The FBI has seized the domains behind NightmareStresser, a DDoS-for-hire service officials call one of the longest running “booter” operations in…
IT Security News Hourly Summary 2026-09-17 14h : 14 posts
14 posts published in the last hour 11:32Fake MRI Scans Deliver CHOSEN BRICK Spyware to Windows PCs 11:32Test environment let anyone access live customer data 11:31How Candidates Could Use AI for Good 11:31BIND 9.20.29 Fixes 14 Security Flaws Enabling DNSSEC…
Fake MRI Scans Deliver CHOSEN BRICK Spyware to Windows PCs
Iranian state-linked attackers are using fake MRI scans and software lures to deploy CHOSEN BRICK spyware on Windows PCs.
Test environment let anyone access live customer data
Even a temporary staging server needs to be locked down.
How Candidates Could Use AI for Good
This essay was written with Nathan E. Sanders, and originally appeared in The Guardian . There are plenty of signs that AI will make all of our…
BIND 9.20.29 Fixes 14 Security Flaws Enabling DNSSEC Bypass and Denial-of-Service Attacks
The Internet Systems Consortium (ISC) has released BIND 9.20.29, which addresses 14 security vulnerabilities. These vulnerabilities could enable remote…
World Quantum Readiness Day: Industry Voices on Moving From Blueprint to Build
Today is World Quantum Readiness Day, and this year’s theme, “From Blueprint to Build,” says a lot about where the industry has landed. Three years ago,…
12 celebrity deepfake websites seized by Manhattan DA
The largest known celebrity deepfake seizure has taken 12 websites offline, disrupting access to videos depicting some 1,200 people.
FamousSparrow Deploys New SparroWocky Backdoor Against Latin American Governments
China-aligned advanced persistent threat group FamousSparrow has replaced its long-running SparrowDoor implant with a new modular C++ backdoor,…
Cisco Warns of Active Exploitation of Critical ISE Flaw
Cisco urged ISE customers to apply a software update, as well as check for signs of exploitation
CISA Urges Organizations to Deploy Cyber Decoys to Detect Hackers Inside Networks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has urged organizations to deploy cyber decoys, which include fake credentials, systems,…
CISA Releases Cyber Decoy Guidance to Strengthen Critical Infrastructure Defenses
Complementing Zero Trust models, decoys enable organizations to detect, observe, and block malicious activity in their environments.
12 Best DSPM Tools Compared (2026): Features & Pricing
Quick Answer: DSPM has the scariest pricing curve in security bills track data volume, and data only grows. Microsoft Purview publishes pay-as-you-go…
T-Mobile rewards points expiry texts are a phishing scam
A large phishing campaign is using fake T-Mobile rewards points and looming expiry dates to pressure recipients into clicking malicious links.
Kubernetes Attack Lets Hackers Steal SPIFFE Workload Identities and Impersonate Applications
A post-exploitation technique that lets attackers with root-level access to a Kubernetes node steal workload identities issued through SPIFFE/SPIRE and…
IT Security News Hourly Summary 2026-09-17 13h : 12 posts
12 posts published in the last hour 10:31Ofcom discovers issuing Online Safety Act fines is easier than collecting them 10:31Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460) 10:31Hackers Exploit Critical Cisco ISE Flaw to Bypass Authentication and Gain Root…
Ofcom discovers issuing Online Safety Act fines is easier than collecting them
Platforms comply just enough to avoid being blocked, leaving the regulator chasing debt
Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460)
Two days after it warned customers about an actively exploited email gateway zero-day, Cisco confirmed one more flaw is being targeted: CVE-2026-76460, an…
Hackers Exploit Critical Cisco ISE Flaw to Bypass Authentication and Gain Root Access
Cisco has issued an urgent security advisory regarding a critical authentication-bypass vulnerability in Cisco Identity Services Engine (ISE) and Cisco…
Scammers leave AI fingerprints all over fake antivirus renewal page
AI appears to be helping scammers with little web development skill build convincing fake antivirus-renewal pages, Malwarebytes found. The researchers…
U.S. CISA adds Acronis Backup, Cisco ISE, and Google Pixel flaws to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Acronis Backup, Cisco ISE, and Google Pixel flaws to its Known Exploited Vulnerabilities…
6 Ways Security Teams Can Reduce Non-Human Insider Risk
AI agents are rapidly becoming part of everyday business operations and this increases non-human insider risk. They can improve productivity, reduce…
Cyberthreats are moving faster than SMBs: Readiness must accelerate
As AI adoption expands the attack surface and adds to the security workload, businesses need automation backed by experts
16-31 August 2026 Cyber Attacks Timeline Infographic
A one-page visual summary of the 16–31 August 2026 cyber attacks timeline: 110 incidents broken down by motivation, attack technique, initial access…
