IT Security News: today roundup Microsoft SharePoint flaw reclassified from spoofing to remote code execution. Palo Alto Networks Unit 42 introduced new AI cyber defenses. Ryuk ransomware member Karen Vardanyan received a two-year prison sentence. A Linux kernel bug allows…
U.S. CISA adds Microsoft SharePoint and Mikrotik RouterOS flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft SharePoint and Mikrotik RouterOS flaws flaws to its Known Exploited…
Friday Squid Blogging: Participatory Squid Dissection in October in Tennessee
I feel like someone who reads this blog will want to go to this : Families are invited to dive into the fascinating world of marine biology during an…
IT Security News Hourly Summary 2026-09-25 23h : 5 posts
5 posts published in the last hour 20:315G-Shark Lures Phones to Rogue 5G Cells Without Network Jamming 20:31Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware 20:02Attackers Target Unpatched Roundcube Servers With CVE-2026-48842 20:02From Debugging to Code Execution: RCE…
5G-Shark Lures Phones to Rogue 5G Cells Without Network Jamming
Researchers have developed 5G-Shark to lure phones onto rogue base stations, collect subscriber IDs, force network downgrades and…
Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware
A Chinese threat actor codenamed UTA0565 has been observed exploiting the recently disclosed Google Chrome-Microsoft Windows exploit chain as zero-days…
Attackers Target Unpatched Roundcube Servers With CVE-2026-48842
Attackers are exploiting CVE-2026-48842 against unpatched Roundcube servers months after a fix was released, raising urgency for organizations to update.
From Debugging to Code Execution: RCE in Microsoft DevLabs’ DebugMCP?
Introduction AI-assisted development has crossed a threshold. The question is no longer whether your IDE communicates with an AI, it’s how deeply that AI…
IT Security News Hourly Summary 2026-09-25 22h : 14 posts
14 posts published in the last hour 19:31Critical ServiceNow Vulnerabilities Let Attackers Bypass Authorization – Update Now! 19:31Attackers Are Turning Everyday Business Emails Into Malware Delivery Machines 19:31Why would you want to turn off Apple Intelligence and Siri AI on…
Critical ServiceNow Vulnerabilities Let Attackers Bypass Authorization – Update Now!
ServiceNow released security updates for five AI Platform flaws, including two critical vulnerabilities that could let unauthenticated attackers access,…
Attackers Are Turning Everyday Business Emails Into Malware Delivery Machines
Attackers are turning routine business complaints into malware traps. A message about a damaged delivery or refund request can look ordinary, yet one…
Why would you want to turn off Apple Intelligence and Siri AI on iOS 27?
The brand-new iOS 27 now runs on iPhone 11 and newer models, bringing exciting AI features, including its core feature: a smarter Siri. Understandably,…
WordPress Comment2Shell Vulnerability Lets Hackers Take Over Sites Through Comments
WordPress administrators are being urged to patch a high-severity core vulnerability that can turn an anonymous comment into server-side command…
Fake Google Security Team ad says ‘no script reading’ in voice phishing – then prints the script
More mockery and memes from the Dark Web Roast
TWEAKOS Malware Turns Telegram Into a Stealer, C2 Platform and Stolen Account Marketplace
TWEAKOS steals messaging accounts and turns them into items for sale. The operation pairs a Windows stealer with a Telegram bot for managing victims and…
Sauron Loader Malware Uses DLL Side-Loading and In-Memory Decryption to Evade Detection
Sauron Loader has surfaced in attacks on German organizations, giving intruders a way to deliver more malware. The new tool need not be the first thing a…
Researchers Found a Botnet That Uses an AI Agent to Operate Inside Compromised Servers
CARBONATO is a botnet that turns Docker servers into footholds for attackers. It places an AI agent inside compromised systems, letting operators send…
Hackers Used a Samsung Flaw to Build a Cryptominer Inside Victim Systems
Attackers broke into a Windows system through a known flaw in Samsung’s MagicINFO software, then built a cryptocurrency miner on the compromised machine.…
International investigation identifies over 70 potential victims exploited in Indian restaurants
The coordinated action conducted on 18 September 2026 led to two arrests. Allegedly, the traffickers forced their victims to work up to 16 hours per day,…
14-Year-Old Linux Kernel Flaw Lets Local Users Gain Root Access and Escape Containers
A 14-year-old Linux kernel vulnerability can let a local attacker escalate to root privileges and, in a proof-of-concept environment, escape a Docker…
Why security belongs in the network
SPONSORED EXPLAINER: Merging security into the network makes enterprise protection more agile
OnePlus 15 Flaws Let Zero-Permission Apps Gain Root Access Through OxygenOS Services
Two flaws in the latest OxygenOS build could let malicious Android apps run code with root privileges on OnePlus devices, including the OnePlus 15, by…
IT Security News Hourly Summary 2026-09-25 21h : 8 posts
8 posts published in the last hour 18:31ShinyHunters tells The Reg: We hacked the FBI to ‘protect our business’ 18:31Cryptocurrency exchange Bitget Says North Korea-Linked Hackers Stole $351.6 Million 18:31CAIRN framework, Muse zero-day, BigDiskBuster 18:31Critical Next.js ImageResponse Flaw Can Lead…
ShinyHunters tells The Reg: We hacked the FBI to ‘protect our business’
Data theft and extortion biz, that is
Cryptocurrency exchange Bitget Says North Korea-Linked Hackers Stole $351.6 Million
Bitget says suspected North Korea-linked actors stole $351.6M from hot and warm wallets. Withdrawals were suspended while Mandiant investigates.…
