A high-severity vulnerability in the All-in-One WP Migration and Backup plugin could allow unauthenticated attackers to take over vulnerable WordPress…
StreamRAT Abuses Android Accessibility, MediaProjection and HVNC for Full Device Takeover
StreamRAT, a newly identified Android banking trojan distributed through fake free-TV streaming advertisements on Meta and TikTok. The campaign, tracked…
Malicious Apache Modules Turn Trusted Government Websites Into Stealth Phishing Proxies
Brazilian government websites have been quietly turned into gateways for phishing pages on trusted public domains. Rather than sending victims to obvious…
International Operation Disrupts Sality P2P Botnet
US-led action sinkholes machines caught up in Sality botnet
Phishing in Your Inbox: How to Reliably Identify Fake Emails in Your Google Account
Your Google account is more than just an email inbox. It is the central key to a wide range of services, from Google Drive and Google Photos to logging in…
Tencent User Data Fuels High-Performance Hy4 Preview AI Model
Hy4 preview from Tencent becomes latest open-weight model to challenge US leaders, drawing on company’s wide-ranging user data
Three HP Easy Start Flaws Let Attackers Gain Root Privileges on macOS
Three high-severity vulnerabilities in HP Easy Start for macOS could allow both local and network-positioned attackers to disrupt the printer software…
IT Security News Hourly Summary 2026-09-03 11h : 8 posts
8 posts published in the last hour 08:31Critical Cisco Nexus 9000 Flaw Lets Remote Attackers Execute Code as Root Without Authentication 08:31Gang Releases Personal Data After Hack Of UK Airports 08:31Ransomware Hackers Can Go From Network Access to Encryption in…
Critical Cisco Nexus 9000 Flaw Lets Remote Attackers Execute Code as Root Without Authentication
Cisco has released security updates addressing a critical vulnerability in Nexus 9000 Series switches that could allow unauthenticated remote attackers to…
Gang Releases Personal Data After Hack Of UK Airports
Criminal group releases personal data on millions of passengers on open internet, after hack of three UK airports last week
Ransomware Hackers Can Go From Network Access to Encryption in Less Than 24 Hours
The Gentlemen ransomware-as-a-service operation can move from confirmed access inside a victim network to encryption in under 24 hours. Demonstrating how…
Your AI agent’s system prompt is not a security control
An AI agent told in its system prompt to show a user only what that user is cleared to see will hand over more the moment someone talks it into doing so.…
Uber To Cut 10 Percent Of Staff Worldwide
Ride-hailing app to cut about 3,300 workers as it ramps up investments in robotaxi partnerships in US and internationally
CISA Warns SonicWall SMA1000 Flaws Are Actively Exploited in Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two vulnerabilities affecting SonicWall SMA1000 appliances to its Known…
UK Peers Propose ‘Kill Switch’ For Powerful AI Models
Group of peers in House of Lords argue government should have ability to disable powerful models to protect national security
IT Security News Hourly Summary 2026-09-03 10h : 8 posts
8 posts published in the last hour 07:31Spring Ring Campaign Uses Teams Vishing, PowerShell RAT and NTLM Relay Attacks 07:31Seemplicity Response Options accelerates vulnerability mitigation 07:31153M licenses for sale, Anthropic reverses course, Astra enters the red zone 07:02CISA Adds Seven…
Spring Ring Campaign Uses Teams Vishing, PowerShell RAT and NTLM Relay Attacks
A coordinated social-engineering operation tracked as Spring Ring abused Microsoft Teams external accounts to impersonate corporate IT help desks,…
Seemplicity Response Options accelerates vulnerability mitigation
Seemplicity announced Response Options for vulnerability management and exposure management workflows. This new capability gives security teams multiple,…
153M licenses for sale, Anthropic reverses course, Astra enters the red zone
Dark web shop stocks 153 million driver’s licenses Nexus, a new dark web service, claims it’s selling scans of more than 153 million US and Canadian…
CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added seven security flaws to its Known Exploited Vulnerabilities (KEV)…
To keep the AI hacking genie bottled up, try one-way networks
Sandboxes, permissions, and VMs aren’t enough to keep frontier models at bay. “Data diodes” might do the job
Researcher Releases FalconFlank PoC Showing Privilege Escalation in CrowdStrike Falcon
The security researcher known as Chaotic Eclipse (aka INFINITE NIGHTMARE, MSNightmare, and Nightmare-Eclipse) has dropped a new zero-day dubbed…
Terminated employee cost company hundreds of thousands of dollars because nobody revoked access
They had more access than the average Joe, and IT didn’t track what needed to be cut off
IT Security News Hourly Summary 2026-09-03 09h : 5 posts
5 posts published in the last hour 06:31Earth Berberoka-Linked Hackers Target Brazil With Linux Malware and SEO Poisoning 06:02GitSpawn Flaw Enables Arbitrary Code Execution in Claude Code, Codex, Cursor and Grok 06:01Your threat feed is someone else’s database: What ingesting…