27 posts published in the last hour 14:32Exploitation attempts against critical Atlassian flaw have begun (CVE-2026-21589) 14:32Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts 14:31OT Coalition Urges CISA to Mandate Federal OT Security 14:31AWS’ support for Iceberg materialized views…
Exploitation attempts against critical Atlassian flaw have begun (CVE-2026-21589)
One day after Atlassian released patches fixing a critical arbitrary file access vulnerability (CVE-2026-21589) in its self-managed Data Center products,…
Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts
Southern Company is notifying customers that their utility account information was accessed by hackers.
OT Coalition Urges CISA to Mandate Federal OT Security
OTCC urged CISA to mandate baseline security requirements for federal operational technology
AWS’ support for Iceberg materialized views on Redshift could help lower analytics costs
AWS has added support for Iceberg materialized views to its managed cloud data warehouse service, Amazon Redshift, in an effort to help enterprises lower…
Cyber Briefing: 2026.10.07
FortiGate compromises, browser vulnerabilities, ransomware-related data theft, AI-assisted security testing, digital fraud, and fragmented security…
Power BI phishing campaign drops rogue ScreenConnect clients
Attackers are abusing Microsoft Power BI to host phishing lures that slip past email security, before dropping multiple rogue ScreenConnect clients on…
Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck. The vulnerability in…
How to build an effective cybersecurity awareness program
Effective cybersecurity awareness programs teach employees about the powerful roles they play in protecting their organization from cyberattacks and…
Gremlin Foresight AI finds system weaknesses and verifies the fixes
Gremlin has announced the general availability of Gremlin Foresight AI. Following a successful beta, Gremlin Foresight AI has proven it can identify and…
More UK Schools Are Recovering Faster from Cyber Incidents
Ofqual study finds growing number of UK schools are bouncing back “immediately” from cyber-attacks
Knowing which vulnerability to fix first
Common Vulnerability Scoring System (CVSS) severity tells you how serious a vulnerability could be. Exploit Prediction Scoring System (EPSS) estimates how…
Qilin Ransomware Suspect Arrested in Japan, Extradited to Germany
The individual was detained in May and has been extradited to Germany to face hacking charges.
CERT-UA: Fake Cloudflare Checks Deliver LunexStealer Malware
Over 100 hacked websites used fake Cloudflare checks to trick visitors into installing LunexStealer through ClickFix commands. The lure is the…
Google issues Android security updates: who can get them and how
Google has new Android updates, but many users will not be able to get patched immediately.
ShinyHunters Extorted Boeing Spin-off Prior to Arrests
A teenager from Amman, Jordan suspected of leading the prolific data theft and extortion group ShinyHunters has been detained and is reportedly…
New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
Citrix has released security updates for a high-severity security flaw in NetScaler ADC and NetScaler Gateway that has been exploited as part of targeted…
Vijil DART tests AI agents for security flaws and policy violations
Vijil has released Diamond Adaptive Red Teaming for Agents (DART), an automated testing system that finds security vulnerabilities and policy violations…
One hidden Meta Muse setting could let attackers turn the AI assistant into a backdoor
Meta Muse is designed to act as a personal AI assistant across a Mac and connected devices – much like the new Siri AI released with…
October 2026 Cyber Attacks Timeline
A live view of the month’s vetted cyber incidents, updated as new events are confirmed. Explore the timeline, filter by attack type, and see motivations,…
Frontline Education Breach Impacts K-12 School District Staff
A breach at school software provider Frontline Education has exposed employee data
Modernizing data security with DSPM, AI and fewer tools
For organizations, the proper safeguards—such as controls or restrictions—must be put in place.
JDK 27: The quiet before the storm
Every September, with metronomic regularity, we have a new version of the Java platform. One small point about timing is that the first release candidate…
FortiBleed is still active, with attackers locking admins out of Fortinet firewalls
Some organizations hit by the FortiBleed campaign have been locked out of their own Fortinet firewalls, according to a joint FBI and U.S. Secret Service…
