News & Map
1,187 items on Cyberstrategy — showing 241–280 · 1,075 without coordinates · Across the network · RSS
The AI hacking apocalypse is not inevitable
While large language models present real risks to society, experts say they can be tested and largely controlled using w...
No location · Sep 17, 2026 · WedgetailChina's FamousSparrow APT Spies on US Politics in Latin America
Amid the US and China's fight for eco-colonial influence in Latin America, a stealthy backdoor has taken flight.
No location · Sep 17, 2026 · WedgetailCritical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root
A critical vulnerability in Check Point's Security Management and Log Servers could allow an attacker without login cred...
No location · Sep 17, 2026 · WedgetailThreatsDay: Self-Rewriting Agents, 800+ Flaws Patched, Insider SIM Swaps and 22 More New Stories
Attackers keep finding new keys. The funny part is that defenders keep inventing where to store them. This week, those k...
No location · Sep 17, 2026 · WedgetailImproving email security outcomes with real-world Microsoft Defender insights
The latest email security benchmarking reports show strong Microsoft Defender performance across pre-delivery and post-d...
No location · Sep 17, 2026 · WedgetailCritical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files
Malicious code running inside a Docker Sandboxes virtual machine on macOS could escape the project directory shared into...
No location · Sep 17, 2026 · WedgetailFamousSparrow Swaps SparrowDoor For New SparroWocky Backdoor
ESET said FamousSparrow has replaced SparrowDoor with SparroWocky
No location · Sep 17, 2026 · WedgetailIran-Linked Handala Hack Tied to HEAVYGRAM Telegram Backdoor That Can Steal Passwords
The Iran-linked "hacktivist" persona known as Handala Hack has been attributed to a Telegram-based surveillance backdoor...
No location · Sep 17, 2026 · WedgetailCISA Urges Critical Infrastructure to Plant Decoys Inside Networks
CISA released guidance on using cyber decoys to detect & disrupt malicious activity inside networks
No location · Sep 17, 2026 · WedgetailAuthorities seize popular, long-running DDoS-for-hire service domains
Cybercriminals used NightmareStresser to launch hundreds of thousands of DDoS attacks since at least 2022. Threat actors...
No location · Sep 17, 2026 · WedgetailThe Odyssey and Trojans again: MovieReaper attacks users in multiple countries through compromised torrents
Kaspersky experts have discovered a new MovieReaper campaign. The multi-stage Trojan spreads through movie torrents, suc...
No location · Sep 17, 2026 · WedgetailNew Chinese-Made ‘RatHat’ Android Malware Leverages AI to Steal Financial Data
Researchers at Zimperium have uncovered a new Android malware strain, dubbed RatHat, with spyware and backdoor capabilit...
China · Sep 17, 2026 · WedgetailCritical Unbound DNSSEC Validator Flaw Could Allow RCE via a Malicious DNS Zone
Every release of the Unbound DNS resolver before 1.26.1 has a critical heap overflow in its DNSSEC validator, maintainer...
No location · Sep 17, 2026 · WedgetailCyber Essentials Has Record Year but Takeup Remains Low
New government figures reveal a 20% annual increase in certifications
United Kingdom · Sep 17, 2026 · WedgetailCisco Warns of Active Exploitation of Critical ISE Flaw
Cisco urged ISE customers to apply a software update, as well as check for signs of exploitation
No location · Sep 17, 2026 · WedgetailChina-Aligned FamousSparrow Deploys SparroWocky Backdoor Across Latin America
The China-aligned state-sponsored threat actor known as FamousSparrow has been observed deploying a previously unreporte...
China · Sep 17, 2026 · WedgetailRansomware incidents in Japan in the first half of 2026: Investigation of The Gentlemen’s infrastructure and evidence of Qilin's AI use
Ransomware incidents in Japan rose 4.7% year over year. The Gentlemen was the most active group, with leak-site listings...
Japan · Sep 17, 2026 · WedgetailAmerica’s cyber strategy overlooks the infrastructure that actually keeps the military moving
Ports, railroads, and utilities keep the military operational. They're all vulnerable to Iranian cyberattacks. The post ...
Washington, United States · Sep 17, 2026 · WedgetailOpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized Uploads
OpenAI on Wednesday disclosed six new instances of "unexpected or concerning model behavior" that took place over the pa...
San Francisco, United States · Sep 17, 2026 · WedgetailBeware the SparroWock: The backdoor that bites, the commands that catch
ESET researchers document SparroWocky, the new flagship backdoor of the FamousSparrow APT group
Washington, United States · Sep 17, 2026 · WedgetailAI Agent Carries Out Multi-Stage Data Theft Attack
Spanish data protection agency AEPD reveals the country’s first AI-powered data breach
Madrid, Spain · Sep 17, 2026 · WedgetailBIND 9 Update Fixes 14 Flaws, Including an Unauthenticated Crash Over DNS-over-HTTPS
The Internet Systems Consortium (ISC) has released BIND 9.20.29 and 9.21.26 to fix fourteen security flaws it disclosed ...
Cambridge, United States · Sep 17, 2026 · WedgetailGyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata Records
A security breach at Gyazo, Helpfeel's image-sharing service, exposed about 23.62 million user records, including email ...
Tokyo, Japan · Sep 17, 2026 · WedgetailCisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks
Cisco has warned of a fresh maximum-severity security flaw impacting Identity Services Engine (ISE) that has come under ...
San Jose, United States · Sep 17, 2026 · WedgetailOn research security, our divisions are the real vulnerability
Scholars named in public for entanglement with a foreign regime, international research collaborations quietly binned, a...
Canberra, Australia · Sep 17, 2026 · WedgetailU.S. Seizes NightmareStresser Domains Linked to Hundreds of Thousands of DDoS Attacks
The U.S. Department of Justice (DoJ) on Tuesday announced the court-authorized seizure of internet domains associated wi...
Washington, United States · Sep 17, 2026 · WedgetailThe Cyber Gap
Executive Summary Over the past decade, China has built a sophisticated hacking apparatus to penetrate the water systems...
Washington, United States · Sep 17, 2026 · WedgetailAI military targeting may move faster than humans can authenticate, critics warn
AI military targeting may move faster than humans can authenticate, critics warned during a Wednesday hearing in Washing...
Washington, D.C. · Sep 16, 2026 · WedgetailThe lesson from Germany: under-reacting to hybrid threats is dangerous
Berlin’s hurried shift to actively defending against hybrid threats shows the danger of cumulative under-reaction to hos...
Germany · Sep 16, 2026 · WedgetailAI Security Spending Jumps as Fear Outpaces Proof of Value
CISOs are not waiting for AI to prove its cybersecurity value before investing in the technology. Is it the right move?
No location · Sep 16, 2026 · WedgetailNonprofit that tracks meteors taken down by "critical blow" from a cyberattack
Group plans to be largely out of commission for several weeks.
No location · Sep 16, 2026 · WedgetailCISA promotes a fresh way to deter cyberattackers: Lie to them
It’s the first guidance from the Cybersecurity and Infrastructure Security Agency on deploying decoys, like honeypots, t...
United States · Sep 16, 2026 · WedgetailWhen scanners miss the attack: how Cloudflare Client-Side Security protects storefronts
A modern storefront can look healthy while malicious JavaScript quietly siphons revenue, hijacks clicks, or rewrites ana...
No location · Sep 16, 2026 · WedgetailData Broker Radaris Loses Domains in Privacy Fight
The consumer data broker Radaris.com has long had a reputation for ignoring requests to remove personal information from...
No location · Sep 16, 2026 · WedgetailBragJack Attack Can Turn a Browser's Agentic AI Against It
A new type of attack hijacks the AI assistant built directly into various browsers to access sensitive information, exec...
No location · Sep 16, 2026 · WedgetailAttackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution
A critical security flaw in Issabel Framework, a web-based framework for the open-source unified communications PBX soft...
No location · Sep 16, 2026 · WedgetailThree Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers
Enterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle, Hacking Cat, a...
No location · Sep 16, 2026 · WedgetailAnatomy of an AI-powered hack
Palo Alto Networks revealed to Semafor fresh details about an AI-powered hack over the summer that targeted a European I...
No location · Sep 16, 2026 · WedgetailPHP Webshell Campaign Targets WordPress Through Critical WooCommerce Plugin Bug
Attackers are exploiting a critical flaw in a third-party WooCommerce plugin to upload PHP webshells
No location · Sep 16, 2026 · WedgetailCoast Guard, FBI board US-bound foreign ships in order to probe for cyberattacks
The agencies issued a joint statement saying the “joint security boardings” came in response to “indications that the ne...
No location · Sep 16, 2026 · Wedgetail1,075 of 1,187 items have no coordinates and so are listed but not mapped.