Security news

Latest security news

Fri, 11 Sept 2026

  1. CISA Calls for More Guidance, Less Spin, as Cyber Outages Escalate

    A new joint government advisory signals a regulatory shift, pressing organizations to adopt more transparent breach notification and incident response protocols.

    Dark Reading
  2. GitLab’s critical flaw is already drawing internet-wide probes

    One flaw allows an unauthenticated attacker to read files from the server. GitLab urged operators of self-managed installations to upgrade immediately.

    CyberScoopGitLab
  3. SpiderSilk Hunts External Threats With AI-Based Scanner

    The Dubai-based threat detection startup uses artificial intelligence tools to scan billions of IP addresses to find exposed assets, leaked data, and zero-day vulnerabilities.

    Dark Reading
  4. More JFrog Artifactory bugs under attack, and all 3 have patches

    If you're waiting for a sign to upgrade to a fixed version: this is it

    The Register
  5. GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure

    GitLab has released patches to address multiple flaws, including a maximum-severity security vulnerability that has witnessed in-the-wild probes within hours of public disclosure. The vulnerability in question is CVE-2026-85706 (CVSS score: 10.0), a path traversal issue in the repository commits API that could allow an unauthenticated user to read arbitrary files from the GitLab server under

    The Hacker NewsGitLab
  6. Artifactory flaws chained in attacks deploying backdoor malware

    Threat actors are exploiting critical and high-severity vulnerabilities in JFrog Artifactory to bypass authentication, gain administrative privileges, and deploy a Rust backdoor on vulnerable self-hosted servers.

    BleepingComputer
  7. GitLab Vulnerability Exploited One Day After Disclosure

    The critical-severity path traversal flaw allows unauthenticated attackers to read arbitrary files from the GitLab server.

    SecurityWeekGitLab
  8. [Control Systems] National Instruments security advisory (AV26-914)

    Serial number: AV26-914 Date: September 11, 2026 As of September 10, 2026, National Instruments is affected by vulnerabilities in the following products: SystemLink Prior to or equal to 2026 Q3 Patch 1 SystemLink Server Prior to or equal to 2026 Q3 Patch 1 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available./p> Improper Access Controls in NI SystemLink Storage of Sensitive Information in Cleartext in NI SystemLink Available Security Updates for NI Software: 2026

    Canadian Centre for Cyber Security
  9. [Control systems] GeoVision security advisory (AV26-913)

    Serial number: AV26-913 Date: Septembre 11, 2026 As of September 10, 2026, GeoVision is affected by vulnerabilities in the following product:: GV-LPC2011/LPC2211 Firmware version 1.13 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GeoVision Security Advisory - GV-LPC-2026-09-01 Cyber Security - GeoVision

    Canadian Centre for Cyber Security
  10. State authorities warn they lack resources to address cyber threat to critical sectors

    State CIOs and CISOs need additional funding, personnel and training to protect water, energy and healthcare, according to a new report.

    Cybersecurity Dive

About this news

1,263
Stories
35
Added in the last 24 hours
16
Critical in the last 7 days
4
Reported by several outlets