2026-10-02 20:30 UTC
Security Journalism
The Record · indexed 2026-10-02 20:45 UTC
The plaintiffs, who all worked for the independent and Salvadoran news outlet El Faro, failed to convince the court that their case had jurisdiction in California, according to the judge’s order.
P0
2026-10-02 20:25 UTC
Vendor Research
AWS Security Bulletins · aws@amazon.com · indexed 2026-10-02 20:40 UTC
Bulletin ID: 2026-125-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 10/02/2026 13:00 PM PDT Description: Amazon SageMaker Unified Studio is an AWS service that unifies data, analytics, and AI development. It lets you find and access your organization's data and act on it with integrated, purpose-built tools. We identified CVE-2026-104019, an issue with the startup of SageMaker Spaces in SageMaker Unified Studio. The startup script in a SageMaker Space performs a …
P5
2026-10-02 20:18 UTC
Security Journalism
Dark Reading · Arielle Waldman · indexed 2026-10-02 20:45 UTC
The offensive cyber operations startup looks to evolve red teaming beyond traditional methods to simulate attackers' increasingly advanced capabilities.
P0
2026-10-02 19:30 UTC
Security Journalism
The Record · indexed 2026-10-02 19:45 UTC
Republican Sen. Josh Hawley has new legislation on limiting automated license plate readers (ALPRs), while Democratic Sens. Bernie Sanders and Jeff Merkley, with Rep. Alexandria Ocasio-Cortez, have teed up a broader bill.
P0
2026-10-02 19:21 UTC
Vendor Research
AWS Security Bulletins · aws@amazon.com · indexed 2026-10-02 19:25 UTC
Bulletin ID: 2026-124-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 10/02/2026 12:00 PM PDT Description: Loom is an AWS Labs open-source AI agent orchestration platform. We have identified and addressed three issues in Loom for AWS, described below. We recommend upgrading to the latest version (1.7.0) and ensuring any forked or derivative code is patched to incorporate the new fixes. - CVE-2026-103956 ‐ Authentication bypass in Loom for AWS (CWE-306, CWE-1188) An…
P15
2026-10-02 19:21 UTC
Vendor Research
Cisco Security Advisories · indexed 2026-08-15 14:33 UTC
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these issues by …
P30
2026-10-02 19:01 UTC
Security Journalism
BleepingComputer · Lawrence Abrams · indexed 2026-10-02 19:15 UTC
Frontline Education is notifying school districts of a data breach after attackers exploited a vulnerability in third-party software to gain unauthorized access to its systems and steal employee information, including Social Security numbers. [...]
P0
2026-10-02 18:33 UTC
Security Journalism
BleepingComputer · Ionut Ilascu · indexed 2026-10-02 18:35 UTC
The China-linked ransomware group Warlock targeted a water utility, a telecom provider, a regional government body, and a university by exploiting SharePoint vulnerabilities to gain initial access. [...]
P15
2026-10-02 17:33 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-02 17:45 UTC
A critical flaw in GitLab's AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory. The gateway is the service that connects a GitLab instance to AI models, and only organizations that host their own gateway need to act. The flaw is fixed in gateway versions 19.2.4, 19.3.2, and 19.4.1. The flaw
P10
2026-10-02 17:33 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-02 17:45 UTC
Government and policy organizations across Asia have become the target of a new campaign orchestrated by a China-nexus threat actor. The activity, which has targeted government and policy organizations in Taiwan, India, the Philippines, Cambodia, Pakistan, Thailand, and Myanmar, involves the deployment of a previously undocumented backdoor codenamed Antino. Cisco Talos is tracking the cluster
P0
2026-10-02 17:02 UTC
Security Journalism
The Hacker News · info@thehackernews.com (The Hacker News) · indexed 2026-10-02 17:45 UTC
Dell has released security updates to address multiple critical security flaws in Dell Container Storage Modules (CSM) that could be exploited by bad actors to take over susceptible systems. The vulnerabilities are listed below - CVE-2026-63688 (CVSS score: 10.0) - A missing authentication for critical function vulnerability in the csm-authorization-storage gRPC server that an
P5
2026-10-02 16:56 UTC
Security Journalism
Dark Reading · Robert Lemos · indexed 2026-10-02 17:15 UTC
One company told customers to power down its data-protection platform during a nine-hour window, while the other remained mum on reported attacks prior to releasing a patch for its product.
P25
2026-10-02 16:38 UTC
Vendor Research
AWS Security Bulletins · aws@amazon.com · indexed 2026-10-02 16:50 UTC
Bulletin ID: 2026-120-AWS Scope: AWS Content Type: Important (requires attention) Publication Date: 10/01/2026 08:30 AM PDT Description: The Amazon EFS CSI Driver is a Container Storage Interface driver that allows Kubernetes clusters to use Amazon Elastic File System. We identified CVE-2026-103505, where an actor with PersistentVolume creation privileges can inject additional mount options through the mounttargetipmap volumeAttribute. Appending comma-separated values to a value inside that JSO…
P5
2026-10-02 16:27 UTC
Security Journalism
Dark Reading · Nate Nelson · indexed 2026-10-02 16:30 UTC
Patch middleware vulnerabilities now to avoid hardware-based MFA exploits in ultra-sensitive environments.
P15
2026-10-02 16:20 UTC
Security Journalism
BleepingComputer · Sergiu Gatlan · indexed 2026-10-02 16:35 UTC
GitLab warned customers today to immediately patch a critical AI Gateway vulnerability that could let attackers run arbitrary commands on vulnerable instances. [...]
P15
2026-10-02 16:01 UTC
Security Journalism
Dark Reading · Arielle Waldman · indexed 2026-10-02 16:15 UTC
Organizations may face an artificial intelligence (AI) reckoning over the next year. Omdia and Gartner weigh in on how to tackle the governance, security, and value challenges ahead.
P0
2026-10-02 15:51 UTC
Security Journalism
Dark Reading · Alexander Culafi · indexed 2026-10-02 16:00 UTC
"Rogue AI" terminology anthropomorphizes LLMs and shifts risk responsibility from vendors. Defenders should treat agents as untrusted, nondeterministic software systems, not sentient beings with malicious intent.
P0
2026-10-02 15:20 UTC
Security Journalism
BleepingComputer · Sergiu Gatlan · indexed 2026-10-02 15:25 UTC
The U.S. Treasury Department has sanctioned eight members of the Venezuelan gang Tren de Aragua (TdA) for their role in the theft of millions of dollars in ATM jackpotting attacks across the United States. [...]
P0
2026-10-02 15:00 UTC
Government
CERT-EU Threat Intelligence · indexed 2026-10-02 13:15 UTC
Cyber Briefs are monthly executive reports that aim to present an overview of the most relevant developments in cyber security, based exclusively on open sources, with a view to inform political leadership and senior management in its constituency. Additional information on any item in this Brief can be provided upon request. Cyber Briefs are TLP:CLEAR.
P0
2026-10-02 14:30 UTC
Security Journalism
Security Week · SecurityWeek News · indexed 2026-10-02 14:30 UTC
Noteworthy stories that might have slipped under the radar: Kiteworks patches over 100 vulnerabilities, Microsoft publishes 2026 Digital Defense Report, AI finds 24 Android app flaws. The post In Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI Chats appeared first on SecurityWeek.
P0
2026-10-02 14:19 UTC
Other
Security Affairs · Pierluigi Paganini · indexed 2026-10-02 15:10 UTC
AI agents probing US and Canadian government sites made SQL injection attempts while seeking data, but investigators found no evidence of compromise. Autonomous AI agents, working on what looks like ordinary data retrieval tasks, ended up throwing basic hacking attempts at a U.S. Department of Education site and Library and Archives Canada. Nobody told them […]
P0
2026-10-02 14:06 UTC
Security Journalism
The Record · indexed 2026-10-02 14:20 UTC
Government services were temporarily disrupted by ransomware in Vicksburg, Mississippi. Mayor Willis Thompson said the FBI and other authorities are investigating.
P15
2026-10-02 14:05 UTC
Security Journalism
The Record · indexed 2026-10-02 14:20 UTC
The group is exploiting a variety of vulnerabilities impacting Microsoft SharePoint, according to a new report from Symantec Threat Hunter Team.
P15
2026-10-02 14:00 UTC
Security Journalism
BleepingComputer · Sponsored by NordLayer Browser · indexed 2026-10-02 14:15 UTC
Browser-based attacks can steal sessions, abuse extensions, or manipulate users without creating the endpoint artifacts EDR is designed to detect. NordLayer explains three ways attacks can evade endpoint telemetry and why browser-level controls can help close the gap. [...]
P0
2026-10-02 14:00 UTC
Security Journalism
Dark Reading · Nishant Sharma · indexed 2026-10-02 14:05 UTC
Organizations don't need better vulnerability scanners; they need to know who owns their assets and has the authority and capacity to actually fix them.
P0
2026-10-02 13:15 UTC
Security Journalism
Security Week · Kevin Townsend · indexed 2026-10-02 13:30 UTC
The dropper “carries a complete universal Mach-O inside itself, roughly 756 KB in the development build, and extracts it at runtime. The post macOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD Backdoor appeared first on SecurityWeek.
P0
2026-10-02 13:00 UTC
Vendor Research
Cloudflare Security · Nicole Justus · indexed 2026-10-02 13:30 UTC
Fraudsters are increasingly using AI to bypass stateless security checks. Cloudflare's new Account Abuse Protection dashboard uses stateful analysis and edge-generated Hashed User IDs to help teams investigate and block account abuse.
P0
2026-10-02 13:00 UTC
Vendor Research
Cloudflare Security · Nikita Cano · indexed 2026-10-02 13:30 UTC
Quick Tunnels now support email authentication. Add --allowed-mail to one cloudflared command, and only the addresses or domains you list can reach your local app. No Cloudflare account required on either side.
P0
2026-10-02 13:00 UTC
Vendor Research
Rapid7 · Rapid7 Intelligence · indexed 2026-10-02 13:30 UTC
OverviewRapid7 tracked a set of Linux samples that blend into the software and device conventions of the telecom environments they target. The set spans a newly observed BPFDoor variant, a BPF Rekoobe build seen against South Korean targets, a dropper, and six builds of a Linux implant we track as AVERAT, deployed against Taiwanese appliances. Additionally, we provide source code details of the Rapid7 BPFDoor controller introduced in our April 2026 blog, Stealthy BPFDoor Variants are a Needle T…
P0
2026-10-02 13:00 UTC
Security Journalism
Dark Reading · Nate Nelson · indexed 2026-10-02 13:05 UTC
A trio of newly discovered backdoors walk and quack like legitimate edge solutions, so it's hard to tell they're not.
P0