some of them were very prominent names, you know? People who were famous investors. Businessmen who were in the scene” This article is an excerpt from Latest Technology News | […]

Silicon Valley ‘sex assault list’ with ‘over 100 ’ names circulated, warning female tech workers of predators to avoid Read More »

Asia dominates Crypto Adoption Index, Bitget’s $351M hack: Asia Express

Asia dominates Crypto Adoption Index, Bitget’s $351M hack: Asia Express 2026-09-25 at 02:27 By Cointelegraph by Andrew Fenton The APAC region accounts for half of the Global Crypto Adoption Index. Bitget suffers massive $351M loss and OpenAI forgets to mention its agents hacked the Australian Government. This article is an excerpt from Cointelegraph.com News View […]

Asia dominates Crypto Adoption Index, Bitget’s $351M hack: Asia Express Read More »

Fed proposes new capital, redemption rules for stablecoin issuers

Fed proposes new capital, redemption rules for stablecoin issuers 2026-09-25 at 01:10 By Cointelegraph by Nate Kostar The Fed’s proposal would set capital requirements, a two-day redemption window and new reserve disclosures as regulators implement the GENIUS Act. This article is an excerpt from Cointelegraph.com News View Original Source

Fed proposes new capital, redemption rules for stablecoin issuers Read More »

Autonomous AI Hacks Raise Thorny Questions of Legal Accountability

Autonomous AI Hacks Raise Thorny Questions of Legal Accountability 2026-09-24 at 23:35 By Associated Press The prospect of legal accountability is unclear. Lawsuits are a possibility, but some legal experts believe any criminal investigations would face an extremely high burden. The post Autonomous AI Hacks Raise Thorny Questions of Legal Accountability appeared first on SecurityWeek. […]

Autonomous AI Hacks Raise Thorny Questions of Legal Accountability Read More »

Scroll to Top