2026-10-01 14:00 UTC
Vendor Research
Microsoft Security Blog · Matthew Thomas · indexed 2026-10-01 14:40 UTC
According to this year’s Microsoft Digital Defense Report, government agencies and services were the sector most impacted by cyber threats in 2026, accounting for 27% of observed activity, up from 17% in 2025. The post Preparing governments for an era of interconnected cyber risk appeared first on Microsoft Security Blog.
P0
2026-10-01 14:00 UTC
Vendor Research
Microsoft Security Blog · Terrell Cox · indexed 2026-10-01 14:40 UTC
Read highlights from the 2026 Microsoft Digital Defense Report, which reflects a security environment that continues to grow more interconnected. The post Insights from the 2026 Microsoft Digital Defense Report appeared first on Microsoft Security Blog.
P0
2026-10-01 13:51 UTC
Security Journalism
BleepingComputer · Sergiu Gatlan · indexed 2026-10-01 14:00 UTC
Secure file-sharing software company Kiteworks has released security updates to address 126 vulnerabilities, including a max-severity flaw affecting its Email Protection Gateway (EPG) security solution. [...]
P5
2026-10-01 13:33 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-10-02 07:20 UTC
Google unveils Gemini 4 Argon, a frontier AI model built for coding, enterprise work, and autonomous cybersecurity defense, rolling out to trusted testers. Google announced Gemini 4 Argon, and it’s not going straight to the public. It’s rolling out first to a set of trusted cyber defenders through what Google calls the Fairwind Program, which […]
P0
2026-10-01 13:33 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-10-01 14:40 UTC
Google unveils Gemini 4 Argon, a frontier AI model built for coding, enterprise work, and autonomous cybersecurity defense, rolling out to trusted testers. Google announced Gemini 4 Argon, and it’s not going straight to the public. It’s rolling out first to a set of trusted cyber defenders through what Google calls the Fairwind Program, which […]
P0
2026-10-01 13:15 UTC
Security Journalism
Security Week · Joshua Goldfarb · indexed 2026-10-01 13:40 UTC
As AI accelerates vulnerability discovery and exploitation, so-called virtual patching still comes down to defense-in-depth and strong application security fundamentals. The post AI Has Changed Attack Speed, Not Security Fundamentals appeared first on SecurityWeek.
P0
2026-10-01 13:04 UTC
Vendor Research
Cloudflare Security · Carly Ramsey · indexed 2026-10-01 13:20 UTC
AI sovereignty is not a zero-sum game, but many governments now believe it is. Cloudflare's answer: more local open-source models, model-agnostic security tools, and a commitment to giving nations genuine choice.
P0
2026-10-01 13:00 UTC
Security Journalism
Huntress · indexed 2026-10-01 13:50 UTC
The Huntress Tragic Quadrant ranks the cyber threats hitting businesses most, from RMM abuse to AiTM, ClickFix, using real SOC data.
P0
2026-10-01 13:00 UTC
Vendor Research
Rapid7 · Rapid7 · indexed 2026-10-01 13:20 UTC
As AI takes on more of the enrichment, correlation, and initial assessment inside the SOC, roles, skills, and KPIs still require deliberate redesign. Security leaders need to decide where automation is dependable, where human judgment should remain decisive, and how teams should be measured when alert handling is no longer the center of the operating modelThe Gartner® report, The Roles Required for the AI-Enabled Security Operations Center (SOC), examines the roles and capabilities Gartner expe…
P0
2026-10-01 13:00 UTC
Security Journalism
Dark Reading · Nate Nelson · indexed 2026-10-01 13:00 UTC
A year-old Chinese threat actor looks like a cybercrime gang, acts like a state-associated APT, and attacks organizations in unexpected places.
P15
2026-10-01 12:55 UTC
Security Journalism
Security Week · Ionut Arghire · indexed 2026-10-01 13:00 UTC
Under certain conditions, CVE-2026-73570 can be exploited via specially crafted emails without user interaction. The post Zimbra Vulnerability Exploited in the Wild Prior to Public Disclosure appeared first on SecurityWeek.
P25
2026-10-01 12:30 UTC
Security Journalism
The Record · indexed 2026-10-01 12:45 UTC
One of Poland’s major online invoicing platforms suffered a data breach that may have exposed information belonging to its users, their customers and business partners.
P0
2026-10-01 12:08 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-10-01 12:40 UTC
Apple patched a CoreGraphics zero-day that may have been exploited in targeted attacks. A public PoC for the flaw is now available. Apple patched a zero-day vulnerability, tracked as CVE-2026-86950, in CoreGraphics that attackers may have exploited to target specific individuals. The flaw is an out-of-bounds write that can lead to arbitrary code execution when […]
P30
2026-10-01 12:05 UTC
Other
Group-IB · indexed 2026-10-01 14:20 UTC
Milk Dragon, also known as NaiLong is an Adversary-in-the-Middle (AiTM) phishing kit active since October 2025. Unlike conventional phishing tactics that rely on fear and urgency, Milk Dragon lures victims with big discounts on consumer goods distributed via Facebook and TikTok marketplace advertisements.
P0
2026-10-01 12:05 UTC
Other
Group-IB · indexed 2026-10-01 12:40 UTC
Milk Dragon, also known as NaiLong is an Adversary-in-the-Middle (AiTM) phishing kit active since October 2025. Unlike conventional phishing tactics that rely on fear and urgency, Milk Dragon lures victims with big discounts on consumer goods distributed via Facebook and TikTok marketplace advertisements.
P0
2026-10-01 12:00 UTC
Government
NIST Cybersecurity Insights · CheeYee Tang , Robert Stea, John Wiltberger · indexed 2026-10-01 13:15 UTC
Recent cyberattacks on the U.S. water and wastewater systems (WWS) sector are highlighting the escalating threat to our nation’s critical infrastructure and the practical challenges of securing it. These incidents underscore an important challenge: the connectivity that utilities depend upon must be designed and operated with security as a core priority rather than a secondary consideration. They also provide a critical insight — that effective cybersecurity protections require a broad-based un…
P0
2026-10-01 11:45 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-01 12:25 UTC
Every security leader at a bank, insurer, or asset manager has had a version of this conversation: Security wants to eliminate a class of vulnerabilities. Engineering explains what it would take to upgrade the platform where they live. Somebody prices out the regression testing. Somebody else raises the change-freeze calendar. The finding gets an exception, a compensating control, and a date
P0
2026-10-01 11:40 UTC
Security Journalism
Security Week · Mike Lennon · indexed 2026-10-01 12:00 UTC
The Series B brings the AI-powered offensive security startup’s total funding to roughly $445 million only seven months after its public launch. The post Kevin Mandia’s Armadin Raises $255 Million at $2.5 Billion Valuation appeared first on SecurityWeek.
P0
2026-10-01 11:14 UTC
Security Journalism
BleepingComputer · Sergiu Gatlan · indexed 2026-10-01 11:30 UTC
Microsoft announced that Windows settings backup and restore is now enabled by default on all Microsoft Entra-joined or Microsoft Entra hybrid-joined enterprise systems upgraded to Windows 11 26H2. [...]
P0
2026-10-01 10:51 UTC
Security Journalism
Security Week · Eduard Kovacs · indexed 2026-10-01 11:00 UTC
The US government continues its crackdown on Tren de Aragua over its ATM jackpotting scheme. The post Treasury Blacklists Most-Wanted ATM Malware Developer and His Network appeared first on SecurityWeek.
P0
2026-10-01 10:42 UTC
Security Journalism
Security Week · Ionut Arghire · indexed 2026-10-01 11:00 UTC
The flaws were chained to hijack sessions, achieve remote code execution, and elevate privileges to root. The post Zammad Zero-Days Exploited in AI-Powered DIVD Hack appeared first on SecurityWeek.
P40
2026-10-01 10:42 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-01 11:10 UTC
OpenAI on Wednesday said it identified and disrupted a coordinated distillation campaign that was designed to illicitly extract protected reasoning from its artificial intelligence (AI) models. A "core cluster of the activity," going back to the first week of July, has been attributed to individuals associated with Moonshot AI, a Chinese AI company based in Beijing. It did not cite any
P0
2026-10-01 10:33 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-01 11:10 UTC
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added a critical authentication bypass flaw impacting Cisco Catalyst SD-WAN Manager to its Known Exploited Vulnerabilities (KEV), following reports of active exploitation. The vulnerability, tracked as CVE-2026-76504 (CVSS score: 9.8), could allow an unauthenticated, remote attacker to access an affected system with
P45
2026-10-01 10:00 UTC
Vendor Research
Cisco Talos Intelligence Blog · Hazel Burton · indexed 2026-10-01 10:25 UTC
What really frustrates an adversary? Eight Cisco Talos researchers share practical ways to make their next move slower and riskier. From deception and behavioral detection to breaking attack dependencies and resisting manufactured urgency.
P0
2026-10-01 09:44 UTC
Security Journalism
BleepingComputer · Sergiu Gatlan · indexed 2026-10-01 09:45 UTC
The Pentagon's Defense Manpower Data Center (DMDC) is notifying millions of military service members that hackers stole their data after breaching the Pentagon's human resources management system in October 2025. [...]
P0
2026-10-01 09:43 UTC
Security Journalism
Security Week · Ionut Arghire · indexed 2026-10-01 09:45 UTC
Roughly 200,000 of the credentials were exposed after GitHub enabled push protections by default. The post 500,000 Active Credentials Left Exposed on GitHub appeared first on SecurityWeek.
P0
2026-10-01 08:35 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-10-01 09:10 UTC
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Cisco Catalyst SD-WAN Manager flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a Cisco Catalyst SD-WAN Manager flaw, tracked as CVE-2026-76504 (CVSS score of 9.8), to its Known Exploited Vulnerabilities (KEV) catalog. The vulnerability resides in Cisco Catalyst SD-WAN Manager’s […]
P35
2026-10-01 08:26 UTC
Security Journalism
Security Week · Ionut Arghire · indexed 2026-10-01 08:30 UTC
The flaw could allow remote, unauthenticated attackers to access vulnerable appliances with administrative privileges. The post Cisco Patches Exploited Catalyst SD-WAN Zero-Day Vulnerability appeared first on SecurityWeek.
P25
2026-10-01 08:04 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-10-01 08:10 UTC
DIVD was breached through two Zammad zero-days that let an AI agent reach root in seconds, steal data and pivot to other services before being stopped. The Dutch Institute for Vulnerability Disclosure, a nonprofit organization of volunteer security researchers whose whole job is finding and responsibly disclosing vulnerabilities in other people’s software, just disclosed that […]
P25
2026-10-01 07:52 UTC
Security Journalism
Security Week · Eduard Kovacs · indexed 2026-10-01 08:10 UTC
The company says its new frontier AI model found a critical vulnerability in software used by hospitals worldwide. The post Google Launches Gemini 4 Argon With Guardrail-Free Access for Vetted Defenders appeared first on SecurityWeek.
P10