Anthropic engineers made claude.ai and the Claude desktop app roughly three times faster during a two-week sprint in August, with Claude finding the…
Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure
Threat actors have begun to actively exploit a critical security flaw in WordPress within hours of public disclosure. The vulnerability in question is…
Microsoft Rebuilds the SOC With AI Agents to Fight Machine-Speed Cyberattacks
An Integrated Security Operations Center (ISOC) in Microsoft Defender, unifying security information and event management (SIEM) and threat-protection…
IT Security News Hourly Summary 2026-09-24 10h : 6 posts
6 posts published in the last hour 07:31RemControl Android Malware Targets 30+ Banking Apps to Steal PINs and Credentials 07:31Critical WordPress Vulnerability Exploited Immediately After Disclosure 07:31ShinyHunters peeks at FBI assignments, WordPress flaw wastes no time, Pentagon’s cyber appetite grows…
RemControl Android Malware Targets 30+ Banking Apps to Steal PINs and Credentials
A newly uncovered Android banking trojan dubbed RemControl is targeting customers of more than 30 financial institutions across Europe, the Middle East,…
Critical WordPress Vulnerability Exploited Immediately After Disclosure
Tracked as CVE-2026-87902, the path traversal flaw allows remote, unauthenticated attackers to execute arbitrary code.
ShinyHunters peeks at FBI assignments, WordPress flaw wastes no time, Pentagon’s cyber appetite grows
ShinyHunters peeks at FBI assignments WordPress flaw wastes no time Pentagon’s cyber appetite grows Get the show notes here:…
Protecting citizens, preserving rights
How can law enforcement make effective use of data and technology while ensuring that fundamental rights and the rule of law remain protected? This…
cPanel Permissions Flaw Allows Local Users to Read Other Accounts’ Calendar Data
cPanel has released patches for CVE-2026-68490, a vulnerability related to incorrect permissions in its CalDAV/CardDAV implementation. This flaw could…
IT Security News Hourly Summary 2026-09-24 09h : 7 posts
7 posts published in the last hour 06:31One URL, Three Different Tricks, (Thu, Sep 24th) 06:31New Galago Ransomware Operation Emerges With Links to Panzer Extortion Group 06:31OpenAI Releases Lower-Cost Sol, Luna Models 06:31CLOSEDQUORUM, the malware that asks four AI models…
One URL, Three Different Tricks, (Thu, Sep 24th)
Yesterday, we received a phishing email with an interesting link. At first sight, it looks like garbage, but every piece of it has been carefully crafted…
New Galago Ransomware Operation Emerges With Links to Panzer Extortion Group
A newly identified ransomware operation tracked as Galago has emerged with apparent operational links to the Panzer ransomware group, raising concerns of…
OpenAI Releases Lower-Cost Sol, Luna Models
After GPT-6 Astra, start-up releases GPT-6 Sol and Luna, cutting costs for programming, high-volume clerical tasks
CLOSEDQUORUM, the malware that asks four AI models what to do next
Cisco Talos finds CLOSEDQUORUM, malware that lets four commercial AI models vote on its next move, with no human operator required. Cisco Talos found…
GitLab Email Token Lets Attackers Push Code to Main and Execute CI/CD Jobs
A long-lived GitLab incoming email token embedded in project email addresses for the “Email work item” feature can be exploited to push…
Apache Tomcat 11.0.26 Fixes 12 Security Flaws Enabling WebSocket Bypass and DoS Attacks
Apache Tomcat 11.0.26 has been released with fixes for 12 security vulnerabilities, including a significant flaw that could allow attackers to bypass…
IT Security News Hourly Summary 2026-09-24 08h : 5 posts
5 posts published in the last hour 05:31Fake Firefox Extension Hijacks Google Accounts Without Stealing Passwords First 05:31What to do first when you get 90 days to secure AI agent data 05:02Your security program knows about the firewall, but does…
Fake Firefox Extension Hijacks Google Accounts Without Stealing Passwords First
A malicious Firefox extension masquerading as a PDF identity-verification utility has been found targeting Google accounts through session-cookie theft…
What to do first when you get 90 days to secure AI agent data
In this interview with Help Net Security, Kelly Herrell, CEO at Nol8, explains where AI agents create exposure inside organizations. The first thing to…
Your security program knows about the firewall, but does it know about the elevator?
By early August, attackers had hit water systems in at least seven U.S. states. The FBI and EPA said the intruders remotely accessed internet-facing…
Ubuntu kernel CVE fixes are moving to a weekly release schedule
Ubuntu kernels will ship every week under a new release schedule from Canonical, which is merging its four-week cycle for regular Stable Release Updates…
IT Security News Hourly Summary 2026-09-24 07h : 4 posts
4 posts published in the last hour 04:31Apache Tomcat Update Fixes WebSocket and HTTP/2 Flaws Affecting Server Security 04:31IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU Decoder 04:31Europe’s technology backbone is becoming a cyber target 04:02ISC Stormcast For Thursday, September 24th,…
Apache Tomcat Update Fixes WebSocket and HTTP/2 Flaws Affecting Server Security
Apache Software Foundation has released Tomcat 11.0.26 to address 12 security vulnerabilities spanning WebSocket, HTTP/2, AJP, authentication, and TLS…
IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU Decoder
IonQ’s new single processor quantum error decoder minimizes the classical computing overhead in quantum error correction.
