News

OpenAI agent hacking spree widens to Australia, targeting government website

OpenAI agent hacking spree widens to Australia, targeting government website 2026-09-24 at 15:53 By Zeljka Zorz Before the Hugging Face and RubyGems hacks, autonomous OpenAI agents attempted to hack into three other websites, including an Australian government public health website, independent research lab Transluce revealed on Wednesday. “Notably, the tasks the agents were trying to […]

OpenAI agent hacking spree widens to Australia, targeting government website Read More »

Meta locks itself out of user data on its AI glasses

Meta locks itself out of user data on its AI glasses 2026-09-24 at 14:35 By Anamarija Pogorelec Meta is expanding Private Processing to its AI glasses, extending their security protections into cloud data centers. The system runs AI models inside confidential virtual machines (CVMs) designed to prevent Meta from accessing users’ data. Private Processing combines […]

Meta locks itself out of user data on its AI glasses Read More »

UK gears up for fight against Russia’s disinformation machine

UK gears up for fight against Russia’s disinformation machine 2026-09-24 at 14:25 By Sinisa Markovic The UK government will create a new body to track and disrupt disinformation campaigns run by hostile states, Prime Minister Andy Burnham announced at the United Nations General Assembly in New York. In his first address to the Assembly on […]

UK gears up for fight against Russia’s disinformation machine Read More »

New Android malware RemControl steals banking PINs and blocks removal attempts

New Android malware RemControl steals banking PINs and blocks removal attempts 2026-09-24 at 12:40 By Sinisa Markovic A new Android banking trojan called RemControl tricks victims into installing a fake TV app, then takes control of their phones to steal banking PINs, Group-IB has found. Researchers confirmed that the malware targets customers of more than […]

New Android malware RemControl steals banking PINs and blocks removal attempts Read More »

Google plans to give Private AI Compute a memory that follows users across devices

Google plans to give Private AI Compute a memory that follows users across devices 2026-09-24 at 12:32 By Anamarija Pogorelec Google plans to add private, server-side memory to Private AI Compute, enabling AI assistants to maintain continuity across devices while providing privacy protections normally associated with on-device processing. Private AI Compute is Google’s cloud platform […]

Google plans to give Private AI Compute a memory that follows users across devices Read More »

GNOME 50.5 security fixes patch a gvfs CVE and Epiphany code injection

GNOME 50.5 security fixes patch a gvfs CVE and Epiphany code injection 2026-09-24 at 11:32 By Sinisa Markovic GNOME 50.5, which the GNOME Release Team shipped on September 24, patches a CVE in the gvfs file system layer, a JavaScript injection flaw in the Epiphany web browser and a use-after-free bug in the librsvg image […]

GNOME 50.5 security fixes patch a gvfs CVE and Epiphany code injection Read More »

Apple’s new iOS 27 feature looks for signs you’re being scammed

Apple’s new iOS 27 feature looks for signs you’re being scammed 2026-09-24 at 11:02 By Anamarija Pogorelec Apple introduced a scam-prevention feature called Impersonation Risk Detection with iOS 27 and iPadOS 27. The feature allows supported apps to request a risk assessment when a user takes an action that could be connected to an active […]

Apple’s new iOS 27 feature looks for signs you’re being scammed Read More »

What to do first when you get 90 days to secure AI agent data

What to do first when you get 90 days to secure AI agent data 2026-09-24 at 08:00 By Mirko Zorz In this interview with Help Net Security, Kelly Herrell, CEO at Nol8, explains where AI agents create exposure inside organizations. The first thing to examine is the data path: what an agent can reach, what […]

What to do first when you get 90 days to secure AI agent data Read More »

Your security program knows about the firewall, but does it know about the elevator?

Your security program knows about the firewall, but does it know about the elevator? 2026-09-24 at 07:30 By Anamarija Pogorelec By early August, attackers had hit water systems in at least seven U.S. states. The FBI and EPA said the intruders remotely accessed internet-facing programmable logic controllers, the small industrial computers that run pumps and […]

Your security program knows about the firewall, but does it know about the elevator? Read More »

Ubuntu kernel CVE fixes are moving to a weekly release schedule

Ubuntu kernel CVE fixes are moving to a weekly release schedule 2026-09-24 at 07:27 By Anamarija Pogorelec Ubuntu kernels will ship every week under a new release schedule from Canonical, which is merging its four-week cycle for regular Stable Release Updates (SRUs) and its two-week cycle for security fixes into a single two-week cycle. The […]

Ubuntu kernel CVE fixes are moving to a weekly release schedule Read More »

Europe’s technology backbone is becoming a cyber target

Europe’s technology backbone is becoming a cyber target 2026-09-24 at 07:00 By Anamarija Pogorelec Disruptive attacks on public-facing services, financially motivated cybercrime and compromises of shared technology providers are increasing cybersecurity risks across Europe. ENISA’s Threat Landscape 2026 identifies cybercrime, state-linked activity, foreign information manipulation and interference, hacktivism and vulnerability exploitation as key threats. Geopolitical […]

Europe’s technology backbone is becoming a cyber target Read More »

Americans’ views on data centers have turned more negative

Americans’ views on data centers have turned more negative 2026-09-24 at 01:15 By Anamarija Pogorelec American attitudes toward data centers have turned noticeably more negative over the course of 2026, according to a new Pew Research Center survey. 54% of U.S. adults now say data centers are mostly bad for the environment, up from 39% […]

Americans’ views on data centers have turned more negative Read More »

80,000 relay servers help users in China slip past U.S. AI region bans

80,000 relay servers help users in China slip past U.S. AI region bans 2026-09-23 at 16:57 By Sinisa Markovic More than 80,000 relay servers are helping users in China bypass geographic restrictions on leading U.S. AI models, according to Team Cymru. “What we have uncovered is an entire ecosystem designed explicitly to break the frontier […]

80,000 relay servers help users in China slip past U.S. AI region bans Read More »

DarkMe RAT trades zero-days for plain phishing emails

DarkMe RAT trades zero-days for plain phishing emails 2026-09-23 at 16:24 By Zeljka Zorz DarkMe, a remote access trojan and info-stealer that has previously been associated with a threat group that targeted financial market traders and cryptocurrency users, has been spotted again. This time around, its distribution has been simplified: instead of leveraging zero-day exploits, […]

DarkMe RAT trades zero-days for plain phishing emails Read More »

Attackers hit Check Point Management Servers and Spark firewalls, F5 BIG-IP APM instances

Attackers hit Check Point Management Servers and Spark firewalls, F5 BIG-IP APM instances 2026-09-23 at 13:22 By Zeljka Zorz Check Point Software has released emergency fixes for a critical Check Point Management Server vulnerability (CVE-2026-93616) that has been exploited as far back as July 23, 2026. The company also confirmed that a pre-authentication remote code […]

Attackers hit Check Point Management Servers and Spark firewalls, F5 BIG-IP APM instances Read More »

WordPress 7.1.2 fixes critical unauthenticated path traversal vulnerability (CVE-2026-87902)

WordPress 7.1.2 fixes critical unauthenticated path traversal vulnerability (CVE-2026-87902) 2026-09-23 at 12:01 By Sinisa Markovic WordPress released version 7.1.2 to fix a critical flaw that lets an unauthenticated attacker make the software load a PHP file of the attacker’s choosing from outside the site’s active theme folders. On sites where the server and the active […]

WordPress 7.1.2 fixes critical unauthenticated path traversal vulnerability (CVE-2026-87902) Read More »

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes 2026-09-23 at 11:34 By Sinisa Markovic The EvilTokens phishing service, which compromised more than 12,000 inboxes at over 10,000 organizations, has been disrupted by a coalition of law enforcement and private-sector partners led by Microsoft. With authorization from the US District Court for […]

Microsoft disrupts EvilTokens phishing service that gave criminals access to 12,000 inboxes Read More »

Claude Opus 5.5 cuts costs and adds safeguards for autonomous AI

Claude Opus 5.5 cuts costs and adds safeguards for autonomous AI 2026-09-23 at 11:30 By Anamarija Pogorelec Claude Opus 5.5 is available across Anthropic’s platforms, Amazon Web Services, Google Cloud and Microsoft Azure. Developers can access it through the Claude Platform using the model name claude-opus-5-5. It includes watermarking measures designed to comply with the […]

Claude Opus 5.5 cuts costs and adds safeguards for autonomous AI Read More »

Scroll to Top