Latest stories — Page 3

Illustration: a large government server room with rows of ageing rack-mounted equipment
Policy & Regulation

Australia Orders Federal Agencies to Audit Old Tech After AI Agent Exploited Medicare Systems

A government-wide stocktake of ageing technology is now mandatory for all 194 Australian federal entities, after an AI-assisted attack exposed how outdated systems make government networks easier to breach.

3 min read
Illustration: A glowing gaming controller resting on a wooden desk beside a small pair of child-sized headphones
Policy & Regulation

Australia Calls Out Steam, Roblox, Fortnite and Minecraft Over Child Safety Failures

A new government report finds the four biggest gaming platforms leave children exposed to predators and harmful content, with Steam singled out for the weakest protections of all.

4 min read
Illustration for the story: Fortinet FortiMail Has a Critical Zero-Day Being Exploited and No Patch Yet
Vulnerabilities

Fortinet FortiMail Has a Critical Zero-Day Being Exploited and No Patch Yet

A vulnerability scored 9.8 out of 10 in Fortinet FortiMail lets attackers write files to affected servers without logging in. Fixes are not out yet. US federal agencies had until 4 October 2026 to apply workarounds.

3 min read
Illustration: a dimly lit interrogation room with an empty metal chair under a hanging ceiling lamp
Threat Intelligence

Jordan Detains Alleged ShinyHunters Member 'Rey' in FBI-Linked Operation

A suspect tied to the prolific extortion crew is reportedly cooperating with U.S. investigators after a September arrest.

3 min read
Illustration: a dim office desk at night, a laptop open showing a blurred generic blue corporate login form
Threat Intelligence

China-linked hackers posed as Anthropic staff to phish U.S. AI policy experts

A group tracked as TA419 ran fake-login pages that could capture passwords and the one-time codes meant to stop them.

4 min read
Illustration: Exterior of a modern hospital building at dusk
Ransomware

Ransomware Group Wallstreet Claims Attack on St. Francis Healthcare Systems of Hawaii

A criminal ransomware group has listed a century-old Catholic nonprofit hospital network on its dark-web claims site. The organisation has not confirmed any incident, and the claim remains unverified.

3 min read
Illustration: A large warehouse interior filled with rows of natural stone slabs in various colors and textures
Ransomware

Ransomware Group The Gentlemen Claims Attack on Gerrity Stone

A Massachusetts stone fabrication company has been listed on a dark-web extortion site. The claim is unverified, but the group behind it has been active since at least June.

3 min read
A dimly lit server room with rows of blinking rack-mounted servers, a faint red glow emanating from indicator lights, condensation on a glass panel in the foreg
Ransomware

Qilin Ransomware Group Claims Attack on US Lender Genesis Credit Management

The criminal group has listed the Texas-based financial services firm on its dark-web pressure site. No breach has been confirmed, and the claim has not been independently verified.

3 min read
Illustration: a dark server rack in a dim data centre
Vulnerabilities

Kiteworks patches critical flaw in email gateway that let attackers seize root control

A chain of three bugs in the company's Email Protection Gateway handed unauthenticated outsiders a path to full appliance takeover. The fix is in version 9.4.1.

4 min read
Illustration: an empty, dimly lit government records room, rows of locked gray filing cabinets receding into shadow
Breaches

Pentagon tells 3 million military personnel their records were stolen in nine-month breach

The Defense Manpower Data Center says attackers sat in its file-sharing systems from October 2025 to July 2026 before anyone noticed.

4 min read
Illustration: a dim server room with rows of blue indicator lights, one rack door hanging ajar
Ransomware

Warlock keeps hitting SharePoint servers across Latin America and Iberia, Symantec says

The ransomware group is still breaking into Microsoft SharePoint servers in Portuguese and Spanish-speaking countries, hitting hospitals, government offices and schools.

3 min read
A server rack in a dimly lit data center, its indicator lights casting a faint blue glow across rows of black hardware
Vulnerabilities

An AI Found a Critical Security Hole in BeyondTrust. Hackers Were Inside It Four Days Later.

A new Google report shows how artificial intelligence is speeding up both the discovery of software flaws and their exploitation. One flaw found by an AI tool had attackers knocking within days of going public.

3 min read
Illustration: A physical rack-mounted network firewall appliance with blinking status LEDs in a dimly lit server room
Vulnerabilities

WatchGuard Patches Three Critical Flaws That Could Hand Attackers Full Control of Firewalls and Access Points

A clutch of serious vulnerabilities in WatchGuard's networking gear could hand attackers root-level control of firewalls and wireless access points. Patches are out, but the window between disclosure and update is where organisations get hurt.

3 min read
Illustration: a government operations desk at night, glowing amber monitor showing abstract vulnerability catalogue rows
Vulnerabilities

CISA Gives Federal Agencies Three Days to Patch Two Zammad Flaws Being Exploited Now

Two critical bugs in the Zammad helpdesk platform can be chained for root-level takeover. CISA added both to the Known Exploited Vulnerabilities catalogue on 2 October 2026, with a patch deadline of 5 October.

3 min read
Illustration: a dim government office at night in an East Asian capital
Threat Intelligence

China-Linked Spies Hide Inside Outlook and OneDrive to Steal Asian Government Secrets

A newly documented backdoor called Antino is sitting on at least 16 government networks across eight Asian countries, and it talks to its handlers through legitimate Microsoft 365 traffic.

3 min read
Illustration: a dimly lit server rack in a corporate data room
Vulnerabilities

GitLab patches a near-perfect-score AI Gateway bug that lets logged-in users run commands on the server

CVE-2026-90970 scores 9.9 out of 10 and lets any authenticated user with Duo Agent Platform access escape a prompt template and execute code. Only self-hosted gateways need the fix.

3 min read
Illustration: the interior of a server rack inside a dimly lit data centre
Threat Intelligence

Hackers Built Malware That Perfectly Mimics Korean and Taiwanese Email Security Boxes

Rapid7 has documented a set of Linux implants so well-tailored to their target appliances that they impersonate specific product files, ports, and processes used in real telecom environments across South Korea and Taiwan.

5 min read
Illustration: a large industrial server room at night
Policy & Regulation

The EU's New Cyber Security Law Gives Manufacturers 24 Hours to Report Flaws. Almost No One Is Ready.

The Cyber Resilience Act, which took effect in September, requires companies to report actively exploited vulnerabilities within one day. Security experts say the clock will break every manual process most vendors currently rely on.

4 min read
Illustration: an empty public school hallway in low morning light, rows of lockers lining the walls
Ransomware

Kairos Ransomware Group Claims Attack on Vermont School District, Alleges Student Medical Records Stolen

The Kairos ransomware group has listed Slate Valley Unified Union School District on its dark-web claims page, alleging it seized hundreds of gigabytes of data including personal and medical records. The district has not confirmed any incident.

3 min read
Illustration: a heavy industrial CNC milling machine on a factory floor at night
Ransomware

Ransomware Group Krybit Claims Attack on Disk Precision Group

The group listed the US-based manufacturer on its dark-web site on 1 October 2026. Disk Precision has not publicly confirmed any incident, and the claim has not been independently verified.

3 min read
A dim, blue-tinted server room at night, rows of blinking rack servers casting faint light on the floor, yellow police crime-scene tape stretched across the ent
Ransomware

A 16-Year-Old Is Suspected of Running KillSec, One of Ransomware's Busiest Criminal Groups

European police arrested three people and seized servers after a year-long investigation into roughly 1,000 cyberattacks. The alleged ringleader is a Romanian teenager.

3 min read
© 2026 Threat Vectr