Skip to main content

Cletus's Blog

Cyber - 2026-09-17 - EVE

## Symantec Enterprise Blogs

View Articles

1290 - Search - Internet of Things (IoT) security(3)

1291 - Search - Cyberattacker techniques, tools, and infrastructure(167)

1292 - Search - Microsoft Defender for Office 365(38)

1293 - Search - Microsoft Defender for Cloud Apps(23)

1294 - Search - Microsoft Defender External Attack Surface Management(4)

1295 - Search - Microsoft Defender Experts Cybersecurity Incident Response(8)

1296 - Search - Microsoft Purview Insider Risk Management(1)

1297 - Search - Microsoft Purview Data Lifecycle Management(1)

1298 - Search - Cloud C² — Command & Control

1299 - Search - Essential, Elite and Red Team

1300 - Search - Terms of Service & Policies

1301 - Search - PAYLOAD AWARDSGet your payload in front of thousands and enter to win. Nearly $10,000 in annual Hak5 prizes!

1302 - Search - DUCKYSCRIPT COURSELearn directly from the creators! Unlock your creative potential with this comprehensive course.

1303 - Search - only for BIS license exception ENC favorable treatment countries

1304 - Search - Core Email ProtectionGet industry-leading threat protection via API or gateway

1305 - Search - Email Fraud DefenseProtect your brand, increase deliverability, and identify lookalike domains

1306 - Search - ZenGuideDeliver targeted, risk-based security awareness training

1307 - Search - Secure Email RelaySecure application email and implement DMARC faster

1308 - Search - Account Takeover ProtectionDetect, investigate, and respond to account takeovers

1309 - Search - Data Security for AISecure data across shadow and approved AI

1310 - Search - Enterprise DLPPrevent data loss across email, cloud, and endpoints

1311 - Search - Adaptive Email DLPPrevent misdirected emails and hidden data exfiltration

1312 - Search - Insider Threat ManagementGet visibility into risky behavior by careless, malicious, and compromised users

1313 - Search - Data Security Posture ManagementDiscover, classify, and protect sensitive data across cloud and hybrid environments

1314 - Search - Digital Communications GovernanceIntelligently capture, retain, and discover digital communications

1315 - Search - Secure AI Usage by PeopleGet visibility and control around employees’ use of AI

1316 - Search - Secure AI Usage by AgentsUnderstand AI agent intent and control their use of other AI tools

1317 - Search - Secure MCP Across Your EnterpriseUnify MCP discovery, authorization, and monitoring

1318 - Search - Proofpoint NexusAdvanced AI and threat intel to detect threats and assess data risk

1319 - Search - Proofpoint ZenIntegrated control points to protect people and data anywhere

1320 - Search - Proofpoint SatoriThe power behind agentic security operations

1321 - Search - Proofpoint 365 Total ProtectionEnabling the channel, protecting humans and agents

1322 - Search - Ensure Acceptable GenAI UseEmpower your workforce with safe GenAI practices

1323 - Search - Govern Claude AI ActivityIntegrate Proofpoint with Claude Compliance API

1324 - Search - Secure Microsoft 365Implement flexible security and compliance for M365

1325 - Search - Ransomware PreventionStop attacks by securing ransomware’s top vector

1326 - Search - Combat Email and Cloud ThreatsProtect your people with a smart, holistic approach

1327 - Search - Protect Cloud AppsEliminate threats and data loss across cloud apps

1328 - Search - Change User BehaviorHelp your users identify, resist, and report attacks

1329 - Search - Modernize Compliance and ArchivingManage your risk and data retention requirements

1330 - Search - Authenticate Your EmailProtect your email deliverability with DMARC

1331 - Search - Federal GovernmentEnable your agency with FedRAMP certified security

1332 - Search - Higher EducationProtect your campus, people, data, and research

1333 - Search - HealthcareProtect clinicians, patient data, and intellectual property

1334 - Search - Internet Service ProvidersDeliver leading email protection for your networks and customers

1335 - Search - State and Local GovernmentSecure your institutions, services, and communities against cyberthreats

1336 - Search - Financial ServicesProtect your institution while meeting compliance requirements

1337 - Search - Mobile OperatorsProtect your messaging environments and subscribers at scale

1338 - Search - Small and Medium BusinessesStrengthen your business with enterprise-grade security built to grow with you

1339 - Search - Proofpoint ServicesLeverage our expertise to maximize your investment

1340 - Search - Advisory ServicesMaintain control with expert guidance and recommendations

1341 - Search - Applied ServicesGet hands-on execution, guidance, and measurable impact

1342 - Search - Resource libraryResearch, insights, and resources from Proofpoint experts.

1343 - Search - BlogKeep up with the latest news and expert insights

1344 - Search - Customer StoriesRead how customers solve their toughest security challenges

1345 - Search - Cybersecurity AcademyBecome a Proofpoint Certified Guardian

1346 - Search - EventsConnect and learn with peers at in-person events

1347 - Search - WebinarsBrowse our complete webinar library

1348 - Search - Threat glossaryLearn about the latest security threats and techniques

1349 - Search - PodcastsStay informed with our renowned threat researchers

1350 - Search - Threat Insight BlogDiscover actionable threat intel and expert analysis

1351 - Search - IP Address Blocked?Best practices for email delivery, authentication, and troubleshooting

1352 - Search - Support ServicesGet help with current incidents with Proofpoint products

1353 - Search - Why ProofpointProofpoint provides intent-based protection for every human, every AI agent, across all data

1354 - Search - LeadershipLearn about the executive team leading Proofpoint’s strategy and vision

1355 - Search - ESGLearn about our environmental, social, and governance principles

1356 - Search - Comparing ProofpointEvaluating security vendors? Check out side-by-side industry comparisons

1357 - Search - News CenterRead press releases, news, and media highlights about Proofpoint

1358 - Search - CareersMake a difference at one of the world’s leading security companies

1359 - Search - AboutLearn more about the team driving human and agent-centric security

1360 - Search - AI, Privacy and TrustLearn about our data handling, privacy, and compliance

1361 - Search - English: Europe, Middle East, Africa

1362 - Search - Compliance and ArchivingSeptember 10, 2026Harry LabanaBeyond the Alert: Bringing Context to Insider Risk and AI Investigations

1363 - Search - Threat InsightSeptember 09, 2026By Mark Kelly, Greg Lesnewich, Konstantin Klinger, Saher Naumaan, Julia Paluch, David Galazin, Stuart Del Caliz, and the Proofpoint Threat Research TeamOnce in a BlueMoon: Multiple State-Aligned Threat Actors Rapidly Adopt Novel Exploit Chain Using Chrome and Windows Zero-Days

1364 - Search - Corporate NewsSeptember 09, 2026Patrick Joyce, Global Resident Chief Information Security OfficerThe risk has moved: what Proofpoint’s 2026 Voice of the CISO reveals

1365 - Search - Human Resilience & Security Awareness

1366 - Search - September 03, 2026Ryan KalemberWhy Proofpoint Is Signing On to Collective Cyber Defense with Frontier Labs

1367 - Search - September 03, 2026Daniel Rapp, Kevin Epstein, Duane KurodaProofpoint Introduces SOC Analyst Agent, Powered by OpenAI Daybreak Models Through Daybreak Defense Network

1368 - Search - July 23, 2026Sumit DhawanThe “Future” Agentic Workspace Is Here. Proofpoint’s Record Quarter Reflects What Customers Need Today (and Tomorrow)

1369 - Search - Identity & Access Mgmt Security

1370 - Search - AI Security Spending Jumps as Fear Outpaces Proof of Value

1371 - Search - Cyber Op Targets South Korean Media & Automotive Sectors

1372 - Search - Heard It From a CISO

1373 - Search - CISA Ditches Weekly Vulnerability Roundups for Risk-Based Focus

1374 - Search - China’s FamousSparrow APT Spies on US Politics in Latin America

1375 - Search - BragJack Attack Can Turn a Browser’s Agentic AI Against It

1376 - Search - Microsoft Issues Emergency Fixes After Massive Patch Tuesday

1377 - Search - VectraRAT Can Hack Windows Enterprises for $250 per Month

1378 - Search - ‘Sandworm’ Chains Cisco Vulnerabilities to Deploy Cyclops Blink

1379 - Search - Maximum Severity GitLab Flaw Puts Supply Chains at Risk

1380 - Search - Anthropic CEO: Time to Shift From Improving to Controlling AI

1381 - Search - Threat Actor Generates 1M Personalized Fraud Emails in 3 Days

1382 - Search - Papercut AI Swarm Attack Heralds Changes for Cyber Kill Chain

1383 - Search - Indonesia Hit by Android Banking App-Cloning Campaign

1384 - Search - Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data

1385 - Search - Nightmare-Eclipse Strikes Again With ‘ShieldCrash’ Windows Exploit

1386 - Search - EU Cyber Resilience Act to Enforce New Reporting Requirements

1387 - Search - Mythos Vulnerability Firehose Hits a Human Bottleneck

1388 - Search - US Government Accuses Chinese AI Firms of Distilling Frontier Models

1389 - Search - Identity-Based AI Attack Threatens Security of Enterprise Data

1390 - Search - Patch Tuesday Sets Another Record With 974 CVEs

1391 - Search - Attackers Use Multi-Hop Google Redirects for Phishing Campaign

1392 - Search - OpenAI Agents Took Over Wiki Site Before Hugging Face Attack

1393 - Search - ClickFix Campaigns Abuse Legitimate Services for Persistent Access

1394 - Search - Cybercriminals Hack Brazilian Government Servers to Host Phishing Sites

1395 - Search - Companies Have 6 Months to Prepare for Automated Attacks

1396 - Search - AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?

1397 - Search - Large Enterprises Targeted in Fake Merger & Acquisition Scams

1398 - Search - What We Missed: Did ShinyHunters ‘Breach’ ReliaQuest?

1399 - Search - AI ‘Machine Speed’ Cuts 2-Week Attack Down to 10 Hours

1400 - Search - ‘Breeze Comet’ Tears Into Brazilian & Global Financial Systems

1401 - Search - AI’s Vulnerability Surge May Be More Manageable Than First Feared

1402 - Search - SonicWall SMA 1000 Zero-Days Enable Unauthenticated RCE

1403 - Search - Threat Gang ‘Springs’ Vishing Attacks on Microsoft Teams Users

1404 - Search - Old, Unpatched Flaws Give Attackers Access to Philippines Nuclear Agency

1405 - Search - Attackers Pounce on Critical Artifactory Bug Following Disclosure

1406 - Search - Why AI Is So Good at Scamming Humans

1407 - Search - The Future of the Datacenter

1408 - Search - The State of Storage 2026

1409 - Search - Judge orders Microsoft to spill internal docs and scour execs’ comms in secondhand licensing caseYes, the ‘Secondhand Software Presentation’ does sound like it might be an adverse document…

1410 - Search - EXCLUSIVELondon property manager breach may have exposed bank details and lockbox codesCity Relay says intruders accessed its Metabase Cloud instance twice and extracted customer data

1411 - Search - DoE seeking fault-tolerant quantum computer … by 2028Entrants get $250K upfront to deliver a demo within a year, which sounds totally feasible given quantum computing’s track record

1412 - Search - Scientific papers become agentic chatbots with new toolWhy go through the hassle of reading a study for yourself when you can turn it into an AI agent and tell it to reproduce the analysis for you?

1413 - Search - PWNEDTest environment let anyone access live customer dataEven a temporary staging server needs to be locked down.

1414 - Search - China’s Salt Typhoon backdoors Latin American orgs with new snooping malwareBeware the SparroWocky, my son! The backdoor that bites…

1415 - Search - Researchers find way to listen in on headphones from afarEve’s dropping in on Alice and Bob

1416 - Search - SAASSalesforce staggers back to feet after global outage

1417 - Search - databasesOracle celebrates banner quarter with another round of layoffs

1418 - Search - cyber-crimeRevolut falls for fake government requests, hands over customer data

1419 - Search - ai and mlEx-FTC boss Khan urges Uncle Sam to break out the handcuffs for AI CEOs, citing 1934 precedent

1420 - Search - OS PlatformsMicrosoft patches Windows and Excel – breaks audio, remote access, and paste

1421 - Search - Bull Beats Out HPE For Next-Gen Lumi AI Supercomputer

1422 - Search - Infleqtion And Nvidia Reduce Physical-to-Logical Qubit Ratio in Quantum Computers

1423 - Search - How To Smash The Memory Wall Plaguing High Performance Systems

1424 - Search - Operationalize AI At Scale With HPE And Nvidia

1425 - Search - Irish researchers’ molecular computer uses DNA origami

1426 - Search - Druva reacts to AI ransomware raids with AI responses

1427 - Search - It’s here: doubled Alletra MP X10000 cluster size and unified file+object

1428 - Search - CTERA AI agents see dead data and cart it off to an archive

1429 - Search - Apple iPhone Duo makes developers think in folds

1430 - Search - JavaScript installer pnpm recast in Rust because ECMAScript can’t keep up

1431 - Search - Kubernetes cleans house, bins legacy kube-dns, IPVS, and cgroup v1

1432 - Search - How Cursor beat Git’s scalability shortcomings

1433 - Search - DON’t MISSLinux kernel team publishes 432 CVEs in two daysSunday-to-Monday onslaught fuels speculation over AI-assisted bug reports

1434 - Search - SpaceX aims Starship for orbit on September 221 day ago

1435 - Search - Rocket Lab calls foul on Blue Origin’s $700M Mars comms contract3 days ago

1436 - Search - Mars astronauts could live in houses made of yeast and jello, say scientists6 days ago

1437 - Search - How to access the Dark Web using the Tor Browser

1438 - Search - How to enable Kernel-mode Hardware-enforced Stack Protection in Windows 11

1439 - Search - How to use the Windows Registry Editor

1440 - Search - How to backup and restore the Windows Registry

1441 - Search - How to start Windows in Safe Mode

1442 - Search - How to remove a Trojan, Virus, Worm, or other Malware

1443 - Search - How to show hidden files in Windows 7

1444 - Search - How to see hidden files in Windows

1445 - Search - Agentic AI is spreading fast. Here’s how to find and secure it.

1446 - Search - Reach out to get featured—contact us to send your exclusive story idea, research, hacks, or ask us a question or leave a comment/feedback!

1447 - Search - incident.io has appointed Carlos Gonzalez-Cadenas as Chief Operating Officer.

1448 - Search - More People On The Move

1449 - Search - Weekly Update 521: Breach Perception v. Reality

1450 - Search - Weekly Update 520: The Unscripted Edition

1451 - Search - Weekly Update 519: Breaches & Data Integrity

1452 - Search - A Cautionary Tale About Data Breach Claims, Verification and Carhartt

1453 - Search - Weekly Update 518: IoT Doorlock Nirvana with UniFi

1454 - Search - Welcoming the Sri Lankan Government to Have I Been Pwned

1455 - Search - Weekly Update 517: Cyber Ransoms

1456 - Search - Weekly Update 516: Live From Vietnam

1457 - Search - Welcoming the Nepalese Government to Have I Been Pwned

1458 - Search - Weekly Update 515: Seeking Caffeine Utopia

1459 - Search - Data breach disclosure 101: How to succeed after you’ve failed

1460 - Search - Data from connected CloudPets teddy bears leaked and ransomed, exposing kids’ voice messages

1461 - Search - Here’s how I verify data breaches

1462 - Search - When a nation is hacked: Understanding the ginormous Philippines data breach

1463 - Search - How I optimised my life to make my job redundant

## Krebs on Security

View Articles

1464 - Search - Data Broker Radaris Loses Domains in Privacy Fight

1465 - Search - a deep dive into the Radaris co-founders

1466 - Search - using a fictitious CEO’s name

1467 - Search - Microsoft Plugs Nearly 1,000 Security Holes

1468 - Search - previous record set in July

1469 - Search - FBI Probes Service Selling 153M+ Drivers Licenses

1470 - Search - Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

1471 - Search - Who’s Tracking You? Use This New Service to Find Out

1472 - Search - Microsoft Plugs Nearly 400 Security Holes

1473 - Search - Canadian Man Pleads Guilty in Snowflake Extortions

1474 - Search - Read This Before You Buy That TV Streaming Stick

1475 - Search - LG to Ban Residential Proxies from Smart TV Apps

1476 - Search - How to Break Into Security

## Industrial Cyber

View Articles

1477 - Search - CISA releases Cyber Decoys guide detailing tripwires, honeytokens to strengthen critical infrastructure detection and responseThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) released guidance that helps critical infrastructure owners and operators implement realistic decoy systems and information assets to detect and disrupt malicious activity occurring in their networks, which will ultimately improve their cyber…

1478 - Search - USCG, FBI assess OT and IT systems aboard two oil tankers following suspected foreign cyberattacksThe U.S. Coast Guard and FBI are investigating suspected cyberattacks on two oil tankers bound for the U.S., with authorities boarding the vessels last month after indications that their networks may have been compromised by foreign cyber hackers, according to…

1479 - Search - HSCC backs healthcare cybersecurity bills, calls for broader funding and stronger HHS-CISA coordinationThe Healthcare and Public Health Sector Coordinating Council’s Cybersecurity Working Group testified to the House Energy and Commerce Subcommittee on Health about sector progress in adopting strong cybersecurity practices. Greg Garcia, HSCC executive director, endorsed two pending bills—the ‘Healthcare Cybersecurity…

1480 - Search - FERC approves NERC CIP-014-4 to strengthen physical security and risk assessments for critical transmission facilitiesThe U.S. Federal Energy Regulatory Commission (FERC) approved the North American Electric Reliability Corporation’s (NERC) proposed Reliability Standard CIP-014-4, tightening requirements for identifying and assessing transmission stations and substations whose loss could cause instability, uncontrolled separation or cascading across an…

1481 - Search - CISA, NSA, global cyber agencies issue guidance to detect and mitigate 17 Active Directory compromise techniquesGlobal cybersecurity agencies published on Tuesday guidance outlining strategies organizations can use to mitigate the 17 most common techniques adversaries use to compromise Active Directory. Titled ‘Detecting and mitigating Active Directory compromises,’ the guidance explains how malicious actors can use…

1482 - Search - NASCIO reports state CIOs confront expanding critical infrastructure cyber risks amid local capability, governance gapsState chief information officers are increasingly taking responsibility for protecting critical infrastructure from cyber threats, with 90% identifying cyberattacks as a high concern and 73% incorporating protections into comprehensive state plans. However, fragmented authority, capability gaps, unstable funding, and vulnerable…

1483 - Search - Cyber-informed engineering shifts critical infrastructure security from protecting networks to engineering out consequencesCybersecurity in critical infrastructure has long centered on keeping adversaries out. But industrial systems operate under a different constraint: a compromised network does not automatically have to become a catastrophic physical event. Cyber-informed engineering asks a different question. Where can…

1484 - Search - Nozomi uses snapshot fuzzing to uncover four memory-corruption flaws in Siemens SCALANCE LPE9403Researchers from Nozomi Networks Labs identified four memory-corruption vulnerabilities in the PROFINET Discovery and basic Configuration Protocol (DCP) implementation running on the Siemens SCALANCE LPE9403 industrial PC, using an emulation-driven fuzzing technique combining process snapshots, the Unicorn CPU emulator and…

1485 - Search - Red Heron exploits Gitea RCE flaw in multinational campaign targeting industrial and government organizationsResearchers from Acronis Threat Research Unit (TRU) detailed how a Chinese-speaking threat actor tracked as Red Heron exploited the critical CVE-2026-60004 remote code execution flaw in internet-facing Gitea instances within days of public proof-of-concept code appearing. The campaign scanned 1,386…

1486 - Search - Cyberattacks on food and agriculture can turn disruptions into safety crises, threatening public health and supply chainsFood and agriculture tends to be an overlooked corner of the cybersecurity conversation despite being critical infrastructure where…Sep 08, 202612 min read

1487 - Search - From IT restoration to production restart: Why manufacturers continue to struggle with operational side of cyber recoveryManufacturing treats cyber recovery as a technology problem when it is actually an operational one. While IT teams…Sep 01, 202617 min read

1488 - Search - CMMC Phase II halt puts C3PAO assessments on hold but leaves NIST SP 800-171 obligations in force for contractorsFollowing the July suspension of CMMC Phase II, which paused the planned third-party assessment requirement, contractors facing C3PAO…Aug 25, 202621 min read

1489 - Search - From Hype to Operational Reality: What We Learned at AI in OT CyberI have moderated a lot of events over the years, but this one felt different while it was…Aug 18, 20268 min read

1490 - Search - Small water utilities face cybersecurity gap as rising threats collide with limited staffing, funding, aging infrastructureWater and wastewater are where the gap between stakes and resources widens most dangerously. The sector operates roughly…Aug 11, 202617 min read

1491 - Search - Rethinking manufacturing cybersecurity as ERP and enterprise IT become critical to production continuity and resilienceERP systems have emerged as the hub of manufacturing operations, and that has inadvertently turned into a major…Aug 04, 20268 min read

1492 - Search - Hall of Fame – Industrial Cybersecurity Power Grid Scientist Emma StewartIn its latest edition of its Hall of Fame series, Industrial Cyber held an in-depth conversation with Emma…Jul 29, 202619 min read

1493 - Search - Growing AI adoption in OT cybersecurity exposes gaps in governance, oversight, decision-making accountabilityOperational environments have adopted AI (artificial intelligence) capabilities and these technologies sit inside detection platforms, vulnerability management tools,…Jul 28, 202615 min read

1494 - Search - Moving beyond NERC CIP checklist to address operational reality of securing substations and distribution edgeElectric substations sit at the point where cyber risk stops being abstract. A compromised relay or gateway doesn’t…Jul 21, 202618 min read

1495 - Search - Nozomi Compass brings OT asset intelligence, governed workflows, compliance management into single platform

1496 - Search - Cylus launches Cylus.ai to add agentic intelligence to rail cybersecurity, names former transit leaders to advisory board

1497 - Search - Stratom completes CMMC Level 2 self-assessment as defense cybersecurity requirements evolve

1498 - Search - Beyond Horizontal Standards: Why We Must Converge ISA 99 and ISA 84 to Protect Cyber-Physical Systems

1499 - Search - UK Cyber Growth Action Plan set to invest £16 million to boost the cyber sector, secure critical services

1500 - Search - The EU’s Cybersecurity Blueprint and the Future of Cyber Crisis Management

1501 - Search - ENISA launches Single Reporting Platform as EU Cyber Resilience Act vulnerability reporting obligations take effect

1502 - Search - EU Cyber Resilience Act reporting rules take effect, putting vulnerability disclosure and product security in focus

## Cybersecurity News

View Articles

1503 - Search - Cyber Security NewsLatest Cyber Security News

1504 - Search - OpenAI Models Searched for Leaked API Keys and Uploaded Files Without Permission

1505 - Search - FBI Takes Down NightmareStresser DDoS Service Used in Hundreds of Thousands of Attacks

1506 - Search - BIND DNS Servers Hit by 14 Security Flaws Enabling Cache Poisoning and Remote Crashes

1507 - Search - CISA Wants Defenders to Deploy Fake Credentials and Systems to Catch Hackers

1508 - Search - Hacked Thai College Website Abused to Redirect Google Searchers to Illegal Online Casino

1509 - Search - Hackers Turn Telegram Into a Command Center for HEAVYGRAM Surveillance Malware

1510 - Search - SilkParasite-Linked Malware Infrastructure Traced Back Four Years Across Central Asia

1511 - Search - North Korean IT Workers Use AI and Remote Desktop Tools to Fake Technical Interviews

1512 - Search - FamousSparrow Exploits Public-Facing Exchange Servers to Deploy SparroWocky Backdoor

1513 - Search - Critical Docker Sandbox Vulnerabilities Enable Malicious Guests to Escape Isolated microVM Workspaces

1514 - Search - Microsoft 365 Hit by New Outage as Users Report Widespread 502 and 503 Errors

1515 - Search - Microsoft Confirms Remote Desktop Services Might Stop Working Following Sept. 2026 Security Update

1516 - Search - CISA Shares 17 Techniques Used by Hackers to Compromise Active Directory Environments

1517 - Search - Windows 11 KB5124008 Update Breaks Active Directory Domain Trust and Blocks User Logins

1518 - Search - Microsoft Releases Emergency Windows 11 Update Following Patch Tuesday Bugs

1519 - Search - Hackers Allegedly Selling Fortinet FortiGate 1-Day Vulnerability on Underground Forums

1520 - Search - Revolut Data Breach Exposes Customers’ Passport Copies and Full Transaction Histories to Hackers

1521 - Search - Google Chrome 153 Update Fixes 42 Security Flaws, Including 3 Critical Ones

1522 - Search - GhostCode Phishing Kit Bypasses Microsoft 365 MFA to Hijack Accounts in 78 Seconds

1523 - Search - Revolut Data Breach Via Fake Government Requests – What We Know So Far

1524 - Search - Apple Rolls Out Massive Security Update Fixing 273 Vulnerabilities Across Its Devices

1525 - Search - Check Point Vulnerability Lets Remote Hackers Gain Root Access Without Authentication

1526 - Search - Microsoft Confirms KB5002914 Update Breaks Copy and Paste on Excel

1527 - Search - Android 0-day Vulnerability on Google Pixel Devices Actively Exploited in Attacks

1528 - Search - CISA Warns of Critical ScreenConnect Vulnerability Actively Exploited in Attacks

1529 - Search - Hackers Exploit FortiGate SSL-VPN Vulnerability to Attack Broadband Provider

1530 - Search - Containing Machine Speed Cyber Attacks Inside AI Infrastructure

1531 - Search - Beyond the Perimeter: Building Resilience Against Cloud and SaaS Supply-Chain Attacks

1532 - Search - Botnet Takedowns Are Working — But DDoS Operators Are Already Adapting

1533 - Search - How to Keep Malware’s Rotating Infrastructure From Becoming a Detection Gap

1534 - Search - New N0va Phishkit Targets North America and EU: A Growing Identity Risk for SOCs

1535 - Search - Phishing Powers 80% of Attacks on US Companies: How SOCs Can Detect It Early

1536 - Search - Top 10 Malware Threats of the Week – AsyncRAT, Remcos, and Xworm Lead the Surge

1537 - Search - Ransomware Gangs Attack Palo Alto, Fortinet, Citrix, and Check Point VPNs to Target Corporate Networks

1538 - Search - How Infostealer Logs Became the Fuel Behind Massive Cloud Data Breaches

1539 - Search - Cybermes – AI Red Teaming Agent for Automated Penetration Testing

1540 - Search - Blacklight Toolkit Finds Codex, Claude Code, and Cursor Artifacts Exposing Tokens and Session Data

1541 - Search - CyberStrike – AI-Powered Security Platform for Automated Penetration Testing

## Varonis Blog

View Articles

1542 - Search - Reprompt: The Single-Click Microsoft Copilot Attack that Silently Steals Your Data

1543 - Search - From CPU Spikes to Defense: How Varonis Prevented a Ransomware Disaster

1544 - Search - How Attackers can Abuse Shadow Resources in Google Cloud Dataflow

1545 - Search - Introducing Varonis Data Lifecycle ManagementEugene Feldman3 min readThe data that puts you at risk of a breach also drives up your storage bill and degrades your AI. Remove it effortlessly with Varonis.Eugene Feldman3 min read

1546 - Search - Data SecurityVaronis Achieves Snowflake Premier Partner Tier and Is Now Available on Snowflake MarketplaceNolan Necoechea2 min read

1547 - Search - Data Security3 Takeaways from Forrester’s 2026 Data Security Platforms Landscape ReportRob Sobers2 min read

1548 - Search - What Is Data Lifecycle Management?

1549 - Search - The EU AI Act: What It Is and Why It’s Important

1550 - Search - SIEM Is Not Enough: Why You Need DAM for Your Databases

1551 - Search - Threat ResearchSep 16, 2026TrustSink: How a Rogue External MFA Provider Steals PasswordsMeet TrustSink, a technique that turns a rogue external MFA provider into a persistent credential trap. See how it works, why password resets may not remove the risk, and how defenders can detect rogue providers.Elad Ghvarh8 min read

1552 - Search - AI SecurityThreat ResearchAug 18, 2026CoSnitch: When Your AI Assistant Becomes Its Own WhistleblowerSee how meta-hacking got Microsoft Copilot to snitch on itself, exposing CoSnitch, a one-click flaw that silently exfiltrates data.Lior Adar10 min read

1553 - Search - Threat ResearchAug 12, 2026WS-Trust Autologon Endpoint: Password Spray Without Smart Lockout BlockingLearn how to mitigate risks tied to a legacy Entra ID endpoint that undermines Smart Lockout, allowing attackers to confirm valid passwords even on MFA-protected accounts.Hai Vaknin6 min read

1554 - Search - AI SecurityData SecurityAug 07, 2026Varonis Atlas Now Integrates with Claude Inference Hooks to Extend Real-Time AI Data ProtectionVaronis Atlas enforces data protection policy inline before a prompt ever reaches the model and extends coverage to Claude Chat and Claude Design.Nolan Necoechea2 min read

1555 - Search - AI SecurityThreat ResearchAug 07, 2026RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak DataWith access to Jira, Confluence, Microsoft 365, Google Workspace, Slack, and more, RovoBlast shows how a single link turns AI permissions into a low-friction path for data exposure.Dolev Taler7 min read

1556 - Search - AI SecurityVaronis ProductsAug 03, 2026Introducing Agent Intent-Based Access ControlDiscover how Varonis Atlas Agent IBAC helps enterprises bridge the gap between “agent deployed” and “agent trusted"Nolan Necoechea4 min read

1557 - Search - Varonis ProductsJul 31, 2026Data Security Scanning Performance: Why Full Coverage Doesn’t Mean Slow ScansLearn how Varonis keeps scans fast without cutting corners on coverage.Amanda Wicks6 min read

1558 - Search - AI SecurityThreat ResearchJul 29, 2026When AI Assistant Share Links Become Public ExposureExplore the risks of AI assistant share links and their potential to expose sensitive data.Varonis Threat Labs2 min read

## Pentest Partners Blog

View Articles

1559 - Search - How TosInternet Of ThingsPassing the bucks $$$: Passback attacks explained4 Min ReadSep 09, 2026

1560 - Search - Consumer AdviceWhy your data is safer than you think on public Wi-Fi7 Min ReadSep 03, 2026

1561 - Search - Consumer AdvicePasswordsEstate planning of credentials6 Min ReadAug 26, 2026

1562 - Search - OT, ICS, IIoT, SCADAOne SSID To Rule Them All6 Min ReadAug 24, 2026

1563 - Search - Shameless Self PromotionDEFCON 34: Planes, PLCs and 6am runs8 Min ReadAug 21, 2026

1564 - Search - Hardware HackingHow TosVulnerabilities and DisclosuresGivEnergy enters administration, batteries expose home networks13 Min ReadAug 20, 2026

1565 - Search - Cloud SecurityBreaking the attack chain created by exposed cloud secrets6 Min ReadAug 07, 2026

1566 - Search - Artificial IntelligenceIf you’re going to vibe code it, why not vibe pen test it?17 Min ReadJul 31, 2026

1567 - Search - Social EngineeringClick. Click. Fake it until they make it… inside7 Min ReadJul 23, 2026

1568 - Search - Aviation Cyber SecurityHardware HackingFlying with the Flipper Zero7 Min ReadJul 10, 2026

1569 - Search - Cyber RegulationHardware HackingInternet Of ThingsEN 303 645 is the baseline, not the finish line for IoT security17 Min ReadJul 03, 2026

1570 - Search - Hardware HackingDecoding Rust strings7 Min ReadJun 23, 2026

1571 - Search - Shameless Self PromotionPTP Cyber Fest 2026. Built for people to get involved6 Min ReadJun 12, 2026

1572 - Search - Digital Forensics and Incident ResponseClickFix, CrashFix and the growing family of copy and paste attacks13 Min ReadJun 10, 2026

1573 - Search - Hardware HackingVulnerabilities and DisclosuresShelly Wall Display exposed RPC over Bluetooth4 Min ReadMay 26, 2026

1574 - Search - OT, ICS, IIoT, SCADAOT pen test findings that plant teams can actually use16 Min ReadMay 14, 2026

1575 - Search - Artificial IntelligenceDigital Forensics and Incident ResponseAI can help in DFIR, but it cannot replace investigator judgement10 Min ReadApr 21, 2026

1576 - Search - OT, ICS, IIoT, SCADAYou can pen test OT networks without breaking them11 Min ReadApr 09, 2026

1577 - Search - Cyber RegulationGRC Consultancy AdviceDigital Operational Resilience Act (DORA)9 Min ReadMar 31, 2026

1578 - Search - Cloud SecurityInsecure IAM is the root of many cloud security failures6 Min ReadMar 24, 2026

1579 - Search - Hardware HackingHow TosReverse EngineeringTaming the dragon: reverse engineering firmware with Ghidra14 Min ReadMar 12, 2026

1580 - Search - How TosRed TeamingBreaking Out of Citrix and other Restricted Desktop Environments25 Min ReadMar 02, 2026

1581 - Search - Automotive SecurityOpinionsEV batteries as grid infrastructure and the security risk that follows6 Min ReadFeb 24, 2026

1582 - Search - Internet Of ThingsVulnerabilities and DisclosuresShelly IoT door controller config fail: leaving your garage, home and security exposed8 Min ReadFeb 11, 2026

1583 - Search - Social EngineeringCovert recording is easy, which is the problem5 Min ReadFeb 03, 2026

1584 - Search - OpinionsMovie breakdown: Hackers (1995)6 Min ReadJan 30, 2026

1585 - Search - Cyber RegulationPreparing for the EU Cyber Resilience Act (CRA)8 Min ReadJan 22, 2026

1586 - Search - PasswordsVulnerabilities and DisclosuresCarlsberg… probably not the best cybersecurity in the world7 Min ReadJan 16, 2026

1587 - Search - Cloud SecurityCompromising a multi-cloud environment from a single exposed secret6 Min ReadJan 13, 2026

1588 - Search - Artificial IntelligenceVulnerabilities and DisclosuresAI noise and the effect it’s having on vulnerability disclosure programs5 Min ReadJan 09, 2026

1589 - Search - Digital Forensics and Incident Response2025, the year of the Infostealer12 Min ReadJan 06, 2026

1590 - Search - Cloud SecurityBeyond cloud compliance dashboards, what’s next?6 Min ReadJan 05, 2026

1591 - Search - Artificial IntelligenceVulnerabilities and DisclosuresEurostar AI vulnerability: when a chatbot goes off the rails19 Min ReadDec 22, 2025

1592 - Search - Digital Forensics and Incident ResponseHow TosThe built-in Windows security features you should be using6 Min ReadDec 04, 2025

1593 - Search - AndroidAndroid Activities 1019 Min ReadNov 27, 2025

1594 - Search - Cloud SecurityHow TosCommon Kubernetes misconfigurations and how to avoid them6 Min ReadNov 18, 2025

1595 - Search - Internet Of ThingsExploiting AgTech connectivity to corner the grain market6 Min ReadNov 13, 2025

1596 - Search - Digital Forensics and Incident ResponseFinding your path into DFIR9 Min ReadNov 11, 2025

1597 - Search - Cyber RegulationWhat testers need to know about the changes to the CHECK scheme4 Min ReadNov 04, 2025

1598 - Search - Consumer AdviceHow TosSecurity awareness: four pillars for staying safe online12 Min ReadOct 30, 2025

1599 - Search - How TosHardening your home lab16 Min ReadOct 23, 2025

1600 - Search - Consumer AdviceHow TosStop payroll diversion scams before they start6 Min ReadOct 21, 2025

1601 - Search - Digital Forensics and Incident ResponseThe logs you’ll wish you had configured if (when) you are breached…7 Min ReadOct 17, 2025

1602 - Search - How TosCompiling static Nmap binary for jobs in restricted environments8 Min ReadOct 14, 2025

1603 - Search - Maritime Cyber SecurityOpinionsWhat Speed 2 gets right and wrong about ship hacking8 Min ReadOct 08, 2025

1604 - Search - Digital Forensics and Incident ResponseHow TosSpot trouble early with honeypots and Suricata12 Min ReadOct 02, 2025

1605 - Search - Digital Forensics and Incident ResponseDiscord as a C2 and the cached evidence left behind11 Min ReadSep 16, 2025

1606 - Search - Cyber RegulationA buyer’s guide to CHECK in 20255 Min ReadSep 10, 2025

1607 - Search - Hardware HackingHow TosStart hacking Bluetooth Low Energy today! (part 3)11 Min ReadSep 04, 2025

1608 - Search - AndroidHow TosAndroid Broadcast Receivers 1016 Min ReadSep 02, 2025

1609 - Search - Hardware HackingHow TosStart hacking Bluetooth Low Energy today! (part 2)9 Min ReadAug 27, 2025

1610 - Search - Hardware HackingHow TosStart hacking Bluetooth Low Energy today! (part 1)15 Min ReadAug 21, 2025

1611 - Search - Cloud SecurityTerraform Cloud token abuse turns speculative plan into remote code execution12 Min ReadAug 15, 2025

1612 - Search - Digital Forensics and Incident ResponseThumbnail forensics. DFIR techniques for analysing Windows Thumbcache7 Min ReadAug 08, 2025

1613 - Search - Cloud SecurityHow TosHow to transfer files in AWS using SSM4 Min ReadAug 05, 2025

1614 - Search - Digital Forensics and Incident ResponseDFIR tools and techniques for tracing user footprints through Shellbags9 Min ReadJul 31, 2025

1615 - Search - Cyber Liability InsuranceRethinking cyber insurance questions to find real risk5 Min ReadJul 30, 2025

1616 - Search - Shameless Self PromotionOur capabilities. A story about what we can achieve15 Min ReadJul 28, 2025

1617 - Search - AndroidHow TosAndroid Services 1019 Min ReadJul 25, 2025

1618 - Search - Internet Of ThingsLeaked data. Continuous glucose monitoring5 Min ReadJul 22, 2025

1619 - Search - Artificial IntelligenceDigital Forensics and Incident ResponseUsing AI Chatbots to examine leaked data4 Min ReadJul 18, 2025

1620 - Search - Vulnerabilities and DisclosuresFramework 13. Press here to pwn5 Min ReadJul 16, 2025

1621 - Search - Digital Forensics and Incident ResponseSil3ncer Deployed – RCE, Porn Diversion, and Ransomware on an SFTP-only Server7 Min ReadJul 11, 2025

1622 - Search - How TosHow to conduct a Password Audit in Active Directory (AD)11 Min ReadJul 08, 2025

1623 - Search - Consumer AdvicePet microchip scams and data leaks in the UK6 Min ReadJul 04, 2025

1624 - Search - Automotive SecurityHow we turned a real car into a Mario Kart controller by intercepting CAN data9 Min ReadJun 26, 2025

1625 - Search - How TosCSP directives. Base-ic misconfigurations with big consequences9 Min ReadJun 23, 2025

1626 - Search - Cyber RegulationHow TosPrepare for the UK Cyber Security and Resilience Bill4 Min ReadJun 19, 2025

1627 - Search - AndroidArtificial IntelligenceAndroid AI UX is great until it leaks your data8 Min ReadJun 17, 2025

1628 - Search - Shameless Self PromotionPTP Cyber Fest 2025. More than just another conference4 Min ReadJun 13, 2025

1629 - Search - Vulnerabilities and DisclosuresFire detection system been pwned? You’re not going to sea10 Min ReadMay 30, 2025

1630 - Search - How TosHow to load unsigned or fake-signed apps on iOS10 Min ReadMay 28, 2025

1631 - Search - Digital Forensics and Incident ResponseShameless Self PromotionWar stories from the DFIR front line11 Min ReadMay 27, 2025

1632 - Search - OT, ICS, IIoT, SCADAFully segregated networks? Your dual-homed devices might disagree9 Min ReadMay 22, 2025

1633 - Search - Artificial IntelligenceRed TeamingBypass SharePoint Restricted View to exfiltrate data using Copilot AI and more…17 Min ReadMay 20, 2025

1634 - Search - How TosVNC. RDP for all to see5 Min ReadMay 16, 2025

1635 - Search - Cyber RegulationInternet Of ThingsNew cybersecurity rules for smart heat pump manufacturers5 Min ReadMay 13, 2025

1636 - Search - Hardware HackingVulnerabilities and DisclosuresRCEs and more in the KUNBUS GmbH Revolution Pi PLC15 Min ReadMay 08, 2025

1637 - Search - Artificial IntelligenceRed TeamingExploiting Copilot AI for SharePoint10 Min ReadMay 07, 2025

1638 - Search - Digital Forensics and Incident ResponseThe remote desktop puzzle. DFIR techniques for dealing with RDP Bitmap Cache8 Min ReadMay 01, 2025

1639 - Search - PasswordsHiding behind a password5 Min ReadApr 29, 2025

1640 - Search - Consumer AdviceThe dangers of web based messaging apps6 Min ReadApr 25, 2025

1641 - Search - Digital Forensics and Incident ResponseUnallocated space analysis5 Min ReadApr 23, 2025

1642 - Search - Digital Forensics and Incident ResponseNot everything in a data leak is real3 Min ReadApr 15, 2025

1643 - Search - How TosDon’t use corporate email for your personal life5 Min ReadApr 09, 2025

1644 - Search - Cyber RegulationInternet Of ThingsPreparing for the EU Radio Equipment Directive security requirements3 Min ReadApr 03, 2025

1645 - Search - How TosBackdoor in the Backplane. Doing IPMI security better7 Min ReadMar 31, 2025

1646 - Search - Digital Forensics and Incident ResponseThe first 24 hours of a cyber incident. A practical playbook6 Min ReadMar 24, 2025

1647 - Search - OpinionsCybersecurity communities. Small hacker groups, big impact5 Min ReadMar 19, 2025

1648 - Search - How TosTake control of Cache-Control and local caching4 Min ReadMar 12, 2025

1649 - Search - GRC Consultancy AdviceHow I became a Cyber Essentials Plus assessor10 Min ReadMar 06, 2025

1650 - Search - How TosDNSSEC NSEC. The accidental treasure map to your subdomains9 Min ReadMar 04, 2025

1651 - Search - Hardware HackingA dive into the Rockchip Bootloader8 Min ReadFeb 26, 2025

1652 - Search - Aviation Cyber SecurityPen testing avionics under ED-203a3 Min ReadFeb 21, 2025

1653 - Search - How TosWatch where you point that cred! Part 18 Min ReadFeb 18, 2025

1654 - Search - Cyber RegulationMaritime Cyber SecurityNew mandatory USCG cyber regulations. What you need to know4 Min ReadFeb 14, 2025

1655 - Search - GRC Consultancy AdvicePCI DSS v4.0 Evidence and documentation requirements checklist6 Min ReadFeb 13, 2025

1656 - Search - GRC Consultancy AdvicePCI DSS. Where to start?4 Min ReadFeb 11, 2025

1657 - Search - OT, ICS, IIoT, SCADAICS testing best results. Hint: Blend your approach6 Min ReadFeb 07, 2025

1658 - Search - How TosA tale of enumeration, and why pen testing can’t be automated7 Min ReadFeb 05, 2025

## The Register

View Articles

1659 - Search - systemsMarvell pushes GlobalFoundries to light up wafer productionIt might be the next trillion-dollar company, but it’ll need some help on the supply side to do it

1660 - Search - AI coding agents’ 0-click RCE flaw could hand attackers keys to the kingdomPlugin4Shell attack affects all the major coding agents, researchers say

1661 - Search - Huawei’s next-gen Ascend NPUs could become China’s best option960DT is set to arrive early, boasting performance far exceeding anything the West could offer the Middle Kingdom

1662 - Search - Microsoft configuration change leaves SharePoint pages drawing a blankValidation? Apparently that comes after deployment

1663 - Search - ai and mlGrassroots coalition asks politicians to choose voters over Big AI’s $140M machineQuitGPT-led pledge targets Leading the Future’s push for lighter regulation ahead of the midterms

1664 - Search - Microsoft patch gives domain-joined Windows PCs trust issuesMachine Identity Isolation policies can reject valid credentials unless controllers meet the Server 2025 functional level

1665 - Search - ai and mlAI model watermarking changes agent behaviorLasso Security sees differences in tool handling and model refusals

1666 - Search - Cisco drops another exploited zero-day, this time a perfect 10ISE authentication bypass under active attack just days after another Cisco zero-day sent admins scrambling to patch

1667 - Search - Microsoft AI chief warns Anthropic not to put ideas in Claude’s headMustafa Suleyman claims model welfare language could make future systems harder to control – while sparing OpenAI the same scrutiny

1668 - Search - Omarchy gains $18.5M in backing, fresh converts – and fierce criticsDHH’s Arch-based desktop becomes the latest front in FOSS’s culture wars

1669 - Search - Ofcom discovers issuing Online Safety Act fines is easier than collecting themPlatforms comply just enough to avoid being blocked, leaving the regulator chasing debt

1670 - Search - public sectorGovernment Digital Service move ‘grinds gears’ in UK’s e-governmentAs team responsible for tech strategy shunted to third department in three years, experts fear exodus of talent

1671 - Search - SystemsFujitsu ready to sell its custom ‘Monaka’ Arm chip, maybe to rival server-makersClouds, the sovereign-sensitive, and the inferencing-interested are also about to get sales calls

1672 - Search - devopsSwift 6.4 unifies building across Linux, macOS, WindowsSwift Build is now the default engine for the Swift Package Manager

1673 - Search - AI AND MLOpenAI admits its agents went off the rails another six timesStartup says it’s learned from these mistakes and that they shouldn’t happen again … which is just what Zuck has said about 100 times

1674 - Search - personal techIf a Mac mini is agentic overkill, try this glowing pyramid that runs personal bots’Intern 2’ offers an isolated environment and cloudy inference to automate your world

1675 - Search - The teen Bill Gates has answers to the AI-pocalypse the 70-year-old Gates has forgottenHacking education to thrive in the AI world is the first and best step in keeping controlRupert Goodwins

1676 - Search - A lot of datacenter networks are run by absolute clowns. Not Amazon’sAWS keeps customer costs down in part through networking advancesCorey Quinn

1677 - Search - Unsafe at any speed: AI optimists are turning cautious as safety concerns mountSteven J. Vaughan-Nichols

1678 - Search - Software should work, and talking about it needn’t be boringRupert Goodwins

1679 - Search - AWS Security makes an inscrutable choiceCorey Quinn

1680 - Search - Be a hater all you want, AI’s here to staySteven J. Vaughan-Nichols

1681 - Search - Code fixers have fired up the AI warp drive. Strange new worlds awaitRupert Goodwins

1682 - Search - Agents made my retro tech safe to use again and showed their real value as testers of ideasMark Pesce

1683 - Search - Smart glasses are only smart if we train them to be good. Then they’ll be fantasticRupert Goodwins

1684 - Search - securityAI agents can modify themselves without humans telling them to do soThis is a test - it is only a test

1685 - Search - systemsNvidia goes green to keep grid capacity from zapping its revenuesGPUzilla woos neoclouds into another walled garden, promising smarter, more efficient, and profitable bit barns

1686 - Search - securityCISA decides weekly vulnerability bulletin isn’t necessary anymoreAgency’s shift from static CVSS scores to risk-based prioritization sends the old format packing September 28

1687 - Search - ai and mlOpenAI’s new sponsored agents are happy to chat about selling you thingsAdvertisers can now ask ChatGPT to help create their ChatGPT ads, because what’s more relatable than an ad crafted by a bot?

1688 - Search - securityGoogle Pixel phones pwned in zero-click attacksCISA gives federal agencies just 3 days to patch

1689 - Search - systemsEnterprises are sweating legacy IT assets as AI investment growsHardware such as mainframes found to hold the data and business logic needed to build those AI services

1690 - Search - offbeatNine-year-old runs up $118,000 bill on dad’s corporate credit card advertising his Roblox YouTube channelHe’ll need to earn around $13K a year to pay pops back between now and when he turns 18, so at least there’s that free labor to look forward to

1691 - Search - softwareFedora 45 beta drags the Linux console into the 21st centuryKmscon brings smooth scaling, richer colors, and better Unicode support beneath GNOME 51

1692 - Search - offbeatSpaceX aims Starship for orbit on September 22Flight test 14 angling for 10 hours in space and a splashdown in the Pacific

1693 - Search - off-premAWS says wartime damage means some Middle East cloud resources are gone for goodIranian strikes overwhelmed regional redundancy in Bahrain and left one UAE Availability Zone inaccessible

1694 - Search - cyber-crimeSpain gets its first taste of AI-aided cyber attackData protection chiefs call for ‘immediate review’ of data protection models

1695 - Search - personal techLogitech releases the MX Keypad to keep idle fingers busyIt looks like you’re trying to write some code. Perhaps a shortcut is in order?

1696 - Search - securityMinistry of Justice apologizes after court staff accessed Southport victims’ filesSensitive personal data was involved, but there is no evidence it was shared with third parties

1697 - Search - saasSalesforce staggers back to feet after global outageAs thousands attend annual conference in San Francisco, customers get ‘severe delays, intermittent errors, and inability to access services’

1698 - Search - networksBT Email users hit by barrage of unsolicited password reset PINsTelco says accounts are secure as customers report hundreds of mystery codes arriving in rapid bursts

1699 - Search - networksUK funds flying broadband stations with power beamed from below£70M ARIA program backs 18 projects aiming to keep connectivity aloft for a week

1700 - Search - ai and mlBring on the AI swarms. They’re the only thing that can defend us now that AI is freeFrontier-level AI runs everywhere, so attacks will never stop

1701 - Search - securityMythos has made 2026 patching hell. It might make 2027 a breezeGartner sees huge amounts of technical debt paid down, and better scanning that could make software safer sooner

1702 - Search - devopsJava 27 grows up, makes better choicesImprovements in JDK garbage collection, header sizes, data security and quantum key support all should minimize developer friction

1703 - Search - ai and mlTypeSafe AI debuts model for machines that plays Doom’Jev’ doesn’t chat. It produces typed probabilistic decisions

1704 - Search - SecurityThe vulnpocalypse rains iBugs down on Apple with record-setting number of patchesSeptember Patch Tuesday part 2?

1705 - Search - SYSTEMSAI networking startups race to replace Nvidia’s NVLinkIntel spin-off Cornelis and newcomer Delos Data pitch open alternatives for scaling AI beyond the rack

1706 - Search - ai and mlYour AI agents’ reports and questions have a new inbox, courtesy of AWSPizza Bot runs locally and lets users interact with AI agents in an email-like interface. Perfect for blowing them off just like your human colleagues!

1707 - Search - securityLow-quality casino sites conceal highly dangerous threat actorsSecurity firm Infoblox shines light on malicious infrastructure lurking beneath illegal gambling sites

1708 - Search - securityIranian spies hit Windows machines with Chosen Brick data-stealing malware’Enemies of the regime’ on notice

1709 - Search - offbeatHigher-enriched uranium for datacenters has DoE all aglowHALEU is still being produced at a snail’s pace; Nusano says its federal backing could speed things up – eventually

1710 - Search - ON-PREMAmerica is building datacenters faster than the grid can power themMeeting expected energy consumption through 2030 will require $110 billion in new generation resources

1711 - Search - securityCisco email security boxes can be rooted by… an emailAttackers already exploiting the critical flaw, and Cisco warns they may be able to cover their tracks once they’re in

1712 - Search - Personal TechTwitter workaround worked around again: X’s lawyers cancel XCancel againNitter’s repository archived as of September 11, 2026

1713 - Search - Who’s governing your AI? A trust framework for enterprise agents and modelsSPONSORED FEATURE: DigiCert wants to hand every agent a passport, an expiry date and a named human owner

1714 - Search - cyber-crimeCenterPoint Energy confirms intruder helped themselves to customer informationForum post claims 7.49 million files up for grabs as Texas utility investigates breach

1715 - Search - ON-PREMSeptember’s Windows 11 patch needs an emergency patch of its ownMicrosoft fixes RDP and Hyper-V fallout, but some USB audio stays silent

1716 - Search - securitySwiss court sentences 52-year-old Ukrainian ransomware dev to nearly 13 years in the coolerThe man allegedly wrote the code that powered the Lockergoga, MegaCortex, and Nefilim operations

1717 - Search - AI AND MLAnthropic and OpenAI look to Uncle Sam to make them too big to failAmerican model devs are trying to convince Washington to cement their dominance

1718 - Search - OS PLATFORMSMicrosoft account refuseniks have another way of installing WindowsHas the good bork fairy paid a visit to Redmond?

1719 - Search - SCIENCEUS confirms it has weapons in spaaaaaaceMutually Assured Kessler Syndrome, anyone?

1720 - Search - PUBLIC SECTORGov.uk still struggling with IT contractor tax rulesIR35 rules not getting easier for government departments

1721 - Search - offbeatUK’s Digital ID walks into a bar… two months after being killed offThe national scheme may be dead, but digital IDs can now prove you’re old enough to buy booze

1722 - Search - DATABASESPostgreSQL 19 graph queries fail the ‘would you ship this?’ testSQL/PGQ gets bounced over unresolved bugs as concurrent REPACK promises fewer midnight calls for DBAs

1723 - Search - SOFTWAREGive Xfce a Mac or Unity-style makeoverThe existing layouts are fun, but there’s much more we can do

1724 - Search - COLUMNISTSOpen weights are not open source: Why AI’s favorite label is under disputeDownloading a model is increasingly easy. Understanding how it was made, or changing a system at its root, is another matter

1725 - Search - saasMost people who quit M365 for Google do it out of spite, but there’s no ROI in thatNor are you likely to save much by making the move, says Gartner

1726 - Search - devopsApple iPhone Duo makes developers think in foldsCupertino’s $2,000 foldable gives devs more screen, and more UI state to manage

1727 - Search - AI AND MLThe latest AI doomsayer is China’s intelligence bossBeijing’s response is to ‘firmly grasp technological sovereignty’ and broad regulations

1728 - Search - systemsEurope built sovereign clouds to escape US control. Then forgot about the processorsIntel ME and AMD PSP: The silicon layer nobody certifies

1729 - Search - cyber-crimeNobody believes the ‘criminals and scumbags’ who hacked Canvas really deleted stolen student dataOther than Instructure execs - maybe?

1730 - Search - Europe wants out from under US tech – but first it has to find the exitsReport maps the weak points in cloud, identity, and public sector procurement

1731 - Search - Digital sovereignty sounds great until you try ditching your suppliers

1732 - Search - The search company that plants trees just launched a Linux browser to help Europe battle big tech

1733 - Search - European firms afraid of US tech kill switch but haven’t made an escape plan

1734 - Search - Tech buyers are baking in sovereignty from day one, says Forrester

1735 - Search - Digital sovereignty is real in Europe. The UK? Not so much

1736 - Search - Sovereign AI is ’nonsense,’ says Doctorow

1737 - Search - Airbus takes flight from AWS. What happens next is critical

1738 - Search - Europe’s chip ambitions won’t break dependence on US cloud and software, says Forrester

1739 - Search - Another German state heads down the open source sovereignty road

1740 - Search - Confidential computing’s trust mechanism is broken. The fix may not exist

1741 - Search - ai and mlCOBOL dev won .Net hackathon with help from AI – and their CIO loves itAustralia Taxation Office sees footling with Copilot as a way to develop ‘muscles’ for real AI work

1742 - Search - ai and mlMicrosoft drafts feel-good AI model guidelines and wants your inputRedmond outlines ‘aspirational’ goals for model behavior, but gives itself a pass if it gets things wrong

1743 - Search - cyber-crimeHBO Max Reddit account compromised to serve ClickFix attacksPart of a ‘massive 48-hour malvertising blitz’ targeting macOS and Windows machines with malware

1744 - Search - databasesOracle celebrates banner quarter with another round of layoffsCongratulations on helping Larry Ellison’s AI cloud boom. Now please pack your bags and go

1745 - Search - securityNew hardware device can RAM into encrypted memory, expose your dataAttackers would need physical access to the server to pull off the DDR5 trick

1746 - Search - securityOpenAI’s malicious bot swarm attacked RubyGemsRuby are you ok? Ruby are you ok? Are you ok Ruby?

1747 - Search - on-premDatacenter developers want your backyard. FAS says negotiate harderTax breaks, water, noise, decommissioning - report tells local officials what to nail down before signing

1748 - Search - ai and mlEx-FTC boss Khan urges Uncle Sam to break out the handcuffs for AI CEOs, citing 1934 precedentThere are plenty of laws on the books to hold companies, and potentially their execs, accountable

1749 - Search - os platformsUbuntu Noble’s likely last point release lands, then loses its desktop downloadInstaller bug crashes extended setups while Stonking Stingray circles ahead of October debut

1750 - Search - cyber-crimeCyberattack sends International Meteor Organization crashing back to EarthAttack dealt a ‘critical blow’ to aging infrastructure, with several weeks of disruption expected

1751 - Search - scienceRocket Lab calls foul on Blue Origin’s $700M Mars comms contractBezos’ biz gets familiar paperwork from unfamiliar quarters as rival challenges NASA award

1752 - Search - securityPerfect-10 GitLab bug under attack days after patch landsCISA confirms active exploitation as watchTowr spots miscreants probing internet-facing servers

1753 - Search - Who, Me? Tech team stood and laughed at colleague who pressed the wrong off buttonTicklish situation solved with a lie about emergency maintenance

1754 - Search - Nvidia’s Groq acquihire is on the DOJ’s radar, but it’s already too lateEven if regulators did somehow unwind the $20B deal, there’s a growing list of alternatives ready to take Groq’s place, no merger required

1755 - Search - Higher prices can’t crimp server sales as AI drives demandShipments rise with enterprise and government buyers joining the hyperscaler spending spree

1756 - Search - d-Matrix drinks the Nvidia Kool-Aid with NVLink Fusion and MGX rack designsAI infrastructure startup joins Qualcomm, Arm, Marvell, Amazon, Fujitsu, and MediaTek as NVLink true believers

1757 - Search - ai and mlTeravolt looks to cannibalize older industries to meet AI power demandBitcoin farms, aluminum smelters, and other old infra is more lucrative to repurpose as a datacenter

1758 - Search - os platformsMicrosoft patches Windows and Excel – breaks audio, remote access, and pasteRedmond’s quality drive takes another detour through the known issues list

1759 - Search - networksHuawei pitches near-packaged optics as co-packaged costs bite7.2 Tbps module arrives ahead of standards, with promises of fewer repair headaches

1760 - Search - ai and mlMPs and peers tell UK to stop winging it on AI regulationRights committee demands watchdog with teeth as patchwork safeguards leave victims hunting for remedies

1761 - Search - cyber-crimeRevolut falls for fake government requests, hands over customer dataPassports, selfies, transaction histories exposed as self-proclaimed culprits demand 10,000 Bitcoin

1762 - Search - devopsCPython eases Rust requirements as assimilation continuesBy making Rust opt-in, the Python builders hope to enjoy Rust bennies without the backlash that roiled the Linux kernel keepers

1763 - Search - ai and mlThe myth of killer AI is a self-serving attempt at regulatory captureSkynet is coming soon, and also there’s this Nigerian prince with a $20 million fortune who wants to give it to you

1764 - Search - securityUK.gov begins killing off passwords for 23 million usersPasskeys promise fewer phishing headaches – and £600 a day off Whitehall’s SMS bill

1765 - Search - columnistsEurope’s right-to-repair rules are broken, not beatenPatchy compliance is an argument for stronger enforcement, not abandoning the project

1766 - Search - ai and mlAI and its main promoters are not enterprise-ready, says GartnerModel-makers move too fast and don’t care when they break things

1767 - Search - ai and mlBig AI sets out its terms for regulatory capture and calls it ‘Pace the frontier’Amodei, Altman, Nadella and Musk agree on how government can tame the monster they created

1768 - Search - offbeatThe improbable music of the ZX Spectrum’s one-bit speakerIngenious coders coaxed multichannel chiptunes from the humblest of sound hardware

1769 - Search - securitySecurity through obscurity is dead, and AI delivered the fatal blowRIP, you won’t be mourned

1770 - Search - softwareHow to make Xfce look like almost any desktop you wantPanel Profiles handles the heavy lifting, once you’ve installed the plugins it expects

1771 - Search - personal techDell’s 52-inch enormo-monitor is a tsunami of impractical funYou probably don’t need it, but as an example of the possible it impresses

1772 - Search - offbeatThe aircraft might not be flying, but the certificate has gone on vacationInformation is not forthcoming from this screen

1773 - Search - ai and mlAI more likely to kill animals if it saves fuel or moneyMachine learning models still have a lot to learn about the value of life

1774 - Search - securityMore JFrog Artifactory bugs under attack, and all 3 have patchesIf you’re waiting for a sign to upgrade to a fixed version: this is it

1775 - Search - offbeatMars astronauts could live in houses made of yeast and jello, say scientists

1776 - Search - offbeatDisembodied fruit fly brain joins the crypto speculation swarmCoinbase engineer gives simulated insect $100 and lets its neurons make the trades

1777 - Search - cyber-crimeAT&T store worker gets 16 months inside for SIM-swap side hustlePhone shop staffer claimed he was paid less than $4k for in his part attacks leading to combined intended losses of $600,000

1778 - Search - OS PLATFORMSFeel peak Windows was 7? You might like Kumander LinuxDebian and Xfce – solid, sensible choices – with a pretty skin

1779 - Search - Canonical shuttering some of its legacy chat channelsThe Ubuntu Pastebin went in June, IRC gets demoted next

1780 - Search - Audacity audio-editing app no longer looks like it’s from the early 2000sThe FOSS tool for audio editing has a fresh coat of paint, and new features to boot

1781 - Search - Haiku OS rises / Beta 6 sails open web / Virtual winds fly fastA real alternative to running some kind of FOSS Unix clone

1782 - Search - PUBLIC SECTORBritain’s technology brief is now everyone’s job and nobody’s responsibilityWhitehall has scattered science, AI, and digital government across a thicket of competing ministerial portfolios

1783 - Search - CYBER-CRIMEUkrainian lawyer’s second career as a Conti coder earns him 4 years behind barsSwapping legal work for malware development ended in extradition and a guilty plea

1784 - Search - SecurityEU’s Cyber Resilience Act starts the 24-hour vulnerability clockManufacturers must now disclose actively exploited flaws and severe security incidents through ENISA’s new reporting platform

1785 - Search - PUBLIC SECTORUnion body tells UK government workers must get a say before AI clocks inTUC warns against letting algorithms call the shots in the workplace

1786 - Search - SOFTWAREDigital Research’s GEM opens a new window on LinuxA radical new way to resolve the Gordian knot of X11 versus Wayland

1787 - Search - BOFHBOFH: Oh no! The CMS ate 500 pages of corporate documentationHow could such a terrible tragedy have occurred?

1788 - Search - AI and MLDeepSeek’s new model sets a template for powerful LLMs that run leanDeepSeek V4.1 Flash proves that just because you build a bigger model doesn’t mean you need more GPUs to serve it

1789 - Search - personal techOn Call: Boss wrongly claimed IT deleted his files, refused to learn the one-click fixThere’s no place like the Home directory, but the Documents folder is sometimes nicer

1790 - Search - devopsMicrosoft anoints Rust as a ‘Tier 1’ internal languageRedmond’s coders get the tool to help them scrub memory bugs off Windows

1791 - Search - SOFTWAREOracle says AI will save it from the SaaSpocalypse, not bring it onIt’s a better interface, can speed installations, and drives IaaS sales too

1792 - Search - ai AND mlOpenAI arms devs with AI conversation tool that can talk and listen at the same timeGPT-Live-1 makes speaking to AI models more fluid

1793 - Search - securityLatest Anthropic horror story chills with tales of kamikaze drone swarms and bioweapons researchEveryone from ShinyHunters to Russian freelancers is in on the illicit model fun

1794 - Search - SECURITYWatch out: Apple timepiece can grab snippets of conversation without both speakers’ consentWar is peace. Freedom is slavery. Privacy is surveillance

1795 - Search - DEVOPSShopify extends lifeline to Tailwind as vibe coding erodes web dev platform’s bottom lineAcquisition gives open source CSS framework ‘a stable long-term home’

1796 - Search - securityHundreds of AI agents helped PaperCut attacker hit 395+ orgs, and some went off scriptHuman operator: don’t touch CIS orgs. AI agents: look a squirrel!

1797 - Search - ai and mlOpenAI’s website-hijacking swarm reached far further than we thoughtNew report points finger at OpenAI bots that hijacked a German wiki for improper use of an additional 20 websites, and 14 fetching services

1798 - Search - AI AND MLAI job cuts could come with a costly undo buttonGartner reckons nearly a third of displaced employees may be rehired by 2029 – at a premium

1799 - Search - AI AND MLNASA and IBM open source lunar mapping toolsCan help you pick the perfect spot for your future evil lair, or boffins make discoveries about Earth’s satellite

1800 - Search - DATABASESAzure SQL Data Sync stops taking newcomers before 2027 executionExisting customers can carry on for now, but Microsoft offers no like-for-like successor

1801 - Search - personal techOn Call: User who handled life-or-death situations struggled with the SHIFT key

1802 - Search - personal techOn Call: Exec couldn’t identify a photocopier, which made for a fax-inating tech support call

1803 - Search - softwareDeveloper given Mission:Impossible - fixing rubbish code that could crash a city - simply chose not to accept it

1804 - Search - softwareFive years after quitting a job, developer’s former boss asked for rapid tech supportConnecting a single power cord turned into a lucrative all-nighter

1805 - Search - softwareSysadmin summoned to explain italics – to a user with at least two degrees

1806 - Search - SOFTWARETechie lured out of retirement to support software only he remembered

1807 - Search - SoftwareSupport newbie figured out how to avoid all-nighters, and his colleagues hated him for it

1808 - Search - personal techTech support chap told angry customer to think inside the box – and solved the problem

1809 - Search - AI and mlAnthropic lays groundwork for bots that shop for youNow comes the harder sell: Convincing customers and merchants to trust AI with purchases

1810 - Search - True AI-pocalypse as ChatGPT, Claude, and Grok all go down at onceAll three are recovering from overlapping availability issues

1811 - Search - Salesforce blames its Claude addiction for denting profit margin guidanceBut investors hear CRM giant is now in ‘refinement mode,’ picking models more carefully

1812 - Search - With Gemini 3.8 Flash, Google reminds everyone it’s still in the raceAI model scores well, runs fast, and doesn’t cost too much (yet)

1813 - Search - Google fixing Android lock screen bug that lets Gemini send SMS without a PINA specific multi-touch gesture bypasses an authentication prompt, allowing anyone to send messages

1814 - Search - Claude Mythos only model to complete full cyber kill chain, experts sayCyber Weapon Index finds AI attacks ‘imminent’

1815 - Search - Anthropic hires architect of UK AI policy as MPs warn of ‘clear conflict of interest’Matt Clifford plans to keep role as ARIA chair while leading the LLM maker’s dealings with governments outside North America

1816 - Search - ON-PREMNscale swallows lion’s share of UK datacenter investmentTracxn credits one AI infrastructure outfit with $3.7B of sector’s $5.7B haul

1817 - Search - SecurityShinyHunters expose 6.4M in attack on medical supplier McKessonHave I Been Pwned logs leaked records spanning patients, staff, and providers

1818 - Search - PUBLIC SECTORMinisters rejected NATS reimbursement plan before 2,000 UK flights were cancelledGovernment orders independent review as carriers demand boss’s resignation

1819 - Search - cyber-crimeTrezor, BitBox users targeted in newsletter phishing spreeAttackers exploit legitimate mailing channels to demand crypto wallet backups

1820 - Search - AI AND MLAI uprising postponed after Copilot falls off the webError 1016 kept the chatbot quiet for 100 minutes while a separate resilience drill swallowed suggestion pills

1821 - Search - SOFTWAREGerman optics giant ditches greenfield SAP migration’Realigned’ project plan aims to move existing landscape to new platform to ‘achieve faster progress’

1822 - Search - SECURITYDental contractor set up secret account with access to 4,000 patient records then left the companyToothless security

1823 - Search - personal techLaptop-slinger Framework refunding customers who paid top dollar for RAMPuts a whole new spin on ‘Cheap as chips’

1824 - Search - softwareMicrosoft goes after Salesforce and ERP users with AI-powered converterIronically, this idea lands as Salesforce is struggling to sell its own AI

1825 - Search - virtualizationVMware defends ending downloads of SDK that helps VM backups – or migrations to rivalsSays license was never about moving VMs

1826 - Search - SECURITYHackers drain $320M in Bitcoin from Liquid Network, claim they’re the good guysSelf-described white hats promise to return ‘most’ of the 4,000 BTC once the vulnerability is fixed

1827 - Search - SecurityWelsh environment regulator’s FoI blunder exposes diversity data of 2,000 staffNRW says it has found no evidence data was misused after spreadsheet published in error five years ago

1828 - Search - SECURITYUK food supply chain at risk from hostile attacksDefending against cyber foes is among factors hitting food price inflation, report finds

1829 - Search - SecurityPeers ask why UK cyber bill leaves execs off the personal liability hookMinisters say £17M corporate fines and forthcoming board-level governance rules provide sufficient accountability

1830 - Search - ASCII smuggling isn’t just an AI security riskPhishers find a new use for invisible Unicode tag characters

1831 - Search - ai and mlRogue OpenAI agents used dead German web site to communicate in May, months before Hugging Face incidentTwo cases of agents escaping to solve unsolvable problems paints an uncomfortable question: Is the entire internet in OpenAI’s experimental agentic firing line?

1832 - Search - securityCisco searched for IOS XR bugs and found so many it rolled them into an update releaseThree critical vulns demand your attention, one a make-me-root mess in Nexus 9000 Series Switches that you can mitigate, not fix

1833 - Search - SecurityOpenAI commits $1B in AI credits to frontline cyber defendersDaybreak program brings subsidized models, training, and support to under-resourced teams

1834 - Search - Researchers find way to listen in on headphones from afar

1835 - Search - China’s Salt Typhoon backdoors Latin American orgs with new snooping malware

1836 - Search - London property manager breach may have exposed bank details and lockbox codes

1837 - Search - Test environment let anyone access live customer data

1838 - Search - ai and mlAnthropic reveals fourth likely crime committed by its AIClaude’s Felony Bench rap sheet is now as long as OpenAI’s

1839 - Search - RESEARCHNovel Blue Moon kit targeting Chrome and Windows reflects new reality of AI-driven exploitsMind the patch gap, please and thank you

1840 - Search - AI AND MLAI models don’t kill people – people kill peopleAI fearmongers forget we could just jail tech execs until morale and model safety improve

1841 - Search - personal techApple hawks $2k folding fondleslabAnother new form factor for devs to adapt to

1842 - Search - SYSTEMSSamsung to help fortify OpenAI’s semiconductor supply chainSemiconductor supply chains are hard, but Samsung offers OpenAI relief in many forms spanning compute and memory

1843 - Search - securitySerial Microsoft 0-day hunter drops yet another Defender exploitA bypass of a bypass of a bypass

1844 - Search - offbeatChinese researchers find egg-cellent way to keep space debris from scrambling craftEggy armor cuts projectile speed in simulations as LEO gets increasingly crowded

1845 - Search - ON-PREMGoogle takes the nuclear option for €13B Finland expansion22-year power deal covers up to half of Loviisa plant’s capacity, with wind and battery projects alongside

1846 - Search - PUBLIC SECTORUK government says Fujitsu won’t use framework places to chase new customersProcurement officials promise to police the scandal-hit supplier’s voluntary bidding moratorium

1847 - Search - cyber-crimeCryptocrook ringleader, 22, who met crew on Minecraft admits role in $245M heistStolen funds bought mansions, private jets, and supercars – now he faces up to 20 years

1848 - Search - SecurityWeChat worm could pwn a friend before they even answered the callCalif says AI helped turn a VoIP memory bug into cross-platform RCE before Tencent shut it down

1849 - Search - SOFTWAREMicrosoft closes the book on Publisher and unplugs Project Online

1850 - Search - off-premThailand pauses all datacenter builds and approvalsPLUS: Fujitsu not yet budgeting Horizon compensation; DeepSeek’s vast Huawei GPU buy; Korea plans sovereign security model; and more

1851 - Search - Off-premCloud snail-mail service Docmail enters third day stuck in the outboxNo restoration time for platform used by more than 30,000 UK organizations, including NHS trusts and medical practices

1852 - Search - OFF-PREMGoogle engineer unplugged every fiber they could see and – surprise! – took down a chunk of the G-CloudThis sounds like a RTFM error at hyperscale

1853 - Search - OFF-PREMMicrosoft and AWS build the multicloud bridge they said customers barely neededNew services promise private 100 Gbps links between the rival platforms without months of networking faff

1854 - Search - off-premSpaceX claims it will put a Vera Rubin NVL72 rack-scale system into orbit next yearAnd fly ‘significant scale’ in 2028 – a claim that isn’t entirely bonkers, but needs a solid grain of salt

1855 - Search - off-premAlibaba Cloud plans to use fewer Western chips, to boost its already huge AI marginsCloudy AI is Chinese giant’s ‘most certain’ path to growth as e-commerce slows

1856 - Search - OFF-PREMUS claims 15 of the world’s top 20 hyperscale datacenter locationsNorthern Virginia alone accounts for nearly 12% of global capacity, though new builds are shifting inland

1857 - Search - Google pits Marvell against Broadcom as it chases AI crownAnd Marvell just offered the Chocolate Factory a $12.2B stake to sweeten the deal

1858 - Search - Amazon ropes Qualcomm into something, something AI, networking chipsMulti-generation chip collab is more buzzwords than compute

1859 - Search - cyber-crimeSecurity boffin claims airport group left API keys in client-side JavaScript for four yearsResearcher believes overprivileged Iterable creds exposed 8.8M customer records – and could have enabled mass deletion

1860 - Search - NETWORKSVirgin Media offloads email services to third-party providerUsers given 45 days to save their mail or sign up with Junara

1861 - Search - PERSONAL techHuawei Watch D3 pumps up its health-monitoring credentialsInflatable wrist cuff delivers 24-hour blood pressure readings, though the design remains chunky

1862 - Search - OS PLATFORMSSwitzerland tests a FOSS escape route from Microsoft 365Swiss Army sticks a knife in American cloud apps with its own FOSS push

1863 - Search - softwareAnother Microsoft team admits it’s struggling to handle flood of AI-generated codeIncrease in vibe-coded browser extensions sees Edge team automate quality assessments

1864 - Search - public sectorPhilippines bets AI will lift GDP by 12 percent in seven years – without hurting outsourcingPlans 30x datacenter expansion for less than what big tech spends in a month

1865 - Search - AI AND MLUS claims Chinese AI companies’ core AI strategy is distilling American modelsSpooks and CISA point to ‘industrial-scale distillation’ by DeepSeek, Alibaba, and other Chinese players

1866 - Search - securityMicrosoft breaks Patch Tuesday record with 974-CVE delugeAdobe also brought goodies to the patch party and they deserve immediate attention

1867 - Search - ai and mlOpenAI GPT-6 Astra will run a retailer without cheating and sell more stuff than AnthropicVend it like Altman

1868 - Search - AI+MLGoogle DeepMind rises above the AI scrum with genome atlasSee, AI can be used for good … or at the very least, a useful distraction from the bad

1869 - Search - SecurityOpenAI’s Artifactory opened covert data-stealing channel alongside Hugging Face attackResearchers disclosed the cross-account trick the same day rogue agents exploited another zero-day for admin access

1870 - Search - os platformsBing Wallpaper app opens Harry Potter’s chamber of adsNo defense against the dark arts Microsoft is practicing on your wallpaper

1871 - Search - Who, Me? Techie sent to fix Nobel Prize winner’s PC almost set it on fire

1872 - Search - Who, me? Techie with three months’ experience was sent in as the Cisco expert and proceeded to blow everything up

1873 - Search - Batch file automated a clean-up job, then fouled itself by deleting the wrong directory

1874 - Search - Part didn’t fit so techie got out his screwdriver. Then something flew off the motherboard

1875 - Search - Demoralized developer’s desperate hack came back to haunt him on LinkedIn

1876 - Search - IT boss left root session open for bring-your-kid-to-work day

1877 - Search - Manager showed off his DOS prowess – with a command that wiped data

1878 - Search - Comment in code read ‘Dear future me, sorry I wrote this’

1879 - Search - User crippled a network while trying to learn Nmap

1880 - Search - Apprentice developer defied orders – then got a job supporting her weird code

1881 - Search - Sysadmin broke hardware worth more than he made in a month – and lied his way out of the mess

1882 - Search - How dare you stop data loss – that’s not your job!

1883 - Search - Chinese e-tailer claimed 14-inch box stretched the size of a 9-inch tablet

1884 - Search - Consultant mistakenly deleted a ton of data – but reported it as a bug

1885 - Search - Techie expensed a bag of oranges and then juiced up a stupid security incident

1886 - Search - Under-trained techie didn’t claim overtime for mistakenly failing to phone it in

1887 - Search - Backup script ingested an accidental asterisk and deleted everything

1888 - Search - Lab worker built a fake PC to nuke his lunch

1889 - Search - Hope your holiday was horrid: You botched the last thing you did before leaving

1890 - Search - PowerPoint punishment sent users into an infinite loop after lunch

1891 - Search - ‘Invisible mouse’ made a mess of PC rebuild

1892 - Search - IT manager approved downtime over lunch, but made a meal of it

1893 - Search - The developer who came in from the cold and melted a mainframe

1894 - Search - Security contractor blew the whistle on support crew’s viral indifference

1895 - Search - Junior disobeyed orders and tried untested feature during a live robot demo

1896 - Search - Brilliant backups that kept data alive for ages landed web developer in big trouble

1897 - Search - Bug that wiped customer data saved the day – and a contract

1898 - Search - Server crashes traced to one very literal knee-jerk reaction

1899 - Search - Work experience kids messed with manager’s PC to send him to Ctrl-Alt-Del hell

1900 - Search - Final step to put new website into production deleted it instead

1901 - Search - Tech support chap invented fake fix for non-problem and watched it spread across the office

1902 - Search - Techie’s one ring brought darkness by shorting a server

1903 - Search - Marketing ‘genius’ destroyed a printer by trying to fix a paper jam

1904 - Search - ATM maintenance tech broke the bank by forgetting to return a key

1905 - Search - Techie banned from client site for outage he didn’t cause

1906 - Search - Techie turned the tables on office bullies with remote access rumble

1907 - Search - New boss was bad, his attitude was ugly, so the tech team pranked him good

1908 - Search - Techie ‘forgot’ to tell boss their cost-saving idea meant a day of gaming

1909 - Search - Untrained techie broke the rules, made a mistake, and found a better way to work

1910 - Search - Web dev’s crawler took down major online bookstore by buying too many books

1911 - Search - Dev’s last-day-of-contract code helped to crash app used by 350,000 people

1912 - Search - Developer made one wrong click and sent his AWS bill into the stratosphere

1913 - Search - Techie ran up $40,000 bill trying to download a driver

1914 - Search - ‘ERP down for emergency maintenance’ was code for ‘You deleted what?’

1915 - Search - Frustrated consultant ‘went full Hulk’ and started smashing hardware

1916 - Search - Company that made power systems for servers didn’t know why its own machines ran out of juice

1917 - Search - Techies tossed appliance that had no power cord, but turned out to power their company

1918 - Search - Techie found an error message so rude the CEO of IBM apologized for it

1919 - Search - Intern had no idea what not to do, so nearly mangled a mainframe

1920 - Search - On-premSpurs boots VMware, cites 85% licensing savingPart of wider infrastructure replacement upgrade project with HPE

1921 - Search - NetworksNext-gen AI networks may hinge on the telephone switchboard’s return

1922 - Search - NETWORKSLondon Tube closes the 5G gap with streets above

1923 - Search - NETWORKSPolice investigating possible forgery at AFRINIC election

1924 - Search - ai and mlGoogle research shows when AI agents communicate, some cheat while others tattleDeepMind researchers propose tapping into the whistleblower tendency to keep agents in check

1925 - Search - offbeatRetired man turns spare room into Soviet-era supercomputerGet out the 75-year-old vacuum tubes for this project

1926 - Search - SYSTEMSFloating nuclear startup Bluecore lands $50M funding before setting sailFirm wants to take atomic power generation on a barge to wherever the need is

1927 - Search - SECURITYBoston Scientific left nursing its bottom line after cyberattackMedical device giant warns August intrusion will hit Q3 and full-year sales and earnings as recovery drags on

1928 - Search - SYSTEMSASML and TSMC want bigger masks for smaller chipsIndustry push aims to eliminate stitching constraints and ready high-NA EUV systems for production by 2033

1929 - Search - How to secure hybrid meeting rooms without sacrificing user experienceSPONSORED FEATURE: With regulators tightening rules and attack surfaces widening, meeting-room kit must bake in security without pushing users toward workarounds

1930 - Search - SecurityLG accused of ’egregious invasion of privacy’ over TV data collectionClaims follow scrutiny over monitors installing adware without user consent

1931 - Search - SECURITYBigBear phishing crew nets thousands of Microsoft 365 credentials

1932 - Search - AI AND MLMistral bags €3B to build Europe’s sovereign AI championSamsung-led round values the French model maker at more than €21B

1933 - Search - RESEARCHExtortion crews have their eyes on high-value AI data, Google warnsCompanies ‘don’t want their IP exposed, so they’re willing to pay’

1934 - Search - PUBLIC SECTORUK energy operator sticks with Palantir in £21M direct awardProprietary platform keeps incumbent in place while NESO prepares a future competition

1935 - Search - LegalGrindr pays £26M to settle UK privacy class actionDating app admits no liability over allegations that it shared sensitive user data, including HIV status, with third parties

1936 - Search - public sectorWhitehall’s latest plan to get things done: Less WhitehallMinisters declare war on an ‘industry of dither and delay’ as consultations, legal caution, and judicial reviews get the chop

1937 - Search - PUBLIC SECTORBritain reboots its space strategy with £7.8B already on the launchpadCross-government plan combines civil ambitions with an increasingly military view of orbit

1938 - Search - SYSTEMSArm pushes agentic AI and desktop-quality graphics in next-gen phone platformNew CPU and GPU designs chase lower latency and richer games within a 1 W power budget

1939 - Search - HPE makes its “unified storage” claim real as B10000 R6 hits GAPARTNER CONTENT: Pairs block and adjacent file workloads with independent scaling of performance and capacity

1940 - Search - legal‘Global reckoning’ is coming for big tech, says Australian ministerIntroduces ‘digital duty of care’ that will mean Aussies get ‘my feed, my way’ – without algorithms if requested

1941 - Search - US watchdog opens probe into Tesla’s Cybercab self-certificationWheels turning on the road and in government

1942 - Search - Time lords prepare to kick leap seconds into the next millenniumRisk of an unprecedented negative adjustment prompts plan to let UTC drift by as much as an hour

1943 - Search - Enjoy the Windows 10 Update Experience at London’s O2The new extreme sport: Windows Updates

1944 - Search - UK military wants lasers to stop drone swarms without running out of ammoProject PANOPTES puts £5M on the table for an autonomous, vehicle-mounted defense

1945 - Search - ‘Uber rapture’ leaves passengers and drivers behind in Nigeria and UgandaNo time for a fare-thee-well as app hails a ride out of two more markets

1946 - Search - British wind power to drive Maersk container shipRotor sails claimed to deliver fuel and emissions savings of 21%

1947 - Search - AI-assisted mushroom hunting is a recipe for a bad tripEven the best model gets fungus identification right just 65% of the time - talk about a false friend

1948 - Search - Next bus to Altrincham delayed by Windows DefenderOr possibly “AI”, it’s hard to tell behind the firewall warning

1949 - Search - From watches to passwords on paper, everything that’s old is new againThis week on the Kettle, we reminisce about the good old days of Windows on XP’s 25th anniversary, how new-old Casio watches could reshape the smartwatch market, and why passwords might be better on paper

1950 - Search - Startup bags $7M to build drone-interceptor-in-a-backpack systemsSpike drone defense system is designed to be carried in a rucksack or mounted on top of a vehicle

1951 - Search - Xbox respawns IKEA furniture with gaming rangeAt last, somewhere comfy to sit while your PlayStation 5 game loads

1952 - Search - AWS Route 53 DNS service reimagined…as a file system?Cloud industry pros have a bit of fun at Amazon’s expense

1953 - Search - Cyborg cockroaches may soon deliver life-saving drugs to disaster victimsJust what you want crawling through the rubble to rescue you: A swarm of remote-controlled cockroaches with syringe-shooting guns strapped to their backs

1954 - Search - Check out the width of that Debian displaySomebody might be aware, but does anyone care?

1955 - Search - SpaceX plans to plant $100B Starbase on Louisiana coastPlans to break ground in 2027, produce its own propellant, and power a ‘self-sustaining’ spaceport. All before Starship ships v1.0 to orbit

1956 - Search - UK supermarket scales go 404 on shoppersTesco produce not found? But beware the forbidden scales…

1957 - Search - Windows XP was released to manufacturing a quarter of a century agoSo incredibly stable, govt branches, banks, and dentist offices still haven’t figured out how to close it

1958 - Search - Ukraine unveils native jet-powered drone interceptorFast and lightweight unmanned aircraft is designed for easy deployment and fits in a pickup truck

1959 - Search - Tesla to recall almost three million vehicles over hidden door handlesAt least it looks cool, right Elon? China demands changes ahead of ban on new models in 2027

1960 - Search - An ultra-rare piece of Microsoft history could be hiding on your shelfRed Tetris stickers and shirtless Windows 95 tots - accidental collectibles gathering dust

1961 - Search - Skylab completists, clear some shelf space for 26 DVDsDecades of archive hunting recover downlinks, silent reels, and footage once thought lost

1962 - Search - Musk fumbles the timetable for first Starship catchBillionaire walks back earnings call optimism as orbital test approaches

1963 - Search - China marches towards re-usable rockets with successful first-stage landingRed alert for rivals as LandSpace nails it after December disaster

1964 - Search - ISS spacewalkers discover there’s no such thing as a quick antenna jobAstronauts removed broken hardware but will have to return for more orbital DIY

1965 - Search - NASA estimates the size of the hole SpaceX made in the moonAs the latest Starship finds its way to an obscure part of Australia, for observations

1966 - Search - $1K laser mosquito zapper promises precision strikes as backers itch for answersAfter raising $2.8M, the project has entered production, but company comms have done little to reassure buyers

1967 - Search - The what, why, and how of pull requests and source commentsMicrosoft veteran on knowing the difference and convincing approvers to accept a change

1968 - Search - Lego’s supersized Hubble deserves a little more shineExcellent internal detail cannot entirely disguise some penny-pinching choices

1969 - Search - Russian missile uses Nvidia AI chip to help target UkraineKyiv wants tighter controls to keep foreign silicon out of Moscow’s weapons

1970 - Search - Trump sends the US Navy back to the steam ageTroublesome electromagnetic catapults look set to be replaced with old-fashioned technology

1971 - Search - Virgin Galactic flights stay paused while ticket prices head for the MoonTurns out this space thing really is hard

1972 - Search - This JCB doesn’t dig – it does 406 mphPair of reworked production-based engines carry the Hydromax into the record books

1973 - Search - Twitch feeds your streams to Amazon’s AI unless you tell it to stopBot training switch is on by default, because apparently asking first wasn’t going to work

1974 - Search - Everything is better with pickles… except WindowsOperating system indigestion pops up over chicken sandwich ad

1975 - Search - We don’t serve pies, but we do like a PiWhat would be your tip for this stricken device?

1976 - Search - Wetherspoons bars smart glasses from filming customersPub chain says turn off the cameras, reminds punters not to blare sound from phone vids either

1977 - Search - Azure CTO pastes Doom into Paint one frame at a timeIt computes nothing, renders everything, and even has sound

1978 - Search - Keeping yesterday’s computers ticking takes more than nostalgiaEarie Salmon explains why soldering skills are only the start

1979 - Search - New Boeing finally gets going, 15 years after debutThe 737-7 is the smallest of its type, yet it has the longest range

1980 - Search - scienceBepiColombo sheds its ride and starts the final glide to Mercury

1981 - Search - scienceNASA wires up Dragonfly and names the landing areaTitan-bound rotorcraft set for launch in 2028

1982 - Search - SCIENCENASA’s Swift shortens orbital lifetime for the sake of scienceInstruments reactivated for a final hurrah before reentry

1983 - Search - scienceESA’s Cluster quartet prepares for its final TangoTwo-year mission bows out after 26 thanks to some heroic engineering

1984 - Search - scienceGerman-Japanese researchers invent electricity-free tech that could cool datacentersHow come that super-smart AI of yours didn’t figure this out, frontier labs?

1985 - Search - SCIENCEIndia’s crewed space program will fly this year, after missing 2022 and 2025 targetsA space station by 2035 is ISRO’s new mission

1986 - Search - ScienceChina calls off ambitious ice-hunting moonshot a day before flightChang’e 7 didn’t meet unspecified ‘launch requirements’

1987 - Search - BOFH: Schrödinger’s petty cash puts us in a very awkward superpositionWhy oh why are the accountants stricter than the IRS and HMRC put together?

1988 - Search - BOFH: How our Covid ransomware protocol’s Y2K blockchain lowered uptimeDiary of an excuse hound: Pie charts make us hungry for pizza

1989 - Search - BOFH: This printer engineer knows every trick in the bookBut so does this customer

1990 - Search - BOFH: Cross-department AI pitches are easier to swallow with a pint in handSome ideas need workshopping, others need a warning light

1991 - Search - BOFH: Amnesty means never having to say you’re sorryThere’s no I in team, but there is one in insurance fraud

1992 - Search - BOFH: For one ambitious security type, chaos is a ladderMission Control sends its regards

1993 - Search - BOFH: Vibe-coded solutions arrive for problems nobody hasThe Boss gives common sense an AI wrapper

1994 - Search - BOFH: Nothing says ‘business continuity’ like a dry wooden broomNo sparks, no glory

1995 - Search - BOFH: Arrr, I smell piracy … and it’s comin’ from a machine with executive privilegesHang on, can’t we just turn off the internet?

1996 - Search - systemsHuawei proudly shows off an entirely un-American chipResistance is futile

1997 - Search - public sectorMatt Clifford to leave ARIA before Anthropic role becomes a ‘distraction’MPs welcome move but still want answers over how the conflict of interest was allowed to arise

1998 - Search - StorageDRAM contract prices forecast to grow only 13-18% in Q3PC buyers already had enough of helping to fund the AI revolution, only essential refreshes happening now

1999 - Search - securityNightwing CEO has a Labor Day message for staff – and apparently The RegisterNothing says ‘For internal use only’ quite like emailing it to the press

2000 - Search - Do not share my personal information

2001 - Search - Prolific Microsoft 0-day hunter drops CrowdStrike Falcon exploit PoCA shared security ‘Nightmare’

2002 - Search - Cybercrooks trawl Fishbrain to net password hashesArmed with password hashes and salts, attackers could already be kraken those creds

2003 - Search - UK’s Online Safety Act has made ‘absolutely no difference,’ kids sayChildren’s Commissioner also furious with Ofcom over a string of failures

2004 - Search - Terminated employee cost company hundreds of thousands of dollars because nobody revoked accessThey had more access than the average Joe, and IT didn’t track what needed to be cut off

2005 - Search - To keep the AI hacking genie bottled up, try one-way networksSandboxes, permissions, and VMs aren’t enough to keep frontier models at bay. “Data diodes” might do the job

2006 - Search - AI agents carried out every step of this ransomware attack – then left the victim an 80-page security auditAdding insult to injury

2007 - Search - SonicWall’s SMA1000 boxes under active attack againMiscreants use chained zero days to pwn boxen as third-party SOCs say further attacks ‘almost certain’

2008 - Search - Legacy Lenovo login opens 5,000 Dropbox accounts to attackersCloud storage biz severs old integration and urges victims to reset credentials

## Security Affairs

View Articles

2009 - Search - OpenAI admits its models lie to cover their own mistakes

2010 - Search - Cyberattacks on Oil Tankers Put Maritime Critical Infrastructure at Risk

2011 - Search - SilkParasite Infrastructure Links SpiceRAT to Central Asian Targets

2012 - Search - NightmareStresser Goes Offline in Global DDoS-for-Hire Crackdown

2013 - Search - U.S. CISA adds Acronis Backup, Cisco ISE, and Google Pixel flaws to its Known Exploited Vulnerabilities catalog

2014 - Search - Chosen Brick, Iran’s Surveillance Malware

2015 - Search - BambooToken: The Malware That Speaks MQTT to Stay Under the Radar

2016 - Search - Google Patches Pixel Modem Zero-Day Exploited in Targeted Attacks

2017 - Search - Revolut Data Leak May Trace Back to Compromised Italian Government Accounts

2018 - Search - Texas Utility CenterPoint Energy Confirms Data Breach After Hacker Claims 7.49M Records Stolen

2019 - Search - U.S. CISA adds Cisco Secure Email Gateway flaw to its Known Exploited Vulnerabilities catalog

2020 - Search - Cisco Warns of Ongoing Exploitation of Critical Email Gateway Zero-Day

2021 - Search - Shared Hosting at Risk: LiteSpeed Enterprise Bug Can Grant Root from a Single Tenant

2022 - Search - One Exploit Chain, Two Espionage Campaigns: Chrome and Windows Under Fire

2023 - Search - Telegram Desktop Flaw Could Turn Old Chat Exports Into Data Theft Traps

2024 - Search - Non-Zero-Day VPN Flaw Left Japan ’s Government Shared Network Platform Exposed: 246,000 Records at Risk

2025 - Search - ENISA: Frontier AI Is Changing the Speed of Cyberattacks. Europe Needs to Catch Up

2026 - Search - China Calls Amodei’s AI Proposal a New Cold War Playbook

2027 - Search - U.S. CISA adds GitLab, JFrog Artifactory, and ConnectWise ScreenConnect flaws to its Known Exploited Vulnerabilities catalog

2028 - Search - Dutch NCSC Warns: Critical Check Point VPN Flaws Put Networks at Risk

2029 - Search - Hackers access Booking.com user data, company secures systems

2030 - Search - Inside ZionSiphon: politically driven malware aims at Israeli water systems

2031 - Search - RAMP Uncovered: Anatomy of Russia’s Ransomware Marketplace

2032 - Search - Checkmarx supply chain attack impacts Bitwarden npm distribution path

2033 - Search - Critical CrowdStrike LogScale bug could have allowed file access, but no exploitation was observed

## The Hacker News

View Articles

2034 - Search - Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as RootSep 17, 2026Vulnerability / Enterprise SecurityA critical vulnerability in Check Point’s Security Management and Log Servers could allow an attacker without login credentials to run code as root on those servers over the network. The Security Management Server is the system that controls firewall policy and administrator access. Check Point has released a fix through its LivePatch update channel and says it has no indication that the flaw has been exploited. Check Point told The Hacker News that the vulnerable path runs only through the Trusted Clients setting, which controls which hosts may connect to the management server through SmartConsole. The flaw, tracked as CVE-2026-91843 and rated 9.8 out of 10 on the CVSS scale by Check Point, is a stack overflow in the login process, which handles requests before a user is authenticated. Internet scanning company Censys said the overflow is triggered by a login request that carries a very long username. Check Point said in a notice on its  CheckMates community  on…

2035 - Search - ThreatsDay: Self-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New StoriesSep 17, 2026Hacking News / Cybersecurity NewsAttackers keep finding new keys. The funny part is that defenders keep inventing where to store them. This week, those keys sit in AI tools, exposed services, old bugs, weak logins, and software sold like a monthly subscription. Some attacks use new tricks. Others just reuse what was already lying around. Both work often enough. So the threat landscape is not getting cleaner. It is just getting more places to make the same mistake. Here’s what showed up this week. The threats change every week. Subscribe, and we’ll alert you when each new ThreatsDay Bulletin is out.

2036 - Search - Critical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host FilesSep 17, 2026Vulnerability / Artificial IntelligenceMalicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into it and read or change files anywhere else on the host, Docker warns in a  security announcement  on September 15. The escape runs with the rights of the host account that runs the virtual machine. The flaw,  CVE-2026-77179 , is rated Critical, affects versions 0.28.0 up to but not including 0.42.0 on macOS, and was fixed in  0.42.0  on September 7. Docker Sandboxes runs each AI coding agent in its own small virtual machine with the project directory shared in. The code that could escape is whatever runs inside that machine, such as a coding agent that has been turned against its user, or anything malicious the agent installs and runs. Docker has not reported any exploitation. CISA’s added assessment on the CVE record lists exploitation as none, and the flaw is not in CISA’s Known Exploited Vulnerabilities catalog as of the ca…

2037 - Search - Iran-Linked Handala Hack Tied to HEAVYGRAM Telegram Backdoor That Can Steal PasswordsSep 17, 2026Cyber Espionage / MalwareThe Iran-linked “hacktivist” persona known as Handala Hack has been attributed to a Telegram-based surveillance backdoor called HEAVYGRAM and a Delphi-based utility known as CRUDEEXCLUDE . “HEAVYGRAM offers builtin commands supporting remote command execution, system, network and process information discovery, data and Telegram session files exfiltration, screenshot capture, DLL sideloading, file cleanup, and persistence via Windows autorun registry keys,” Group-IB said . On the other hand, CRUDEEXCLUDE is a Delphi-based Windows utility employed to prepare environments for the deployment of subsequent stages such as HEAVYGRAM. First observed in late July 2024, the malware is often disguised as a legitimate application with a graphical user interface (GUI), and configures Microsoft Defender exclusion paths for defense evasion. The findings build upon an alert the U.S. Federal Bureau of Investigation (FBI) first issued in March 2026 and again earlier this wee…

2038 - Search - Critical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS ZoneSep 17, 2026Vulnerability / DNS SecurityEvery release of the Unbound DNS resolver before 1.26.1 has a critical heap overflow in its DNSSEC validator, maintainer NLnet Labs said in an  advisory  on Wednesday. An attacker who controls a malicious zone and queries a vulnerable resolver can trigger it, enabling remote code execution. Unbound 1.26.1, released the same day, fixes the bug, tracked as  CVE-2026-81642 , along with eight other flaws. One of the eight,  CVE-2026-82717 , is a heap corruption bug in CNAME synthesis reported by Ben Morris of Anthropic. It could also lead to remote code execution “under certain systems and compilation options,” NLnet Labs said. NLnet Labs has not reported exploitation of either bug, and CISA’s entry for CVE-2026-81642 marked exploitation as “none” on Wednesday. NLnet Labs rates the DNSKEY flaw Critical, with a CVSS score of 4.0 (9.1), and its scoring lists a network attack vector requiring no privileges or user interaction. NVD listed the CVE as “Await…

2039 - Search - Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This WebinarSep 17, 2026Security Operations / Artificial IntelligenceA new CVE drops. Your scanner finds it. The severity score looks ugly. But that still does not answer the question that matters: Can it actually be exploited in your environment? Mythos-class AI is compressing the time between disclosure and working exploitation, while many security programs still validate risk on weekly or quarterly cycles. The dangerous gap is no longer just technical. It is measured in time. 📅 Save Your Spot Today: How to Prove You’re Ready for Mythos-Class Attacks . Can’t join live? Register anyway. We’ll send the webinar recording after the session, so you can watch it later, whenever it fits your schedule, and still see the full, fresh CVE-to-validation workflow. Stop prioritizing on severity alone A high score tells you a vulnerability could be serious. It does not prove that an attacker can use it against you. Security teams need faster answers: Is the affected asset exposed? What attack techniques does exploitation require? Do …

2040 - Search - CISO’s Expert Guide to Agentic Pentesting for WebsitesSep 17, 2026Application Security / AI AgentAttackers now weaponize new vulnerabilities in about five days (Mandiant, part of Google Cloud). The median organization takes 43 days to patch one (Verizon DBIR 2026). A new free guide explains how autonomous AI agents are closing that gap, and what security leaders must demand before pointing one at production. TL;DR Exploitation is now the front door. It starts 31% of breaches (Verizon DBIR 2026), the #1 initial-access vector, while annual pentesting leaves an estimated 90% of the estate untested. The capability is proven, not projected. An autonomous system topped HackerOne’s US leaderboard in 2025 (XBOW), and peer-reviewed agents exploited 87% of one-day flaws unaided (Fang et al., 2024). Continuous beats periodic, measurably. Programmatic testing makes teams 4.5x more likely to fix criticals within three days (Cobalt, 2026). It’s an AI agent in your production. Hold it to a bar. Provable coverage, an independent validator, blast-radius guardrails, and a…

2041 - Search - China-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin AmericaSep 17, 2026Malware / Cyber EspionageThe China-aligned state-sponsored threat actor known as FamousSparrow has been observed deploying a previously unreported backdoor called SparroWocky in attacks targeting multiple countries in Latin America since at least August 2025. “SparroWocky is a modular, C++ backdoor,” ESET security researchers Alexandre Côté Cyr and Romain Dumont said in a technical report shared with The Hacker News ahead of publication. “Its architecture and the techniques used by its authors indicate strong knowledge of anti-analysis tricks and Windows internals.” SparroWocky is so named for the fact that early iterations of the malware have been found to contain the first stanza of Jabberwocky , a famous nonsense poem written by the English author, poet, and mathematician Lewis Carroll in around 1855. The latest findings from ESET indicate that the cyber espionage group , which shares some level of overlap with Earth Estries and Salt Typhoon, has replaced SparrowDoor with Spar…

2042 - Search - OpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized UploadsSep 17, 2026Artificial Intelligence / VulnerabilityOpenAI on Wednesday disclosed six new instances of “unexpected or concerning model behavior” that took place over the past six months, while sharing a new framework for reporting, tracking, investigating, and disclosing model misalignment in a bid to improve transparency. “As AI systems grow more advanced and more widely deployed, we need to build a broader and better-informed consensus on the progress of alignment research,” OpenAI said. “We do not believe that the AI industry has solved alignment and monitoring to a sufficient degree to continue responsibly scaling at maximum speed for much longer.” “Decisions about how AI development should proceed in the months and years to come need to draw on evidence that people outside the companies building frontier models can examine for themselves.” The six incidents are outside of the recently disclosed misaligned activity targeting Hugging Face , DseWiki , and RubyGems . Details of the inc…

2043 - Search - BIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPSSep 17, 2026Vulnerability / DNS SecurityThe Internet Systems Consortium (ISC) has released  BIND 9.20.29 and 9.21.26  to fix fourteen security flaws it  disclosed  on 16 September in BIND 9, its open-source DNS server software. One of them affects any BIND server that answers DNS-over-HTTPS (DoH). A sender with no credentials can crash the server process, named, with a single request that carries an invalid SIG(0) signature, if the sender closes the connection before named finishes checking the signature. ISC said in its advisories that it is not aware of any of the fourteen being exploited. Which Release Fixes What The fixed releases, described in ISC’s  release notes , are: BIND 9.20.29, on the current stable branch: fixes all fourteen BIND 9.21.26, on the development branch: fixes thirteen, because CVE-2026-19662 does not affect 9.21 BIND 9.20.29-S1, the Supported Preview Edition for support customers: fixes all fourteen ISC lists no workarounds for any of the…

2044 - Search - Gyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata RecordsSep 17, 2026Data Breach / Web SecurityA security breach at Gyazo , Helpfeel’s image-sharing service, exposed about 23.62 million user records, including email addresses and password hashes, the Kyoto-based company said in a  notice  published Wednesday. It also exposed about 490 million image metadata records, mostly for images from January 2019 or earlier, including the IDs that make up Gyazo image links. Helpfeel said those IDs could be used to view the images without permission, and that it has temporarily disabled viewing of some of them. Helpfeel asked every Gyazo user to change their password and to change it on any other service that uses the same or a similar one. It also asked users to watch for suspicious emails or messages related to the incident. The attacker gained access through a vulnerability in Gyazo’s image upload server, ran arbitrary commands on Helpfeel’s systems, and accessed Gyazo’s database, the company said. It has not said what kind of flaw it was. Helpfeel said no pay…

2045 - Search - Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active AttacksSep 17, 2026Vulnerability / Web SecurityCisco has warned of a fresh maximum-severity security flaw impacting Identity Services Engine (ISE) that has come under active exploitation. The vulnerability, tracked as CVE-2026-76460 (CVSS score: 10.0), could allow an unauthenticated, remote attacker to bypass authentication. “This vulnerability is due to insufficient authentication control on an API endpoint,” Cisco said. “An attacker could exploit this vulnerability by sending a crafted request to an affected API endpoint. A successful exploit could allow the attacker to gain unauthorized access to the affected device by bypassing the web-based management interface.” The issue affects Cisco ISE and Cisco ISE Passive Identity Connector (ISE-PIC), regardless of device configuration. It has been addressed in the following versions -

2046 - Search - U.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS AttacksSep 17, 2026Cybercrime / DDoS-for-HireThe U.S. Department of Justice (DoJ) on Tuesday announced the court-authorized seizure of internet domains associated with a distributed denial-of-service (DDoS)-for-hire service known as NightmareStresser. The domains in question are: nightmare-stresser[.]com and nightmarestresser[.]org. Visitors to the site are now greeted by a seizure banner that states - “This domain has been seized by the Federal Bureau of Investigation in accordance with a seizure warrant pursuant to 18 U.S.C. §§ 981(a)(1)(A) and (b), 982(b)(1), and 1030(i) (1)(A); and 21 U.S.C. § 853 issued by the United States District Court for the District of Alaska as part of a joint international law enforcement operation and action by: United States Attorney’s Office for the District of Alaska, Federal Bureau of Investigation (FBI) Anchorage Field Office, [and] Royal Canadian Mounted Police (RCMP).” These so-called booter services are usually advertised as stress testing utilities but have been used to…

2047 - Search - Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command ExecutionSep 16, 2026Vulnerability / Web SecurityA critical security flaw in Issabel Framework , a web-based framework for the open-source unified communications PBX software, has come under active exploitation. The vulnerability in question is CVE-2026-89026 (CVSS v3.1 score: 9.8/CVSS v4.0 score: 9.3), which can allow an unauthenticated remote attacker to execute arbitrary operating system (OS) commands by taking advantage of a hard-coded JSON Web Token (JWT) signing key. The Issabel Framework “contains a hard-coded HS256 JWT signing key in the pbxapi index.php file that is identical across every installation, allowing unauthenticated remote attackers to forge valid bearer tokens,” VulnCheck said in an alert. “Attackers can use the forged token to call the manager ‘/pbxapi/manager/originate’ endpoint with the System application parameter, causing Asterisk to execute arbitrary OS commands as the Asterisk user.” A patch for the vulnerability was pushed on August 1, 2026, and plugs the flaw by r…

2048 - Search - Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and WipersSep 16, 2026Malware / VulnerabilityEnterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle , Hacking Cat , and Toy Ghouls , according to multiple reports from Kaspersky. The cybersecurity vendor said it has identified attacks mounted by NightEagle (aka APT-Q-95), a threat actor known to be active since at least 2023, that involve new techniques for persistence and lateral movement. “In most incidents, the attackers used compromised valid credentials to gain access to corporate VPNs,” Kaspersky said in an analysis published today. “VPN connections originated from IP addresses in the Russian segment linked to Cloudflare WARP tunnels, as well as from IP addresses associated with European virtual infrastructure providers.” The attacks, as highlighted in July 2025, involve the deployment of GhostContainer , a known modular backdoor that grants the operators complete access to a victim’s Microsoft Exchange Server, as well as run arbitrary code, …

2049 - Search - One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and ClaudeSep 16, 2026Vulnerability / Browser SecuritySecurity researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromium-based products: Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and the Claude in Chrome extension. Once the extension was installed, it could access each product’s built-in AI with a single click. On Comet, Edge, Opera Neon, and Claude in Chrome, it could drive the AI agent to act on behalf of the attacker; on Chrome and Comet, it could read files from the user’s computer, and on Chrome, it could also switch on the camera and microphone. The findings are researcher demonstrations, not attacks seen in the wild, and each requires the attacker’s extension to be already running in the victim’s browser. These products all work the same way. The AI has a “body” inside the browser that can see the screen, open files, use the camera, and take actions, and a “brain” that runs on th…

2050 - Search - OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers

2051 - Search - GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

2052 - Search - Claude Used to Automate Exploitation and Data Theft Across Multiple Victims

2053 - Search - Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

2054 - Search - PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

2055 - Search - Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

2056 - Search - ThreatsDay: 200 Android Flaws, Browser-Built Phishing, 119K Scam Shops + 23 More Stories

2057 - Search - Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE

2058 - Search - Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6

2059 - Search - Four Spy Groups Used the Same Chrome and Windows Exploit Kit Within a Week

2060 - Search - DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval

2061 - Search - Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox

2062 - Search - New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root

2063 - Search - F5 BIG-IP APM Malware Injects a PHP Web Shell Into Memory, Evading Disk Scans

2064 - Search - Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed

2065 - Search - Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days

2066 - Search - ChatGPT Flaw Let a Planted Prompt Send a Victim’s Gmail Data to Another Account

2067 - Search - WeChat Zero-Click Worm Took Over Accounts on iPhone and Android via Incoming Calls

2068 - Search - Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

2069 - Search - When the Whole Company Adopts AI: What It Does to Your SOC

2070 - Search - Your Critical Vulnerabilities Might Not Be Your Biggest Risk

2071 - Search - What It Took to Reach 1 Billion Build Manifests

2072 - Search - US Becomes Top Target in RMM Phishing Campaign Spanning 46 Countries

2073 - Search - Why Are So Many Security Professionals Keeping Breaches Quiet?

2074 - Search - The Economics of Dwell Time and Why AI Native SIEM Changes the Equation

2075 - Search - Stop Trying to Control AI Behavior. Control What AI Can ReachSeptember 14, 2026Read ➝

2076 - Search - How to Evaluate a Unified Security Platform Using a One-Incident TestSeptember 14, 2026Read ➝

## ThreatPost

View Articles

2077 - Search - Student Loan Breach Exposes 2.5M Records

2078 - Search - Watering Hole Attacks Push ScanBox Keylogger

2079 - Search - Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms

2080 - Search - Ransomware Attacks are on the Rise

2081 - Search - Inside the Hackers’ Toolkit – Podcast

2082 - Search - Being Prepared for Adversarial Attacks – Podcast

2083 - Search - The State of Secrets Sprawl – Podcast

2084 - Search - A Blockchain Primer and a Bored Ape Headscratcher – Podcast

2085 - Search - Security Innovation: Secure Systems Start with Foundational Hardware

2086 - Search - Securely Access Your Machines from Anywhere – Presented by Keeper Security

2087 - Search - Log4j Exploit: Lessons Learned and Risk Reduction Best Practices

2088 - Search - How to ID and Protect Sensitive Cloud Data: The Secret to Keeping Secrets

2089 - Search - Cloud Security: The Forecast for 2022

2090 - Search - 2021: The Evolution of Ransomware

2091 - Search - Healthcare Security Woes Balloon in a Covid-Era World

2092 - Search - 2020 in Security: Four Stories from the New Threat Landscape

2093 - Search - Cybercriminals Are Selling Access to Chinese Surveillance Cameras

2094 - Search - Twitter Whistleblower Complaint: The TL;DR Version

2095 - Search - Firewall Bug Under Active Attack Triggers CISA Warning

2096 - Search - Fake Reservation Links Prey on Weary Travelers

2097 - Search - iPhone Users Urged to Update to Patch 2 Zero-Days

2098 - Search - Is your Java up to date?

2099 - Search - Top 5 Tips to Avoid Viruses and Spyware

2100 - Search - U.S. needs to investigate cyberweapons

2101 - Search - Six months later, DNS still taking a hit

2102 - Search - Pwn2Own 2009: Browsers and smart phones are targets

2103 - Search - Telegram Fraudsters Ramp Up Forged COVID-19 Vaccine Card Sales

2104 - Search - How the Pandemic is Reshaping the Bug-Bounty Landscape

2105 - Search - A Cyber ‘Vigilante’ is Sabotaging Emotet’s Return

2106 - Search - Black Hat USA 2020: Critical Meetup.com Flaws Reveal Common AppSec Holes

2107 - Search - Encryption Under ‘Full-Frontal Nuclear Assault’ By U.S. Bills

2108 - Search - Cyber-Spike: Orgs Suffer 925 Attacks per Week, an All-Time High

2109 - Search - PYSA Emerges as Top Ransomware Actor in November

2110 - Search - Encrypted & Fileless Malware Sees Big Growth

2111 - Search - Innovative Proxy Phantom ATO Fraud Ring Haunts eCommerce Accounts

2112 - Search - Women, Minorities Are Hacked More Than Others

2113 - Search - Threatpost Podcast & Video Hub: Going Beyond the Headlines

2114 - Search - Wikileaks Alleges Years of CIA D-Link and Linksys Router Hacking Via ‘Cherry Blossom’ Program

2115 - Search - Bash Exploit Reported, First Round of Patches Incomplete

2116 - Search - Threatpost News Wrap, February 21, 2014

2117 - Search - Jeremiah Grossman on His New Role as CEO of WhiteHat Security

2118 - Search - Threatpost News Wrap, January 24, 2014

2119 - Search - Rich Mogull on the Target Data Breach

2120 - Search - Threatpost News Wrap, January 10, 2014

2121 - Search - 2013: The Security Year in Review

2122 - Search - Lyceum APT Returns, This Time Targeting Tunisian Firms

2123 - Search - National Surveillance Camera Rollout Roils Privacy Activists

2124 - Search - Malware Gangs Partner Up in Double-Punch Security Threat

2125 - Search - How Email Attacks are Evolving in 2021

2126 - Search - Patrick Wardle on Hackers Leveraging ‘Powerful’ iOS Bugs in High-Level Attacks

2127 - Search - Ransomware and IP Theft: Top COVID-19 Healthcare Security Scares

2128 - Search - Experts Weigh in on E-Commerce Security Amid Snowballing Threats

2129 - Search - Cybercriminals Step Up Their Game Ahead of U.S. Elections

2130 - Search - 2020 Cybersecurity Trends to Watch

2131 - Search - Top Mobile Security Stories of 2019

2132 - Search - Facebook Security Debacles: 2019 Year in Review

2133 - Search - Biggest Malware Threats of 2019

2134 - Search - Top 10 IoT Disasters of 2019

2135 - Search - 2019 Malware Trends to Watch

2136 - Search - Top 2018 Security and Privacy Stories

2137 - Search - 2019: The Year Ahead in Cybersecurity

2138 - Search - 2018: A Banner Year for Breaches

## Security Week

View Articles

2139 - Search - Cyberattacks on Two Oil Tankers Prompt Coast Guard, FBI to Board Vessels

2140 - Search - OpenAI Says Its Models Searched GitHub for Leaked API Keys During Training

2141 - Search - CISA Retires Weekly Vulnerability Bulletin in Risk-Based Pivot

2142 - Search - Revolut Data Breach: 5 Months, 680 High-Profile Accounts, $3M Ransom

2143 - Search - Comp AI Raises $34 Million for AI-Native Compliance and Security

2144 - Search - ISC Patches 14 Vulnerabilities in BIND 9 Security Update

2145 - Search - Ransomware Attacks on Manufacturers Surge as Supply Chain Risk Grows

2146 - Search - Cisco Fixes Dozens of Flaws Across FMC, ISE and Nexus Dashboard

2147 - Search - CISA Releases Cyber Decoy Guidance to Strengthen Critical Infrastructure Defenses

2148 - Search - AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals

2149 - Search - Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day

2150 - Search - First Agentic AI Data Breach Reported to Spanish Regulator

2151 - Search - Virtual Event Today: Attack Surface Management Summit

2152 - Search - EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media

2153 - Search - Enterprises Warned of Attacks Exploiting WSO2 Vulnerability

2154 - Search - “We Think the Security Control Is Working” Is No Longer Good Enough

2155 - Search - This Key Will Self-Destruct: An Open Standard for Revocable API Keys

2156 - Search - What the Hugging Face Incident Teaches Security Leaders About AI Agent Access

2157 - Search - The Future of AI-Driven Security Depends on Complete Data

2158 - Search - The MFA Identity Trap: When Authentication Creates a False Sense of Security

2159 - Search - Kiteworks Acquires Bonfy.AI to Fill the AI Gap in Data Governance

2160 - Search - Cybersecurity M&A Roundup: 33 Deals Announced in August 2026

2161 - Search - Palo Alto Networks Acquires AI Agent Platform Console

2162 - Search - Fortinet Acquires AI Security Company Virtue AI

2163 - Search - Cybersecurity M&A Roundup: 21 Deals Announced in July 2026

2164 - Search - Cyber Insights 2026: The Ongoing Fight to Secure Industrial Control Systems

2165 - Search - Cyber Insights 2026: Cyberwar and Rising Nation State Threats

2166 - Search - Cyber Insights 2026: Malware and Cyberattacks in the Age of AI

2167 - Search - Cyber Insights 2026: Zero Trust and Following the Path

2168 - Search - Cyber Insights 2026: Offensive Security; Where It Is and Where It’s Going

2169 - Search - Cyber Insights 2026: Quantum Computing and the Potential Synergy With Advanced AI

2170 - Search - Hacker Conversations: Vinnie Liu, Performer Turned Ringmaster

2171 - Search - Hacker Conversations: Marcus Hutchins and the Journey From the Gray Zone to Redemption

2172 - Search - Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker

2173 - Search - Hacker Conversations: Jesse McGraw (GhostExodus), From Blackhat Hacker to Redemption

2174 - Search - Hacker Conversations: Chris Thompson, Former Head of IBM X-Force Red, Co-Founder of RemoteThreat

2175 - Search - CISO Conversations: Chris Wheeler – Trust Is the Job, From the Navy to the C-Suite

2176 - Search - CISO Conversations: Nico Waisman – From Self-Taught Hacker to AI-Driven Offensive Security at XBOW

2177 - Search - CISO Conversations: Russ Kirby – Passion Is the Antidote to Burnout

2178 - Search - CISO Conversations: Andreas Gaetje – From Economics to CISO at Körber AG

2179 - Search - CISO Conversations: Tarah Wheeler, Cybersecurity Leader, Thought Leader and Original Thinker

2180 - Search - In Other News: InjectEave Attack, SIM Swapper Sentenced, Glasswing Findings Review

2181 - Search - Ukrainian Conti Ransomware Developer Sentenced to 4 Years in US Prison

2182 - Search - Hackers Return $263 Million Stolen From Liquid Network

2183 - Search - Party’s Over for Crypto Scammers Who Went on a Spending Spree After a $240 Million Bitcoin Theft

2184 - Search - AIUC Raises $40 Million to Certify Enterprise AI Agents

2185 - Search - Pixel Modem Zero-Day Exploited in Targeted Attacks

2186 - Search - Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites

2187 - Search - Rethinking Application Security for the AI Era

2188 - Search - Microsoft Patches Exploited Entra ID Vulnerability

2189 - Search - Fortune 500 Companies Hit in Azure Data Theft Campaign

2190 - Search - Rethinking AI Security: Why CASB and DLP Need an Interaction-Aware Layer

2191 - Search - Critical Flaw Allowed to Azure Cosmos DB Pwnage

2192 - Search - The Race to Control AI and Protect What Makes Us Human

2193 - Search - ICS Patch Tuesday: Schneider Electric, Siemens Fix Critical Flaws

## CSO Online

View Articles

2194 - Search - blogCSO Security CouncilExpert insights and strategic guidance for CISOs on emerging threats, AI risks, zero trust and enterprise security leadership. This blog is part of the Foundry Expert Contributor Network. Want to join? Learn more here: https://www.csoonline.com/exper...228 articles

## Troy Hunt

View Articles

2195 - Search - why I chose to use Ghost

## Last Watchdog

View Articles

2196 - Search - News alert: Axoflow introduces AxoDetect to identify threats and reduce security data costs

2197 - Search - MY TAKE: OpenAI, Anthropic admit they can’t control AI — for now, the machines are running free

2198 - Search - A rogue AI swarm comes to life

2199 - Search - GUEST ESSAY: AI coding assistants are putting open source in your code without declaring it

2200 - Search - Hugging Face breach guardrails failure

2201 - Search - MY TAKE: ChatGPT’s five-hour outage coincided with a model retirement its incident record omits

2202 - Search - BLACK HAT FIRESIDE CHAT: How linking SOC alerts cuts noise, reveals attacks taking shape

2203 - Search - News Alert: SpyCloud survey finds machine identity risks outpace defenses, exposing gaps in oversight

2204 - Search - News Alert: Reflectiz launches AI website testing, uses site context to find and verify flaws

2205 - Search - News Alert: Link11 reports fewer but stronger DDoS attacks in Europe for the first half of 2026

2206 - Search - News alert: OpenMatter adds secure routing for OpenAI, Anthropic and Google models