By industry

SaaS & technology security news

All industries →

Today · Wed, 16 Sept 2026

  1. Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories

    Mandiant says an attacker hijacked an active AI coding-assistant session at an unnamed software-as-a-service provider and later spread Shai-Hulud across about 100 internal code repositories. Before the repository spread, the assistant recommended software that the attacker had poisoned, and the recommendation was accepted. The worm stole repository secrets and source code for the

    The Hacker News

Yesterday · Tue, 15 Sept 2026

  1. Norway announces investigations into telecom Telenor’s work with Myanmar junta

    Oslo-based Telenor potentially enabled crimes against humanity and violated sanctions in its dealings with the military regime that took over Myanmar in 2021, Norwegian authorities said.

    The Record

Fri, 11 Sept 2026

  1. [Control systems] Schneider Electric security advisory (AV26-912)

    Serial number: AV26-912 Date: September 11, 2026 As of September 9, 2026, Schneider Electric is affected by vulnerabilities in the following products: EcoStruxure™ IT Data Center Expert (Formerly known as StruxureWare Data Center Expert) Versions 9.1.2 and prior PowerLogic T300 Versions 2.9.8-5620 and prior The Cyber Centre encourages users and administrators to review the provided web links, perform the suggested mitigations and apply the necessary updates. Multiple Vulnerabilities on EcoStruxure™ IT Data Center Expert Improper Neutralization of Special Elements used in an OS Command vulnerability on PowerLogic T300 Schneider Electric Security Notifications

    Canadian Centre for Cyber Security

Thu, 10 Sept 2026

  1. 2026-005: High Vulnerability in the Linux Kernel ("Copy Fail")

    On 29 April 2026, a high local privilege escalation vulnerability in the Linux kernel, tracked as CVE-2026-31431 and named "Copy Fail", was publicly disclosed. The vulnerability affects every mainstream Linux distributions shipping a kernel built since 2017. A public proof-of-concept exploit has been released. As of the date of this advisory, no distribution has shipped a fixed kernel package. The mainline fix was committed on 1 April 2026, but vendor updates are still pending across all major distributions. CERT-EU strongly recommends applying the interim mitigation immediately, prioritising Kubernetes nodes, and CI/CD runners exposed to untrusted workloads.

    CriticalUsed in attacksCERT-EULinux, Kubernetes

Wed, 9 Sept 2026

  1. Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days

    Microsoft on Tuesday broke Patch Tuesday records by addressing an earth-shattering 974 vulnerabilities spanning its software portfolio, including two flaws that it said have been actively exploited in the wild. These include 723 flaws in Windows, 111 in Office and Office 2016, 62 in SQL, and 22 in Developer Tools. Of these, over 110 shortcomings have been assigned a critical severity rating.

    The Hacker NewsMicrosoft, Windows

Tue, 8 Sept 2026

  1. The EU CRA's Real Question: What Shipped, and When Did You Know?

    The EU Cyber Resilience Act's vulnerability reporting requirements take effect September 11, giving software vendors as little as 24 hours to report actively exploited flaws. ActiveState explains why knowing exactly what shipped and when vulnerabilities were discovered will be critical to meeting the new requirements.

    BleepingComputer
  2. Ivanti security advisory (AV26-897)

    Serial Number: AV26-897 Date: September 8, 2026 As of September 8, 2026, Ivanti is affected by vulnerabilities in the following products: Endpoint Manager Mobile Prior to 12.10.0.0 Prior to 12.9.0.2 Prior to 12.8.0.4 Neurons for ITSM (Cloud/SaaS) Prior to mo2026.2 Neurons for ITSM On-Prem Prior to 2025.2 Sept 2026 Security Patch Prior to 2025.3 Sept 2026 Security Patch Prior to 2025.4 Sept 2026 Security Patch Prior to 2026.1 Sept 2026 Security Patch Prior to 2026.2 Sentry Prior to R10.8.2 Prior to R10.7.3 Prior to R10.6.4 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Security Advisory Ivanti Neurons for ITSM (Multiple CVEs) Security Advisory - Ivanti Endpoint Manager Mobile (CVE-2026-18851) Security Advisory Ivanti Sentry (CVE-2026-83527) September 2026 Security Update

    Canadian Centre for Cyber SecurityIvanti
  3. CVE-2026-86206, CVE-2026-86207: N-able N-central Authentication Bypass (FIXED)

    Overview While conducting research into a recent N-able N-central authentication bypass vulnerability ( CVE-2026-18577 ), Rapid7 Labs discovered two new vulnerabilities affecting the latest version of N-central. When chained together, these two vulnerabilities allow a remote unauthenticated attacker to bypass authentication and create a new attacker-controlled System administrator account on an affected server. CVE ID Description CWE CVSSv4 CVE-2026-86206 Semicolon/Forwarded access-control bypass CWE-791 6.9 (Medium) CVE-2026-86207 UserTwoFactorLogin authentication bypass CWE-305 7.7 (High) Both CVE-2026-86206 and CVE-2026-86207 have been patched by the vendor via N-central 2026.3 Hotfix 3. Product description N-able N-central is an enterprise-grade Remote Monitoring and Management (RMM) platform designed for Managed Service Providers (MSPs) and IT departments to monitor, manage, and secure complex, large-scale networks from a centralized dashboard. Credit These vulnerabilities were discovered by Stephen Fewer, Senior Principal Security Researcher at Rapid7 , and are being disclosed in accordance with Rapid7's vulnerability disclosure policy . Technical analysis CVE-2026-86206 N-ce

    CriticalUsed in attacksRapid7 BlogN-able

Mon, 7 Sept 2026

  1. Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

    Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins. The activity, which mainly singles out directors, vice presidents, and other executive staff

    The Hacker NewsMicrosoft
  2. Your Cloud Security Checklist Doesn't Work the Way You Think It Does

    If managing security across multiple cloud providers wasn't hard enough, each one fails in a different way. For the 2026 Cloud Security Index, Intruder analyzed misconfiguration data from 3,000 organizations across AWS, Azure, and Google Cloud and found that risk profiles across providers have almost nothing in common. Here’s what the data looks like. How risk differs across cloud providers

    The Hacker NewsGoogle, AWS

Latest saas & technology briefing

SaaS & technology Cybersecurity Weekly Intelligence Brief — week ending 2026-09-14

7 stories affecting saas & technology tracked in the last seven days, 2 rated critical.

About saas & technology news

23
Stories
4
In the last 7 days
1
Critical in the last 7 days