China-aligned threat actors are using low-quality Chinese-language casino and adult websites to conceal PeckBirdy command-and-control infrastructure,…
Cyberattack Knocks International Meteor Organization Website Offline
A cyberattack has forced the International Meteor Organization (IMO), one of the leading providers of meteor observation, to take much of the website…
Researchers used Anthropic’s Claude to hack into OpenAI
Security researchers used Anthropic’s Claude to exploit vulnerabilities in OpenAI’s systems, taking over employee accounts and gaining access to an…
Plugin4Shell Lets Repository Owners Swap Pinned Plugin Code Across Four AI Coding Agents
A flaw in four widely used AI coding agents lets someone who controls a plugin’s code repository swap the plugin an agent installs for a malicious one,…
OpenAI Hacked By Anthropic Models – Research
HOC Shorts How OpenAI Hacked By Anthropic Models – Research The security researchers successfully breached OpenAI’s internal repositories…
Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation
Microsoft has released fixes for a maximum-severity security flaw in Azure AI Foundry that could be exploited to achieve privilege escalation. No customer…
Brevo Breach Exposes Customer Websites to ClickFix Malware
Email marketing and customer relationship management platform Brevo, formerly known as Sendinblue, suffered a supply chain attack in which malicious code…
An Abandoned CDN Domain Was Re-Registered. Thousands of Sites Still Call It.
In July 2025, someone registered a domain that used to belong to a content delivery network. The CDN had been wound down years earlier, and the domain it…
IT Security News Hourly Summary 2026-09-18 16h : 19 posts
19 posts published in the last hour 13:31Hacker ‘Breached Italian Gov’t Email’ To Steal Revolut Data 13:31Feral Wolf Hackers Exploit Confluence and 1C to Deploy GenieLocker Ransomware 13:31US, UK, Dutch Expose Iranian Chosen Brick Malware 13:31NCSC and Allies Warn of…
Hacker ‘Breached Italian Gov’t Email’ To Steal Revolut Data
Hacker claims they gained access to secure Italian government email system, posed as law enforcement to obtain data on 680 Revolut customers
Feral Wolf Hackers Exploit Confluence and 1C to Deploy GenieLocker Ransomware
Feral Wolf has expanded its ransomware tradecraft by abusing exposed Atlassian Confluence servers and insecure 1C:Enterprise deployments to gain access to…
US, UK, Dutch Expose Iranian Chosen Brick Malware
Cybersecurity agencies from the United States, United Kingdom, and the Netherlands have published a joint advisory exposing Iranian surveillance malware…
NCSC and Allies Warn of Iranian Spyware Campaign
The UK’s National Cyber Security Centre says Iranian Chosen Brick spyware is designed to snoop on dissidents
NIS-2: Why practical relevance is crucial in management training
Under NIS-2, management bodies of affected companies are required to attend training on a regular basis. However, anyone who sees this merely as proof of…
Meta Strengthens WhatsApp Account Security
WhatsApp is one of the world’s most widely used messaging apps, connecting billions of people every day. Because it’s so widely used, cybercriminals also…
When Security Operations Can’t Keep Up: 4 Ways Agentic Network Security Management Improves Security Operations
Security teams are under pressure. Networks are growing. Cloud environments are expanding. AI is accelerating change across users, applications, and…
Meta’s Copyright System Is Being Weaponized Against Albanian Protesters
After three months of daily anti-government protests—dubbed the Flamingo Revolution—the sudden mass suspension of Instagram accounts has led to fears of…
CISA Upgrades Vulnerability Reporting Platform
The US Cybersecurity and Infrastructure Security Agency (CISA) announced on September 17, 2025, the launch of VINCE-NT (Vulnerability Information and…
AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code
Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts.
Italian Start-Up Raises $270m To Fend Off AI Attacks
Rome-based Exein achieves $1.7bn valuation as it builds AI-based security into devices, develops security-oriented foundation model
GUARD Act Passes House to Combat Elder Financial Fraud
The U.S.
PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
AI-Generated Fake Antivirus Renewal Scam Pages
Cybercriminals are leveraging AI tools to build sophisticated fake antivirus renewal pages that require minimal web development expertise, according to…
Cisco zero-day goes straight to root, BambooToken branches into Linux, CenterPoint breach claim hits 7M+
Cisco zero-day goes straight to root BambooToken branches into Linux CenterPoint breach claim hits 7M+ Get the show notes here:…
