Skip to content
BLACKMESA.CA Security Feed

Security Feed

Cybersecurity news & advisories

500 articles 46 of 46 sources updated RSS ↗

Latest

News 404 Media

Muse escapes containment

Good Monday morning, I'm on my second coffee of the day already so please excuse any jitters that come through today's newsletter. We've got a big constitutionality ruling on Flock, a scoop about a major fire Meta…

↗ Open article
Trending News The Register Security

Debian's latest kernel security update has 1,313 reasons to patch

Vuln

The age of LLM-assisted security vulnerability discovery is really starting to bite. Debian's latest Linux kernel security update comes with a formidable reading list of 1,313 CVE identifiers. The DSA-6528-1 Linux…

↗ Open article
News 404 Media

arXiv Is Rate Limiting Submissions Because It Can’t Keep up With AI Slop

Research

arXiv, an open-access repository where researchers publish preprint academic research, has announced it will rate limit submissions because it has been inundated with AI-written papers. A researcher can now only send in…

↗ Open article
News Cyber Security News

Malicious HEIC Images Can Trigger Remote Code Execution on WordPress Servers

Vuln Research

A malicious HEIC image can become a route to remote code execution on a WordPress server. Researchers have demonstrated an attack chain that turns a normal Media Library upload into code execution in the PHP-FPM process…

↗ Open article
News Cyber Security News

16 Suspects Detained in Timor-Leste for Japanese Police Impersonation Scam

Investigators in Timor-Leste have detained 16 people after raiding a building in Dili allegedly used to run telephone scams against people in Japan. The suspects are accused of posing as Japanese police, using staged…

↗ Open article
Trending Threat Intel Malwarebytes Labs

Google pauses open source bug bounty program after rise in AI submissions

Vuln

Companies like Google and Microsoft are finding much bigger numbers of vulnerabilities in their own products as a result of AI . But the same technology is leading to public reporting programs becoming overwhelmed by…

↗ Open article
Podcast Hak5

🍍📟 Let me be CLEAR: New Limited Edition WiFi Pineapple Pager

Introducing the WiFi Pineapple Pager in Cyb3rpunk Clear. This limited edition colourway is available now, at https://hak5.org Hak5 -- Cyber Security Education, Inspiration, News & Community since 2005…

↗ Open article
News The Hacker News

⚡ Weekly Recap: NetScaler and FortiMail 0-Days, AI Coding Leaks, Spectre v2 and Ransomware Arrests

Ransom

A blank field. A public repo. One reply to an email. A box left exposed. None of this sounds dramatic, which is partly the problem. This week’s threats keep finding leverage in small things that were easy to overlook…

↗ Open article
Threat Intel Malwarebytes Labs

Proposed anti-Flock bills could spell trouble for license plate readers

Automated license plate readers (ALPRs) are cameras that photograph passing vehicles, read their number plates, and typically log the time, location, and vehicle details. On their own, the images might be used to find a…

↗ Open article
News 404 Media

Meta Rushed to Fix Muse ‘VM Escape' Vulnerability Soon Before Launch

Vuln

In the immediate weeks before Muse’s launch, Meta engineers found several security vulnerabilities in the company’s viral AI agent product, at least one of which could have allowed malicious users to break outside of…

↗ Open article
News Cyber Security News

Researcher Infiltrates Lazarus Group’s Crypto Laundering Network After $1.5B Bybit Hack

Research Crypto

Blockchain investigator ZachXBT says he infiltrated a Chinese crypto laundering network linked to North Korea’s Lazarus Group after the $1.5 billion Bybit hack. His investigation connected private chats with public…

↗ Open article
News Cyber Security News

Zammad Zero-Day Chain Lets AI Agent Hijack Sessions, Execute Code and Escalate to Root

Vuln Breach

An AI agent breached the Dutch Institute for Vulnerability Disclosure by chaining two previously unknown flaws in Zammad, an open source helpdesk platform. The September 21, 2026 attack moved from a hijacked session to…

↗ Open article
Threat Intel Check Point Research

5th October – Threat Intelligence Report

Phishing Breach Research

For the latest discoveries in cyber research for the week of 5th October, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Arizona’s state court system has suffered a phishing-led cyberattack…

↗ Open article
Trending News Cyber Security News

CISA Warns of Citrix NetScaler Vulnerability Actively Exploited in Attacks

CVE-2026-88779 ↗ Vuln

The U.S. Cybersecurity and Infrastructure Security Agency has added a Citrix NetScaler vulnerability, tracked as CVE-2026-88779 , to its Known Exploited Vulnerabilities catalog after confirming active exploitation. The…

↗ Open article ↗ CVE feed
Trending News Cyber Security News

Google Gemini Will Soon Get Full Access Permission to Use Your Computer

Google’s Gemini Desktop app may soon introduce a “Full Access” permission that would let the AI assistant read files, control applications, access network services, and take action across a user’s Mac. The capability…

↗ Open article
Trending News Bleeping Computer

tenfold CE: Our free Identity Governance tool just got 2 new features

tenfold has added shared content governance and real-time event auditing to its free Community Edition for organizations with under 150 users. The new features help teams manage Microsoft 365 sharing and investigate…

↗ Open article
Trending News Cyber Security News

ClickFix Fake CAPTCHA Attack Executes Malware Hidden Inside Browser Cache

Malware Breach

A new ClickFix campaign is turning a web safety check into a route for malware. Visitors to compromised websites see a fake CAPTCHA or repair message and are told to open the Windows Run dialog, paste copied text, and…

↗ Open article
Trending News Cyber Security News

RemoveMacAI Free Up 12GB of Data by Removing Apple Intelligence Models

RemoveMacAI, an open-source tool on GitHub, lets Mac users disable Apple Intelligence, remove its downloaded models, and block future downloads. The utility can recover roughly 10GB to 12GB of storage, depending on…

↗ Open article
News Cyber Security News

GlassWorm Supply Chain Attack Uses Fake VS Code Themes to Deliver Hidden Malware

Malware

GlassWorm is turning developer tools into malware delivery channels, this time through extensions advertised as attractive VS Code themes. The investigated cluster spans Visual Studio Marketplace and Open VSX, showing…

↗ Open article
Trending News Cyber Security News

Apple Tightens macOS Full Disk Access as AI Agents Become More Powerful

Apple plans to add stronger controls to Full Disk Access in macOS, warning that the powerful permission can expose a user’s most private data as AI agents become more capable. The company said the change will require…

↗ Open article
Research NIST Cybersecurity Insights

Introducing the New Small Business Cybersecurity Support Program Finder

For small businesses who are often confronted with limited resources, knowing how to get started and where to find support with planning, implementing, or evaluating a cybersecurity risk management strategy can be…

↗ Open article
Trending News The Hacker News

The Credential Layer Is Expanding Faster Than Security Teams Can See It

Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected…

↗ Open article
News The Hacker News

Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2

Vuln Malware

Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling. "Cling is notable not…

↗ Open article
Trending News The Hacker News

Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access

Apple has announced that it's taking steps to tighten controls around a macOS setting called Full Disk Access (FDA) due to security risks posed by artificial intelligence (AI) agents. "Some developers are using Full…

↗ Open article
News CyberScoop

The US needs a real plan to defend its water systems

The summer’s cyberattacks by Iranian hackers on water systems in 12 states underscored how vulnerable U.S. water systems are to foreign adversaries. A broad attack on water infrastructure could have consequences…

↗ Open article
News The Register Security

Legacy sign-on service comes back to bite school software provider Bromcom

Breach Privacy

UK education software provider Bromcom has notified customers of a personal data breach affecting its single sign-on (SSO) technology. In a September 24 EduGeek post, an account named Bromcom_Alastair said an…

↗ Open article
Trending News The Hacker News

Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE

CVE-2026-61500 ↗ Vuln

A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck. The vulnerability in question is CVE-2026-61500 (CVSS score: 9.3), a case of session…

↗ Open article ↗ CVE feed
Threat Intel Malwarebytes Labs

A week in security (September 28 – October 4)

Phishing

Last week on Malwarebytes Labs: Fake xStocks, Pendle, and other sites bait crypto users with rewards votes Shadow AI explained: The work shortcut that could leak your company’s secrets Convincing Free Mobile phishing…

↗ Open article
Trending News The Hacker News

New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline

Vuln

Citrix has released security updates for a high-severity security flaw in NetScaler ADC and Citrix NetScaler Gateway that has been exploited as part of targeted zero-day attacks. The vulnerability, tracked as…

↗ Open article
Research SANS Internet Storm Center

TTY Logs and the Data it Captures, (Sun, Oct 4th)

For an experiment, I created a script [1] that parses and send the TTY logs collected from actors or bots activity that run various commands after they successfully login the DShield sensor. Those TTY logs are sent…

↗ Open article
No articles found
Try adjusting your search, category, tags, source selection, or date range.