{"error":null,"fallback":false,"headlines":[{"link":"https://www.securityweek.com/openai-fires-3-safety-researchers-in-dispute-over-ai-risks/","links":["https://www.securityweek.com/openai-fires-3-safety-researchers-in-dispute-over-ai-risks/"],"published":"2026-10-09T21:07:46+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"The ChatGPT maker said the researchers \"violated clear policies on handling sensitive information.\u201d The post OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks appeared first on SecurityWeek .","title":"OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks"},{"link":"https://www.darkreading.com/cyberattacks-data-breaches/asos-breach-risks-customer-facing-saas","links":["https://www.darkreading.com/cyberattacks-data-breaches/asos-breach-risks-customer-facing-saas"],"published":"2026-10-09T20:58:32+00:00","source":"Dark Reading","sources":["Dark Reading"],"summary_plain":"The attack on the British retailer shows that compromising a single identity can lead to much deeper penetration of the corporate network.","title":"ASOS Breach Reveals the Risks in Customer-Facing SaaS"},{"link":"https://www.bleepingcomputer.com/news/security/hackers-abuse-google-ads-bing-redirects-to-push-claude-clickfix-attacks/","links":["https://www.bleepingcomputer.com/news/security/hackers-abuse-google-ads-bing-redirects-to-push-claude-clickfix-attacks/"],"published":"2026-10-09T20:31:37+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Hackers are abusing legitimate Bing search-result redirects as click URLs in Google search ads to direct users to fake Claude installers that deliver ClickFix attacks. [...]","title":"Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks"},{"link":"https://www.schneier.com/blog/archives/2026/10/friday-squid-blogging-i-caught-a-squid.html","links":["https://www.schneier.com/blog/archives/2026/10/friday-squid-blogging-i-caught-a-squid.html"],"published":"2026-10-09T20:24:45+00:00","source":"Schneier on Security","sources":["Schneier on Security"],"summary_plain":"On Wednesday I spent a day fishing, on a small boat out of Gloucester, MA. We caught many cod (none of which we could keep), and a bunch of hake and mackerel (all of which we could keep). And\u2026I caught a squid! Near as I can tell, it\u2019s a longfin squid, sometimes called a Boston squid ( Doryteuthis (Amerigo) pealeii ). That night I cooked it over a barbecue grill\u2014hot and fast. Delicious.","title":"Friday Squid Blogging: I Caught a Squid"},{"link":"https://www.darkreading.com/cybersecurity-analytics/ai-scramble-cybersecurity-ma-boom","links":["https://www.darkreading.com/cybersecurity-analytics/ai-scramble-cybersecurity-ma-boom","https://thehackernews.com/2026/10/artex-ai-pentesting-tool-used-in-data.html"],"published":"2026-10-09T19:26:26+00:00","source":"Dark Reading","sources":["Dark Reading","The Hacker News"],"summary_plain":"Welcome to another gangbuster year for strategic M&A activity in cyber, with 117 deals announced in the latest quarter. What's different: Many of the buyers are not your typical cybersecurity firms.","title":"ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms"},{"link":"https://www.theregister.com/security/2026/10/09/aws-agentcore-security-undone-by-prompt-requesting-credentials/5302436","links":["https://www.theregister.com/security/2026/10/09/aws-agentcore-security-undone-by-prompt-requesting-credentials/5302436"],"published":"2026-10-09T19:15:48+00:00","source":"The Register: Security","sources":["The Register: Security"],"summary_plain":"Tokens transmitted in metadata, weak VM isolation, and expansive permissions make hacking a lot easier","title":"AWS AgentCore security undone by prompt requesting credentials"},{"link":"https://thehackernews.com/2026/10/credential-stealing-github-actions.html","links":["https://thehackernews.com/2026/10/credential-stealing-github-actions.html","https://www.bleepingcomputer.com/news/security/fakegit-malware-campaign-returns-with-17-610-malicious-github-repos/","https://www.theregister.com/security/2026/10/08/shai-hulud-worm-makes-jump-to-ai-infrastructure-with-tensorlake-compromise/5302054"],"published":"2026-10-09T19:14:28+00:00","source":"The Hacker News","sources":["The Hacker News","BleepingComputer","The Register: Security"],"summary_plain":"Cybersecurity researchers have disclosed details of an ongoing credential-theft campaign that has compromised two high-profile open-source maintainer accounts to push a malicious workflow into over 340 repositories. \"Using the account of Takashi Kitao, author of the 18,400-star game engine pyxel, the attacker pushed a malicious workflow to 27 repositories starting at 13:20 UTC,\" StepSecurity","title":"Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories"},{"link":"https://thehackernews.com/2026/10/fbi-arrests-another-shinyhunters.html","links":["https://thehackernews.com/2026/10/fbi-arrests-another-shinyhunters.html","https://www.darkreading.com/identity-access-management-security/fbi-shinyhunters-claims-hack","https://www.bleepingcomputer.com/news/security/fbi-arrests-another-suspected-shinyhunters-hacker-after-agency-breach/"],"published":"2026-10-09T17:45:26+00:00","source":"The Hacker News","sources":["The Hacker News","Dark Reading","BleepingComputer"],"summary_plain":"The FBI has arrested another suspected co-conspirator of ShinyHunters, FBI Director Kash Patel said on October 9 in a post on X. ShinyHunters is the extortion group that said in September it had breached the FBI's jobs portal and stolen sensitive data on almost all FBI agents and job applicants. The FBI has not named the suspect, and no charges have been made public. The","title":"FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack"},{"link":"https://www.bleepingcomputer.com/news/security/unpatched-ahsaycbs-flaws-exploited-to-deploy-webshells-mine-crypto/","links":["https://www.bleepingcomputer.com/news/security/unpatched-ahsaycbs-flaws-exploited-to-deploy-webshells-mine-crypto/"],"published":"2026-10-09T17:17:23+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Threat actors are exploiting one critical and one medium-severity vulnerability still unpatched in the AhsayCBS backup management platform to deploy webshells and cryptocurrency miners. [...]","title":"Unpatched AhsayCBS flaws exploited to deploy webshells, mine crypto"},{"link":"https://thehackernews.com/2026/10/p7-darksword-ios-exploit-kit-adds.html","links":["https://thehackernews.com/2026/10/p7-darksword-ios-exploit-kit-adds.html","https://www.securityweek.com/formula-predicts-when-ai-chatbots-are-at-risk-of-turning-bad/","https://www.bleepingcomputer.com/news/security/ransomware-attack-disrupts-japans-idcf-cloud-used-by-govt-clients/"],"published":"2026-10-09T16:29:55+00:00","source":"The Hacker News","sources":["The Hacker News","SecurityWeek","BleepingComputer"],"summary_plain":"Cybersecurity researchers have disclosed details of a previously unseen variant of the DarkSword iOS exploit kit called P7 DarkSword. \"Compared with the variants we usually observe, P7 reduces its on-device footprint, adds on-device keychain and crypto-wallet theft, and adds two way C2 communication with the attacker's infrastructure,\" iVerify said in a new report published Thursday. The name","title":"P7 DarkSword iOS Exploit Kit Adds Crypto Wallet Data Theft and Remote Commands"},{"link":"https://www.darkreading.com/cyber-risk/security-threats-don-t-stop-at-the-office-why-executives-families-need-training-too","links":["https://www.darkreading.com/cyber-risk/security-threats-don-t-stop-at-the-office-why-executives-families-need-training-too"],"published":"2026-10-09T16:25:05+00:00","source":"Dark Reading","sources":["Dark Reading"],"summary_plain":"Those closest to executives must match their security postures because the weakest link in a family can become the entry point for attacks.","title":"Security Threats Don't Stop at the Office: Why Executives' Families Need Training, Too"},{"link":"https://www.bleepingcomputer.com/news/security/germany-arrests-alleged-core-qilin-ransomware-member-after-extradition/","links":["https://www.bleepingcomputer.com/news/security/germany-arrests-alleged-core-qilin-ransomware-member-after-extradition/","https://thehackernews.com/2026/10/us-offers-up-to-10-million-for-tips-on.html"],"published":"2026-10-09T15:38:56+00:00","source":"BleepingComputer","sources":["BleepingComputer","The Hacker News"],"summary_plain":"Germany has arrested a Russian national suspected of being a leading member of the Qilin ransomware group following extradition from Japan earlier this month. [...]","title":"U.S. Offers Up to $10 Million for Tips on Zhang Yu, Charged in HAFNIUM Hacks"},{"link":"https://www.bleepingcomputer.com/news/security/how-to-keep-ai-agents-within-their-permissions/","links":["https://www.bleepingcomputer.com/news/security/how-to-keep-ai-agents-within-their-permissions/","https://thehackernews.com/2026/10/the-ai-velocity-paradox-why-security-is.html"],"published":"2026-10-09T14:01:11+00:00","source":"BleepingComputer","sources":["BleepingComputer","The Hacker News"],"summary_plain":"AI agents can use valid credentials to perform actions beyond their assigned permissions, creating risks that traditional access controls may not prevent. Token Security explains how organizations can enforce agent-specific policies without sacrificing autonomy. [...]","title":"The AI Velocity Paradox: Why Security Is Decades Behind AI Ambition"},{"link":"https://thehackernews.com/2026/10/tp-link-sued-by-four-more-us-states.html","links":["https://thehackernews.com/2026/10/tp-link-sued-by-four-more-us-states.html"],"published":"2026-10-09T13:22:53+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Four more U.S. states sued router maker TP-Link Systems on October 6, bringing the total to five, with Texas filing a suit in February. Florida, Iowa, Montana and Nebraska allege the California company misled buyers about how secure its routers are and how separate it is from China. TP-Link denies the claims and says it will fight them in court. TP-Link Systems is based in","title":"TP-Link Sued by Four More U.S. States Over Router Security and China Ties"},{"link":"https://www.darkreading.com/cybersecurity-operations/social-engineering-ai-agents-bec-2026","links":["https://www.darkreading.com/cybersecurity-operations/social-engineering-ai-agents-bec-2026","https://thehackernews.com/2026/10/monstercloud-owner-accused-of-billing.html"],"published":"2026-10-09T13:00:00+00:00","source":"Dark Reading","sources":["Dark Reading","The Hacker News"],"summary_plain":"As AI agents gain authority over business systems, attackers can manipulate them like business email compromise (BEC) victims.","title":"MonsterCloud Owner Accused of Billing Over $19M While Secretly Paying Ransoms to Decrypt Data"},{"link":"https://thehackernews.com/2026/10/researchers-publish-working-exploit-for.html","links":["https://thehackernews.com/2026/10/researchers-publish-working-exploit-for.html"],"published":"2026-10-09T12:59:22+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection. AnyDesk patched the flaw in version 8.0.3 in June, but its changelog described the fix only as \"fixed a bug that could lead to a crash,\" with no CVE assigned and no security","title":"Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access"},{"link":"https://thehackernews.com/2026/10/anthropic-launches-free-ai.html","links":["https://thehackernews.com/2026/10/anthropic-launches-free-ai.html","https://www.securityweek.com/anthropic-fast-tracks-ai-bug-reports-to-oss-maintainers-taps-11-firms-for-ot-security/","https://www.schneier.com/blog/archives/2026/10/how-technology-empowers-and-imperils-dictators.html"],"published":"2026-10-09T12:47:28+00:00","source":"The Hacker News","sources":["The Hacker News","SecurityWeek","Schneier on Security"],"summary_plain":"Anthropic on Thursday unveiled OSS Scanner as an opt-in vulnerability scanner to help secure the open-source ecosystem using artificial intelligence (AI). \"It's an opt-in service informed by our experience using Claude to find vulnerabilities during Project Glasswing,\" Anthropic said. \"Projects that join will receive thorough, periodic security scans by our strongest models at no cost.\"","title":"Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security"},{"link":"https://thehackernews.com/2026/10/attackers-exploit-ahsaycbs-flaws-to.html","links":["https://thehackernews.com/2026/10/attackers-exploit-ahsaycbs-flaws-to.html","https://www.securityweek.com/unpatched-ahsaycbs-vulnerabilities-exploited-in-the-wild/"],"published":"2026-10-09T12:47:26+00:00","source":"The Hacker News","sources":["The Hacker News","SecurityWeek"],"summary_plain":"Threat actors have been observed exploiting two recently disclosed flaws in the AhsayCBS backup utility to seize control of affected devices and deploy web shells and XMRig cryptocurrency miners. Details of the flaws are below - CVE-2026-105133 (CVSS v4 score: 5.5) - An improper authentication vulnerability in the checkSysPwd() function in the \"com/ahsay/obs/api/ApiStructsAction.java\"","title":"Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge"},{"link":"https://www.bleepingcomputer.com/news/security/max-severity-sonicwall-sma1000-flaw-now-exploited-in-attacks/","links":["https://www.bleepingcomputer.com/news/security/max-severity-sonicwall-sma1000-flaw-now-exploited-in-attacks/"],"published":"2026-10-09T12:32:16+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Attackers are exploiting a maximum-severity vulnerability in SonicWall SMA1000 appliances (CVE-2026-102255) that was patched on Tuesday, three days ago. [...]","title":"Max severity SonicWall SMA1000 flaw now exploited in attacks"},{"link":"https://thehackernews.com/2026/10/flax-typhoon-exploits-five-flaws-as.html","links":["https://thehackernews.com/2026/10/flax-typhoon-exploits-five-flaws-as.html"],"published":"2026-10-09T12:21:51+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked threat actor known as Flax Typhoon. The vulnerabilities in question are listed below - CVE-2015-3306 (CVSS score: 10.0) - An improper access control vulnerability in ProFTPD that could allow","title":"Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies"},{"link":"https://www.securityweek.com/in-other-news-ai-used-in-korean-bank-breaches-poem-guided-botnet-empire-admin-gets-40-years/","links":["https://www.securityweek.com/in-other-news-ai-used-in-korean-bank-breaches-poem-guided-botnet-empire-admin-gets-40-years/","https://thehackernews.com/2026/10/tensorlake-npm-package-compromised-to.html"],"published":"2026-10-09T12:03:50+00:00","source":"SecurityWeek","sources":["SecurityWeek","The Hacker News"],"summary_plain":"Noteworthy stories that might have slipped under the radar: Tensorlake npm SDK compromised, Empire Market co-founder gets 40 years, exposed NVIDIA GPU monitors leak telemetry. The post In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years appeared first on SecurityWeek .","title":"In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years"},{"link":"https://www.securityweek.com/google-domains-impacted-by-recent-cctld-domain-hijacks/","links":["https://www.securityweek.com/google-domains-impacted-by-recent-cctld-domain-hijacks/"],"published":"2026-10-09T11:43:14+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"Hackers hijacked the .gh, .sl, and .as ccTLDs and obtained HTTPS certificates for several Google domains. The post Google Domains Impacted by Recent ccTLD Hijacks appeared first on SecurityWeek .","title":"Google Domains Impacted by Recent ccTLD Hijacks"},{"link":"https://www.theregister.com/security/2026/10/09/citrix-gives-netscaler-admins-another-critical-reason-to-patch/5302212","links":["https://www.theregister.com/security/2026/10/09/citrix-gives-netscaler-admins-another-critical-reason-to-patch/5302212"],"published":"2026-10-09T11:43:00+00:00","source":"The Register: Security","sources":["The Register: Security"],"summary_plain":"No word on exploitation status, but a 9.5 severity score suggests time is of the essence","title":"Citrix gives NetScaler admins another critical reason to patch"},{"link":"https://www.bleepingcomputer.com/news/security/ukrainian-russian-dual-citizen-admits-to-laundering-millions-for-cybercriminals/","links":["https://www.bleepingcomputer.com/news/security/ukrainian-russian-dual-citizen-admits-to-laundering-millions-for-cybercriminals/","https://www.darkreading.com/cyberattacks-data-breaches/russian-spies-matchboil-malware-facelift"],"published":"2026-10-09T11:14:28+00:00","source":"BleepingComputer","sources":["BleepingComputer","Dark Reading"],"summary_plain":"\u200bA Ukrainian-Russian dual citizen has pleaded guilty to running a massive money laundering operation that laundered millions for cybercriminals worldwide. [...]","title":"Man admits to running network of 15,000 money mules for cybercriminals"},{"link":"https://www.bleepingcomputer.com/news/microsoft/microsoft-outdated-windows-devices-will-lose-security-protection-next-year/","links":["https://www.bleepingcomputer.com/news/microsoft/microsoft-outdated-windows-devices-will-lose-security-protection-next-year/"],"published":"2026-10-09T10:12:24+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Microsoft says devices running unsupported versions of Windows will stop receiving security updates after next year's Windows Update certificate rotation. [...]","title":"Microsoft: Outdated Windows devices will stop receiving security updates"},{"link":"https://www.securityweek.com/pre-baked-firmware-malware-hits-budget-android-devices-in-150-countries/","links":["https://www.securityweek.com/pre-baked-firmware-malware-hits-budget-android-devices-in-150-countries/","https://www.bleepingcomputer.com/news/security/low-cost-android-phones-ship-with-residential-proxy-malware/"],"published":"2026-10-09T09:55:35+00:00","source":"SecurityWeek","sources":["SecurityWeek","BleepingComputer"],"summary_plain":"Midnight Mimosa is the name given to a malware campaign primarily running preinstalled on low-cost Android devices. The post Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries appeared first on SecurityWeek .","title":"Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries"},{"link":"https://thehackernews.com/2026/10/gobalance-flaw-lets-attackers-hijack.html","links":["https://thehackernews.com/2026/10/gobalance-flaw-lets-attackers-hijack.html"],"published":"2026-10-09T09:03:24+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"A bug in GoBalance, a tool many dark-web sites use to stay reachable during attacks, lets anyone work out the secret key that controls a site's .onion address using only public information, and then take that address over. Searchlight Cyber, which disclosed the flaw on October 8, says an attacker who recovers the key can redirect the site's visitors to a copy of the site they control.","title":"GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys"},{"link":"https://www.securityweek.com/us-disrupts-chinese-state-sponsored-hacking-tools/","links":["https://www.securityweek.com/us-disrupts-chinese-state-sponsored-hacking-tools/","https://thehackernews.com/2026/10/fbi-seizes-7-domains-disrupts-flax.html","https://www.theregister.com/security/2026/10/08/us-disrupts-chinese-hacking-tools-as-7-govts-warn-of-prc-spies-stealing-sensitive-data-worldwide/5302107","https://www.bleepingcomputer.com/news/security/fbi-disrupts-chinese-hacking-tools-used-to-breach-critical-infrastructure/"],"published":"2026-10-09T08:36:37+00:00","source":"SecurityWeek","sources":["SecurityWeek","The Hacker News","The Register: Security","BleepingComputer"],"summary_plain":"Flax Typhoon and other APTs used MicroScan and FishHub to scan and hack US and foreign critical infrastructure. The post US Disrupts Chinese State-Sponsored Hacking Tools appeared first on SecurityWeek .","title":"US disrupts Chinese hacking tools as 7 govts warn of PRC spies stealing sensitive data worldwide"},{"link":"https://www.bleepingcomputer.com/news/security/citrix-warns-admins-to-patch-new-netscaler-rce-flaw-immediately/","links":["https://www.bleepingcomputer.com/news/security/citrix-warns-admins-to-patch-new-netscaler-rce-flaw-immediately/"],"published":"2026-10-09T08:27:42+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Citrix has warned IT administrators to patch systems immediately against a new critical vulnerability affecting NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions. [...]","title":"Citrix warns admins to patch new NetScaler RCE flaw immediately"},{"link":"https://thehackernews.com/2026/10/three-teams-demonstrate-remote-hacks-of.html","links":["https://thehackernews.com/2026/10/three-teams-demonstrate-remote-hacks-of.html"],"published":"2026-10-09T08:26:17+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Three research teams broke into Google's Pixel 10 on October 8 at Pwn2Own Ireland, a hacking contest in Cork whose rules require every target to be fully patched. The contest pays researchers to show working exploits and passes the flaws to the vendors. One of the three Pixel exploits earned Ikotas Labs $300,000, the contest's top prize, and made the team the overall winner. Trend Micro's Zero","title":"Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own"},{"link":"https://thehackernews.com/2026/10/citrix-patches-critical-netscaler-flaw.html","links":["https://thehackernews.com/2026/10/citrix-patches-critical-netscaler-flaw.html","https://www.securityweek.com/citrix-urges-immediate-patching-of-critical-netscaler-vulnerability/","https://www.ncsc.gov.ie/pdfs/2610090281_CVE-2026-107406.pdf"],"published":"2026-10-09T08:11:33+00:00","source":"The Hacker News","sources":["The Hacker News","SecurityWeek","NCSC Ireland"],"summary_plain":"Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions. \"CVE-2026-107406 is a memory overflow vulnerability that may lead to remote code execution or denial-of-service under specific configuration conditions,\" Citrix said. The vulnerability","title":"Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments"},{"link":"https://www.securityweek.com/google-pixel-10-exploits-earned-hackers-560000-at-pwn2own/","links":["https://www.securityweek.com/google-pixel-10-exploits-earned-hackers-560000-at-pwn2own/"],"published":"2026-10-09T06:39:55+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"$1.2 million was paid out at Pwn2Own Ireland 2026 for exploits targeting phones, printers, smart speakers, smart home hubs, and AI infrastructure and coding tools. The post Google Pixel 10 Exploits Earned Hackers $560,000 at Pwn2Own appeared first on SecurityWeek .","title":"Google Pixel 10 Exploits Earned Hackers $560,000 at Pwn2Own"},{"link":"https://www.bleepingcomputer.com/news/security/hackers-earn-1262000-for-98-zero-days-at-pwn2own-ireland/","links":["https://www.bleepingcomputer.com/news/security/hackers-earn-1262000-for-98-zero-days-at-pwn2own-ireland/"],"published":"2026-10-09T05:41:04+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"The Pwn2Own Ireland 2026 hacking contest has concluded, with hackers collecting $1,262,000 in rewards after exploiting 98 zero-day flaws. [...]","title":"Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland"}],"overview":{"by_source":[{"count":17,"name":"The Hacker News"},{"count":14,"name":"BleepingComputer"},{"count":10,"name":"SecurityWeek"},{"count":6,"name":"Dark Reading"},{"count":4,"name":"The Register: Security"},{"count":2,"name":"Schneier on Security"},{"count":1,"name":"NCSC Ireland"}],"earliest_local":"05:41","fallback":false,"feeds_configured":8,"latest_local":"21:07","sources_in_view":7,"total":33,"tz_label":"UTC","window_hours":24,"window_label":"Last 24 hours","window_since_local":"Thu Oct 08 \u00b7 23:09"},"patching_brief":{"empty":false,"entries":[{"cves":["CVE-2026-107406"],"link":"https://thehackernews.com/2026/10/citrix-patches-critical-netscaler-flaw.html","links":["https://thehackernews.com/2026/10/citrix-patches-critical-netscaler-flaw.html","https://www.securityweek.com/citrix-urges-immediate-patching-of-critical-netscaler-vulnerability/","https://www.ncsc.gov.ie/pdfs/2610090281_CVE-2026-107406.pdf"],"outline":"Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions.","priority_score":24,"source":"The Hacker News, SecurityWeek, NCSC Ireland","time_local":"08:11","title":"Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments"},{"cves":["CVE-2015-3306"],"link":"https://thehackernews.com/2026/10/flax-typhoon-exploits-five-flaws-as.html","links":["https://thehackernews.com/2026/10/flax-typhoon-exploits-five-flaws-as.html"],"outline":"The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added five security flaws to its Known Exploited Vulnerabilities (KEV) catalog, following their abuse by a China-linked threat actor known as Flax Typhoon.","priority_score":23,"source":"The Hacker News","time_local":"12:21","title":"Flax Typhoon Exploits Five Flaws as CISA Sets October 11 Deadline for Federal Agencies"},{"cves":["CVE-2026-105133"],"link":"https://thehackernews.com/2026/10/attackers-exploit-ahsaycbs-flaws-to.html","links":["https://thehackernews.com/2026/10/attackers-exploit-ahsaycbs-flaws-to.html","https://www.securityweek.com/unpatched-ahsaycbs-vulnerabilities-exploited-in-the-wild/"],"outline":"Threat actors have been observed exploiting two recently disclosed flaws in the AhsayCBS backup utility to seize control of affected devices and deploy web shells and XMRig cryptocurrency miners.","priority_score":15,"source":"The Hacker News, SecurityWeek","time_local":"12:47","title":"Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge"},{"cves":["CVE-2026-102255"],"link":"https://www.bleepingcomputer.com/news/security/max-severity-sonicwall-sma1000-flaw-now-exploited-in-attacks/","links":["https://www.bleepingcomputer.com/news/security/max-severity-sonicwall-sma1000-flaw-now-exploited-in-attacks/"],"outline":"Attackers are exploiting a maximum-severity vulnerability in SonicWall SMA1000 appliances (CVE-2026-102255) that was patched on Tuesday, three days ago. [...]","priority_score":12,"source":"BleepingComputer","time_local":"12:32","title":"Max severity SonicWall SMA1000 flaw now exploited in attacks"},{"cves":[],"link":"https://www.bleepingcomputer.com/news/security/citrix-warns-admins-to-patch-new-netscaler-rce-flaw-immediately/","links":["https://www.bleepingcomputer.com/news/security/citrix-warns-admins-to-patch-new-netscaler-rce-flaw-immediately/"],"outline":"Citrix has warned IT administrators to patch systems immediately against a new critical vulnerability affecting NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions. [...]","priority_score":9,"source":"BleepingComputer","time_local":"08:27","title":"Citrix warns admins to patch new NetScaler RCE flaw immediately"},{"cves":[],"link":"https://www.bleepingcomputer.com/news/security/hackers-earn-1262000-for-98-zero-days-at-pwn2own-ireland/","links":["https://www.bleepingcomputer.com/news/security/hackers-earn-1262000-for-98-zero-days-at-pwn2own-ireland/"],"outline":"The Pwn2Own Ireland 2026 hacking contest has concluded, with hackers collecting $1,262,000 in rewards after exploiting 98 zero-day flaws. [...]","priority_score":6,"source":"BleepingComputer","time_local":"05:41","title":"Hackers get $1,262,000 for 98 zero-days at Pwn2Own Ireland"},{"cves":[],"link":"https://thehackernews.com/2026/10/researchers-publish-working-exploit-for.html","links":["https://thehackernews.com/2026/10/researchers-publish-working-exploit-for.html"],"outline":"Security researchers have published a full working exploit for a pre-authentication remote code execution flaw in AnyDesk Linux that gives attackers root access before anyone approves the connection.","priority_score":5,"source":"The Hacker News","time_local":"12:59","title":"Researchers Publish Working Exploit for Pre-Auth AnyDesk Linux Flaw That Gives Root Access"}],"intro":"CVEs, advisories, and patch-focused items from your current feed view \u2014 use for patch planning and change windows.","note":"Heuristic filter on headline + RSS summary (CVE patterns, vuln/patch language). Verify severity and applicability in your environment."},"soc_brief":{"empty":false,"intro":"Notable themes today \u2014 quick review recommended for detection coverage and comms.","note":"Ranked using headline + RSS summary text (CVEs, incidents, vulns, ransomware, phishing, and related terms). Not a replacement for analyst judgment.","spotlight":[{"link":"https://www.bleepingcomputer.com/news/security/germany-arrests-alleged-core-qilin-ransomware-member-after-extradition/","links":["https://www.bleepingcomputer.com/news/security/germany-arrests-alleged-core-qilin-ransomware-member-after-extradition/","https://thehackernews.com/2026/10/us-offers-up-to-10-million-for-tips-on.html"],"outline":"Germany has arrested a Russian national suspected of being a leading member of the Qilin ransomware group following extradition from Japan earlier this month. [...]","priority_score":6,"source":"BleepingComputer, The Hacker News","themes":["Ransomware / extortion"],"time_local":"15:38","title":"U.S. Offers Up to $10 Million for Tips on Zhang Yu, Charged in HAFNIUM Hacks"},{"link":"https://www.securityweek.com/us-disrupts-chinese-state-sponsored-hacking-tools/","links":["https://www.securityweek.com/us-disrupts-chinese-state-sponsored-hacking-tools/","https://thehackernews.com/2026/10/fbi-seizes-7-domains-disrupts-flax.html","https://www.theregister.com/security/2026/10/08/us-disrupts-chinese-hacking-tools-as-7-govts-warn-of-prc-spies-stealing-sensitive-data-worldwide/5302107","https://www.bleepingcomputer.com/news/security/fbi-disrupts-chinese-hacking-tools-used-to-breach-critical-infrastructure/"],"outline":"Flax Typhoon and other APTs used MicroScan and FishHub to scan and hack US and foreign critical infrastructure. The post US Disrupts Chinese State-Sponsored Hacking Tools appeared first on SecurityWeek .","priority_score":5,"source":"SecurityWeek, The Hacker News, The Register: Security, BleepingComputer","themes":["Nation-state / APT"],"time_local":"08:36","title":"US disrupts Chinese hacking tools as 7 govts warn of PRC spies stealing sensitive data worldwide"},{"link":"https://thehackernews.com/2026/10/fbi-arrests-another-shinyhunters.html","links":["https://thehackernews.com/2026/10/fbi-arrests-another-shinyhunters.html","https://www.darkreading.com/identity-access-management-security/fbi-shinyhunters-claims-hack","https://www.bleepingcomputer.com/news/security/fbi-arrests-another-suspected-shinyhunters-hacker-after-agency-breach/"],"outline":"The FBI has arrested another suspected co-conspirator of ShinyHunters, FBI Director Kash Patel said on October 9 in a post on X. ShinyHunters is the extortion group that said in September it had breached the FBI's jobs portal and stolen sensitive data on almost all FBI agents and job applicants.","priority_score":3,"source":"The Hacker News, Dark Reading, BleepingComputer","themes":["Ransomware / extortion","Breach / leak"],"time_local":"17:45","title":"FBI Arrests Another ShinyHunters Suspect Reportedly Involved in Its Jobs Portal Hack"},{"link":"https://www.securityweek.com/in-other-news-ai-used-in-korean-bank-breaches-poem-guided-botnet-empire-admin-gets-40-years/","links":["https://www.securityweek.com/in-other-news-ai-used-in-korean-bank-breaches-poem-guided-botnet-empire-admin-gets-40-years/","https://thehackernews.com/2026/10/tensorlake-npm-package-compromised-to.html"],"outline":"Noteworthy stories that might have slipped under the radar: Tensorlake npm SDK compromised, Empire Market co-founder gets 40 years, exposed NVIDIA GPU monitors leak telemetry. The post In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years appeared first on SecurityWeek .","priority_score":3,"source":"SecurityWeek, The Hacker News","themes":["Breach / leak","Malware / botnet"],"time_local":"12:03","title":"In Other News: AI Used in Korean Bank Breaches, Poem-Guided Botnet, Empire Admin Gets 40 Years"},{"link":"https://www.securityweek.com/pre-baked-firmware-malware-hits-budget-android-devices-in-150-countries/","links":["https://www.securityweek.com/pre-baked-firmware-malware-hits-budget-android-devices-in-150-countries/","https://www.bleepingcomputer.com/news/security/low-cost-android-phones-ship-with-residential-proxy-malware/"],"outline":"Midnight Mimosa is the name given to a malware campaign primarily running preinstalled on low-cost Android devices. The post Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries appeared first on SecurityWeek .","priority_score":3,"source":"SecurityWeek, BleepingComputer","themes":["Malware / botnet"],"time_local":"09:55","title":"Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries"},{"link":"https://www.securityweek.com/openai-fires-3-safety-researchers-in-dispute-over-ai-risks/","links":["https://www.securityweek.com/openai-fires-3-safety-researchers-in-dispute-over-ai-risks/"],"outline":"The ChatGPT maker said the researchers \"violated clear policies on handling sensitive information.\u201d The post OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks appeared first on SecurityWeek .","priority_score":0,"source":"SecurityWeek","themes":[],"time_local":"21:07","title":"OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks"}]}}
