Autonomous AI agents tried to hack US, Canadian government websites post, oktober 1, 2026oktober 2, 2026 Autonomous AI agents using aggressive strategies attempted to hack U.S. and Canadian government websites to find school and divorce statistics. The failed breach attempts targeted a website under the U.S. Department of Education and Library and Archives Canada. However, the collected data shows no evidence of access to non-public information. Continue Reading
Dutch Police Arrest 24-Year-Old Amsterdam Man in ShinyHunters Investigation auto_post, september 30, 2026 De aanhouding van een 24-jarige man uit Amsterdam in het onderzoek naar ShinyHunters is een belangrijk signaal: opsporing werkt, maar dit is geen eindpunt. Naast vervolging is er stevig werk nodig bij bedrijven en overheden om gegevensstroom en toegang te verkleinen—dat betekent minder verzamelen van persoonsgegevens, striktere toegangscontroles en security… Continue Reading
Amsterdammer opgepakt in onderzoek naar hackerscollectief ShinyHunters post, september 29, 2026september 30, 2026 Een man van 24 uit Amsterdam is opgepakt voor betrokkenheid bij ShinyHunters, zegt de politie. Dat hackerscollectief is onder meer bekend van de grootschalige aanval op Odido eerder dit jaar, waarbij gegevens van miljoenen Nederlanders werden gestolen. De Amsterdammer moet morgen voor de rechtbank verschijnen in Rotterdam. Bronnen van de… Continue Reading
Considerations for Critical Infrastructure Operators Working With Third-Party ICS Integrators auto_post, september 25, 2026 De gezamenlijke waarschuwing van CISA en de FBI en het gemelde datalek uit maart–april 2025 laten zien dat het probleem niet langer hypothetisch is. Conclusie: eigenaren en operators van kritieke infrastructuur moeten directe maatregelen nemen — vastleggen welke data integratoren mogen zien, toegang beperken volgens het 'least privilege'-principe, en zorgen… Continue Reading
AI Agents Are Rewriting the Rules of Lateral Movement post, september 22, 2026september 23, 2026 Security teams have spent decades asking whether an identity has too much access. AI agents raise a harder question: how can we determine which paths an autonomous system can discover, given the access it already has? A person may try several ways to complete a task. A deterministic application follows… Continue Reading
An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation auto_post, september 22, 2026 Using autonomous AI agents, an attacker breached an enterprise network in a matter of hours. Understand how to address and defend against agentic attacks. The post An AI-Assisted Cyber Attack: Inside a Unit 42 Investigation appeared first on Unit 42. Continue Reading
Meta Sued Over Training Data for Its AI and Face-Recognition Systems auto_post, september 22, 2026 The proposed class action alleges Meta illegally harvested people’s Facebook and Instagram photos to train its AI image-generation models and to build its unreleased “NameTag” face recognition feature. Continue Reading
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia auto_post, september 21, 2026september 23, 2026 Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were arrested in connection with a “sophisticated cybercrime syndicate that allegedly created malicious open-source software to rob thousands of global businesses.” The AFP did not name the defendants, but KrebsOnSecurity learned the 21-year-old suspect’s real identity in June, and has been communicating with him ever since. This story includes interviews with TeamPCP’s self-described spokesperson, and examines clues left behind by the TeamPCP leader that likely led to his undoing. Continue Reading
Nederlandse energiebedrijven zetten zich schrap post, september 19, 2026september 21, 2026 Bewapende beveiligers en dronenetten om de energie-infrastructuur te beschermen. Vandaag op de voorpagina van Het Financieele Dagblad schrijven Eva Rooijers en ik over hoe Nederlandse energiebedrijven zich schrap zetten voor fysieke aanvallen. Hoogspanningsstations, energiecentrales en andere vitale infrastructuur zijn makkelijke doelwitten; de fysieke beveiliging loopt ver achter. Terwijl de dreiging… Continue Reading
Using Cyber Decoys to Strengthen Detection and Response post, september 16, 2026september 21, 2026 CISA developed this guidance to help defensive teams at varying levels of cybersecurity maturity plan and implement cyber decoy strategies that strengthen their detection and response capabilities. Many organizations struggle to detect adversaries who use legitimate credentials, native tools, and living off the land (LOTL) techniques to conduct discovery, move… Continue Reading