- Samuraj i niewidzialna pieczęć. Jak wygląda druk i skanowanie w architekturze, która nie ufa nikomu
- Weekendowa Lektura: odcinek 696 [2026-10-02]. Bierzcie i czytajcie
- Znów wyciekły dane Polaków. Tym razem z gabinetów dentystów
- Chińscy hakerzy polują na ekspertów AI w USA
- Uderzenie w grupę KillSec. Międzynarodowy sukces służb
- Podatność w oprogramowaniu gotop
- Fakturownia wysłała informacje o wycieku. “Incydent dotyczy każdego konta w Fakturowni.”
- Mechanizm wyboru szablonu może doprowadzić do RCE w WordPressie
- Rosyjscy hakerzy zmieniają taktykę. Star Blizzard zwiększa skalę ataków
- Wyciek danych z Pentagonu – dotyczy trzech milionów osób!
- Jak działa manipulacja w sieci. „Dziecko nie zawsze wie, że jest ofiarą” [WYWIAD]
- CloudSyncD na macOS: backdoor ukryty w fałszywym instalatorze Zoom
- TA419 podszywa się pod ekspertów AI i byłych urzędników, atakując środowiska polityki technologicznej w USA
- Złośliwe Custom GPT jako przynęta do wdrażania RAT: nowy wariant ClickFix wykorzystuje zaufane usługi
- USA sankcjonują twórcę malware do ATM jackpotting i jego sieć operacyjną
- MI5 ostrzega uczelnie przed finansowaniem badań mogących wspierać chiński wywiad
- Warlock ransomware atakuje duże organizacje hiszpańsko- i portugalskojęzyczne
- WatchGuard łata krytyczną lukę RCE w Fireware OS. Zagrożone urządzenia Firebox z BOVPN over TLS
- Zimbra pod ostrzałem: CVE-2026-73570 wykorzystana przed publicznym ujawnieniem
- Citrix NetScaler pod ostrzałem: web shell ukrywany jako CSS i konto superuser po eksploatacji CVE-2026-88771
- Bitget potwierdza atak zero-day w zewnętrznych systemach bezpieczeństwa po kradzieży 387,5 mln dolarów
- AI przyspiesza cyberataki, ale nie zmienia fundamentów bezpieczeństwa
- Zero Trust w erze ataków wspieranych przez AI: model nadal działa, ale tylko przy poprawnej implementacji
- Apple CoreGraphics i CVE-2026-86950: publiczne PoC zwiększa ryzyko ataków z użyciem złośliwych PDF-ów
- Krytyczna luka Code Injection w Kiteworks EPG. Aktualizacja 9.4.1 eliminuje ryzyko zdalnego przejęcia
- RedFlick: nowa technika dostarczania malware używana przez rosyjską grupę Star Blizzard
- CISA dodaje krytyczną lukę Cisco Catalyst SD-WAN Manager do KEV. Trwa aktywne wykorzystywanie CVE-2026-76504
- Samonaprawiający się backdoor w WordPressie: malware odbudowuje się po usunięciu
- Ponad 543 tys. aktywnych poświadczeń ujawnionych w publicznych repozytoriach GitHub
- Microsoft: cyberprzestępcy zyskują przewagę nad obrońcami w początkowej fazie wyścigu AI
- Atak na DIVD ujawnił krytyczne luki zero-day w Zammad
- Wyciek danych z systemu kadrowego Pentagonu. Naruszenie objęło blisko 3 miliony osób
- OpenAI blokuje kampanię ekstrakcji rozumowania modeli AI powiązaną z adversarial distillation
- Autonomiczne agenty AI próbowały atakować rządowe serwisy USA i Kanady
- Hiszpańska policja zatrzymała 16-latka podejrzanego o kierowanie KillSec. Służby przejęły infrastrukturę grupy
- Luka „day-one” w Zero Trust: onboarding tożsamości jako krytyczny punkt ryzyka
- Incydent bezpieczeństwa MetaMask wymusza wyjście części walidatorów Ethereum
- Krytyczna luka zero-day w FortiMail: aktywne ataki na interfejs zarządzania
- Kolejny wyciek danych, tym razem 2 500 000 pacjentów
- Ktoś twierdzi, że ukradł dane 2 milionów pacjentów gabinetów stomatologicznych i nie jest to Fingerprint
- Wyciek / incydent bezpieczeństwa w FELG Software (oprogramowanie dla gabinetów dentystycznych). Atakujący twierdzą, że uzyskali dostęp do 2,4 miliona rekordów z danymi pacjentów.
- Wyciek / incydent bezpieczeństwa w FELG Software (oprogramowanie dla gabinetów dentystycznych). Atakujący twierdzą, że uzyskali dostęp do 2,4 miliona rekordów z danymi pacjentów.
- Unia wzmocni łączność służb. KE przedstawiła projekt
- Samochód jak smartfon. Dane kierowcy trafiają do zewnętrznych firm
- Nastolatek szykował atak terrorystyczny? Akcja policjantów
- Chat Control 2.0 bez porozumienia. Spór o skanowanie prywatnych wiadomości
- Co z „Cyber Piątką”? Ministerstwo ujawnia stan prac
- Chiński model AI potrafi tworzyć exploity. Anthropic ostrzega przed GLM-5.3
- Rosja uderza w ukraińskich żołnierzy. Kreml sięga po sztuczną inteligencję
- Nowy wariant Spectre v2. Czym jest Branch Target Reuse
NEWS
- RemoteThreat Bets Security Teams Need to Test What Happens After Defenses Fail
- ICE Has Been Dumping Protester Photos Into a Palantir Database
- Frontline Education breach exposes school district employee data
- Warlock ransomware breach SharePoint in water, telecom operator attacks
- GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers
- Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign
- Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes
- Kiteworks & Citrix Incidents Show Challenges of Zero-Day Response
- SWIFT Banking & Government Middleware Enables RCE
- GitLab warns of critical RCE vulnerability in AI Gateway service
- Is Your Organization Ready for 2027's AI Accountability Era?
- Is It Fair to Blame 'Rogue' AI for Security Failures?
- US sanctions Tren de Aragua gang members in ATM hacks crackdown
- The EDR blind spot: 3 ways browser attacks evade endpoint telemetry
- Vulnerability Backlogs Are an Ownership Problem
- Malicious Linux Implants Mimic Asian Mail Security Products
- Dell asks admins to patch max severity CSM flaws as soon as possible
- OpenAI Parts Ways With Three Safety Researchers Over Sensitive Information Mishandling
- Why CISOs Struggle to Answer the Board's Three Hardest Questions, and How to Fix the Report
- A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data
- Microsoft’s X account hacked in crypto pump-and-dump scheme
- Android 17 Advanced Protection Locks Accessibility Services to Verified Accessibility Tools
- Critical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File Writes
- Fortinet warns of critical FortiMail flaw exploited in zero-day attacks
- Alleged KillSec Ransomware Mastermind a 16-Year-Old
- Autonomous AI agents tried to hack US, Canadian government websites
- Microsoft says threat actors are ahead in the early AI race
- Give yourself room to be human
- Experience What It’s Like to Travel in the Occupied West Bank
- Police Arrest 16-Year-Old Suspected of Running KillSec, Seize Ransomware Leak Site and Servers
- ThreatsDay: AI-Powered Zero-Day Chain, 543K Live Secrets, Model Inspection RCE and 13 More Stories
- WordPress Backdoor Rebuilds Itself After Cleanup Using Files, Database, and Shared Memory
- Police dismantle KillSec ransomware gang allegedly led by 16-year-old
- Shadow AI explained: The work shortcut that could leak your company’s secrets
- The Day-One Hole in Zero Trust Architecture
- Kiteworks patches max severity code injection vulnerability
- Warlock Ransomware Hits Large Spanish, Portuguese Orgs
- How Financial Services Companies Can Modernize Their Software Supply Chain
- Convincing Free Mobile phishing emails appear after data breach
- Microsoft enables Windows settings backup by default for orgs
INFLUENCERS
- Unidentified Flock Cameras in Florida
- How American Political Campaigns Are Using AI—and What They’re Spending on the Tools
- Connected Cars Are a Surveillance Platform
- I Want Better Reporting on AI Genie Behavior
- Using Device Linking to Eavesdrop on WhatsApp and Signal
- Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation
- New Attack Against RSA
- Weekly Update 523: Live From a Norwegian Fjord
- U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon Extortions
- Friday Squid Blogging: Participatory Squid Dissection in October in Tennessee
TOOLS
- ndaal_public_auditd
- PEASS-ng v20261002-82d9fad1
- HashcatRosetta
- advisory
- vmp-devirt
- semgrep v1.179.0
- MEA-Bench
- refusal-relocates
- InfraPulse-Core
- frida v17.20.0
- ai-agent-gateway
- OWASP-Top-10-Neocloud-and-AI-Data-Center-Security-Risks
- cortex
- Kousei
- skyvern v1.0.55
- ps-ppl-bypass
- wazuh v4.14.9-rc1
- kube-reaper
- gvcidrv64
- blinder
EXPLOITS
- [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities
- [webapps] InvoicePlane 1.7.1 - RCE
- [webapps] Krayin CRM 2.2.4 - IDOR
- [webapps] SuiteCRM 8.10.1 - Authenticated SSRF
- [remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE
- [webapps] Food-Ordering 1.0 - LFI
- [webapps] WordPress 7.0.2 - Path Travesal
- [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write
- [remote] Teltonika_RutOS 00.07.06.21 - command injection
MALWARE
- Beyond Triage: How the Aurora Agentic SOC Enhances the Concierge Experience
- [Control Systems] Moxa security advisory (AV26-995)
- GitLab security advisory (AV26-994)
- [Control systems] Hitachi security advisory (AV26-993)
- Sintesi riepilogativa delle campagne malevole nella settimana del 26 settembre – 2 ottobre
- MikroTik security advisory (AV26-992)
- WatchGuard security advisory (AV26-990)
- [Control Systems] Johnson Controls security advisory (AV26-991)
- City of Vicksburg, Mississippi, shuts down computers after cyberattack
- SequenceHash: multihashing for the rest of us
- Fortinet security advisory (AV26-989)
- Infostealer Malware Groups | How Lumma, RedLine, Vidar, StealC, Raccoon and Other Stealers Work (and How to Detect and Remove Them)
- CVE-2026-104286: FortiMail Path Traversal Vulnerability Actively Exploited
- Residential Proxy Risk: The Employee Earns Pennies, The Buyer Gets The Router
- Cybercrime Disruption: Making a “Real Impact” | Ken Bagnall
- Vulnerability in gotop software
- Weekly Cybersecurity Roundup: How Stolen Credentials Continue to Fuel Fraud
- AI used to clone St. Louis County roofing company’s website
- Multiple High-Severity Vulnerabilities in TeamViewer
- Ordering violence from abroad: five suspects arrested in Spain, Morocco, and France
ARTICLES
- Ship fast, verify independently: keeping application security in step with AI-written code
- Shadow AI and the permissions problem: what to check before handing AI the keys
- Trump’s Super Intelligence edict supercharges .si domain registrations
- Cybersecurity Awareness Month: AI agents are users too, and they need governing like it
- Malicious Email Could Hijack AI Agent and Access Connected Accounts
- How Meta stumbled onto a winning AI strategy
- Facing the music: Apple, Samsung, and memory cost inflation
- US FTC will investigate Anthropic and OpenAI
- AI could boost software engineer productivity by 32.6%
- Microsoft adds support for Linux containers in WSL
- Omnissa delivers a peek into the benefits of breaking through enterprise data silos
- Does bank’s financial standing influence the risk of a cyberattack?
- Memory squeeze set to tighten through 2028, Micron says
- RMM abuse behind 45% of endpoint incidents as Huntress publishes inaugural Tragic Quadrant
- CFO on the Spot: Five minutes with Tom Coward, CFO of Cytora
- ServiceNow launches standalone AI service desk to provide support in Teams, Slack, and email
- Will ‘move fast, ship quicker’ kill the Apple brand?
- CFO on the Spot: Five minutes with Aziz Megji, CFO of Asana
- Huntress and ALSO partner to put managed security in reach of more European MSPs
- Exabeam Pushes The “Agentic SOC” Into The Cloud And On-Premises, With Analysts Kept In The Loop