πŸ” Search
Sign in to post
Data-Only Attacks Are Easier Than You Thinkhttps://www.usenix.org/publications/loginonline/data-only-attacks-are-easier-you-think

Article URL: https://www.usenix.org/publications/loginonline/data-only-attacks-are-easier-you-think Comments URL: https://news.ycombinator.com/item?id=49811429 Points: 4 # Comments: 0

DORA Year Two: Can Your SOC Actually See the Attack?https://thehackernews.com/2026/09/dora-year-two-can-your-soc-actually-see.html

When the Digital Operational Resilience Act (DORA) became enforceable across the European Union in January 2025, it triggered an administrative sprint. Financial entities spent the first year establishing risk governance, assessing third-party service providers, updating contract clauses, and documenting incident escalation workflows. Now in its second year, the harder part of DORA is

⚑ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijackshttps://thehackernews.com/2026/09/weekly-recap-cisco-0-day-ai-agent-rce.html

A browser. A plugin. A package. A login screen. Normal stuff. That is basically the problem this week. The trouble keeps showing up inside things people already trust: code that takes a bad turn, old payloads coming back, exposed systems, weak checks, fake fixes, and attack paths that look almost too easy. Even the research side is getting messy, with more findings, more automation, and not

Can You Prove a New CVE Is Exploitable Before Attackers Do? Learn How in This Webinarhttps://thehackernews.com/2026/09/can-you-prove-new-cve-is-exploitable.html

A new CVE drops. Your scanner finds it. The severity score looks ugly. But that still does not answer the question that matters: Can it actually be exploited in your environment? Mythos-class AI is compressing the time between disclosure and working exploitation, while many security programs still validate risk on weekly or quarterly cycles. The dangerous gap is no longer just technical. It is

CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositorieshttps://thehackernews.com/2026/09/crowdsec-says-tanstack-npm-attack-led.html

An attacker copied about 170 of CrowdSec's private GitHub repositories on May 22 using the account of an employee who had just left, CrowdSecΒ said on September 18. The French security company had kept his GitHub access open. CrowdSec says his laptop was compromised in May'sΒ supply chain attack on TanStack, in which malicious versions of TanStack's npm packages stole credentials from

Vectra AI Launches Ascent to Help Address New Era of AI-Driven Attackshttps://www.darkreading.com/cyberattacks-data-breaches/vectra-ai-launches-ascent-new-era-ai-driven-attacks

The new program expands Vectra AI's partner strategy as increasingly complex security environments and the growing use of AI create demand for broader AI expertise, services, and security outcomes.

β†—
BragJack Attack Can Turn a Browser's Agentic AI Against Ithttps://www.darkreading.com/endpoint-security/bragjack-browser-agentic-ai

A new type of attack hijacks the AI assistant built directly into various browsers to access sensitive information, execute malicious actions, and exfiltrate data.

β†—
Papercut AI Swarm Attack Heralds Changes for Cyber Kill Chainhttps://www.darkreading.com/cyberattacks-data-breaches/papercut-ai-swarm-attack-cyber-kill-chain

From creating lab environments for staging and testing agentic attacks to reconnaissance to lateral movement and exfiltration, the most innovative attackers are widely incorporating AI.

β†—
Identity-Based AI Attack Threatens Security of Enterprise Datahttps://www.darkreading.com/threat-intelligence/identity-based-ai-attack-security-enterprise-data

"Workflow identity hijacking" can bypass standard security controls and hijack an organization's data by sending a basic request through an unauthenticated entry point.

β†—
Attackers Use Multi-Hop Google Redirects for Phishing Campaignhttps://www.darkreading.com/cyberattacks-data-breaches/attackers-multi-hop-google-redirects-phishing-campaign

Threat actors are abusing multiple Google services to evade detection, ultimately harvesting credentials or installing ScreenConnect remote access.

β†—
OpenAI Agents Took Over Wiki Site Before Hugging Face Attackhttps://www.darkreading.com/cyberattacks-data-breaches/openai-agents-wiki-site-hugging-face-attack

Researchers and OpenAI disagree on whether an earlier incident involving DseWiki, which the company did not disclose, was a β€œhack."

β†—
Companies Have 6 Months to Prepare for Automated Attackshttps://www.darkreading.com/cybersecurity-operations/companies-six-months-prepare-automated-attacks

Frontier AI models have already demonstrated they can autonomously β€” and in some cases, inadvertently β€” conduct end-to-end compromises, but researchers warn the situation will become more urgent very soon.

β†—
Come Join Us at DEFCON.Social!https://defcon.social

DEFCON.social is open! From the first DEF CON announcement over 30 years ago inviting all to attend our first gathering: "We cordially invite all hackers/phreaks, techno-rats, programmers, writers, activists, lawyers, philosophers, politicians, security officials, cyberpunks and all network sysops and users to attend." That's still our core audience, but we welcome artists, musicians, infosec, privacy professionals, journalists, and everyone genuinely curious about how things work. Name: DEFCON.social URL: https://defcon.social/ Support Site: https://www.defcon.social/ Location: USA Languages…

β†—
Ransomware Attacks are on the Risehttps://threatpost.com/ransomware-attacks-are-on-the-rise/180481

Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.

β†—
Firewall Bug Under Active Attack Triggers CISA Warninghttps://threatpost.com/firewall-bug-under-active-attack-cisa-warning/180467

CISA is warning that Palo Alto Networks’ PAN-OS is under active attack and needs to be patched ASAP.

β†—

0trust.social media

Loading your media...

Pick a GIF β€” Giphy

Loading GIFs...