2026

Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures

Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures 2026-09-30 at 18:00 By Threat actors are abusing ChatGPT Custom GPTs to disguise them as legitimate product offerings and direct unsuspecting victims to malicious sites that employ ClickFix lures to deliver malware. Huntress, which observed the activity in late September 2026, said it marks […]

Attackers Abuse ChatGPT Custom GPTs to Deliver RAT via ClickFix Lures Read More »

Google: AI Is Changing the Pace and Profile of Vulnerability Discovery

Google: AI Is Changing the Pace and Profile of Vulnerability Discovery 2026-09-30 at 17:05 By Eduard Kovacs Google’s analysis found that AI-discovered vulnerabilities are more likely to enable remote code execution. The post Google: AI Is Changing the Pace and Profile of Vulnerability Discovery appeared first on SecurityWeek. This article is an excerpt from SecurityWeek […]

Google: AI Is Changing the Pace and Profile of Vulnerability Discovery Read More »

Could THORChain face prosecution over stolen Bitget funds?

Could THORChain face prosecution over stolen Bitget funds? 2026-09-30 at 16:30 By Cointelegraph by Andrew Fenton THORChain will not — or can not — block addresses linked to the $387.5 million Bitget hack. Can the devs be prosecuted for money laundering? It’s complicated, says crypto lawyer Yuriy Brisov. This article is an excerpt from Cointelegraph.com […]

Could THORChain face prosecution over stolen Bitget funds? Read More »

WatchGuard Patches Critical Fireware OS Code Injection Vulnerability

WatchGuard Patches Critical Fireware OS Code Injection Vulnerability 2026-09-30 at 16:16 By Ionut Arghire WatchGuard has rolled out patches for 15 code execution, DoS, authorization, and path traversal bugs in Fireware OS. The post WatchGuard Patches Critical Fireware OS Code Injection Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

WatchGuard Patches Critical Fireware OS Code Injection Vulnerability Read More »

Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks

Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks 2026-09-30 at 15:48 By Eduard Kovacs Several security firms have confirmed seeing exploitation of the NetScaler vulnerabilities CVE-2026-88771 and CVE-2026-88772. The post Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Government, Finance Orgs Targeted in Weeks-Long NetScaler Zero-Day Attacks Read More »

Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772)

Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772) 2026-09-30 at 15:33 By Zeljka Zorz “Advanced and suspected state-sponsored threat actors” are likely to be behind the initial targeted intrusions that leveraged CVE-2026-88772, one of the two recently disclosed NetScaler vulnerabilities that have been exploited as zero-days, says Mandiant CTO Charles Carmakal. Mandiant and […]

Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772) Read More »

Chrome, Firefox Updates Patch Over 100 Vulnerabilities

Chrome, Firefox Updates Patch Over 100 Vulnerabilities 2026-09-30 at 15:16 By Ionut Arghire Some of the flaws could allow remote attackers to execute arbitrary code or escape the browser sandbox. The post Chrome, Firefox Updates Patch Over 100 Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Chrome, Firefox Updates Patch Over 100 Vulnerabilities Read More »

AI coding agents leaked 13,000 internal company screenshots to public GitHub repos

AI coding agents leaked 13,000 internal company screenshots to public GitHub repos 2026-09-30 at 14:52 By Sinisa Markovic When developers ask AI coding agents to prove that a user interface fix works, some agents have been posting the evidence where anyone can find it, according to Glow Labs. Diagram showing how AI agents leak screenshots […]

AI coding agents leaked 13,000 internal company screenshots to public GitHub repos Read More »

AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub

AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub 2026-09-30 at 14:30 By AI coding agents asked to share screenshots of code changes for review have put internal company images in public GitHub repositories, security company Glow said. Its researchers found more than 13,000 internal images from developers at over 300 organizations, […]

AI Coding Agents Exposed 13,000 Internal Images, Including Billing Records, on GitHub Read More »

Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking Lawsuit

Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking Lawsuit 2026-09-30 at 14:19 By Eduard Kovacs Attacks by autonomous AI agents are moving out of the lab and into the courtroom, raising unsettled questions about who is liable for what agents do. The post Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking […]

Anthropic Flags AI Agent Liability Risks as OpenAI Faces Hacking Lawsuit Read More »

A single market worth protecting: Getting the MiCA review right

A single market worth protecting: Getting the MiCA review right 2026-09-30 at 14:00 By Cointelegraph by Simon Schneider As the European Commission’s MiCA review consultation closes, Europe must decide whether its crypto rulebook is protecting the market without making it too costly to build in. This article is an excerpt from Cointelegraph.com News View Original […]

A single market worth protecting: Getting the MiCA review right Read More »

Russian APT Star Blizzard Uses ‘RedFlick’ Infection Chain in Recent Attacks

Russian APT Star Blizzard Uses ‘RedFlick’ Infection Chain in Recent Attacks 2026-09-30 at 13:59 By Ionut Arghire The state-sponsored group has launched larger-scale phishing campaigns to deploy the CosmicPulse backdoor. The post Russian APT Star Blizzard Uses ‘RedFlick’ Infection Chain in Recent Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View […]

Russian APT Star Blizzard Uses ‘RedFlick’ Infection Chain in Recent Attacks Read More »

US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access

US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access 2026-09-30 at 13:45 By ANY.RUN researchers traced a US-focused CSuite phishing campaign across 351 sandbox analyses, with 51% of submissions coming from the United States. Technology, manufacturing, government, and consulting organizations showed the highest exposure. By combining Microsoft 365 session theft […]

US-Focused CSuite Phishing Steals Microsoft 365 Sessions and Deploys RMM Tools for Remote Access Read More »

OpenInfra Europe’s JFrog Artifactory instance breached, packages potentially compromised

OpenInfra Europe’s JFrog Artifactory instance breached, packages potentially compromised 2026-09-30 at 13:39 By Zeljka Zorz Attackers have compromised a self-hosted JFrog Artifactory instance operated by OpenInfra Europe, the regional hub of the OpenInfra Foundation warned in a security notice prominently displayed on its homepage. OpenInfra Europe’s security incident notice “Anyone who downloaded or installed artifacts […]

OpenInfra Europe’s JFrog Artifactory instance breached, packages potentially compromised Read More »

ShinyHunters Defiant After FBI Calls on Members to Come Forward

ShinyHunters Defiant After FBI Calls on Members to Come Forward 2026-09-30 at 13:20 By Ionut Arghire In the wake of a suspected leader’s arrest, ShinyHunters says it never intended to publish data stolen from the FBI. The post ShinyHunters Defiant After FBI Calls on Members to Come Forward appeared first on SecurityWeek. This article is […]

ShinyHunters Defiant After FBI Calls on Members to Come Forward Read More »

Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT

Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT 2026-09-30 at 13:16 By Unknown threat actors have been observed exploiting a newly patched security flaw in Citrix NetScaler ADC and NetScaler Gateway appliances to target organizations in North America and Europe. The activity, observed by Mandiant Consulting and Google Threat Intelligence Group (GTIG) […]

Attackers Exploit NetScaler Flaw for Root Access, Deploy WHIPSHOT and SLAPSHOT Read More »

OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted

OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted 2026-09-30 at 13:16 By A High-severity OpenSSL flaw can leak heap memory to the other side of a DTLS connection or crash the program, OpenSSL said on September 29 as it released fixes. DTLS, the TLS variant used for UDP traffic, resends a handshake message if […]

OpenSSL Fixes High-Severity DTLS Flaw That Can Leak Heap Memory Unencrypted Read More »

Scroll to Top