Security news

Latest security news

Fri, 11 Sept 2026

  1. PaperCut Flaws Exploited in AI-Powered Attacks

    A Russian threat actor used AI to build, test, and deploy exploits against hundreds of organizations worldwide.

    SecurityWeekPaperCut
  2. Trezor: 347,000 users targeted in phishing attacks after Brevo breach

    Trezor has revealed that phishing attacks against its customers earlier this week targeted 347,000 email addresses and affected 2,500 users who clicked an embedded malicious link.

    BleepingComputer
  3. Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

    Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines pull from, to take administrator control of self-hosted servers and plant backdoors, cloud security company Wiz said in a report. Wiz saw the attacks between August 15 and September 8. JFrog had fixed both flaws before then, so only servers that had not been updated were open to them.

    The Hacker News
  4. China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

    A China-linked hacking group exploited a flaw in Sogou Input Method, one of the most widely used tools for typing Chinese characters on Windows, to install a backdoor on victims' computers, security company Gen Digital said in research published Thursday. The attack started with a crafted link and ended with the attacker able to do anything the logged-in user could do. Tencent, which owns

    The Hacker NewsWindows
  5. Conti ransomware gang member sentenced to 4 years in prison

    A Ukrainian national has been sentenced to four years in prison for his role in Conti ransomware attacks between 2021 and 2022.

    BleepingComputer
  6. PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

    PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. "These are Regular Maintenance Releases (MR) that

    The Hacker NewsPaperCut
  7. Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

    Cisco has revealed that three distinct threat clusters linked to ransomware and state-sponsored attacks have been exploiting two recently patched Secure Firewall Management Center (FMC) vulnerabilities. The attacks leverage CVE-2026-20079 (CVSS score: 10.0), an authentication bypass vulnerability in the web interface of FMC software that could allow an unauthenticated, remote attacker to bypass

    CriticalUsed in attacksThe Hacker NewsCisco
  8. ISC Stormcast For Friday, September 11th, 2026 https://isc.sans.edu/podcastdetail/10090, (Fri, Sep 11th)

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.

    SANS Internet Storm Center
  9. Indonesia Hit by Android Banking App-Cloning Campaign

    The GoldFactory threat group exploits the Android Work Profile feature to deliver the Gigabud Trojan, while Mantax Otax spreads separately.

    Dark ReadingAndroid

Thu, 10 Sept 2026

  1. Latest Anthropic horror story chills with tales of kamikaze drone swarms and bioweapons research

    Everyone from ShinyHunters to Russian freelancers is in on the illicit model fun

    The Register

About this news

1,276
Stories
28
Added in the last 24 hours
11
Critical in the last 7 days
4
Reported by several outlets