Cybersecurity news from across the internet
Cybersecurity news from across the internet
Patch automation can help IT teams keep pace with growing update volumes, but deploying faster also means bad updates can spread faster. Action1 explains how update rings, predefined success criteria, and human oversight…






14th September – Threat Intelligence Report
Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection
[remote] CVE-2026-80428 Unauthenticated PHP Object Injection via Shibboleth - ILIAS < 9.22, 10.0 < 10.10, 11.0 < 11.3 - RCE
Protecting organizations from AI-assisted executive impersonation and invoice fraud
ISC Stormcast For Monday, September 14th, 2026 https://isc.sans.edu/podcastdetail/10092, (Mon, Sep 14th)
VU#369611: ExLlamaV3 contains Denial of Service vulnerability via insufficient bounds checking on kernel dispatch index
The Self-Expanding Stolen Inference Supply Chain: An AI Agent Harvesting and Re-Serving LLM Access, (Fri, Sep 11th)
CISA Adds Three Known Exploited Vulnerabilities to Catalog
Warning: “Slop Squatting” Directs AI Users to Phishing Pages
Revolut gave customer IDs and financial data to a government impostor
A week in security (September 7 – September 13)
FBI Alert: OAuth Consent Phishing is Targeting Users of Messaging Apps