 | CISA Warns of Linux Kernel Vulnerabilities Actively Exploited in Attacks | 2026-09-19 | True | cybersecurityNews.com | |
 | BragJack attacks hijack AI browser agents through malicious extensions | 2026-09-19 | True | Bleeping Computer | |
 | Google Gemini also Broke Out of Its Test Environment | 2026-09-19 | True | Security Affairs | |
 | North Korean WaterPlum hackers infected 30,000 devices worldwide | 2026-09-19 | True | Bleeping Computer | |
 | ShinyHunters hacks Clop leak site, threatens to extort ransomware gang | 2026-09-19 | True | Bleeping Computer | |
 | Daily OT Security News: September 19, 2026 | 2026-09-19 | True | Security Boulevard | |
 | Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws | 2026-09-19 | True | The Hacker News | |
 | Google Gemini AI Hacked 3 Real Companies After Cybersecurity Test Exposed It to Internet | 2026-09-19 | True | GBHackers | |
 | AI Helps Hackers Hijack OpenAI Staff Accounts Through a Forum | 2026-09-19 | True | Security Affairs | |
 | National Cancer Centre e-mail lapse allegedly exposes patients’ details | 2026-09-19 | True | DataBreaches.Net | |
 | TanStack Supply Chain Attack Lets Hackers Steal 170 Private CrowdSec GitHub Repositories | 2026-09-19 | True | cybersecurityNews.com | |
 | Gemini Hacked Three Companies in First Known Breakout by Google’s AI | 2026-09-19 | True | DataBreaches.Net | |
 | The Blank PDF That Signed Its Own Generator's Name | 2026-09-19 | True | IRONSCALES | |
 | Forget the AI Slowdown—the Vulnerability Explosion Is Already Happening | 2026-09-19 | True | WIRED Security | |
 | SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE | 2026-09-19 | True | The Hacker News | |
 | North Korean WaterPlum Hackers Target IT Professionals With Fake Job Interviews to Steal Crypto | 2026-09-19 | True | GBHackers | |
 | North Korean WaterPlum Hackers Infect 30,000 Devices via Fake Job Interviews to Steal Crypto | 2026-09-19 | True | Cyber Press | |
 | AI-Powered RatHat Android Trojan Steals Bank Credentials, PINs and MFA Codes | 2026-09-19 | True | GBHackers | |
 | Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild | 2026-09-19 | True | The Hacker News | |
 | Google Gemini Broke Into Real Company Systems After Security Test Domain Mix-Up | 2026-09-19 | True | The Hacker News | |
 | CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories | 2026-09-19 | True | The Hacker News | |
 | PowerShell Malware Abuses Registry and DNS TXT Records to Deploy XMRig Crypto Miner | 2026-09-19 | True | GBHackers | |
 | Hackers Hide PowerShell Malware in Registry, PNG and WAV Files to Deploy XMRig Miner | 2026-09-19 | True | Cyber Press | |
 | Viral “Rent A Garba Partner” Post Raises Cybersecurity Questions Amid Navratri Scam Warnings | 2026-09-19 | True | CyberNexora News | |
 | Azure AI, Cisco ISE, WordPress flaws under active exploitation; 23M Gyazo breach | 2026-09-19 | True | defend.network | |
 | CISA Flags Active Exploitation of Linux Kernel Vulnerabilities | 2026-09-19 | True | ThreatCluster | |
 | CISA Flags Three Linux Kernel Vulnerabilities Exploited in the Wild | 2026-09-19 | True | The Hacker News | |
 | All about that proxy. | 2026-09-19 | True | The CyberWire | |
 | Click2Shell WordPress Flaw Lets Attackers Gain RCE With a Single Malicious Link | 2026-09-19 | True | cybersecurityNews.com | |
 | Anthropic CEO joins calls for slower pacing of AI development. | 2026-09-19 | True | The CyberWire | |
 | BragJack Attack Lets Malicious Extensions Hijack AI Agents Across 5 Major Browsers | 2026-09-19 | True | cybersecurityNews.com | |
 | HHS’ Office for Civil Rights Settles HIPAA Investigation of Ambry Genetics for Security Rule Violations | 2026-09-19 | True | DataBreaches.Net | |
 | ShinyHunters Hacks Clop Leak Site, Threatens to Extort Ransomware Gang | 2026-09-19 | True | CosmicBytez Labs | |
 | Researchers Use AI to Find Widespread Software Decoder Flaw | 2026-09-19 | True | CosmicBytez Labs | |
 | New Check Point Flaw Lets Hackers Execute Code With Root Privileges | 2026-09-19 | True | CosmicBytez Labs | |
 | Early Scattered Spider Member Pleads Guilty to Cybercrime Spree | 2026-09-19 | True | CosmicBytez Labs | |
 | CrowdSec Says TanStack npm Attack Led to Copy of 170 Private GitHub Repositories | 2026-09-19 | True | CosmicBytez Labs | |
 | CVE-2026-77929: Authenticated File Upload Leads to Remote Code Execution in ClipBucket v5 | 2026-09-19 | True | CosmicBytez Labs | |
 | CVE-2026-13684: Improper Output Encoding in Synology DSM SCGI Enables Unauthenticated File Read/Write | 2026-09-19 | True | CosmicBytez Labs | |
 | CVE-2026-13639: Insufficient Entropy in Synology DSM Login Lets Unauthenticated Attackers Read/Write Files | 2026-09-19 | True | CosmicBytez Labs | |
 | SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE | 2026-09-19 | True | CosmicBytez Labs | |
 | Brevo Supply-Chain Attack Infected Over 100,000 Websites | 2026-09-18 | True | Security Affairs | |
 | Ransomware attack on Kansas county will affect some services | 2026-09-18 | True | DataBreaches.Net | |
 | The Cisco root route. | 2026-09-18 | True | The CyberWire | |
 | Early Scattered Spider member pleads guilty to cybercrime spree | 2026-09-18 | True | CyberScoop | |
 | Foreign actors breach Colorado water systems | 2026-09-18 | True | DataBreaches.Net | |
 | The U.S. military leaked more than 93,000 tips via insecure P3 Global Intel. Has anyone been notified? | 2026-09-18 | True | DataBreaches.Net | |
 | Cisco Zero-Day Highlights API Endpoint Authentication Issues | 2026-09-18 | True | Dark Reading | |
 | AI-Powered Android Malware RedHat Survives Deletion and Steals Banking Credentials | 2026-09-18 | True | ThreatCluster | |
 | 77% of Flock Safety’s Public DNS Namespace is Development Infrastructure | 2026-09-18 | True | Security Boulevard | |