Cyber News

    Dashboard / Cyber News

    Hackers Use Claude AI Agents to Automate Cyberattacks, Develop 0-Days and Evade Detection
    Gu
    Guru Baran-about 3 hours ago

    Hackers Use Claude AI Agents to Automate Cyberattacks, Develop 0-Days and Evade Detection

    Anthropic’s Threat Intelligence team has disclosed a sweeping new report detailing how state-sponsored espionage groups, financially motivated cybercriminals, and lone hacktivists weaponized its Claude AI models to automate entire cyberattack chains, generate zero-day exploits, and dynamically rewrite malware to slip past security defenses. The findings, covering activity disrupted between December 2025 and August 2026, mark […]

    The post Hackers Use Claude AI Agents to Automate Cyberattacks, Develop 0-Days and Evade Detection appeared first on Cyber Security News.

    Imperva Customers Protected Against StyleSmuggler (CVE-2026-75650) in Adobe Commerce and Magento Open Source
    Ga
    Gabi Sharadin-about 12 hours ago

    Imperva Customers Protected Against StyleSmuggler (CVE-2026-75650) in Adobe Commerce and Magento Open Source

    TL;DR: CVE-2026-75650, dubbed StyleSmuggler, is a critical vulnerability affecting Adobe Commerce and Magento Open Source. The vulnerability allows an unauthenticated attacker to inject malicious PHP code into Magento’s template system and achieve remote code execution. Adobe assigned the vulnerability a CVSS score of 10.0 and released an emergency hotfix after exploitation was observed in the wild. Imperva Cloud WAF and On-Prem WAF […]

    The post Imperva Customers Protected Against StyleSmuggler (CVE-2026-75650) in Adobe Commerce and Magento Open Source appeared first on Blog.

    CISA Warns of Citrix NetScaler Authentication Bypass Vulnerability Exploited in Attacks
    Ab
    Abinaya-about 17 hours ago

    CISA Warns of Citrix NetScaler Authentication Bypass Vulnerability Exploited in Attacks

    CISA added a critical Citrix NetScaler authentication bypass flaw (CVE-2026-19490) to its Known Exploited Vulnerabilities catalog after observing in-the-wild attacks targeting the issue. Federal civilian agencies must apply vendor mitigations by September 12, 2026. CVE-2026-19490 affects Citrix NetScaler ADC and NetScaler Gateway appliances configured as an Authentication, Authorization and Auditing virtual server or as a […]

    The post CISA Warns of Citrix NetScaler Authentication Bypass Vulnerability Exploited in Attacks appeared first on Cyber Security News.

    Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks
    in
    [email protected] (The Hacker News)-about 19 hours ago

    Gigabud Creates Android Work Profiles to Hide From Banking App Malware Checks

    The Gigabud banking trojan now installs a second Android app that creates a work profile on an infected phone and drops a tampered banking app inside it, security firm Group-IB said in a report published on September 9. A work profile is a separate space that Android typically reserves for employer apps, and what's inside it is kept separate from everything in the personal space. That
    CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline
    in
    [email protected] (The Hacker News)-about 20 hours ago

    CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline

    The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added three flaws, each impacting Cisco, Citrix, and Fortinet, to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the patches by September 12, 2026. The vulnerabilities are listed below - CVE-2026-20079 (CVSS score: 10.0) - An authentication
    Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example "sk-1234" Admin Key
    in
    [email protected] (The Hacker News)-about 23 hours ago

    Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example "sk-1234" Admin Key

    Nearly one in ten of the internet-facing LiteLLM servers that Wiz Research scanned in February accepted sk-1234, the example admin key in LiteLLM's own setup guide. LiteLLM is an open-source AI gateway, the software a company puts between its applications and the model providers it pays for. That key is the gateway's administrator credential. Anyone who holds it can read every
    AdaptHealth confirms 4.1 million people exposed in July cyberattack
    Bi
    Bill Toulas-1 day ago

    AdaptHealth confirms 4.1 million people exposed in July cyberattack

    Healthcare company AdaptHealth has confirmed that data of 4.1 million people was exposed in a cyberattack discovered in July that was attributed to the ShinyHunters threat group. [...]