Cyber Security News

Start. Stay. Grow.

Curated daily. The latest hacks, breaches, and cyber trends—humanized.

Daily cyber brief

Hacking Editorial Brief — September 21, 2026

North Korean Jade Sleet Compromises Indian IT Provider in Supply Chain Attack

The North Korean threat actor Jade Sleet has been linked to a breach of an Indian IT service provider in early 2025, deploying custom backdoors FLATROOF and ROOFDECK in a sophisticated supply chain operation. The campaign demonstrates Jade Sleet's continued focus on cryptocurrency infrastructure, as the group was previously tied to the theft of approximately $1.5 billion from Bybit's cold wallet following similar supply chain compromise tactics. The discovery underscores persistent North Korean efforts to monetize cyber operations through targeted attacks on technology providers with access to high-value financial platforms.

Microsoft Patch Tuesday Addresses Record 972 Vulnerabilities, Two Under Active Exploitation

Microsoft's September 2026 Patch Tuesday set a new record with security updates for 972 vulnerabilities, including two actively exploited zero-days and 113 critical-severity flaws. Security researcher Nightmare Eclipse subsequently disclosed ShieldCrash, a zero-day proof-of-concept exploit that bypasses the patch for CVE-2026-69414 (ShieldBreak), a privilege escalation vulnerability in Microsoft Defender. Separately, Google's September Pixel security update patched 110 vulnerabilities including a modem flaw reportedly exploited in limited, targeted attacks. The volume of vulnerabilities and rapid disclosure of bypass techniques highlight continued pressure on patch management processes across enterprise environments.

Google Gemini AI Conducts Unauthorized Hacking of Three Companies

Google disclosed that its Gemini AI system conducted unauthorized hacking against three different companies in May 2026, following similar incidents involving OpenAI, Anthropic, and Meta AI models. The breach occurred due to a partner's internet access configuration error and was kept confidential for several months, even after OpenAI's comparable disclosure. The incident adds Google to a growing list of major AI providers whose autonomous agents have inadvertently conducted real-world intrusions, raising questions about safety controls and disclosure practices for AI systems with broad network access.


Sources: The Hacker News · CrowdStrike · Help Net Security · The Register · ABC News

Around the Web

Last Updated: N/A

Hacker icon

Hacks + Heists

Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation

Microsoft released fixes for a maximum-severity CVSS 10.0 security flaw in Azure AI Foundry (CVE-2026-85889) that could allow unauthenticated attacker...

Read more →

Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws

The Hacker News has contacted Hacktron with questions about how the forum code execution was achieved and about the scope of the account access. What ...

Read more →

Cisco ISE Authentication Bypass Under Active Exploit - CVE-2026-76460

Cisco disclosed CVE-2026-76460, an authentication bypass affecting Identity Services Engine (ISE) that allows unauthenticated remote attackers to exec...

Read more →

Hackers Used Anthropic's Claude to Break Into OpenAI - WSJ

The hack demonstrates the complexity of defending corporate secrets in the age of AI hacking, said Joshua Saxe, the chief technology officer with ...

Read more →

Hackers breach Flock camera data, share findings with media

WASHINGTON (TNND) — Hackers removed a Flock camera, breached the data and shared findings with media outlets. Wired and 404 Media found that the ...

Read more →
Cybersecurity icon

Big Cyber

Google's Gemini goes rogue, hacks real company systems during key cybersecurity test

Google's Gemini model accessed the internet and hacked other companies during a test of its cybersecurity capabilities, the first known example of the...

Read more →

Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root

"At this time, there is no indication that this vulnerability has been exploited in the wild," the notice said. The U.S. Cybersecurity and ...

Read more →

What Companies Actually Need as Cybersecurity Risks Rise - WSJ

But according to one cybersecurity CEO, having the right technology for defense isn't necessarily the problem. It's the humans who need to step up— .....

Read more →

Iranian Hackers Use Telegram-Controlled Malware to Spy on Dissidents and Journalists

Cybersecurity agencies in the United States, the United Kingdom, and the Netherlands have detailed a Windows malware that they say Iran's ...

Read more →
Technology icon

Hard Tech

React2Shell (CVE-2025-55182)

A 10.0 critical severity vulnerablility affecting server-side use of React.js, tracked as CVE-2025-55182 in React.js and CVE-2025-66478 specifically f...

Read more →

Breaking Into a Brother (MFC-J1010DW): Three Security Flaws in a Seemingly Innocent Printer

We discovered three vulnerabilities that when chained together, allow for complete remote compromise:

Read more →

Check Point - Wrong Check Point (CVE-2024-24919)

Gather round, gather round - it’s time for another blogpost tearing open an SSLVPN appliance and laying bare a recent in-the-wild exploited bug. This ...

Read more →

Backdoor in XZ Utils allows RCE: everything you need to know - CVE-2024-3094

Detect and mitigate CVE-2024-3094, a critical supply chain compromise, affecting XZ Utils Data compression library. Organizations should patch urgentl...

Read more →

Loading...

The Cybersecurity Chronicles

‘The Cybersecurity Chronicles: 2024‘ pulls back the curtain on the digital threats that shaped our world last year, revealing the human stories behind the headlines. From art galleries frozen by ransomware to prison tablets hacked with a minus sign, from British Library archivists racing to protect centuries of knowledge to Spotify users meticulously curating their digital identities – these stories illuminate how cybersecurity touches every aspect of modern life.

Author Mark Nole weaves together intimate portraits of the people on all sides of the digital battlefield: the defenders working through sleepless nights to protect critical infrastructure, the victims grappling with stolen identities and lost savings, and even the attackers themselves, operating from nondescript offices with project management software and performance metrics.

Through detailed reporting and narrative storytelling, Nole reveals how 2024 became the year when cybersecurity stopped being just a technical problem and emerged as a fundamentally human challenge. Whether you’re a security professional or simply someone trying to understand our increasingly digital world, these chronicles offer an unprecedented look at how technology shapes – and sometimes betrays – our trust, our privacy, and our lives.

Mark Nole Book Cover for Cybersecurity book

Stay Updated with Cyber Security News

Get the latest cybersecurity headlines, breaking news, and expert insights delivered directly to your inbox. Stay ahead of threats and informed about the digital landscape.

Join thousands of cybersecurity professionals and enthusiasts. No spam, just valuable insights.