{"updated":1789176182312,"items":[{"title":"Threat Actor Generates 1M Personalized Fraud Emails in 3 Days","summary":"Cybercriminals behind malicious email campaigns no longer have to compromise volume for credibility, or vice versa, thanks to AI.","cat":"research","ts":1789154468000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/1m-personalized-fraud-emails-3-days"},{"title":"CISA Calls for More Guidance, Less Spin, as Cyber Outages Escalate","summary":"A new joint government advisory signals a regulatory shift, pressing organizations to adopt more transparent breach notification and incident response protocols.","cat":"breach","ts":1789152243000,"source":"Dark Reading","link":"https://www.darkreading.com/cyber-risk/cisa-calls-for-more-guidance-less-spin-as-cyber-outages-escalate"},{"title":"Why AI Is So Good at Scamming Humans","summary":"Fred Heiding of Menlo Park Intelligence talks with the Dark Reading News Desk about his research on frontier models, and their ability to influence human behavior and create emotional dependency.","cat":"research","ts":1789150446000,"source":"Dark Reading","link":"https://www.darkreading.com/cyber-risk/ai-scamming-humans"},{"title":"AI Governance Can't Wait","summary":"Adversaries can manipulate AI defensive reasoning to silently compromise target networks.","cat":"research","ts":1789146656000,"source":"Dark Reading","link":"https://www.darkreading.com/cyber-risk/ai-governance-cannot-wait"},{"title":"Papercut AI Swarm Attack Heralds Changes for Cyber Kill Chain","summary":"From creating lab environments for staging and testing agentic attacks to reconnaissance to lateral movement and exfiltration, the most innovative attackers are widely incorporating AI.","cat":"research","ts":1789141707000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/papercut-ai-swarm-attack-cyber-kill-chain"},{"title":"Indonesia Hit by Android Banking App-Cloning Campaign","summary":"The GoldFactory threat group exploits the Android Work Profile feature to deliver the Gigabud Trojan, while Mantax Otax spreads separately.","cat":"vulnerability","ts":1789088400000,"source":"Dark Reading","link":"https://www.darkreading.com/mobile-security/indonesia-android-banking-app-cloning-campaign"},{"title":"Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data","summary":"Threat actors are leveraging Microsoft's Graph API to identify lucrative targets, then passing their access to extortion groups like ShinyHunters.","cat":"ransomware","ts":1789072563000,"source":"Dark Reading","link":"https://www.darkreading.com/threat-intelligence/voice-callers-exploit-byod-microsoft-365-corporate-data"},{"title":"Nightmare-Eclipse Strikes Again With 'ShieldCrash' Windows Exploit","summary":"The disgruntled researcher continued their vendetta against Microsoft by publishing yet another zero-day exploit for Windows Defender.","cat":"vulnerability","ts":1789054152000,"source":"Dark Reading","link":"https://www.darkreading.com/vulnerabilities-threats/nightmare-eclipse-strikes-again-shieldcrash-windows-exploit"},{"title":"EU Cyber Resilience Act to Enforce New Reporting Requirements","summary":"Starting Friday, European organizations will have just 24 hours to notify the EU government any time they discover serious product security incidents.","cat":"research","ts":1789023600000,"source":"Dark Reading","link":"https://www.darkreading.com/cybersecurity-operations/eu-cyber-resilience-act-reporting-requirements"},{"title":"Mythos Vulnerability Firehose Hits a Human Bottleneck","summary":"An analysis of Project Glasswing findings shows only a fraction of the bugs it has discovered have reached disclosure, and an even smaller number have been fixed.","cat":"vulnerability","ts":1788988795000,"source":"Dark Reading","link":"https://www.darkreading.com/application-security/mythos-vulnerability-firehose-hits-human-bottleneck"},{"title":"US Government Accuses Chinese AI Firms of Distilling Frontier Models","summary":"US agencies claim Chinese companies covertly extracted billions of tokens from OpenAI, Anthropic, Google Gemini, and SpaceX's Grok to reduce development costs.","cat":"research","ts":1788983270000,"source":"Dark Reading","link":"https://www.darkreading.com/application-security/us-government-chinese-ai-firms-distilling-frontier-models"},{"title":"Identity-Based AI Attack Threatens Security of Enterprise Data","summary":"Workflow identity hijacking can bypass standard security controls and hijack an organization's data by sending a basic request through an unauthenticated entry point.","cat":"research","ts":1788964784000,"source":"Dark Reading","link":"https://www.darkreading.com/threat-intelligence/identity-based-ai-attack-security-enterprise-data"},{"title":"Microsoft Plugs Nearly 1,000 Security Holes","summary":"Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial inte","cat":"vulnerability","ts":1788903862000,"source":"Krebs on Security","link":"https://krebsonsecurity.com/2026/09/microsoft-plugs-nearly-1000-security-holes/"},{"title":"Patch Tuesday Sets Another Record With 974 CVEs","summary":"Attackers are actively exploiting two of the vulnerabilities, and another 58 are more likely to be exploited, according to Microsoft.","cat":"vulnerability","ts":1788902762000,"source":"Dark Reading","link":"https://www.darkreading.com/vulnerabilities-threats/patch-tuesday-another-record-974-cves"},{"title":"Attackers Use Multi-Hop Google Redirects for Phishing Campaign","summary":"Threat actors are abusing multiple Google services to evade detection, ultimately harvesting credentials or installing ScreenConnect remote access.","cat":"research","ts":1788901426000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/attackers-multi-hop-google-redirects-phishing-campaign"},{"title":"OpenAI Agents Took Over Wiki Site Before Hugging Face Attack","summary":"Researchers and OpenAI disagree on whether an earlier incident involving DseWiki, which the company did not disclose, was a “hack.","cat":"research","ts":1788899775000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/openai-agents-wiki-site-hugging-face-attack"},{"title":"ClickFix Campaigns Abuse Legitimate Services for Persistent Access","summary":"Two separate attacks demonstrate how threat actors are finding new ways to compromise organizations by using the popular social engineering tactic.","cat":"research","ts":1788888337000,"source":"Dark Reading","link":"https://www.darkreading.com/endpoint-security/clickfix-campaigns-legitimate-services-persistent-access"},{"title":"Cybercriminals Hack Brazilian Government Servers to Host Phishing Sites","summary":"A Chinese-language group is compromising government and education sites to create a reverse-proxy network with gambling-themed sites.","cat":"research","ts":1788868800000,"source":"Dark Reading","link":"https://www.darkreading.com/threat-intelligence/cybercriminals-hack-brazilian-government-servers-host-phishing-sites"},{"title":"Companies Have 6 Months to Prepare for Automated Attacks","summary":"Frontier AI models have already demonstrated they can autonomously — and in some cases, inadvertently — conduct end-to-end compromises, but researchers warn the situation will become more urgent very ","cat":"research","ts":1788537451000,"source":"Dark Reading","link":"https://www.darkreading.com/cybersecurity-operations/companies-six-months-prepare-automated-attacks"},{"title":"AI Is Ending the Era of Hidden Vulnerabilities — Are Vendors Ready?","summary":"A tidal wave of bug reports is overwhelming software vendors, exposing secure-by-design failures and creating disclosure bottlenecks.","cat":"vulnerability","ts":1788526800000,"source":"Dark Reading","link":"https://www.darkreading.com/vulnerabilities-threats/ai-ending-era-hidden-vulnerabilities-are-vendors-ready"},{"title":"Insurers Search for Answers to Rein in Rogue AI","summary":"As incidents of unintended harm caused by rogue AI agents mount, CISOs and insurance firms are figuring out how to handle the fallout.","cat":"research","ts":1788524103000,"source":"Dark Reading","link":"https://www.darkreading.com/cyber-risk/insurers-search-answers-rogue-ai"},{"title":"Large Enterprises Targeted in Fake Merger Acquisition Scams","summary":"Threat actors behind the Phantom Deal campaign are studying companies in extreme detail, aiming to dupe midlevel employees into initiating large financial transfers.","cat":"research","ts":1788466694000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/large-enterprises-fake-merger-acquisition-scams"},{"title":"What We Missed: Did ShinyHunters 'Breach' ReliaQuest?","summary":"In this video conversation, Dark Reading editors discuss some of the news they didn't get a chance to cover, from the latest antics of ShinyHunters to new research about the prevalence (or lack thereo","cat":"breach","ts":1788464559000,"source":"Dark Reading","link":"https://www.darkreading.com/cybersecurity-operations/what-we-missed-did-shinyhunters-breach-reliaquest"},{"title":"What the AI Warning Letter Completely Missed","summary":"The recent open letter is right about the window, but it omits naming who is coming through it or, critically, who will close it.","cat":"research","ts":1788456194000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/ai-warning-letter-missed-people"},{"title":"AI 'Machine Speed' Cuts 2-Week Attack Down to 10 Hours","summary":"The incident demonstrates how frontier AI agents can dramatically compress an attack timeline and coordinate a large-scale breach, according to researchers.","cat":"breach","ts":1788446329000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/ai-machine-speed-2-week-attack-10-hours"},{"title":"'Breeze Comet' Tears Into Brazilian Global Financial Systems","summary":"Brazil's most sophisticated threat group is making light work of the country's financial systems, putting money directly into its own pocket.","cat":"research","ts":1788436800000,"source":"Dark Reading","link":"https://www.darkreading.com/threat-intelligence/breeze-comet-brazilian-global-financial-systems"},{"title":"AI's Vulnerability Surge May Be More Manageable Than First Feared","summary":"New research suggests the coming Vulnpocalypse may not be so overwhelming for enterprise security teams — if they have the right strategies.","cat":"vulnerability","ts":1788383646000,"source":"Dark Reading","link":"https://www.darkreading.com/application-security/ai-vulnerability-surge-manageable-than-first-feared"},{"title":"SonicWall SMA 1000 Zero-Days Enable Unauthenticated RCE","summary":"The exploitation activity follows attacks earlier this summer on two other zero-day vulnerabilities in the vendor's edge devices.","cat":"vulnerability","ts":1788381839000,"source":"Dark Reading","link":"https://www.darkreading.com/vulnerabilities-threats/sonicwall-sma-1000-zero-days-unauthenticated-rce"},{"title":"AI Gives Cybercriminals a Dangerous Time Advantage","summary":"Former cybercriminal Brett Johnson provides a look inside the mind of a threat actor and discusses where AI provides the most value for attackers.","cat":"research","ts":1788378391000,"source":"Dark Reading","link":"https://www.darkreading.com/threat-intelligence/ai-gives-cybercriminals-dangerous-time-advantage"},{"title":"Threat Gang 'Springs' Vishing Attacks on Microsoft Teams Users","summary":"The Spring Ring operation aims to compromise users of the collaboration suite to remotely access their sessions, spread malware, and even take over infrastructure.","cat":"malware","ts":1788367881000,"source":"Dark Reading","link":"https://www.darkreading.com/cyberattacks-data-breaches/threat-gang-springs-vishing-attacks-microsoft-teams-users"}]}