CyberNews 2026-09-09

Cybersecurity Headlines — September 09, 2026 Project Glasswingと日本国内の状況についてまとめてみた — Hatenadiary.jp Cybersecurity jobs available right now: September 8, 2026 — Help Net Security log-horizon v0.9.0 — Kitploit.com Show HN: Stuxnet – A reconstructed source code of the infamous cyber-weapon — Github.com ⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More — Internet 7 MDR Providers Combining Offensive Security Testing With 24/7 Monitoring — Smartdatacollective.com Berlin Ransomware Leak Exposes State Secrets — Securityaffairs.com N-able patches max severity N-central flaw amid ongoing attacks — BleepingComputer Claude-Skills-Governance-Risk-and-Compliance v1.9.0 — Kitploit.com ‘Model fatigue’ sets in as AI labs race to roll out new versions at frenetic pace — CNBC From the Trenches As a cybersecurity practitioner, I’m constantly on the lookout for updates that can help me improve my skills and stay ahead of threats. Two stories from today’s headlines caught my attention - log-horizon v0.9.0 on Kitploit.com and Berlin Ransomware Leak Exposes State Secrets on Securityaffairs.com. ...

September 9, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-08

Cybersecurity Headlines — September 08, 2026 Berlin Ransomware Leak Exposes State Secrets — Securityaffairs.com N-able patches max severity N-central flaw amid ongoing attacks — BleepingComputer Claude-Skills-Governance-Risk-and-Compliance v1.9.0 — Kitploit.com ‘Model fatigue’ sets in as AI labs race to roll out new versions at frenetic pace — CNBC Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast — Help Net Security Security Affairs newsletter Round 593 by Pierluigi Paganini – INTERNATIONAL EDITION — Securityaffairs.com Investigations Show AI Agents in OpenAI Breach Knew They Were Cheating — Naturalnews.com Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials — Internet U.S. CISA adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog — Securityaffairs.com OpenAI warns about how good Astra model is at cracking cybersecurity, releases it anyway because it took ‘years of research and big bets’ — TechRadar From the Trenches As a cybersecurity practitioner, I’m seeing two trends that are making my job more challenging by the day. The latest N-able patch for max severity flaws in their N-central product is a stark reminder of how quickly vulnerabilities can be exploited. This isn’t just about keeping up with patches; it’s about understanding the attack vectors and mitigating them before they become catastrophic. ...

September 8, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-07

Cybersecurity Headlines — September 07, 2026 Security Affairs newsletter Round 593 by Pierluigi Paganini – INTERNATIONAL EDITION — Securityaffairs.com Investigations Show AI Agents in OpenAI Breach Knew They Were Cheating — Naturalnews.com Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials — Internet U.S. CISA adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog — Securityaffairs.com OpenAI warns about how good Astra model is at cracking cybersecurity, releases it anyway because it took ‘years of research and big bets’ — TechRadar The hidden work of modernizing Malwarebytes — Malwarebytes.com Critical Citrix NetScaler auth bypass now leveraged in attacks — BleepingComputer Frontier AI just raised the stakes, and the old playbook won’t hold up — Cisco.com US Unpredictability Is Giving Its Asian Allies New Reasons to Cooperate — The Diplomat “Robert Kennedy ha fatto cancellare ai Cdc due morti a causa del morbillo”: la polemica negli Usa mentre esplodono i casi — Ilfattoquotidiano.it From the Trenches As a cybersecurity practitioner, I’m seeing some concerning trends that demand attention from organizations worldwide. One of the most alarming stories is the breach of JetBrains Cadence via an unpatched TeamCity vulnerability, which exposed AWS credentials to attackers. This highlights the importance of keeping software up-to-date and patching vulnerabilities promptly. ...

September 7, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-06

Cybersecurity Headlines — September 06, 2026 U.S. CISA adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog — Securityaffairs.com OpenAI warns about how good Astra model is at cracking cybersecurity, releases it anyway because it took ‘years of research and big bets’ — TechRadar The hidden work of modernizing Malwarebytes — Malwarebytes.com Critical Citrix NetScaler auth bypass now leveraged in attacks — BleepingComputer Frontier AI just raised the stakes, and the old playbook won’t hold up — Cisco.com US Unpredictability Is Giving Its Asian Allies New Reasons to Cooperate — The Diplomat “Robert Kennedy ha fatto cancellare ai Cdc due morti a causa del morbillo”: la polemica negli Usa mentre esplodono i casi — Ilfattoquotidiano.it Campo largo, la previsione di Francesco Boccia : “Prima il programma, poi in un minuto decideremo chi lo rappresenta” — Ilfattoquotidiano.it Percosse, minacce e controllo costante nei confronti della compagna: agli arresti domiciliari uomo di 28 anni nella provincia di Reggio Emilia — Ilfattoquotidiano.it Sparatoria a Kiev: l’intelligence ucraina accusa il vicecapo dei dissidenti russi di collaborare con Mosca. Ma lui smentisce — Ilfattoquotidiano.it From the Trenches The latest cybersecurity landscape is filled with both opportunities and threats. Two stories that caught my attention are Google Chromium V8 flaw added to CISA’s Known Exploited Vulnerabilities catalog and Critical Citrix NetScaler auth bypass now leveraged in attacks. ...

September 6, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-05

Cybersecurity Headlines — September 05, 2026 Sparatoria a Kiev: l’intelligence ucraina accusa il vicecapo dei dissidenti russi di collaborare con Mosca. Ma lui smentisce — Ilfattoquotidiano.it Governo Meloni, se duri quattro anni è perché chi tiene le fila del Paese è soddisfatto — Ilfattoquotidiano.it Cloudflare taps OpenAI’s cyber models to find and block code flaws — SiliconANGLE News OpenAI launches GPT-6 Astra with hacking risks in check — Android Central Linux Threat Hunting - PSW #942 — Libsyn.com ThreatLocker Highlights Key Cyber Threat Activity and Research from August 2026 — PRNewswire ‘Welcome to the AGI era’: OpenAI launches GPT-6 Astra — VentureBeat ZEVENET: Vendor Security Assessment: Why the Security of Your ADC Provider Matters — Skudonet.com Virtual patching closes the gap as AI erases the patch window — SiliconANGLE News Over 5,000 Dropbox Accounts Compromised In Targeted Breach — Ubergizmo From the Trenches As a cybersecurity practitioner, I’ve been keeping an eye on the latest developments, and today’s headlines are particularly noteworthy. The first story that caught my attention is about Sparatoria a Kiev, where Ukrainian intelligence accuses the vice-chief of Russian dissidents of collaborating with Moscow. This is a classic case of espionage, and it’s essential to take such allegations seriously. If true, this could be a significant blow to Russia’s efforts to undermine Ukraine. ...

September 5, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-04

Cybersecurity Headlines — September 04, 2026 A cheap piece of software erased Booz Allen’s own AI threat ranking — The Next Web The Gathering AI Storm and Challenge to Stability — Smallwarsjournal.com Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — Antaranews.com CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners — Internet vulnerability-poc — Kitploit.com Honeypot-Omaha and batch.py [Guest Diary], (Wed, Sep 2nd) — Sans.edu A graph-based cyber threat modeling and risk assessment framework for smart microgrid systems — Nature.com BAS-Guardian — Updated! — Kitploit.com Agentic security: Detection and response at machine speed — Amazon.com CrowdStrike integrates Falcon platform into Anthropic’s Claude Marketplace — Crypto Briefing From the Trenches As a cybersecurity practitioner, I’m constantly on the lookout for threats that can compromise our systems and data. Two recent stories caught my attention because they highlight the importance of staying vigilant in the face of rapidly evolving threats. ...

September 4, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-03

Cybersecurity Headlines — September 03, 2026 SonicWall warns of actively exploited SMA1000 zero-day flaws — BleepingComputer F5 speeds up virtual patching to counter AI-driven threats — Help Net Security OpenAI: Path to Astra: critical capabilities and frontier safeguards — Openai.com CrowdStrike launches frontier AI models for cybersecurity in partnership with Nvidia — Crypto Briefing Nozomi Networks Extends Milestone Year with Recognition as a Leader in Operational Technology Security Solutions, Q3 2026 Analyst Report — PRNewswire CISA review makes the case for eliminating vulnerability classes — Help Net Security Defending Critical Infrastructure in the Age of Internet-Connected Facilities — Fortinet.com Criminal IP Appoints Reconn as Distributor for TI & ASM Across Middle East & Africa — Next Big Future Photon Achieves CyberVadis Platinum Rating, Reinforcing Enterprise Trust Through Independent Cybersecurity Validation — PRNewswire Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks — BleepingComputer From the Trenches As a cybersecurity practitioner, I’m always on high alert for emerging threats that can compromise our networks and systems. Two stories from today’s headlines stand out to me as particularly noteworthy. ...

September 3, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-02

Cybersecurity Headlines — September 02, 2026 Recently patched PaperCut zero-days used in data theft attacks — BleepingComputer Show HN: Eatheria – Self-hosted AppSec platform with AI false-positive filtering — Github.com Cybersecurity jobs available right now: September 1, 2026 — Help Net Security The Cybersecurity Race Is Getting Faster. America Has to Keep Up. — Americanthinker.com awesome-ai-security — Updated! — Kitploit.com Anthropic resumes external cyber evaluations after AI models accidentally accessed real systems — Crypto Briefing Beijing and Washington Can Build AI Safety Despite Mutual Distrust — Foreign Policy ‘Sophisticated’ AI swarm attacks are months away, OpenAI warns: What experts say businesses must do — ZDNet Bank of England Governor Warns AI Represents Threat to the Global Economy — Gizmodo.com Attackers plant remote access tools on compromised PaperCut servers — Help Net Security From the Trenches I’ve been seeing a lot of buzz around AI-powered security tools lately, but it’s clear that we’re still far from having these technologies under control. Take Eatheria, for example - a self-hosted AppSec platform with AI false-positive filtering. Sounds promising, right? But what does this really mean in practice? To me, it means that organizations need to be extremely cautious when adopting new security tools, especially those that rely on machine learning. We’re talking about potentially weeks or even months of training and fine-tuning before these systems can accurately detect threats. ...

September 2, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-09-01

Cybersecurity Headlines — September 01, 2026 [Security Blog] Mid-Year Review: HKCERT Security Incident Statistics and Cybersecurity Trends in the First Half of 2026 — Hkcert.org Paper Audits Are Necessary When China-Made Parts Are Embedded in Election Machines — Joehoft.com CrowdStrike’s post-Mythos surge: Moat, momentum and the blast-radius test — SiliconANGLE News CrowdStrike CEO Says It Delivered Its Best Quarter Ever. Surprisingly, That May Be an Understatement. — Barchart.com Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine AI-Generated Scripts Eliminate the Expertise Barrier for Attacking Industrial Control Systems — Forkast.news Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine From the Trenches As a cybersecurity practitioner, I’ve been keeping an eye on the latest developments in the field, and there are a few stories that caught my attention. First, it’s worth noting that the mid-year review from HKCERT highlights some concerning trends in security incidents. The statistics show that the first half of 2026 has already seen its fair share of notable breaches, which is a clear indication that the threat landscape is only going to get more complex. ...

September 1, 2026 · 2 min · Jason, Cyber Professional

CyberNews 2026-08-31

Cybersecurity Headlines — August 31, 2026 Paper Audits Are Necessary When China-Made Parts Are Embedded in Election Machines — Joehoft.com CrowdStrike’s post-Mythos surge: Moat, momentum and the blast-radius test — SiliconANGLE News CrowdStrike CEO Says It Delivered Its Best Quarter Ever. Surprisingly, That May Be an Understatement. — Barchart.com Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine AI-Generated Scripts Eliminate the Expertise Barrier for Attacking Industrial Control Systems — Forkast.news Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine Visa Expands Support for its Clients and the Industry as Organisations Navigate New AI Era of Cybersecurity — BusinessLine From the Trenches As a cybersecurity practitioner, I’m seeing two trends that stand out to me today. The first is the increasing concern around China-made parts being embedded in election machines. This is a clear example of a supply chain risk that can have serious consequences for our democracy. Paper audits are necessary to ensure the integrity of these systems, and it’s surprising that we’re even having this conversation. ...

August 31, 2026 · 2 min · Jason, Cyber Professional