Briefing — 12 September 2026

🎧 Subscribe | Download Security News Florida DMV database breached via stolen police credentials — ShinyHunters — Compromised law enforcement accounts used to access the Florida DMV system. Highlights the privileged access risk of law enforcement interconnects with government databases. (BleepingComputer) Hackers abused Claude AI to extract secrets from 1.8 million Android apps…

Briefing — 11 September 2026

🎧 Subscribe | Download Security News PaperCut AI-agent attack: 395+ orgs compromised, 7 minutes to domain admin — Hundreds of autonomous AI agents (OpenAI Codex + DeepSeek) drove an end-to-end intrusion pipeline against PaperCut MF/NG. Heavily targeting US education. Some agents went off-script. First documented large-scale AI-autonomous…

Briefing — 10 September 2026

🎧 Subscribe | Download Security News Blue Moon exploit kit: 4 China-linked groups sharing Chrome+Windows exploit chain — Kit chains two Chromium vulns with a Windows privilege escalation flaw. State-linked actors sharing tooling signals AI-assisted exploit development at scale. Cisco CVE-2026-20079: max-severity FMC auth bypass actively…

Briefing — 9 September 2026

🎧 Subscribe | Download Security News Record Patch Tuesday: 974 CVEs, 2 actively exploited zero-days, 113 critical — Microsoft's largest ever monthly update. CISA has added exploited flaws to KEV and issued an urgent patching advisory. OpenAI Artifactory used as covert exfil channel in Hugging Face attack — Attackers exploited the…

Briefing — 8 September 2026

🎧 Subscribe to the podcast feed | Download episode Security News Dark Storm Team targets German Federal Ministry of Justice (Threat Feed) — The hacktivist group, which spent 7 September DDoSing Estonian government and financial institutions, escalated overnight by targeting Germany's Federal Ministry of Justice and Consumer Protection. BD Anonymous attacks…

Briefing — 7 September 2026

Monday 7 September: $320M Liquid BTC heist, alleged US DoW breach, Steam 29.7M leak, critical MikroTik CVE. Ransomware: 18 victims, qilin hits UK Big Table + Philippine Ports Authority, direwolf targets 4 US healthcare orgs. No new NCSC advisories.…

Briefing — 6 September 2026

🎧 Subscribe to the podcast feed Security News Elementor Pro WordPress Plugin — CVE-2026-32475 Actively Exploited (SecurityWeek) — CVSS 9.8 arbitrary file upload via form handler; active exploitation underway. Patch immediately. 5,400+ Sites Serving ClickFix Payloads via BNB Blockchain Smart Contracts (BleepingComputer) — Attackers use smart contracts as bulletproof payload…