Latest news
-
Breaches via Security Affairs
Cyberattacks on Oil Tankers Put Maritime Critical Infrastructure at Risk
Cyberattacks on oil tankers show how connected ships can expose navigation and critical systems, threatening safety, ports and global trade. U.S. Coast Guard personnel…
-
AI Security via Cisco Talos
Should you care about an “AI slowdown?”
Welcome to this week’s edition of the Threat Source newsletter. There’s been a lot of talk recently about slowing down the pace of AI development. And yes, there are…
-
Threat Intel via The Register
China's Salt Typhoon backdoors Latin American orgs with new snooping malware
China’s Salt Typhoon gang has developed a new backdoor and dropped it in networks belonging to high-profile organizations in several countries across Central and South…
-
Vulnerabilities via Wordfence
Wordfence Intelligence Weekly WordPress Vulnerability Report (September 7, 2026 to September 13, 2026)
Last week, there were 260 vulnerabilities disclosed in 207 WordPress Plugins that have been added to the Wordfence Intelligence Vulnerability Database, and there were…
-
Vulnerabilities via The Hacker News
ThreatsDay: Self-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New Stories
Attackers keep finding new keys. The funny part is that defenders keep inventing where to store them. This week, those keys sit in AI tools, exposed services, old bugs…
-
Vulnerabilities via Canadian Centre for Cyber Security
AL26-021 - Vulnerabilities Impacting Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) - CVE-2026-20192, CVE-2026-76423 and CVE-2026-76460
Number: AL26-021 Date: September 17, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently…
-
Threat Intel via BleepingComputer
Brevo supply-chain attack injected ClickFix scripts on customer sites
Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites and JavaScript files embedded on customer…
-
Threat Intel via GuidePoint Security
EtherHiding Exposed: Inside a Blockchain-powered Malware Campaign Hiding in Plain Sight
EtherHiding Exposed: Inside a Blockchain-powered Malware Campaign Hiding in Plain Sight September 17, 2026 Jean-Pierre Mouton BLOG 15 min. This is our deep dive into how…
-
AI Security via Microsoft Security
From guidance to action: Security fundamentals that materially reduce risk
AI has already made fundamental changes to the operating environment for cybersecurity. Cyberattackers are testing more paths, adapting their techniques, and moving…
-
Threat Intel via The Record
China’s FamousSparrow hackers target Latin America with new backdoor
Alleged Chinese hackers are breaking into government agencies across Latin America using a new backdoor that researchers are calling “SparroWocky.”
-
Breaches via HIPAA Journal
Modernizing Medicine Agrees to $3M Data Breach Settlement
Modernizing Medicine, a Boca Raton, Florida-based company that provides cloud-based, AI-powered software and electronic health record systems for healthcare providers…
-
AI Security via SpecterOps
CiliumHound: Graphing Kubernetes Network Policies
TLDR: CiliumHound is a BloodHound OpenGraph extension for auditing Cilium network policies. It ingests a folder of JSON or YAML policies and creates a searchable…
-
AI Security via Microsoft Security
Improving email security outcomes with real-world Microsoft Defender insights
Every benchmark tells a story. The most valuable ones tell us where to improve next. For five consecutive quarters Microsoft has published email security benchmarking…
-
Breaches via HIPAA Journal
Brevard Skin and Cancer Center Settles Class Action Complaint
The Florida dermatology practice, Brevard Skin and Cancer Center, has agreed to a settlement to resolve class action litigation stemming from a 2025 cyberattack and data…
-
Breaches via HIPAA Journal
Hacking Group Claims Attack on Cedar County Memorial Hospital
A hacking group has claimed responsibility for an August 2026 cyberattack on Cedar County Memorial Hospital in Missouri. Hacking-related data breaches have been reported…
-
Breaches via DataBreaches.net
Port of LA Fended Off 120 Million Cyberattacks in August
PYMNTS reports: The Port of Los Angeles reportedly blocked more than 120 million cyberattacks during August. That’s according to a report Thursday (Sept. 17) by…
-
Vulnerabilities via The Hacker News
Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files
Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere else on the…
-
Vulnerabilities via Canadian Centre for Cyber Security
Cisco security advisory (AV26-932)
Serial number: AV26-932 Date: September 17, 2026 As of September 16, 2026, Cisco is affected by vulnerabilities in the following products: Cisco Secure Firewall Threat…
-
Breaches via The Register
London property manager breach may have exposed bank details and lockbox codes
London property management biz City Relay has warned customers that intruders may have stolen financial data, passwords, and codes used to access keys after compromising…
-
Threat Intel via SANS Internet Storm Center
LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)
At the end of August, a malspam message was caught in the quarantine of a mail gateway operated by one of my customers. The message was not especially remarkable – it…
