Security news

Latest security news

Sat, 12 Sept 2026

  1. When the Whole Company Adopts AI: What It Does to Your SOC

    Over the past year, we watched a new class of alert appear in enterprise security operations centers and grow faster than anything else in the stream: alerts that were triggered by AI tools and agents. Not attacks against AI, but the ordinary, everyday footprint of an organization using it, from developers running coding agents and non-technical staff signing consumer AI tools into corporate

    The Hacker News
  2. OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers

    The "major malicious attack" that targeted RubyGems in May 2026 was the work of a swarm of OpenAI agents, according to a new report published by researchers Spencer Kitts, Thomas Larsen, and Sydney Von Arx. On May 12, Maciej Mensfeld, senior product manager for software supply chain security at Mend.io, disclosed details of a coordinated cyber attack that targeted the package manager for the

    The Hacker News
  3. Users in Houthi-Held Yemen Tried to Develop Advanced Weapons With AI, Anthropic Says

    Anthropic said the users did not succeed in “fielding an operational device” but did carry out a failed test of a guided rocket.

    SecurityWeek
  4. Researchers say OpenAI agents were behind May hacking campaign targeting RubyGems

    OpenAI confirmed their agents were behind a campaign in May that researchers say flooded the popular online code repository with malicious software packages.

    CyberScoop

Fri, 11 Sept 2026

  1. Cyberattack causes a flight delay? Airlines won’t owe you a hotel or meal

    A Department of Transportation rule published last week says that airlines complying with cybersecurity regulations will have reduced customer obligations in the event of an attack.

    CyberScoop
  2. GitLab security advisory (AV26-917)

    Serial Number: AV26-917 Date: September 11, 2026 As of September 10, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.1.8 Prior to 19.2.6 Prior to 19.3.2 On September 11, 2026, Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-85706 to their Known Exploited Vulnerabilities (KEV) Database. The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GitLab Critical Patch Release: 19.3.2, 19.2.6, 19.1.8 | GitLab Docs GitLab release notes | GitLab Docs CISA KEV: CVE-2026-85706

    Canadian Centre for Cyber SecurityGitLab
  3. Hackers abused Claude to extract secrets from 1.8M Android apps

    Anthropic says multiple threat groups, including the financially motivated and state-sponsored espionage groups linked to Russia and China, tried to abuse its Claude AI model for malicious purposes.

    BleepingComputerAndroid
  4. Florida says motor vehicle data breach tied to credentials stolen from officer’s personal device

    The Florida Department of Motor Vehicles confirmed a data breach claimed by the cybercrime group ShinyHunters, saying it originated with the theft of credentials stored on a police officer's personal device.

    The Record
  5. n8n security advisory (AV26-916)

    Serial Number: AV26-916 Date: September 11, 2026 As of September 8, 2026, n8n is affected by a vulnerability in the following product: n8n Prior to 2.37.7 Prior to 2.38.2 Prior to 1.123.76 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Release n8n@1.123.76 Release n8n@2.37.7 Release n8n@2.38.2 Overview - n8n-io/n8n - GitHub

    Canadian Centre for Cyber SecurityGitHub

About this news

1,264
Stories
33
Added in the last 24 hours
16
Critical in the last 7 days
4
Reported by several outlets