SOC manager brief
Notable themes today — quick review recommended for detection coverage and comms.
Ranked using headline + RSS summary text (CVEs, incidents, vulns, ransomware, phishing, and related terms). Not a replacement for analyst judgment.
Germany has arrested a Russian national suspected of being a leading member of the Qilin ransomware group following extradition from Japan earlier this month. [...]
Flax Typhoon and other APTs used MicroScan and FishHub to scan and hack US and foreign critical infrastructure. The post US Disrupts Chinese State-Sponsored Hacking Tools appeared first on SecurityWeek .
The FBI has arrested another suspected co-conspirator of ShinyHunters, FBI Director Kash Patel said on October 9 in a post on X. ShinyHunters is the extortion group that said in September it had breached the FBI's jobs portal and stolen sensitive data on almost all FBI agents and job applicants.
Noteworthy stories that might have slipped under the radar: Tensorlake npm SDK compromised, Empire Market co-founder gets 40 years, exposed NVIDIA GPU monitors leak telemetry. The post In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years appeared first on SecurityWeek .
Midnight Mimosa is the name given to a malware campaign primarily running preinstalled on low-cost Android devices. The post Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries appeared first on SecurityWeek .
The ChatGPT maker said the researchers "violated clear policies on handling sensitive information.” The post OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks appeared first on SecurityWeek .
Patching brief
CVEs, advisories, and patch-focused items from your current feed view — use for patch planning and change windows.
Heuristic filter on headline + RSS summary (CVE patterns, vuln/patch language). Verify severity and applicability in your environment.
CVE-2026-107406
Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions.
CVE-2015-3306
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked threat actor known as Flax Typhoon.
CVE-2026-105133
Threat actors have been observed exploiting two recently disclosed flaws in the AhsayCBS backup utility to seize control of affected devices and deploy web shells and XMRig cryptocurrency miners.
CVE-2026-102255
Attackers are exploiting a maximum-severity vulnerability in SonicWall SMA1000 appliances (CVE-2026-102255) that was patched on Tuesday, three days ago. [...]
Citrix has warned IT administrators to patch systems immediately against a new critical vulnerability affecting NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions. [...]
The Pwn2Own Ireland 2026 hacking contest has concluded, with hackers collecting $1,262,000 in rewards after exploiting 98 zero-day flaws. [...]
Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection.
Feed snapshot
Time window
Last 24 hours
Since Thu Oct 08 · 22:09 · UTC
Stories in this view
33
Feeds configured
8
7 source(s) represented below
Time span (local)
05:41 – 21:07
By source
- The Hacker News17
- BleepingComputer14
- SecurityWeek10
- Dark Reading6
- The Register: Security4
- Schneier on Security2
- NCSC Ireland1
-
OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks
SecurityWeek
21:07
-
ASOS Breach Reveals the Risks in Customer-Facing SaaS
Dark Reading
20:58
-
Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks
BleepingComputer
20:31
-
Friday Squid Blogging: I Caught a Squid
Schneier on Security
20:24
-
ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms
Dark Reading, The Hacker News
19:26
Links (2)
-
AWS AgentCore security undone by prompt requesting credentials
The Register: Security
19:15
-
Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories
The Hacker News, BleepingComputer, The Register: Security
19:14
Links (3)
-
FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack
The Hacker News, Dark Reading, BleepingComputer
17:45
Links (3)
-
Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto
BleepingComputer
17:17
-
P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands
The Hacker News, SecurityWeek, BleepingComputer
16:29
Links (3)
-
Security Threats Don't Stop at the Office: Why Executives' Families Need Training, Too
Dark Reading
16:25
-
U.S. Offers Up to $10 Million for Tips on Zhang Yu, Charged in HAFNIUM Hacks
BleepingComputer, The Hacker News
15:38
Links (2)
-
The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition
BleepingComputer, The Hacker News
14:01
Links (2)
-
TP-Link Sued by Four More U.S. States Over Router Security and China Ties
The Hacker News
13:22
-
MonsterCloud Owner Accused of Billing Over $19M While Secretly Paying Ransoms to Decrypt Data
Dark Reading, The Hacker News
13:00
Links (2)
-
Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access
The Hacker News
12:59
-
Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security
The Hacker News, SecurityWeek, Schneier on Security
12:47
Links (3)
-
Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge
The Hacker News, SecurityWeek
12:47
Links (2)
-
Max severity SonicWall SMA1000 flaw now exploited in attacks
BleepingComputer
12:32
-
Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies
The Hacker News
12:21
-
In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years
SecurityWeek, The Hacker News
12:03
Links (2)
-
Google Domains Impacted by Recent ccTLD Hijacks
SecurityWeek
11:43
-
Citrix gives NetScaler admins another critical reason to patch
The Register: Security
11:43
-
Man admits to running network of 15,000 money mules for cybercriminals
BleepingComputer, Dark Reading
11:14
Links (2)
-
Microsoft: Outdated Windows devices will stop receiving security updates
BleepingComputer
10:12
-
Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries
SecurityWeek, BleepingComputer
09:55
Links (2)
-
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys
The Hacker News
09:03
-
US disrupts Chinese hacking tools as 7 govts warn of PRC spies stealing sensitive data worldwide
SecurityWeek, The Hacker News, The Register: Security, BleepingComputer
08:36
Links (4)
-
Citrix warns admins to patch new NetScaler RCE flaw immediately
BleepingComputer
08:27
-
Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own
The Hacker News
08:26
-
Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments
The Hacker News, SecurityWeek, NCSC Ireland
08:11
Links (3)
-
Google Pixel 10 Exploits Earned Hackers $560,000 at Pwn2Own
SecurityWeek
06:39
-
Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland
BleepingComputer
05:41