Skip to content
Live intelligence · last 7 days only

Recent cyber attacks, breaches and security alerts worldwide.

Current reporting from established cyber-security publications and official agencies. The default view shows the last 72 hours; switch to 24 hours or the full 7-day window when you need it.

Automated feedLast refresh 10 minutes ago60 headlines · 19 curated sources · max age 7 days
Freshness
60 matching headlines Only items published within the last 7 days are retained. CZITAPP links to the original publisher.
Dark ReadingGlobal
Cyber security

[Virtual Event] Cybersecurity Outlook 2027

Read original
Dark ReadingGlobal
Cyber security

EDR Evasion Stack Helps Process Injection Slip Past Defenses

A process parameter-poisoning technique evades EDR by injecting code into process initialization structures without using the Windows APIs that EDR tools typically watch out…

Dark ReadingGlobal
Cyber attack / incident

GitLab Email Addresses Can Be Weaponized for Supply Chain Attacks

Incoming email addresses automatically assigned to each user on the platform contain highly privileged access tokens that attackers can use.

Security AffairsGlobal
Vulnerability

U.S. CISA adds Check Point, Arista VeloCloud Orchestrator, and F5 BIG-IP APM flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Check Point, Arista VeloCloud Orchestrator, and F5 BIG-IP APM flaws to its Known Exploited Vulnerabilities catalog. The…

The RecordGlobal
Cyber security

UK regulator to investigate Pornhub parent company for alleged age verification failings

In May, Pornhub began using a new age assurance process to verify some users’ ages, according to an Ofcom press release. The new method…

CyberScoopUS
Cloud

Watchdog finds most agencies failed to meet CISA cloud security orders, heightening risk of attack

The DHS inspector general said CISA lacks the power to compel agencies to implement its Binding Operational Directives. The post Watchdog finds most agencies…

SecurityWeekGlobal
Cyber security

IonQ Targets Quantum Error-Correction Bottleneck With Single-CPU DecoderIonQ Says Sin

IonQ’s new single processor quantum error decoder minimizes the classical computing overhead in quantum error correction. The post IonQ Targets Quantum Error-Correction Bottleneck With…

The RecordGlobal
Vulnerability

No evidence of successful foreign meddling in 2024 election, spy agencies found

U.S. intelligence officials found no evidence that any foreign adversary successfully interfered in the 2024 presidential election, according to sources familiar with the findings…

Security AffairsGlobal
Vulnerability

F5 BIG-IP APM Zero-Day Exploited in Zero-Day RCE Attacks

F5 warns of a critical BIG-IP APM zero-day, CVE-2026-94127, allowing remote code execution. Attackers are already exploiting it. F5 has released emergency security updates…

CyberScoopUS
Vulnerability

Pentagon cyber chief: The demand far exceeds supply

At DefenseTalks on Tuesday, Katie Sutton said the Pentagon now receives far more requests to use cyber operations than its forces can fulfill, eight…

The Hacker NewsGlobal
Malware

Attackers Use Malicious Terraform Providers to Deliver Go Malware via HashiCorp Registry

Cybersecurity researchers have disclosed Go-based malware distributed via two Go Modules and two Terraform providers, marking the first time threat actors are using the…

SecurityWeekGlobal
AI security

Worries About an AI Internet Takeover Gain New Urgency Among Doomsday Scenarios

The idea that AI could break away and work toward its own agenda is looking increasingly plausible to researchers and experts. The post Worries…

CyberScoopUS
Ransomware

Ryuk ransomware operator sentenced to 2 years in prison

The Armenian national was extradited from Ukraine to the United States last year and pleaded guilty to cybercrimes in July. The post Ryuk ransomware…

The Hacker NewsGlobal
Vulnerability

A Leaked GitLab Issue Email Address Lets Anyone Push Code and Run CI Jobs as You

The private email address GitLab gives you for filing issues by email is a credential. Anyone who gets it can email a patch that…

SANS Internet Storm CenterGlobal
Cyber security

Macfinger ClickFix campaign, (Tue, Sep 22nd)

Introduction

The Hacker NewsGlobal
Vulnerability

MikroTrick Chain Let Attackers Take Over MikroTik Routers Without a Password or SSH Key

Two MikroTik RouterOS SSH vulnerabilities chained together let attackers take full administrative control of Internet-exposed routers without a password, SSH key, or completed authentication.…

Dark ReadingGlobal
Cyber attack / incident

UAE, Saudi Arabia Face Onslaught of Increasingly Complex Cyberattacks

The United Arab Emirates and Kingdom of Saudi Arabia together absorbed 50% of all cyberattacks recorded across the Gulf region in the first half…

Microsoft Security BlogGlobal
AI security

Reimagining the SOC for the agentic era in Microsoft Defender

We are announcing ISOC in Microsoft Defender: a foundation built for agentic security that brings leading solutions for SIEM and threat protection together. The…

CyberScoopUS
Critical infrastructure

OpenAI, Ukraine partner on ‘Daybreak’ program to protect power grids and water systems 

A Ukrainian official said the government will use the tools to automate cybersecurity functions in critical infrastructure as the war with Russia continues. The…

The RecordGlobal
Ransomware

Ryuk ransomware operator gets 2-year sentence after extorting victims for $1.2 million

An Armenian national and member of the Ryuk ransomware gang was sentenced to two years in federal prison for his role in launching attacks.

Dark ReadingGlobal
Identity

Attackers Manipulate AI Chatbots in Mass Disinformation, Phishing Campaign

Threat actors are poisoning ChatGPT, Gemini, and Google AI Overview answers by seeding the Web with malicious links and data and then optimizing the…

The RecordGlobal
Data breach

FBI investigating alleged ShinyHunters breach of its jobs site

The ShinyHunters cybercriminal organization on Tuesday replaced agency images on the FBIjobs.gov site with a photo of a Pokemon that has become the group’s…

The Hacker NewsGlobal
Identity

This Windows Malware is Built to Let Up to Four AI Models Vote on Its Next Move

A Windows malware called CLOSEDQUORUM is built to take orders from a vote of up to four AI models instead of an attacker's server, Cisco…

Security AffairsGlobal
Vulnerability

ShinyHunters claims FBI breach after alleged PeopleSoft zero-day attack

ShinyHunters claims FBI breach via PeopleSoft zero-day, steals staff data; FBI investigating, no confirmation yet. The popular cybercrime group ShinyHunters is claiming that it…

The Hacker NewsGlobal
Cyber attack / incident

Compromised MemTensor Packages Deliver sckit Credential Stealer via npm and PyPI

Unknown threat actors have managed to compromise two legitimate MemTensor packages across the npm and Python Package Index (PyPI) repositories to push a platform-specific…

The RecordGlobal
Data breach

Latvia arrests suspected hacker for electronics repair company breach

Latvian police arrested a 23-year-old man suspected of hacking at least two companies, stealing personal information and attempting to extort money from the victims.

Read original
SecurityWeekGlobal
Critical infrastructure

Honeywell: OT Security Teams Embrace AI, but Autonomy Still Rare

Only 21% of industrial security leaders report a complete OT asset inventory, even as 88% call their programs mature. The post Honeywell: OT Security…

Read original
CyberScoopUS
AI security

The president has called for AI leadership. Here’s the mission.

An AI compact built around capability, control, and continuity can ensure the country stays safe and secure while also leading the world in the…

Read original
The Hacker NewsGlobal
Cyber security

New cPanel Flaw Lets a Hosting Account Run Code as Root, Take Full Server Control

A flaw in cPanel's CalDAV and CardDAV service lets anyone with a cPanel hosting account run code as root and take "full control of the server,"…

Read original
The Hacker NewsGlobal
Cyber attack / incident

545 Hackers Tested It First. Now XRanges for AI Scores Your Security Agent

Autonomous security agents are getting good at finding bugs. Nobody has a good way to measure how good. Point one at a realistic target…

Read original
The Hacker NewsGlobal
AI security

Anthropic and OpenAI Models Still Attempt Restricted Actions in Safety Tests

Anthropic and OpenAI on Tuesday announced new models, with both artificial intelligence (AI) companies noting that they are continuing to invest in improving alignment…

Read original
SecurityWeekGlobal
Vulnerability

Adobe Patches Critical Flaws in Connect, AEM Forms

The nine critical security defects could be exploited for arbitrary code execution and privilege escalation. The post Adobe Patches Critical Flaws in Connect, AEM…

Read original
SecurityWeekGlobal
Identity

AI-Powered Phishing Platform EvilTokens Disrupted by Microsoft

The cybercrime platform leveraged AI at every step of the attack chain, including writing social engineering messages and deciding targets. The post AI-Powered Phishing…

Read original
The Hacker NewsGlobal
Vulnerability

Exploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape

A use-after-free in the Linux kernel's AF_UNIX socket subsystem can be used to escape a container and gain root on the host, security firm…

Read original
Security AffairsGlobal
Vulnerability

EvilTokens made phishing-as-a-service look easy. Then it got taken down

Microsoft, Coinbase and law enforcement took down EvilTokens, a phishing kit that compromised 12,000 inboxes through device-code phishing and AI. EvilTokens showed up in…

Read original
SecurityWeekGlobal
Vulnerability

Chrome 154 Patches 108 Vulnerabilities

The browser update resolves several critical-severity memory safety and memory corruption flaws. The post Chrome 154 Patches 108 Vulnerabilities appeared first on SecurityWeek.

Read original
SecurityWeekGlobal
AI security

A Look at AI Doomsday Scenarios That Researchers Say Could Put Humanity at Risk

Debates over the plausibility of these doomsday scenarios have heated up since several executives endorsed slowing the technology’s development for safety reasons. The post…

Read original
SecurityWeekGlobal
AI security

Outerlimit Raises $16 Million to Stop Rogue AI Agents From Causing Harm

Emerging from stealth with $16 million in pre-seed funding, Outerlimit offers a decentralized authorization layer designed to discover, observe, and block harmful autonomous AI…

Read original
SecurityWeekGlobal
Vulnerability

Arista Urges Immediate Patching of Exploited VCO Zero-Day

Remote attackers could trigger the critical-severity flaw to access privileged internal functionality. The post Arista Urges Immediate Patching of Exploited VCO Zero-Day appeared first…

Read original
The Hacker NewsGlobal
Vulnerability

F5 Patches Critical BIG-IP APM Zero-Day Exploited for Unauthenticated RCE on OAuth Servers

Attackers are exploiting a critical flaw in F5 BIG-IP Access Policy Manager (APM) that lets them run code on a BIG-IP system without logging…

Read original
The Hacker NewsGlobal
Vulnerability

Chinese Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy CLEANGULP Malware

A Chinese threat actor codenamed UTA0565 has been observed exploiting the recently disclosed Google Chrome-Microsoft Windows exploit chain as zero-days through fake websites. The…

Read original
Security AffairsGlobal
Malware

Fake LastPass on GitHub Led to an Infostealer That Killed 145 Security Tools

Attackers spoofed LastPass on GitHub, used a Microsoft-signed driver to disable 145 security products, then deployed an infostealer. Someone impersonated LastPass on GitHub, got…

Read original
Security AffairsGlobal
Vulnerability

CVE-2026-87902: how close is your WordPress to remote code execution?

WordPress 7.1.2 fixes an unauthenticated file inclusion bug active since version 4.7, patchable but exploitable into remote code execution. WordPress 7.1.2 shipped on September…

Read original
SecurityWeekGlobal
Vulnerability

Critical F5 BIG-IP Vulnerability Exploited as Zero-Day

Unauthenticated attackers could send malicious traffic to BIG-IP to achieve remote code execution. The post Critical F5 BIG-IP Vulnerability Exploited as Zero-Day appeared first…

Read original
The Hacker NewsGlobal
Vulnerability

Critical Next.js ImageResponse Flaw Can Lead to Server Code Execution via Crafted SVG Input

A new security vulnerability in Next.js could allow attackers to run code on a server via ImageResponse, the feature that generates Open Graph and other…

Read original
The Hacker NewsGlobal
Ransomware

ShinyHunters Claims FBI Breach, Says It Stole Data on Agents and Job Applicants

The cyber extortion group known as ShinyHunters on Tuesday claimed it had breached the U.S. Federal Bureau of Investigation and stolen data belonging to…

Read original
SANS Internet Storm CenterGlobal
Cyber security

ISC Stormcast For Wednesday, September 23rd, 2026 https://isc.sans.edu/podcastdetail/10106, (Wed, Sep 23rd)

(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

Read original
CyberScoopUS
Cyber security

ShinyHunters claims attack on FBI exposes almost all agents

The FBI jobs site, which was temporarily defaced, remains unavailable and the agency said it’s investigating the claims. The post ShinyHunters claims attack on…

Read original
CyberScoopUS
Critical infrastructure

After water attacks, Capitol Hill offers its own proposal for an AI-cyber test program

A key House Democrat and his bipartisan sponsors want to see a $100 million DHS pilot to help critical infrastructure owners and operators —…

Dark ReadingGlobal
AI security

Relays Are Masking Chinese Access to Frontier AI Models in the US

More than 80,000 AI relay servers are helping users in China mask their identities while they access cutting-edge large language models (LLMs), probably to…

Dark ReadingGlobal
Cyber security

How the CISO-CMO Alliance Builds Trust Before Crisis Strikes

Cybersecurity and brand reputation are inextricably linked. Security and marketing leaders who establish regular touchpoints, develop joint crisis communications plans, and translate security risks…

Dark ReadingGlobal
Cyber attack / incident

Microsoft Disrupts EvilTokens Device Code Phishing Service

Microsoft seized 50 websites and disabled more than 150 domains as part of a coordinated disruption effort against a phishing-as-a-service platform targeting Microsoft 365…

Dark ReadingGlobal
Vulnerability

Deception by Design: CISA's Guide to Tricking Cybercriminals

The Cybersecurity and Infrastructure Security Agency (CISA) is going old school to help organizations with limited resources set traps for hackers.

Security AffairsGlobal
Vulnerability

Check Point Fixes a New Actively Exploited Critical Security Flaw

Check Point fixes an actively exploited flaw that lets unauthenticated attackers upload and run scripts on vulnerable Security Management Servers. Check Point has released…

SANS Internet Storm CenterGlobal
Cyber security

The Truth about GET and HTTP Standards, (Tue, Sep 22nd)

On Friday, Xavier talked about the newly introduced HTTP Query method. This new method was introduced to allow "GET" requests that include a body.…

CyberScoopUS
Vulnerability

Volexity spots another China-aligned threat group exploiting Chrome and Microsoft defects

The threat group Volexity tracks as UTA0565 showcased a variance in tactics, but it used the same exploit kit as multiple Chinese threat groups.…

The Hacker NewsGlobal
Vulnerability

Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks

Attackers exploited a previously unknown flaw in Check Point's Security Management Server in a handful of targeted attacks on July 23, the company said. The…

Dark ReadingGlobal
Cyber attack / incident

Amid Ongoing Rogue Incidents, Debate Over AI Safety Gets Real

As more reports of misalignment incidents underscore AI risks, large AI labs, regular businesses, and even nations are searching for better ways to keep…

CERT-EUEU
Vulnerability

2026-013: Critical Vulnerability in F5 BIG-IP APM

On 22 September 2026, F5 published an advisory addressing a critical vulnerability affecting its BIG-IP APM product. The vendor confirmed active exploitation in the…

CyberScoopUS
AI security

Citing China, President Trump doubles down on hands-off approach to AI regulation

Following a series of chaotic agentic hacks, Trump and administration officials have consistently expressed fears of Chinese AI dominance in pushing for fewer regulations.…

X