2026

Researchers uncover malware that uses AI to choose its next move

Researchers uncover malware that uses AI to choose its next move 2026-09-22 at 16:56 By Sinisa Markovic To help security practitioners catch malware that leans on AI, researchers from Cisco Talos shared an open-source framework that they hope will be used to classify and analyze the threat. The tool, called CAIRN, works entirely from metadata […]

Researchers uncover malware that uses AI to choose its next move Read More »

Brief hijack makes Elsevier domains redirect to LAPSUS$ “Chapter II” page

Brief hijack makes Elsevier domains redirect to LAPSUS$ “Chapter II” page 2026-09-22 at 16:46 By Zeljka Zorz Three domains / web portals belonging to Dutch academic publishing company Elsevier have been redirecting users to a page branded “LAPSUS$ GROUP, Chapter II,” carrying a signed statement that taunted the FBI and counted down to a future […]

Brief hijack makes Elsevier domains redirect to LAPSUS$ “Chapter II” page Read More »

‘I’m scared for you’: Amateur fighter takes on humanoid robot in historic caged showdown

‘I’m scared for you’: Amateur fighter takes on humanoid robot in historic caged showdown 2026-09-22 at 16:35 By Ben Cost Viral footage showed the frightening moment that a hulking humanoid seemingly cleaned an influencer’s clock in the alleged inaugural man-vs-machine cage match. This article is an excerpt from Latest Technology News | New York Post […]

‘I’m scared for you’: Amateur fighter takes on humanoid robot in historic caged showdown Read More »

Big Questions: Does Satoshi actually own 1.1 million Bitcoin?

Big Questions: Does Satoshi actually own 1.1 million Bitcoin? 2026-09-22 at 16:30 By Cointelegraph by Christina Comben Researchers can trace an estimated 1.1 million BTC to a distinctive early mining operation. The harder question is whether that miner was actually Satoshi. This article is an excerpt from Cointelegraph.com News View Original Source

Big Questions: Does Satoshi actually own 1.1 million Bitcoin? Read More »

Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity

Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity 2026-09-22 at 16:26 By Eduard Kovacs Abdelhamid Naceri, a former Microsoft Germany employee, is the exploit leaker Nightmare Eclipse, aka Chaotic Eclipse.  The post Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity Read More »

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal 2026-09-22 at 15:53 By A malicious npm package named “indexed-btree” has been observed hiding its malicious behavior within application code rather than using lifecycle scripts, indicating that threat actors are likely shifting tactics in response to recent security controls. “Indexed-btree is a malicious […]

Malicious npm Package indexed-btree Hid Its Loader in Runtime Code Before Removal Read More »

Only 13% of OT Network Segments Are Fully Isolated: Analysis

Only 13% of OT Network Segments Are Fully Isolated: Analysis 2026-09-22 at 15:24 By Eduard Kovacs Forescout’s new network segmentation research shows that OT and medical devices often share network segments with other enterprise assets. The post Only 13% of OT Network Segments Are Fully Isolated: Analysis appeared first on SecurityWeek. This article is an […]

Only 13% of OT Network Segments Are Fully Isolated: Analysis Read More »

The latest deepfake numbers give CISOs plenty to worry about

The latest deepfake numbers give CISOs plenty to worry about 2026-09-22 at 15:05 By Sinisa Markovic AI is letting cybercriminals reach deeper into organizations than a phishing email ever could. 41% of CISOs reported at least one social engineering incident involving a deepfake during an employee audio call in the past 12 months, according to […]

The latest deepfake numbers give CISOs plenty to worry about Read More »

The next intellectual property thief may sound like your CEO

The next intellectual property thief may sound like your CEO 2026-09-22 at 15:00 By Anamarija Pogorelec Impersonation, phishing and domain-name abuse are the most concerning types of online intellectual property infringement, according to CSC’s The State of Online IP Risk 2026 report. Internet and branded content, online marketplaces and paid search were the channels most […]

The next intellectual property thief may sound like your CEO Read More »

Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers

Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers 2026-09-22 at 14:55 By Ionut Arghire A Chinese threat actor has exploited the bug to exfiltrate sensitive information from nearly 1,000 ZyXEL switches. The post Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers Read More »

DORA Year Two: Can Your SOC Actually See the Attack?

DORA Year Two: Can Your SOC Actually See the Attack? 2026-09-22 at 14:45 By When the Digital Operational Resilience Act (DORA) became enforceable across the European Union in January 2025, it triggered an administrative sprint. Financial entities spent the first year establishing risk governance, assessing third-party service providers, updating contract clauses, and documenting incident escalation […]

DORA Year Two: Can Your SOC Actually See the Attack? Read More »

New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory

New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory 2026-09-22 at 14:38 By A new flaw in the Linux kernel’s KVM virtualization code for ARM64 processors can leave a freed piece of host memory exposed to a guest virtual machine on hosts with nested virtualization enabled. The bug, tracked as CVE-2026-89775, allows […]

New Linux Kernel Flaw Gives ARM64 KVM Guests Read-Write Access to Host Memory Read More »

Malicious B-tree NPM Package Accumulates Millions of Downloads

Malicious B-tree NPM Package Accumulates Millions of Downloads 2026-09-22 at 14:33 By Ionut Arghire Posing as the legitimate sorted-btree package, indexed-btree hides a malware trigger in its prototype method. The post Malicious B-tree NPM Package Accumulates Millions of Downloads appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Malicious B-tree NPM Package Accumulates Millions of Downloads Read More »

ECB to put its own money into tokenized securities via new Pontes DLT

ECB to put its own money into tokenized securities via new Pontes DLT 2026-09-22 at 14:29 By Cointelegraph by Yohan Yun The ECB aims to gain firsthand DLT market experience by buying tokenized public-sector securities and settling the trades through Pontes. This article is an excerpt from Cointelegraph.com News View Original Source

ECB to put its own money into tokenized securities via new Pontes DLT Read More »

ECB, EU cenbanks seek changes in MiCA’s minimum bank deposit for stablecoins

ECB, EU cenbanks seek changes in MiCA’s minimum bank deposit for stablecoins 2026-09-22 at 14:22 By Cointelegraph by Helen Partz The ECB and EU central banks want to replace MiCA’s stablecoin bank-deposit requirements with liquidity thresholds, warning that sudden withdrawals could strain lenders. This article is an excerpt from Cointelegraph.com News View Original Source

ECB, EU cenbanks seek changes in MiCA’s minimum bank deposit for stablecoins Read More »

SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE

SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE 2026-09-22 at 14:17 By A SharePoint Server vulnerability that Microsoft initially classified as a spoofing flaw with a CVSS score of 6.5 actually enables authenticated remote code execution, according to full technical details published today by Viettel Cyber Security researcher Dinh Ho Anh Khoa. The flaw, […]

SharePoint Flaw Initially Listed as Spoofing by Microsoft Enables Authenticated RCE Read More »

Attacker compromised nearly 1000 Zyxel switches since August (CVE-2026-7273)

Attacker compromised nearly 1000 Zyxel switches since August (CVE-2026-7273) 2026-09-22 at 13:42 By Zeljka Zorz A Chinese-speaking threat actor has exploited a vulnerability (CVE-2026-7273) in unpatched ZyXEL GS1900 Smart Managed Switches and has exfiltrated sensitive data from 996 devices across 48 countries, GreyNoise reported on Monday. The affected switches are predominantly located in Italy, the […]

Attacker compromised nearly 1000 Zyxel switches since August (CVE-2026-7273) Read More »

Somewhere in your traffic logs, a bot is doing more than looking

Somewhere in your traffic logs, a bot is doing more than looking 2026-09-22 at 13:30 By Mirko Zorz Akamai has watched verified AI crawlers, ChatGPT among them, move from reading web pages to sending high-frequency POST requests. In a 30-day analysis of its global customers, ecommerce accounted for 44.8% of those AI bot POST transactions, […]

Somewhere in your traffic logs, a bot is doing more than looking Read More »

WordPress Patches ‘Click2Shell’ Vulnerability

WordPress Patches ‘Click2Shell’ Vulnerability 2026-09-22 at 13:22 By Ionut Arghire The bug lets attackers automatically install and preview themes and could lead to remote code execution. The post WordPress Patches ‘Click2Shell’ Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

WordPress Patches ‘Click2Shell’ Vulnerability Read More »

Scroll to Top