Posts of last few hours
Please support the site operations by clicking ads.
A new Android malware called RatHat has been discovered, targeting users with an AI-powered subsystem that helps operators remotely navigate compromised devices. [...]
https://www.bleepingcomputer.com/news/security/new-rathat-android-malware-uses-ai-to-automate-device-control/
The move is consistent with the agency's advice on the need for organizations to prioritize the vulnerabilities that actually matter.
https://www.darkreading.com/cyber-risk/cisa-ditches-weekly-vuln-roundups-risk-based-focus
The latest zero-day has a maximum-severity rating and affects Cisco Identity Services Engine, a product hit with three actively exploited vulnerabilities since June 2025.
The post Cisco alerts customers to second actively exploited zero-day in as many days appeared first on CyberScoop.
https://cyberscoop.com/cisco-ise-zero-day-cve-2026-76460/
The proposal, known as the EU KIDS Act, would block social media platforms from offering accounts to children younger than 13 and establish a bloc-wide minimum age of 15 for account creation.
https://therecord.media/european-commission-set-to-push-social-media-kids-restrictions-into-law
SpaceX меняет часовой тест на миссию, которая растянется почти на весь день.
https://www.securitylab.ru/news/577518.php
https://cyber.gc.ca/en/alerts-advisories/tanium-security-advisory-av26-935
https://cyber.gc.ca/en/alerts-advisories/dell-security-advisory-av26-934
While large language models present real risks to society, experts say they can be tested and largely controlled using well-worn cybersecurity and policy choices.
The post The AI hacking apocalypse is not inevitable appeared first on CyberScoop.
https://cyberscoop.com/ai-agent-hacking-apocalypse-cybersecurity/
Amid the US and China's fight for eco-colonial influence in Latin America, a stealthy backdoor has taken flight.
https://www.darkreading.com/cyberattacks-data-breaches/china-famoussparrow-spies-latin-america
ИИ скрывал ошибки, искал чужие ключи и сам выбирал способы обойти ограничения.
https://www.securitylab.ru/news/577523.php
OpenAI has presented new examples of what they call "AI model misalignment" from the past six months, including unauthorized file uploads, following self-generated instructions, hiding mistakes, and leveraging exposed API keys. [...]
https://www.bleepingcomputer.com/news/security/openai-details-more-cases-of-ai-agents-taking-unauthorized-actions/
Новый способ доставки может резко повысить точность будущих экспериментов.
https://www.securitylab.ru/news/577511.php
A forum actor posting as spain has published what they claim is the full updated database of Integra Energía, a Spanish electricity company.
https://darkwebinformer.com/integra-energia-full-dataset-claim-covers-300k-customers/
https://cyber.gc.ca/en/alerts-advisories/check-point-security-advisory-av26-933
A critical vulnerability in Check Point's Security Management and Log Servers could allow an attacker without login credentials to run code as root on those servers over the network.
The Security Management Server is the system that controls firewall policy and administrator access. Check Point has released a fix through its LivePatch update channel and says it has no indication that the flaw
https://thehackernews.com/2026/09/critical-check-point-management-server.html
Новый метод не даёт нейросети нарушать критические условия ради лучшего результата.
https://www.securitylab.ru/news/577512.php
Cyberattacks on oil tankers show how connected ships can expose navigation and critical systems, threatening safety, ports and global trade. U.S. Coast Guard personnel and FBI agents boarded two Texas‑bound energy tankers last month after cyberattacks hit the vessels while they were underway, according to U.S. officials. One of the ships was the VL Prosperity, […]
https://securityaffairs.com/199280/hacking/cyberattacks-on-oil-tankers-put-maritime-critical-infrastructure-at-risk.html
Инженеры хотят передавать энергию стратосферным беспилотникам радиолучом на частоте 5,8 ГГц.
https://www.securitylab.ru/news/577510.php
Attackers keep finding new keys. The funny part is that defenders keep inventing where to store them.
This week, those keys sit in AI tools, exposed services, old bugs, weak logins, and software sold like a monthly subscription. Some attacks use new tricks. Others just reuse what was already lying around. Both work often enough.
So the threat landscape is not getting cleaner. It is just
https://thehackernews.com/2026/09/threatsday-self-rewriting-agents-800.html
https://cyber.gc.ca/en/alerts-advisories/al26-021-vulnerabilities-impacting-cisco-identity-services-engine-ise-cisco-ise-passive-identity-connector-ise-pic-cve-2026-20192-cve-2026-76423-cve-2026-76460
Latest Blog Posts
- 1 month ago
- 3 months ago
- 3 months ago
- 3 months ago
- 3 months ago
- 7 months 3 weeks ago
- 1 year 1 month ago
- 1 year 1 month ago
- 1 year 2 months ago
- 1 year 6 months ago