Skip to content
BLACKMESA.CA Security Feed

Security Feed

Cybersecurity news & advisories

500 articles 47 of 47 sources updated RSS ↗

Latest

News Cyber Security News

Ransomware Hacker Uses AI Coding Assistant as Attack Channel Against Enterprise Networks

Ransom

A ransomware affiliate has turned an AI coding assistant into a channel for running attacks inside enterprise networks. The operator, known as Azazel, combined stolen development credentials, remote command execution…

↗ Open article
News 404 Media

404 @ 3

Policy

And 404's Flock coverage cited in proposed legislation.

↗ Open article
News Bleeping Computer

How to secure RMM software: 8 controls MSPs should test

RMM platforms give MSPs privileged access across customer environments, making their security controls critical to limiting risk. Acronis outlines eight controls MSPs should test when evaluating RMM software, from…

↗ Open article
News Cyber Security News

OpenAI Agents Caught Editing Wikis, Making Millions of Requests That Led to Outage

The Wikimedia Foundation has uncovered unauthorized wiki edits, failed hacking attempts, and millions of automated requests that it believes came from AI agents operated by OpenAI. Its October 5 disclosure raises…

↗ Open article
News Cyber Security News

Hackers Exploit Exposed Industrial Controllers to Disrupt US Water and Critical Infrastructure

Vuln

Hackers are exploiting internet-connected industrial controllers to disrupt US water utilities and other essential services. Recent incidents show that poorly protected equipment can give attackers direct access to…

↗ Open article
News 404 Media

Lawmakers Introduce Multiple Laws to Curb Flock After 404 Media Coverage

Policy

Multiple Democrat, Republican, and Independent lawmakers have introduced new pieces of legislation that, if passed, would dramatically curb federal agencies’ access to Flock cameras, with the lawmakers referencing…

↗ Open article
Research SANS Internet Storm Center

More RMM Tools In the Wild, (Tue, Oct 6th)

It seems that a trend started… I continue my journey discovering more RMM ("Remote Management & Monitoring") tools abused by threat actors! A few days ago, I wrote a diary[1] about ScreenConnect used in the wild. Today…

↗ Open article
Trending News The Register Security

Zombie instructions on carefully constructed web pages could trick GitHub Copilot CLI into sharing secrets

GitHub Copilot CLI may reveal developer secrets if it comes across instructions that tell it to do so, depending on the underlying model. The coding agent tool was flagged earlier this year for being susceptible to…

↗ Open article
Trending News Cyber Security News

Critical Dell System Update Tool Vulnerability Allows Attackers to Execute Code as Root User

Vuln

Dell has released security updates for five vulnerabilities in Dell System Update (DSU), including a critical flaw that could let an unauthenticated remote attacker execute code with root privileges. The issues affect…

↗ Open article
Threat Intel Malwarebytes Labs

Facebook Marketplace scam uses your name and number

Facebook users are reporting receiving a message with a fake Facebook Marketplace listing that has their name as the seller. It works like this. You receive a message (in this case iMessage) asking “Is this still…

↗ Open article
News The Hacker News

LibreOffice and OpenOffice Flaws Let Malicious Spreadsheets Run Code Without Macro Warnings

Research

A malicious spreadsheet can make LibreOffice and Apache OpenOffice run an attacker's code as soon as the file is opened, security researchers have shown. There is no warning first, of the kind either program shows…

↗ Open article
News The Register Security

Asos app delivers a data leak threat instead of fast fashion

Breach

Asos customers have reported receiving a rogue app notification claiming the online clothing retailer's Snowflake instance has been compromised and threatening to leak data. The notification included a link to a…

↗ Open article
News The Register Security

Denmark's ID register spills more people's details than the country has residents

An unauthorized party abused a private Danish company's legitimate access to the country's Central Population Register (CPR), exposing names, addresses, identification numbers, and other personal information about…

↗ Open article
News CyberScoop

Here’s how experts think CISA should tell agencies to protect OT

A coalition of cyber firms and critical infrastructure operators on Tuesday spelled out its views on the tasks that the Cybersecurity and Infrastructure Security Agency should assign federal agencies to protect…

↗ Open article
Threat Intel Any.Run Malware Analysis

IronChain Ransomware Threatens Businesses with Permanent Data Loss and Costly Downtime

Ransom Research

Editor’s note: This research was conducted by Himanshu Anand, an independent cybersecurity researcher ( follow Himanshu on X ). During Cybersecurity Awareness Month, ransomware remains one of the clearest examples of…

↗ Open article
News The Hacker News

Wikimedia Says OpenAI Agents Tried to Compromise Etherpad and Use Wiki Tools as Proxies

The Wikimedia Foundation, which hosts Wikipedia, has confirmed that it has discovered activity by rogue OpenAI agents on its platforms, including unsuccessful efforts to compromise Etherpad, a public note-taking tool…

↗ Open article
Threat Intel Malwarebytes Labs

Domino’s customers targeted in credential stuffing attacks

Breach

Domino’s Pizza customers tell us they have received emails saying they account has been accessed by a third party. Domino’s says its internal systems weren’t breached, but that individual accounts were logged into using…

↗ Open article
Trending Media Schneier on Security

Possible Vulnerability in Apple’s Automatic Reboot

Vuln

404Media is reporting (alternate link ) that a cyber-weapons arms manufacturer is exploiting a vulnerability in iOS to bypass its automatic reboot security feature. This is the feature that automatically puts an iPhone…

↗ Open article
News The Hacker News

Welcome to the Jungle: What We Found Inside 15,465 Public MCP Servers

In 2024, MCP (Model Context Protocol) set out to become the USB-C of AI: one standard for connecting models, agents, and IDEs to tools and data. The protocol delivered. Thousands of developers built servers, and…

↗ Open article
News Cyber Security News

Midnight Blizzard Abuses Hotel Wi-Fi Captive Portals to Deliver Malware and Steal Credentials

Malware

Travelers connecting to hotel Wi-Fi may now face more than an unreliable internet signal. A campaign linked to Midnight Blizzard has turned captive portals, the sign-in pages shown before online access, into a route for…

↗ Open article
Trending News Cyber Security News

Meta and Microsoft are Actively Cutting Employee Use of Claude AI

Meta and Microsoft are reducing employee use of Anthropic’s Claude AI while pushing their own coding tools, according to an October 5 report by The Information . The changes focus on internal spending and staff…

↗ Open article
News The Register Security

Legacy sign-on service comes back to bite school software provider Bromcom

Breach Privacy

UK education software provider Bromcom has notified customers of a personal data breach affecting its single sign-on (SSO) technology. In a September 24 EduGeek post, an account named Bromcom_Alastair said an…

↗ Open article
Trending News The Hacker News

Google Pauses OSS Product Bug Bounty Rewards After Surge in Invalid Automated Reports

Vuln Research

Google has stopped accepting product vulnerability reports through its bug bounty program for its open-source software. The change, in effect since October 1, means researchers can no longer submit security flaws in the…

↗ Open article
Trending News Cyber Security News

ClingSTUN Backdoor Exploits Multiple IoT Vulnerabilities to Gain Persistent Remote Access

Vuln Malware Breach

ClingSTUN is a Linux backdoor that exploits vulnerable internet-connected devices to give attackers lasting remote access. Rather than simply infecting routers and cameras, it turns compromised equipment into remotely…

↗ Open article
News Cyber Security News

FBI Cuts Accenture Contractor Over Unpatched PeopleSoft Flaw Exposing Thousands

Vuln Breach

The FBI removed an Accenture contractor on October 5, 2026, after a missed security patch led to a data breach exposing sensitive personal details of thousands of employees. According to Reuters , two sources identified…

↗ Open article
Trending News Cyber Security News

Google Adds 6 Advanced Protection Features to Android 17 Against Sophisticated Attacks

Google has detailed six Advanced Protection enhancements for Android 17, targeting sophisticated attacks, scams and unauthorized access. Announced on October 1, 2026, the changes combine stronger restrictions with tools…

↗ Open article
Trending News Cyber Security News

Atlassian Patches Critical Vulnerabilities in Jira, Confluence, Bitbucket, and Five More Products

CVE-2026-21589 ↗ Vuln

Atlassian has disclosed a critical arbitrary file access vulnerability affecting eight products, including Jira, Confluence, and Bitbucket. Tracked as CVE-2026-21589, the flaw has a CVSS score of 9.3. It lets…

↗ Open article ↗ CVE feed
Podcast Darknet Diaries

180: Conti

Ransom

The word Conti struck fear in IT departments across the world. It's a type of ransomware that you hope to never come across. Like most ransomware gangs, the Conti group fell apart. But what's special about this story is…

↗ Open article
Trending News The Hacker News

Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 Products

A critical flaw in 8 Atlassian Data Center products, which customers host themselves, allows an attacker with no login access to read specific files in each product's web application root directory. The attacker must…

↗ Open article
News The Hacker News

FBI Removes Accenture Contractor After Patch Failure Led to ShinyHunters Breach

Vuln Breach

The U.S. Federal Bureau of Investigation (FBI) has removed an Accenture contractor for their alleged role in a ShinyHunters-breach that led to the theft of personal details of thousands of bureau employees. That's…

↗ Open article
News The Hacker News

Denmark Says Attackers Accessed CPR Data for 8.8 Million People via Company Account

Unauthorized parties have gained access to the names, addresses, and personal identification numbers of about 8.8 million people, living and dead, in Denmark's national population register, the country's digitalization…

↗ Open article
Trending News The Hacker News

ClickFix Smuggles Payloads Through Browser Cache to Bypass Windows Run Limits

Breach

A new type of ClickFix attack is using compromised websites to trick users into executing a malicious payload cached in a web browser's cache. "Instead of downloading and executing remote payloads like the typical…

↗ Open article
Trending News The Register Security

Atlassian warns of critical file access flaw in its datacenter products

Vuln

Atlassian has told its users to patch its datacenter products, pronto, to prevent attackers accessing their files. The Australian collaborationware company on Monday sent users an email that opens with the words “Action…

↗ Open article
Trending News The Register Security

Security researcher claims they found KVM guest-host escape flaw

Research

Linux KVM, the hypervisor favoured by hyperscale clouds, apparently has a full VM escape bug. That nasty news came from security researcher Paulos Yibelo, who on X shared a screenshot of a bug bounty award he won for…

↗ Open article
Trending News CyberScoop

Citrix discloses third actively exploited NetScaler zero-day in less than a week

Vuln

Citrix customers just got through back-to-back weekends filled with varying levels of uncertainty and worry, as yet another actively exploited zero-day vulnerability was discovered in Citrix NetScaler products…

↗ Open article
Trending News The Register Security

Citrix NetScaler security snafus get even worse amid more 0-day reports

Vuln Research

The attackers just keep coming after Citrix NetScaler appliances, as both the feds and private security researchers warn that someone found - and has already exploited - yet another Citrix bug before it had a patch…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.