Security Affairs

Security Affairs Read, think, share … Security is everyone’s responsibility

  • Japanese railway operators Keio Corporation and Tokyo Metro disclose security breaches
    by Pierluigi Paganini on September 29, 2026 at 8:54 pm

    Keio, a major Japanese railway operator, was hit by ransomware, disrupting business systems and forcing the company to shut down its network. Keio Corporation, one of Japan’s major private railway operators, was hit by a ransomware attack over the weekend, disrupting some of its business systems. The company detected a system failure early Saturday and

  • Three Million Affected in Pentagon Personnel Agency Data Breach
    by Pierluigi Paganini on September 29, 2026 at 2:09 pm

    Pentagon personnel agency breach exposed data of 3 million people after attackers accessed a file-sharing server for about nine months. The U.S. Defense Manpower Data Center (DMDC), which maintains personnel records for the Department of Defense, is notifying people that their personal information was exposed in a data breach. According to the agency, unauthorized users

  • Apple Patches CoreGraphics Zero-Day Linked to Sophisticated Targeted Attacks
    by Pierluigi Paganini on September 29, 2026 at 1:28 pm

    Apple patched zero-day CVE-2026-86950 in CoreGraphics, exploited in sophisticated targeted attacks against specific iOS users. Apple has released security updates for iOS, iPadOS and macOS to fix a zero-day vulnerability, tracked as CVE-2026-86950, in CoreGraphics that may have been exploited in attacks against specific individuals. The flaw is an out-of-bounds write that can lead to

  • 24-Year-Old Arrested in Dutch Investigation Into ShinyHunters
    by Pierluigi Paganini on September 29, 2026 at 7:30 am

    Dutch police confirm the arrest of a 24-year-old Amsterdam man as part of an investigation into the ShinyHunters hacking group. Dutch police confirmed this week that a 24-year-old man from Amsterdam was arrested earlier this month as part of an investigation into the cybercrime group ShinyHunters. The suspect appears before Rotterdam District Court today, September

  • GPT-6 Astra and the Supply Chain Attack It Wasn’t Asked to Launch
    by Pierluigi Paganini on September 29, 2026 at 6:27 am

    UK AISI finds GPT-6 Astra launches unsanctioned supply-chain attacks in simulations far more than earlier OpenAI models, even when told not to. The UK’s AI Security Institute tested GPT-6 Astra before its public release, and the results, published September 28, aren’t subtle. When given a routine cybersecurity evaluation, the model went off script and attacked

  • AI Accounts Are Becoming the New Target for Infostealers
    by Pierluigi Paganini on September 28, 2026 at 8:14 pm

    Infostealers are exposing corporate AI accounts, sessions and API keys, giving attackers access to sensitive data, compute and connected systems. SOCRadar analyzed stealer log data from the last 90 days and found 482 companies with exposed AI accounts and credentials. Of those, 295 appeared in active logs during that period, suggesting the exposure is recent

  • Nearly 400,000 Medicaid Beneficiaries Caught in Medicaid and DC Healthcare Alliance Data Exposure
    by Pierluigi Paganini on September 28, 2026 at 2:08 pm

    Nearly 400,000 DC Medicaid and Healthcare Alliance beneficiaries may have had personal data exposed through reports published on a public website. The District of Columbia Department of Health Care Finance is notifying nearly 400,000 Medicaid and DC Healthcare Alliance beneficiaries that their personal information may have been exposed. The incident affects people who enrolled between

  • Storm-3168, Linked to JADEPUFFER, Abused Stolen Azure Identities
    by Pierluigi Paganini on September 28, 2026 at 10:46 am

    Microsoft details Storm-3168, the JADEPUFFER-linked actor that used stolen service principals to delete Azure storage in minutes and harvest keys. Microsoft just published the first detailed look at what JADEPUFFER does inside Azure. Sysdig first spotted the group’s activity in July 2026 and called it the first documented agentic ransomware operation. Microsoft tracks the same

  • U.S. CISA adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog
    by Pierluigi Paganini on September 28, 2026 at 8:55 am

    U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: CVE-2026-88771 (CVSS score: 9.5) is a remote code execution vulnerability caused by improper input validation that could allow an unauthenticated remote

  • Roundcube SQL injection CVE-2026-48842 is now being exploited in the wild
    by Pierluigi Paganini on September 28, 2026 at 5:50 am

    Roundcube SQL injection CVE-2026-48842 is now being exploited in the wild, putting unpatched webmail servers at risk of database compromise. A Roundcube Webmail vulnerability, tracked as CVE-2026-48842 (CVSS score of 8.1) and patched four months ago, is now being exploited in the wild. The Canadian Centre for Cyber Security added the warning to its advisory

Share Websitecyber
We are an ethical website cyber security team and we perform security assessments to protect our clients.