Logo
  • NEWS
  • NVD
  • EXPLOITS
  • SECURITY
    • NCSC
    • SECURELIST
    • US-CERT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

  • OpenAI’s malicious bot swarm attacked RubyGems

    OpenAI agents appear to have flooded RubyGems with malicious packages, adding to a near-daily deluge of rogue AI models engaging in …

    14 September 2026
    IT, News, RubyGems
  • Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countries

    A suspected Chinese threat actor tracked as Red Heron has been attributed to the rapid exploitation of a recently disclosed security …

    14 September 2026
    Compromise, Countries, Heron, Malware, Organizations
  • New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing

    Researchers have disclosed a new hardware attack, called DDRop, that breaks the memory protection in Intel and AMD confidential computing …

    14 September 2026
    AMD, Attacks, Intel, New, Security Pro
  • Fake AI Trading Agent Uses Microsoft-Signed Windows Binary to Deliver Malware

    Cybercriminals are exploiting interest in agentic AI to convince users to install malware, with one campaign uncovered by HP using a …

    14 September 2026
    Agents, AI, Binary, Fakes, IT
  • AWS Security Reference Architecture: A deep dive into PCI DSS compliance

    is excited to announce the publication of the AWS Security Reference Architecture (AWS SRA) Payment Card Industry (PCI) Data Security …

    14 September 2026
    Amazon, Announcements, AWS, AWS Security, Cloud Computing
  • New York Seizes a Dozen Celebrity Deepfake Websites

    In the biggest-ever legal action against harmful deepfake websites, the Manhattan District Attorney’s Office has seized 12 sites that …

    14 September 2026
    Celebrity, Deepfakes, IT, New York, Websites
  • WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distribution

    WordPress has announced it’s launching an automated security review for every release of a plugin before it’s distributed through the …

    14 September 2026
    Automated, Block, Distributions, Malware, Plugins
  • Cloud AI and Data Security: Why Sensitive Work Is Moving On-Device

    Most AI tools your staff use send everything they type to someone else’s servers. For a marketing draft that may be …

    14 September 2026
    Is, Moving, Sensitive, Why, Work
  • Texas Judge Finds TikTok Liable for Misleading Parents About Child Safety Controls

    A Texas judge found TikTok liable for misleading parents about child safety controls, shifting the case toward penalties and possible …

    14 September 2026
    About, Controls, Governance, Judge, Legal
  • Cyberattack sends International Meteor Organization crashing back to Earth

    The International Meteor Organization (IMO) is watching for fireballs again, but much of its website remains offline after a cyberattack …

    14 September 2026
    Cyber Attack, Earth, International, IT, Meteor
  • ⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits

    AI keeps showing up in the wrong places. Attackers are using it to speed up exploits, test defenses, and automate more of the …

    14 September 2026
    Agents, AI, Attacks, Espionage, Malware
  • Australia’s outdated technology is vulnerable to AI hacking attacks, signals chief says

    One of Australia’s top intelligence agencies has warned that AI attacks could exploit the country’s old technology, as the government …

    14 September 2026
    AI, Computing, Cyber Threats, Hacking, Hacks
{"loadingDistance":1200,"stickyPosts":[],"nextPageLink":"https://itts.at/page/2","queryId":0}

●●●

CookieFree

NVD

  • CVE-2025-63842 – A Cross-Site Scripting (XSS) vulnerability in the web backend for the Repetico app …14 September 2026
  • CVE-2026-90604 – A security flaw has been discovered in Totolink A3002MU Hh-B20211125.1046. This affects …14 September 2026
  • CVE-2022-42917 – In FRRouting FRR before 8.5, the service user (usually frr) can escalate its privileges …14 September 2026
  • CVE-2026-57126 – PraisonAI is a multi-agent teams system. Prior to praisonaiagents 1.6.58, …14 September 2026
  • CVE-2024-53922 – An issue was discovered in the buffer queue driver in Samsung Automotive Processor Exynos …14 September 2026

EXPLOITS

  • CVE-2026-80428 Unauthenticated PHP Object Injection via Shibboleth – ILIAS < 9.22, 10.0 < 10.10, 11.0 < 11.3 - RCE11 September 2026
  • Metabase 0.61.0 – Authenticated Remote Code Execution3 September 2026
  • FreePBX 17.0.2 – Remote Code Execution (RCE)3 September 2026
  • Ghost_CMS 6.19.0 – Remote Code Execution2 September 2026
  • Bludit CMS 3.20.0 – Reflected Cross-Site Scripting2 September 2026

SECURELIST

  • Angry Birds: Toy Ghouls’ new toys4 September 2026
  • Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa wit1 September 2026
  • ValleyRAT masquerading as adware31 August 2026
  • Threat landscape for industrial automation systems. Q2 202627 August 2026
  • Exploits and vulnerabilities in Q2 202626 August 2026


Copyright © 2026 ITTS | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.