Hackers build AI frameworks for widescale credential theft

Cyberattackers are now using sophisticated artificial intelligence (AI) frameworks to automate every stage of their attacks, including credential theft on a massive scale. According to a report from the Google Threat Intelligence Group (GTIG), threat actors have moved beyond simple AI-powered coding assistants and are instead integrating multiple AI capabilities into their attack workflows. These … Read more

BengalSEO Poisons Bing Search Results to Deliver MayaBot and Tech Support Scams

A sophisticated cyberattack has been uncovered, where a malicious actor manipulated Bing search results to deliver payloads of two notorious malware variants, MayaBot and Tech Support Scams. The campaign, dubbed BengalSEO, exploited vulnerabilities in Microsoft’s search engine optimization (SEO) tools, allowing attackers to inject poisoned links into seemingly legitimate search results. At the heart of … Read more

Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell

Adobe’s Magento e-commerce platform has been hit with a zero-day vulnerability that allowed attackers to deploy a backdoor and web shell, compromising user security. This critical issue affects anyone using Magento 2.x up to version 2.3.7-p1, which is used by over 250,000 online stores worldwide. The exploit takes advantage of a previously unknown privilege escalation … Read more

FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials

FreeIPA Flaw Chain Exposes Administrators to Reusable Credentials Risks A critical chain of vulnerabilities has been discovered in FreeIPA, an open-source identity and access management system widely used by organizations worldwide. The flaws allow anonymous clients to create reusable administrator credentials, potentially giving hackers backdoor access to sensitive systems. FreeIPA is designed to manage identities … Read more

220 million traveler records exposed in Vietnam-linked APIS leak

More than 220 million passenger and crew records have been left exposed online through a series of security misconfigurations linked to a Vietnamese organization. The Advance Passenger Information System (APIS) database, which holds sensitive information on travelers from around the world, was accessible to anyone with the right credentials. The leak is a sobering reminder … Read more

Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data Sharing

Grindr, a popular dating app for LGBTQ+ individuals, has agreed to pay £26 million (approximately $32.5 million) to settle claims made by the UK’s Information Commissioner’s Office (ICO) over the sharing of HIV status data without users’ consent. This settlement marks one of the largest fines issued under the UK’s Data Protection Act 2018. The … Read more

220 million traveler records exposed in Vietnam-linked APIS leak

A staggering breach of traveler data has exposed the sensitive information of over 220 million passengers and crew members worldwide, with researchers tracing the vulnerability back to an Advance Passenger Information System (APIS) database linked to Vietnam. The exposed database, which held records spanning from 2017 to 2026, contained a treasure trove of personal details … Read more

ISC Stormcast For Tuesday, September 8th, 2026 https://isc.sans.edu/podcastdetail/10084, (Tue, Sep 8th)

A Low-Profile Malware Campaign Has Been Discovered, Threatening Unpatched Systems Worldwide A stealthy malware campaign has been identified by cybersecurity experts at SANS ISC, targeting organizations with unpatched systems and potentially leaving them vulnerable to exploitation. The threat is particularly concerning for companies that have neglected to update their software, as it can provide a … Read more

ISC Stormcast For Tuesday, September 8th, 2026 https://isc.sans.edu/podcastdetail/10084, (Tue, Sep 8th)

A New Wave of Malware Spreads Across the Globe, Infecting Thousands of Devices A sophisticated malware campaign has been spreading rapidly across the globe, infecting thousands of devices in a matter of days. According to the latest updates from the SANS Internet Storm Center, the malware, which appears to be a variant of an existing … Read more