Latest news

  1. Breaches via Security Affairs

    Cyberattacks on Oil Tankers Put Maritime Critical Infrastructure at Risk

    Cyberattacks on oil tankers show how connected ships can expose navigation and critical systems, threatening safety, ports and global trade. U.S. Coast Guard personnel…

  2. AI Security via Cisco Talos

    Should you care about an “AI slowdown?”

    Welcome to this week’s edition of the Threat Source newsletter. There’s been a lot of talk recently about slowing down the pace of AI development. And yes, there are…

  3. Threat Intel via The Register

    China's Salt Typhoon backdoors Latin American orgs with new snooping malware

    China’s Salt Typhoon gang has developed a new backdoor and dropped it in networks belonging to high-profile organizations in several countries across Central and South…

  4. Vulnerabilities via Wordfence

    Wordfence Intelligence Weekly WordPress Vulnerability Report (September 7, 2026 to September 13, 2026)

    Last week, there were 260 vulnerabilities disclosed in 207 WordPress Plugins that have been added to the Wordfence Intelligence Vulnerability Database, and there were…

  5. Vulnerabilities via The Hacker News

    ThreatsDay: Self-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New Stories

    Attackers keep finding new keys. The funny part is that defenders keep inventing where to store them. This week, those keys sit in AI tools, exposed services, old bugs…

  6. Vulnerabilities via Canadian Centre for Cyber Security

    AL26-021 - Vulnerabilities Impacting Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) - CVE-2026-20192, CVE-2026-76423 and CVE-2026-76460

    Number: AL26-021 Date: September 17, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently…

  7. Threat Intel via BleepingComputer

    Brevo supply-chain attack injected ClickFix scripts on customer sites

    Brevo confirmed that attackers stole a Cloudflare API key and used it to inject malicious ClickFix scripts into its websites and JavaScript files embedded on customer…

  8. Threat Intel via GuidePoint Security

    EtherHiding Exposed: Inside a Blockchain-powered Malware Campaign Hiding in Plain Sight

    EtherHiding Exposed: Inside a Blockchain-powered Malware Campaign Hiding in Plain Sight September 17, 2026 Jean-Pierre Mouton BLOG 15 min. This is our deep dive into how…

  9. AI Security via Microsoft Security

    From guidance to action: Security fundamentals that materially reduce risk

    AI has already made fundamental changes to the operating environment for cybersecurity. Cyberattackers are testing more paths, adapting their techniques, and moving…

  10. Threat Intel via The Record

    China’s FamousSparrow hackers target Latin America with new backdoor

    Alleged Chinese hackers are breaking into government agencies across Latin America using a new backdoor that researchers are calling “SparroWocky.”

  11. Breaches via HIPAA Journal

    Modernizing Medicine Agrees to $3M Data Breach Settlement

    Modernizing Medicine, a Boca Raton, Florida-based company that provides cloud-based, AI-powered software and electronic health record systems for healthcare providers…

  12. AI Security via SpecterOps

    CiliumHound: Graphing Kubernetes Network Policies

    TLDR: CiliumHound is a BloodHound OpenGraph extension for auditing Cilium network policies. It ingests a folder of JSON or YAML policies and creates a searchable…

  13. AI Security via Microsoft Security

    Improving email security outcomes with real-world Microsoft Defender insights

    Every benchmark tells a story. The most valuable ones tell us where to improve next. For five consecutive quarters Microsoft has published email security benchmarking…

  14. Breaches via HIPAA Journal

    Brevard Skin and Cancer Center Settles Class Action Complaint

    The Florida dermatology practice, Brevard Skin and Cancer Center, has agreed to a settlement to resolve class action litigation stemming from a 2025 cyberattack and data…

  15. Breaches via HIPAA Journal

    Hacking Group Claims Attack on Cedar County Memorial Hospital

    A hacking group has claimed responsibility for an August 2026 cyberattack on Cedar County Memorial Hospital in Missouri. Hacking-related data breaches have been reported…

  16. Breaches via DataBreaches.net

    Port of LA Fended Off 120 Million Cyberattacks in August

    PYMNTS reports: The Port of Los Angeles reportedly blocked more than 120 million cyberattacks during August. That’s according to a report Thursday (Sept. 17) by…

  17. Vulnerabilities via The Hacker News

    Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files

    Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere else on the…

  18. Vulnerabilities via Canadian Centre for Cyber Security

    Cisco security advisory (AV26-932)

    Serial number: AV26-932 Date: September 17, 2026 As of September 16, 2026, Cisco is affected by vulnerabilities in the following products: Cisco Secure Firewall Threat…

  19. Breaches via The Register

    London property manager breach may have exposed bank details and lockbox codes

    London property management biz City Relay has warned customers that intruders may have stolen financial data, passwords, and codes used to access keys after compromising…

  20. Threat Intel via SANS Internet Storm Center

    LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)

    At the end of August, a malspam message was caught in the quarantine of a mail gateway operated by one of my customers. The message was not especially remarkable – it…