“Eye” Spy: Cyclops Blink Returns with Extended Capabilities 🚀 In August 2026, Counter Threat Unit™ (CTU) researchers analyzed a malicious 64-bit Linux executable named timezone_check that was disc...
Overview Earlier this month, security sleuth and researcher “Chaotic Eclipse” (also known as Nightmare-Eclipse) published a zero-day exploit known as YellowKey, which allowed them to access BitLoc...
Overview of the First VPN Service 🚀 The Federal Bureau of Investigation (FBI) has released a FLASH report to share indicators of compromise (IOCs) and tactics related to the First VPN Service. Thi...
🚨 Important Security Alert! An attachment in an email impersonating DHL about a shipment contains a link to a preconfigured SimpleHelp remote access tool—an ideal starting point for attackers to e...
We are fighting phishing at the wrong layer
We are fighting phishing at the wrong layer Source: CSO Online Date Published: October 8, 2026 Attackers can replace phishing domains almost for free, so security teams should hunt for the server...
Unknown Threat Actor Uses Artex To Target South Korean Finance
Unknown Threat Actor Uses Artex To Target South Korean Finance CrowdStrike Intelligence has identified infrastructure associated with a targeted campaign against South Korean financial organizatio...
Reconstructing AI Agent Activity Two New Scripts for Forensic Review
Reconstructing AI Agent Activity: Two New Scripts for Forensic Review A major update to FOR577 has added new material on investigating AI usage in incident response, discussing 8 of the most popul...
Midnight Mimosa Malware Found Preinstalled on Low-Cost Android Phones
Midnight Mimosa Malware Found Preinstalled on Low-Cost Android Phones Bitdefender researchers have uncovered the Midnight Mimosa malware preinstalled on low-cost MediaTek Android phones, enabling ...
Four US States Allege TP-Link Defrauded Customers, Seek Damages
Four US States Allege TP-Link Defrauded Customers, Seek Damages Four US states have filed lawsuits against TP-Link Systems, alleging that the company misled consumers about the security of its pro...
Earth Sirrush A Russia-Aligned Intrusion Set With 4 Years of Evolving Espionage Tooling
Earth Sirrush: A Russia-Aligned Intrusion Set With 4 Years of Evolving Espionage Tooling Source: TrendAI Security Date Published: October 8, 2026 Since at least 2022, the Russia-aligned intrusion...
AWS Takes Aim at Runaway AI Agent Behavior with Strands Box
AWS Takes Aim at Runaway AI Agent Behavior with Strands Box 🚀 Amazon Web Services (AWS) has introduced an open-source sandbox for AI agents that allows developers to restrict their actions based o...
The ZRON Leak, Part 1 What has Endured and What is Evolving in China's Commercial Hacking Ecosystem Since the 2024 i-SOON Leak
The ZRON Leak, Part 1: What has Endured and What is Evolving in China’s Commercial Hacking Ecosystem Since the 2024 i-SOON Leak? On September 16, 2026, a Wall Street Journal headline proclaimed, “...
FBI Warns of Ongoing FortiBleed Attacks Locking Out VPN Admins
FBI Warns of Ongoing FortiBleed Attacks Locking Out VPN Admins 🚨 The FBI is warning that FortiBleed attacks are still ongoing, targeting exposed Fortinet FortiGate firewalls and SSL VPN gateways, ...
Poetry is the new AI security threat as PoeLLM malware infects 3K+ servers
Poetry as a Cybersecurity Threat 🚨 A suspected Italian attacker armed with a malware-controlling poem has infected more than 3,000 servers since April, breaking into enterprise AI infrastructure t...
CVE-2026-107284 - AsyncHttpClient Vulnerability Discovered
CVE-2026-107284 - AsyncHttpClient Vulnerability 🚨 A new vulnerability, CVE-2026-107284, has been identified in the AsyncHttpClient (AHC) library, which allows Java applications to easily execute H...
CVE-2026-105816 - Vault Vulnerable to Arbitrary Code Execution
CVE-2026-105816 - Vault Vulnerable to Arbitrary Code Execution Published Date: October 7, 2026 Source: Cvefeed Vault and Vault Enterprise did not consistently verify that stored plugin catalog en...
2026-10-07 Daily Vulns
NEW: CVE vendor-product description metric Referenceurl title GithubURL CVE-2026-105089 WWBN - AVideo W...
Hitachi Energy SOI Vulnerability Alert
Hitachi Energy SOI Vulnerability Alert Hitachi Energy is aware of a Remote Code Execution (RCE) vulnerability in the Apache ActiveMQ component of the SOI product. This vulnerability affects the fo...
Facebook Marketplace Scam Uses Your Name and Number
Facebook Marketplace Scam Alert 🚨 Facebook users are reporting receiving messages with fake Facebook Marketplace listings that feature their name as the seller. Here’s how it works: you receive a ...
Request, Aggregate, Bypass How Attackers Can Evade LLM Safety Classifiers
Request, Aggregate, Bypass: How Attackers Can Evade LLM Safety Classifiers Modern frontier AI models deploy safety classifiers. These are second AI models that sit between the user and the frontie...