Five men pleaded guilty after targeting Kansas ATMs with jackpotting malware as the FBI warns of a nationwide rise in attacks and financial losses.
IT Security News Hourly Summary 2026-09-02 22h : 5 posts
5 posts published in the last hour 19:31OpenLeash Adds a Human Check to Risky AI Agent Actions 19:3150 SOC Analyst Interview Questions and Answers (2026 Guide) 19:31Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs 19:01Agentic security:…
OpenLeash Adds a Human Check to Risky AI Agent Actions
The security tool intercepts potentially dangerous agent actions, blocking clear threats and requesting human approval when intent is uncertain.
50 SOC Analyst Interview Questions and Answers (2026 Guide)
By HOC Team | Last updated: August 30, 2026 | Read time: ~26 min 50 SOC Analyst Interview…
Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
Google on Wednesday announced Gemini 3.8 Flash Cyber, which it described as its most capable cybersecurity model, and has made it available to a set of…
Agentic security: Detection and response at machine speed
After talking with enterprise security leaders over the past year, one thing has become clear: the rise of autonomous AI agents is the most significant…
IT Security News Hourly Summary 2026-09-02 21h : 13 posts
13 posts published in the last hour 18:31ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074, (Mon, Aug 31st) 18:31AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit 18:31AI Agents Are…
ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074, (Mon, Aug 31st)
This post has no text preview — click the link below to read the original article. This article has been indexed from SANS Internet Storm Center, InfoCON: green Read the original article: ISC Stormcast For Monday, August 31st, 2026 https://isc.sans.edu/podcastdetail/10074,…
AI agents carried out every step of this ransomware attack – then left the victim an 80-page security audit
Adding insult to injury
AI Agents Are Now Emailing Me with Their Security Concerns
I received the two emails below earlier in the month. They’re vaguely coherent. I suppose I shouldn’t be surprised that the corpus that AIs are training…
ShinyHunters claims another health giant breach, PaperCut rushes second emergency patch, US bans foreign grid tech
Shiny Hunters Claims 284M McKesson Records Stolen, PaperCut Patch Bypassed Again, and White House Bans Foreign Power Grid Tech Host David Shipley covers…
Hackers Abuse Legitimate IT Management Tool to Sneak Into Business Networks
Cybersecurity researchers at Huntress have uncovered a phishing campaign that abuses Faronics Deploy, a legitimate endpoint management platform used by…
Black Duck brings AI-powered vulnerability scanning into Claude with new Signal integration
Application security vendor Black Duck has launched its Signal vulnerability scanning engine as an MCP server in the Claude Directory, giving developers…
Wiz Finds Active LiteLLM and MCP Attacks Targeting AI Infrastructure
Wiz observed active attacks on LiteLLM and MCP servers, including credential theft, cryptomining, command execution, and prompt injection.
New ‘Knight Office’ Phishing Kit Steals Microsoft 365 Logins Without Touching a Password
A newly identified phishing-as-a-service kit is being used to hijack Microsoft 365 accounts by stealing victims’ active login sessions rather than their…
Fake Software Installers Disable Windows Update and Weaken Microsoft Defender
An active malware campaign is using bogus software-download websites to impersonate trusted vendors and distribute malicious installers. “The campaign has…
KnowBe4 Names Kurt Mills as Channel Chief to Lead Next Phase of Partner-Led Growth
KnowBe4 has appointed cybersecurity channel veteran Kurt Mills as its new channel chief, as the company looks to strengthen its global partner ecosystem…
Anthropic Tightens Claude Security After Agents Access Live Systems
Anthropic adds real-time monitoring, hardened sandboxes, and stricter training controls after Claude agents accessed live computer systems during tests.
Fake Software Update Installs a Real Crypto Wallet – Rigged So It Can Never Open
Security researchers at Huntress have discovered a malware campaign that tricks victims into installing a real, fully functional copy of Exodus, a popular…
IT Security News Hourly Summary 2026-09-02 20h : 10 posts
10 posts published in the last hour 17:31Hackers Target US and EU Firms With Microsoft 365 Session Hijacking and RMM Abuse 17:31Google Launches Gemini 3.8 Flash Cyber to Identify and Auto-Patch Security Vulnerabilities 17:31GitSpawn Flaws Let Malicious Repositories Execute Code…
Hackers Target US and EU Firms With Microsoft 365 Session Hijacking and RMM Abuse
A wave of cyberattacks across the US and Europe in August exploited the trust businesses place in everyday tools, turning Microsoft 365 logins,…
Google Launches Gemini 3.8 Flash Cyber to Identify and Auto-Patch Security Vulnerabilities
Google has unveiled Gemini 3.8, its latest reasoning and coding model family, introducing a specialized variant called Gemini 3.8 Flash Cyber that is…
GitSpawn Flaws Let Malicious Repositories Execute Code in Claude Code, Codex, Cursor, and Grok
A newly disclosed class of vulnerabilities, dubbed GitSpawn, allows a booby-trapped repository to silently execute code on a developer’s machine the…
Dropbox Says 5,000 Accounts Were Compromised Through Lenovo ID Authentication Flaw
Dropbox has disclosed that approximately 5,000 user accounts were compromised in August after attackers exploited a weakness involving its Lenovo ID…