2026-09-29
Microsoft Security
Beyond source code: A path to the keys to the kingdom
ReversingLabs
Can advanced math make AI systems safer?
MIT Technology Review
The Download: climate tech companies to watch and AI’s discovery problem
CISA Alerts & Advisories
Baicells Nova 430H
CISA Alerts & Advisories
Lantronix G520 Series Cellular Gateway
CISA Alerts & Advisories
Toptech TMS7 and TopHAT
CISA Alerts & Advisories
Viidure Dashcam Android Application
CISA Alerts & Advisories
Anjvision YSSD-RTMP-H5
CISA Alerts & Advisories
VIVOTEK Camera Firmware
CISA Alerts & Advisories
MikroTik RouterOS
Schneier on Security
Using Device Linking to Eavesdrop on WhatsApp and Signal
MIT Technology Review
Coming soon: Our 2026 list of Climate Tech Companies to Watch
MIT Technology Review
Making AI an asset, not an expense
Talos Intelligence
Securing the keys to the kingdom: Announcing Executive Threat Detection
Shielder Blog
louis-rs Security Audit
Palo Alto Networks
Why OT Resilience Is Now a Boardroom Imperative
Voidstar Security Research Blog
A Hacker's Guide to ARM Tracing - ETM, ITM, and the TPIU
Rosecurify
Seclog - #197
Elastic Security Labs
No MDM for Linux? A 68-line Elastic workflow keeps every endpoint's config current
2026-09-28
MIT Technology Review
Roundtables: The Deadly Failures of The Virtual Border Wall
Github Security Blog
How we found 24 Android vulnerabilities using our open source AI security agent
MIT Technology Review
When can we say AI made a scientific discovery?
Offensive Security
CVE-2026-85706: GitLab Unauthenticated Arbitrary File Read via the Repository Commits API
Krebs on Security
Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigation
Microsoft Security
NeedyMantis: Unpacking a post-compromise malware family used in targeted operations
MIT Technology Review
The Download: rogue agent liability and the AI Hype Index
Schneier on Security
New Attack Against RSA
watchTowr Labs
Oh Look, The Foot Gun Went Off Again (Citrix NetScaler PreAuth Command Injection CVE-2026-88771)
Palo Alto Networks
Securing AI Agents at Scale with NVIDIA
MIT Technology Review
Who’s liable when AI agents go rogue?
Malwarebytes
A week in security (September 21 – September 27)
Elastic Security Labs
Quarantined isn't contained: Agentic phishing response with Elastic and Sublime
2026-09-27
Cloudflare
Cloudflare’s 2026 Annual Founders’ Letter
CISA Alerts & Advisories
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
Critical Zero-Day Vulnerabilities Exploited in Citrix NetScaler ADC, Gateway
2026-09-26
2026-09-25
Krebs on Security
U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon Extortions
Schneier on Security
Friday Squid Blogging: Participatory Squid Dissection in October in Tennessee
Ars Technica Security
Your uncle’s frozen Mac says it’s infected after viewing a Google ad. Now what?
Eye Security Research
Rise of the Jev-Clones
Bishop Fox Security
Master Key Included: Detecting SolarWinds ARM CVE-2026-28326
Malwarebytes
Criminals turn placeholder domain into ClickFix trap
MIT Technology Review
The Download: the Pentagon’s AI-powered lie detector and young organ limits
CISA Alerts & Advisories
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
Schneier on Security
On Anthropic’s AI Misuse Report
Trail of Bits
Don't let TEEs break your MPC
MIT Technology Review
The Pentagon wants $30 million to build an AI-powered lie detector
MIT Technology Review
Young organs may not be a fountain of youth for recipients
Teleport Blog
How to Eliminate Shared Production Kubeconfigs
2026-09-24
Github Security Blog
AI-powered fuzzing with the GitHub Security Lab Taskflow Agent
Red Siege InfoSec Blog
Red Siege at Wild West Hackin’ Fest Deadwood 2026: What to Expect
Talos Intelligence
Trust and the enticing consultancy offer
Microsoft Security
Beyond the ransomware: Tracking Storm-2570’s consistent tradecraft across deployments
Microsoft Security
What’s new in Microsoft Security: September 2026
Dark Reading
3 Cyber Threats That Defined the Summer of 2026
Dark Reading
Prompt-Injection Bug Hits $4B Agentic AI App 'Manus'
Bishop Fox Security
Unified Code, Unified Risks: Uncovering Vulnerabilities in .NET MAUI Applications
CISA Alerts & Advisories
Botslab G980H Dashcams
CISA Alerts & Advisories
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
Siemens Mendix Runtime (Update A)
CISA Alerts & Advisories
Eufy Omni C20, Omni X10 Pro
Ars Technica Security
There's a new way to break RSA that's faster than anything we've seen before
Schneier on Security
Malicious npm Packages That Evade Defenses
TrustedSec
What's New in hate_crack Since 2.0
Project Black
Bypassing EDR with Local AI
Project Black
Bypassing EDR with Local AI
Meta Security
Bringing Private Processing to Meta AI Glasses
Accomplish
Escaping the Cloudflare sandbox
2026-09-23
watchTowr Labs
Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127)
Amazon Security
ICYMI: August 2026 @AWS Security
Ars Technica Security
FBI rushes to investigate if ShinyHunters hack of thousands of employees is real
Zero Day Initiative
CVE-2024-0244 – A heap buffer overflow in the Canon MF753Cdw printer
Microsoft Security
Reimagining the SOC for the agentic era in Microsoft Defender
Amazon Security
Supporting ASD’s multi-factor authentication campaign: Why MFA matters more than ever
Step Security
Sckit Supply Chain Worm Hits MemTensor npm & PyPi scopes
Eye Security Research
AI vulnerability discovery using the Kitten process: How we found CVE-2026-75754
CISA Alerts & Advisories
Considerations for Critical Infrastructure Operators Working With Third-Party ICS Integrators
Schneier on Security
Research on Models Engaging in Genie-Like Behavior
Voidstar Security Research Blog
Extending Scapy for Hardware Reverse Engineering
Arch Cloud Labs
Testing BTRFS w/ Release Candidate Kernels on Arch Linux
Datadog HQ
Configure RUM SDKs remotely from Datadog
2026-09-22
Ars Technica Security
Microsoft disrupts AI-assisted platform that compromised 12,000 accounts