2026-09-10
Offensive Security
Are Security Teams Keeping Pace With AI-Accelerated Threats?
Palo Alto Networks
Palo Alto Networks Named a Leader in the 2026 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
Talos Intelligence
We've got one word for it, and it's usually the wrong one
Microsoft Security
Protecting organizations from AI-assisted executive impersonation and invoice fraud
Microsoft Security
Detect and disrupt AI-themed attacks with Microsoft Defender
Palo Alto Networks
Secure AI Coding: Governing every agent, artifact, and identity
Bishop Fox Security
Mind the Config: Detecting and Weaponizing NetScaler CVE-2026-19490
MIT Technology Review
The Download: a “God-driven” cryptocurrency and a solar engineering roadmap
CISA Alerts & Advisories
ST Engineering iDirect iQ-Series Terminals (Update A)
CISA Alerts & Advisories
NextGen Healthcare Mirth Connect
CISA Alerts & Advisories
CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA Alerts & Advisories
Orthanc DICOM Server
CISA Alerts & Advisories
AVEVA Pipeline Integrity Monitor
MIT Technology Review
Powering AI is an architecture problem
MIT Technology Review
This road map could help us decide whether to deploy solar geoengineering
Schneier on Security
AIs Compress Exploit Timeline
MIT Technology Review
Can the US battery market untangle from China?
MIT Technology Review
God told them to sell crypto. Their investors lost everything.
MIT Technology Review
Healthcare AI’s next test is integration
Escape DAST
How to build a continuous pentesting program
TrustedSec
So… You Found AWS Access Keys (Part 1)
Datadog HQ
How we built Datadog Experiments
2026-09-09
Microsoft Security
Threat matrix: Mapping threats across cloud web applications
Ars Technica Security
Four groups caught using the same Chrome and Windows exploit kit
Microsoft Security
Passkey-themed social engineering leads to identity and cloud compromise
Schneier on Security
Driver’s License Data for Sale
MIT Technology Review
The Download: OpenAI’s turning point for math and a battery record
core-jmp
How Can You Not Be Romantic About UNIX Domain Sockets: A 40-Year Kernel Bug From the DEF CON Stage
CISA Alerts & Advisories
CISA Adds Four Known Exploited Vulnerabilities to Catalog
CISA News
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats
Schneier on Security
Claude Fable Solves a Historical Cipher
Trail of Bits
A “proof” of Fermat’s Last Theorem that fits the margin
core-jmp
N-able N-Central Critical Authentication Bypass: CVE-2026-86206 and CVE-2026-86207 Chained Attack
MIT Technology Review
Batteries just broke another record in the US
MIT Technology Review
Understanding the thermal ceiling in portable power
MIT Technology Review
What OpenAI’s latest controversy tells us about the future of math
Teleport Blog
FIPS 140-2 vs FIPS 140-3, Explained
2026-09-08
Talos Intelligence
Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilities
Krebs on Security
Microsoft Plugs Nearly 1,000 Security Holes
Dark Reading
Patch Tuesday Sets Another Record With 974 CVEs
Ars Technica Security
Why this month's Microsoft patch release is a doozy
Zero Day Initiative
The September 2026 Security Update Review
Schneier on Security
AIs as Modern Genies
ReversingLabs
AI summary attack conceals code that tampers with LLMs
CISA Alerts & Advisories
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies
CISA Alerts & Advisories
CareCam Pro IP Cameras
CISA Alerts & Advisories
CISA Adds Four Known Exploited Vulnerabilities to Catalog
Schneier on Security
Stealing AI Reasoning Traces
Talos Intelligence
ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager
Talos Intelligence
ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2
Datadog HQ
Coordinate product launches with Datadog
Okta Security
Hunting Vulnerabilities Using Frontier Models
Rosecurify
Seclog - #194
2026-09-07
Schneier on Security
Automobile Camouflage to Hide from Flock Cameras
Infernux Blog
Log Horizon 0.9.0
2026-09-05
Sansec Threat Research
StyleSmuggler: Magento and Adobe Commerce 0-day RCE (CVE-2026-75650) under active attack
2026-09-04
Ars Technica Security
OpenAI agents discussed ways to escape their sandbox on public wiki
Schneier on Security
Friday Squid Blogging: Squid on a Stick at the New York State Fair
Microsoft Security
How to secure edge AI in customer-owned environments
Amazon Security
OSPAR 2026 report now available with 167 services in scope
Ars Technica Security
Once popular for attacking AI, ASCII smuggling is embraced by spammers
Schneier on Security
Using a VM to Contain an AI Agent
Dark Reading
Insurers Search for Answers to Rein in Rogue AI
CISA Alerts & Advisories
CISA Adds One Known Exploited Vulnerability to Catalog
Schneier on Security
Security Vulnerability in a Voting System
Schneier on Security
AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks