- AI na polu walki. Ukraina pracuje nad nowym systemem
- Weekendowa Lektura: odcinek 695 [2026-09-25]. Bierzcie i czytajcie
- Od monitorowania zagrożeń do globalnej współpracy. Jak SOCCER wzmocnił SOC AGH
- Nie liczba ataków jest najważniejsza. ENISA o cyberzagrożeniach w Europie
- Cenne dane bez ochrony. Luki w bezpieczeństwie polskich uczelni [WYWIAD]
- Prezydent podjął decyzję ws. pierwszej ustawy wdrażającej DSA
- AI włamała się do systemu ochrony zdrowia. „Sytuacja nie do przyjęcia”
- Cyberbezpieczeństwo to nie koszt, ale inwestycja. Jeden atak może przekreślić lata badań
- Agent AI OpenAI uzyskał nieautoryzowany dostęp do australijskiego portalu Medicare
- Wielka Brytania zmienia model cyberbezpieczeństwa administracji: od zgodności do usług ochronnych
- CISA ogłasza „erę jakości” dla programu CVE. Co zmieni się w zarządzaniu podatnościami?
- Nowa grupa ransomware grozi zniszczeniem kopii zapasowych, zwiększając presję na ofiary
- Secrets sprawl w erze agentów AI: dlaczego to problem tożsamości, a nie tylko wycieków sekretów
- Corp MDM atakuje logistykę: nowe spyware na Androida przechwytuje SMS-y i przekierowuje połączenia
- TeamFiltration atakuje Microsoft 365: domyślne hasła umożliwiły przejęcie kont usługowych
- Process parameter poisoning: nowa technika omijania EDR w atakach process injection
- Trzy cyberzagrożenia, które zdefiniowały lato 2026
- Krytyczna luka zero-day w F5 BIG-IP APM umożliwia zdalne wykonanie kodu
- Salesbleed: podatności w Salesforce Agentforce umożliwiają phishing przez Slack
- SectopRAT wraca i ukrywa się w legalnej aplikacji. Nowa kampania utrudnia wykrycie RAT-a
- CLOSEDQUORUM: malware dla Windows wykorzystuje głosowanie modeli AI do wyboru działań operacyjnych
- Wiz wykorzystuje AI do wykrywania luk w infrastrukturze krytycznej
- MikroTrick w MikroTik RouterOS: krytyczny łańcuch błędów SSH umożliwiał pełne przejęcie routera
- FBI bada cyberatak na portal rekrutacyjny powiązany z zewnętrznym dostawcą
- USA: obywatel Armenii skazany za udział w atakach Ryuk ransomware
- NIST aktualizuje wytyczne OT, a CISA i FBI ostrzegają przed ryzykiem związanym z integratorami ICS
- SolarWinds usuwa krytyczne luki RCE w Observability Self-Hosted. Pilna aktualizacja do wersji 2026.2.3
- Kampania wspierana przez AI atakuje setki sklepów internetowych i kradnie dane kart
- Naruszenie danych w Astrana Health po ataku socjotechnicznym na pracowników
- Aktywna eksploatacja CVE-2026-87902 w WordPress ruszyła kilka godzin po publikacji poprawek
- ClickFix na ponad 17 tys. adresów URL: jak zaufane strony WWW stają się pułapką na malware
- Niezałatane luki w OnePlus pozwalają aplikacjom uzyskać roota bez uprawnień
- Zhakowane ukraińskie strony rozprowadzają malware Psychedelic Stealer przez fałszywe ekrany Cloudflare
- Agent AI ominął zabezpieczenia portalu Medicare w Australii i uzyskał dostęp do niepublicznych plików
- RemControl: nowy trojan bankowy na Androida atakuje użytkowników w Europie i Kanadzie
- CISA ostrzega przed aktywnym wykorzystaniem krytycznej luki w JetBrains TeamCity przez gangi ransomware
- Nowy wyciek danych medycznych może obejmować 5 mln Polaków
- Fałszywe instalatory LastPass rozpowszechniają narzędzie do wyłączania EDR na poziomie jądra oraz dystrybuują oprogramowanie kradnące dane!
- Sprawcy ataku na system Medyc twierdzą, że ukradli dane 5 milionów pacjentów i 8 milionów zdjęć
- „Żaden kraj sam sobie z tym nie poradzi”. Liderzy AI ostrzegają ONZ
- Obowiązki podmiotów kluczowych i ważnych według KSC
- Kolejny ogromny wyciek danych medycznych Polaków
- Kolejny wyciek danych medycznych Polaków. Chodzi o oprogramowanie Medyc, wykorzystywane w placówkach medycznych.
- Sprawcy wycieku MyDr ponownie atakują - tym razem ofiarą aplikacja Medyc
- Uczelnie na celowniku przestępców. Stawka jest wysoka
- „Filary Cyberbezpieczeństwa” po raz czwarty. Przed nami uroczysta Gala Cyber24 DAYS
- Szanse i pułapki cybersuwerenności. Kolejna strategia to za mało
- Wyciek, który odsłania ludzi. Dlaczego dane personelu FBI mogą mieć wartość dla obcego wywiadu
- Kradzież danych pacjentów ośrodka odwykowego. Luka w programie medycznym
- Polski Kod Mobilności. Państwo chce wesprzeć firmy w walce o europejski rynek
NEWS
- AI Sandbox Escapes: Why Forensic Readiness Matters More Than Containment
- Elementor WordPress flaw lets attackers create admin accounts
- What We Missed: Google Gemini Joins the AI Escape Party
- CISA warns of Sharepoint, WSO2, Adobe Commerce flaws exploited in attacks
- Anthropic rolls out up to $250 in free Claude Code credits, but only for cloud sessions
- OpenAI is preparing a $500 ChatGPT Pro Max plan with faster Codex
- With the Rise of AI Agents, SOC 2 Should Adapt or Risk Irrelevance
- Stopping IT Worker Scams Requires Revamped HR Process
- Compromised GitHub Actions Came Back Online and Resumed Executing Mini Shai-Hulud Malware
- PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence
- Microsoft plans to deprecate Windows Deployment Services
- Rydox marketplace admin pleads guilty, faces 22 years in prison
- The SOC Doesn't Need to Start Over with Every Alert
- Bitget Says Suspected North Korean Hackers Stole $351.6M After Backend Compromise
- Microsoft: Recent Windows updates cause desktop loading issues
- Roundcube Pre-Auth SQL Injection Flaw Actively Exploited in the Wild
- That shipping rebate offer may come with a monthly charge
- Hackers steal $351.6 million in Bitget crypto exchange hack
- Russia's Hybrid Cyber-Physical War in Europe Heats Up
- Cloudflare Fixes Flaw That Let One Container Read Another Customer's Leftover Disk Data
- WSO2 and Adobe Commerce Flaws Exploited in Attacks, Added to CISA KEV
- 'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing
- MacSync malware uses public iCloud calendars to deliver new payloads
- SectopRAT Returns, Hiding Inside a Legitimate Application
- New Carbonato malware uses AI agents to hijack exposed Docker hosts
- Unpatched OnePlus Flaws Let Installed Android Apps Gain Root Without Permissions
- Trust and the enticing consultancy offer
- [Virtual Event] Cybersecurity Outlook 2027
- ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories
- Exposed GitLab project email addresses let attackers push code
- Placeholder third-party[.]com Referenced Across 1,700+ Repositories Now Serves Malicious Content
- 3 Cyber Threats That Defined the Summer of 2026
- Hacked Ukrainian Sites Serve Fake Cloudflare ClickFix Lures for Psychedelic Stealer
- How to Build A SASE Framework for Modern Cybersecurity
- FedRAMP VDR & VER: Daily Scans Are Only the Beginning
- Ghost Service Accounts Enable M365 Data Theft in Chile
- Hackers now exploit critical Roundcube flaw in code injection attacks
- OpenAI agent breached Australian government site, took months to report it
- Prompt-Injection Bug Hits $4B Agentic AI App 'Manus'
- New Browser Guard features add protection before and after you click
INFLUENCERS
- On Anthropic’s AI Misuse Report
- Malicious npm Packages That Evade Defenses
- AI-Assisted Malware Analysis Tips
- Research on Models Engaging in Genie-Like Behavior
- Weekly Update 522: Live From Oslo with Scott Helme
- GPT-6 Astra Breaks an Old Enigma Message
- My Favorite Findings From the AI Security Decisions Report
- Reverse-Engineering Flock Cameras
- Brooklyn History: The Mystery of Club 338
- Friday Squid Blogging: On Squid Egg Sacs
MALWARE
- Threat Actors Use Google Ads To Target Ledger Users
- Zimbra security advisory (AV26-964)
- Unmasking a Nova Ransomware Operator: Following Reused Contact Methods to a Real-World Identity
- Wordfence Bug Bounty Program Monthly Report – June 2026
- How the Aurora Agentic SOC Is Building the Next Generation of SOC Analysts
- Threat Research Roundup: September 2026
- Storm-3168: Agentic-driven cloud attacks using compromised service principals
- Sintesi riepilogativa delle campagne malevole nella settimana del 19 – 25 settembre
- Kothamine malware uses Tailscale’s tailcat to evade network detection
- LinkedIn adds new checks for fake profiles and work histories
- ServiceNow security advisory (AV26-963)
- Roundcube SQLi (CVE-2026-48842) Exploited
- Dark Web Profile: Blue Locker Ransomware
- GitLab security advisory (AV26-962)
- Criminals turn placeholder domain into ClickFix trap
- ANY.RUN at RootedCON Valencia 2026: Where Cybersecurity Meets the Next Wave of AI
- AI breach puts cyber insurance notification rules under scrutiny
- DIVD Dutch Institute for Vulnerability Disclosure investigating agentic AI-powered attack
- Inside the Telecom Attack Surface: SS7, BGP Hijacking, and the Technical Reality of Nation-State Intrusions
- AI-Enabled Cyber Attacks: What They Are and How to Defend Against Them
CYBERWARFARE
- Russia could attack a Nato country within months, Danish intelligence says
- How the ‘poisonous tide’ of disinformation stokes division and sows despair
- The Guardian view on Russian disinformation: a foreign threat that relies on UK complicity | Editorial
- PM’s new anti-disinformation unit won’t target ‘domestic politcal dissent’, defence secretary says – UK politics live
- New UK agency will tackle ‘information warfare’ from likes of Russia, Burnham says
ARTICLES
- CFO on the Spot: Five minutes with Samantha Greenberg, CFO of AlphaSense
- AI tools help hacker break in for $25 per target
- OpenAI wants you to use AI — but not to train its AI
- Microsoft’s new Copilot ‘super app’ unifies chat, code, agents
- Adobe’s next platform for Creative Cloud? Your AI assistant
- Google is set to launch a small AI data center into space
- iOS 27: Why you should learn to love Impersonation Risk Detection
- Meta floats project to lay first petabit submarine fiberoptic cable
- Attackers build “silent” cryptominer on victim’s machine and give themselves away
- Google plans Gemini 4 release before year-end
- Around the corner: Agentic AI PCs that cut token costs
- The companies racing to build frontier AI are now racing to govern it
- Private regulation of cyber proliferation: from norm entrepreneurship to a quasi-export control regime
- WordPress patches a critical severity security vulnerability
- CFO on the Spot: Five minutes with Enrique Patrickson, CFO of Hexagon
- CFO on the Spot: Five minutes with Steve McCue, CFO of Pragmatic Semiconductor
- CFO on the Spot: Five minutes with Chris Wilmot, CFO of Medius
- Microsoft integrates SOC capabilities with Defender for enterprises
- Jamf in the age of agentic IT: An interview with CEO Beth Tschida
- CFO on the Spot: Five minutes with Marta Garcia, CFO of Multiverse Computing