Latest news

  1. Vulnerabilities via NCSC-NL

    NCSC-2026-0375 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle Communications

    Oracle heeft 31 kwetsbaarheden verholpen in diverse Oracle Communications-producten, waaronder Oracle Communications Unified Assurance, Oracle Communications Cloud…

  2. Vulnerabilities via NCSC-NL

    NCSC-2026-0374 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle Commerce Platform

    Oracle heeft 27 kwetsbaarheden verholpen in Commerce Platform, waaronder Oracle Commerce Guided Search en Oracle Commerce Experience Manager, waaronder de componenten…

  3. Vulnerabilities via NCSC-NL

    NCSC-2026-0373 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle Database Producten

    Oracle heeft 16 kwetsbaarheden verholpen in diverse Database producten, waaronder Database Server, Autonomous Health Framework en Application Testing Suite. De…

  4. Vulnerabilities via NCSC-NL

    NCSC-2026-0372 [1.00] [H/H] Kwetsbaarheden verholpen in Oracle Fusion Middleware

    Oracle heeft 153 kwetsbaarheden verholpen in diverse Oracle Fusion Middleware-producten, waaronder Helidon, Oracle Access Manager, Oracle Coherence, Oracle Data…

  5. AI Security via Straiker

    Nine Questions That Tell You Whether Your AI Security Vendor Is Selling Theater | Straiker

    Not every AI security control reduces real-world risk. Ask these nine questions about tool calls, runtime enforcement, detection, and agent containment.

  6. Threat Intel via CISA

    Using Cyber Decoys to Strengthen Detection and Response

    CISA developed this guidance to help defensive teams at varying levels of cybersecurity maturity plan and implement cyber decoy strategies that strengthen their…

  7. Vulnerabilities via CISA

    CISA Adds Two Known Exploited Vulnerabilities to Catalog

    CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-76460 Cisco Identity…

  8. Vulnerabilities via CISA

    CISA Adds One Known Exploited Vulnerability to Catalog

    CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-58704 Google Pixel Improper…

  9. AI Security via The Register

    Spain gets its first taste of AI-aided cyber attack

    Spain’s data protection agency (AEPD) has reported the country’s first-ever personal data breach caused by the actions of an autonomous AI agent. Francisco Pérez Bes…

  10. Vulnerabilities via SOCRadar

    CVE-2026-27540 WooCommerce Flaw Exploited

    CVE-2026-27540 WooCommerce Flaw Exploited Attackers are actively exploiting CVE-2026-27540, a critical arbitrary file-upload vulnerability in the WooCommerce Wholesale…

  11. Threat Intel via SOCRadar

    Discernment Deleted: Inside the Operation Server of BlackHatSect0r && DXQRTXX

    Discernment Deleted: Inside the Operation Server of BlackHatSect0r && DXQRTXX A French-speaking crew deleted the line reading “discernment retained” from its AI agent’s…

  12. Threat Intel via Schneier on Security

    Fake CAPTCHA Scams

    New variant of an old scam: Use the framing of a CAPTCHA to get an unsuspecting user to download and run a malicious program.

  13. AI Security via Emsisoft

    The Risks Behind AI

    AI can deliver remarkable benefits for businesses, but before rushing to adopt it, organizations should consider the less obvious costs and risks, from unexpected…

  14. via Infosecurity Magazine

    Cyber-Attacks Cost Organizations $52,000 on Average

    Hiscox highlighted the huge financial and operational costs of cyber-attacks, with the average cost of an incident at $52,000

  15. Breaches via The Register

    Ministry of Justice apologizes after court staff accessed Southport victims' files

    The Ministry of Justice (MoJ) has apologized after court staff accessed documents relating to victims and survivors of the 2024 Southport murders without authorization…

  16. Vulnerabilities via Malwarebytes Labs

    Google Pixel owners urged to patch actively exploited modem flaw

    Google has released its September 2026 Pixel Update Bulletin, fixing 110 vulnerabilities, including one that it says “may be under limited, targeted exploitation.” The…

  17. via Wired

    Hackers Got Inside a Flock Camera. Its Data Shows How the System Really Works

    A hacker collective pulled down a Flock camera and dumped its data. The files included thousands of videos and logs showing that the device captured 1.6 million images…

  18. Vulnerabilities via Cisco Talos

    Securing the unpatchable in an age of AI-driven vulnerabilities

    AI is accelerating vulnerability discovery, leaving unpatchable operational technology (OT) systems at risk. Hoping for the best is not a viable anti-exploitation…

  19. AI Security via SentinelLABS

    Agents at Large | Tracing Illicit OpenAI Agent Activity on Hugging Face

    Executive Summary OpenAI disclosed that agents used exposed Hugging Face credentials to write a file and deploy proxy Spaces during an unrelated May 2026 research…

  20. Threat Intel via Kaspersky Securelist

    NightEagle targets Russian companies

    Over the past year, our Global Emergency Response Team (GERT) has investigated several incidents involving the NightEagle group (also tracked as APT-Q-95). This group…