- Cisco patches Secure Email Gateway zero-day exploited in attacks
- Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
- China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
- 'Sandworm' Chains Cisco Vulnerabilities to Deploy Cyclops Blink
- Microsoft releases emergency Windows updates to fix RDS failures
- Japan's Digital Agency says VPN flaw exposed 246,000 personnel records
- Maximum Severity GitLab Flaw Puts Supply Chains at Risk
- Homebrew 7.0.0 gets built-in GUI, better security controls
- Twitch extension with 30K installs exposes users’ OAuth tokens
- Hackers hijack HBO Max Reddit account to push malware in ClickFix ads
- 3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials
- Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports
- New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing
- Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries
- New York Seizes a Dozen Celebrity Deepfake Websites
- Anthropic CEO: Time to Shift From Improving to Controlling AI
- Hackers target exposed Vite dev servers to steal AWS, Azure secrets
- WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distribution
- ⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits
- Why Patch Automation Needs Brakes, Not Just an Accelerator
- Webinar: How malicious OAuth apps can lead to Google Workspace breaches
- AI Changed the Exposure Problem. Validation Needs to Change With It.
- Sexually Explicit Deepfake Sites Target 100-Plus Politicians in Europe
- Microsoft: September updates cause RDS failures on Windows Server
- Revolut discloses data breach exposing financial info, passports
- Microsoft: September updates break audio on some Windows PCs
- Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users
- CISA: Hackers now exploit max severity GitLab flaw in attacks
- A week in security (September 7 – September 13)
- Hackers exploit Tencent app flaw to deploy GrayRabbit malware
- Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
- CISA Adds 5 Actively Exploited Artifactory, ScreenConnect, and RouterOS Flaws to KEV
- Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent
- From Hacks to Bioweapons, Claude Misuse Is Now Everywhere
- When the Whole Company Adopts AI: What It Does to Your SOC
- OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers
- [Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AI
- [Virtual Event] Building a Secure AI Strategy for the Enterprise
- Hackers abused Claude to extract secrets from 1.8M Android apps
- Threat Actor Generates 1M Personalized Fraud Emails in 3 Days