Logo
  • NEWS
  • NVD
  • EXPLOITS
  • SECURITY
    • NCSC
    • SECURELIST
    • US-CERT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

  • Best Parental Control Software for 2026

    Best Parental Control Software (2024) Here’s a curated list of some of the best parental control software options available in 2024, …

    18 September 2026
    Best, IT, Parental control, Reviews, Softwares
  • Fake parcel delivery messages steal your card and bank details

    Parcel delivery phishing campaigns appear around the world under different courier names. In the United States, the messages commonly …

    18 September 2026
    Fakes, IT, News, Scams, Threat Intel
  • Manufacturing Accounts for 22% of all Ransomware Victims

    Manufacturing organizations made up over a fifth (22%) of all ransomware victims in the period from April 2025 to March 2026, according to …

    18 September 2026
    Accounts, IT, Manufacturing, Ransomware, Victims
  • RatHat Android Malware Abuses ADB to Retain Shell Access After Uninstall

    Cybersecurity researchers have flagged a new Android malware called RatHat that’s assessed to be operated by China-based threat actors and …

    18 September 2026
    Access, ADB, After, Android, Google
  • Abandoned IoT apps keep sending sensitive data to broken servers

    Millions of people still run smart home and IoT companion apps, the apps used to control devices like smart plugs, cameras, and …

    18 September 2026
    Abandoned, Android, Google, Internet of Things, IoT
  • Hardcoded MCP credentials found in public GitHub files

    Hardcoded API keys, access tokens and other credentials used by AI coding tools have been found in publicly accessible MCP configuration …

    18 September 2026
    AI, IT, News
  • How to read a VAPT report without panicking

    I’ve watched the same movie play out too many times: a management team receives a penetration testing report, sees a wall of findings …

    18 September 2026
    Community, How, IT, News
  • 98% of fraudulent hires have company credentials by the time they’re caught

    A 90-day period between hiring and onboarding is creating a blind spot in enterprise identity security, according to HYPR’s State of HR …

    18 September 2026
    IT, News
  • Most WordPress pros still lack a breach recovery plan

    Melapress, a maker of WordPress security plugins, surveyed 319 WordPress professionals and found that most had dealt with at least one …

    18 September 2026
    IT, News
  • Comp AI raises $34m to turn compliance into continuous monitoring

    “Security software shouldn’t just track the work. It should understand the business, perform the work, and act as risk changes,” said …

    18 September 2026
    AI, IT, News
  • New infosec products of the week: September 18, 2026

    Here’s a look at the most interesting products from the past week, featuring releases from Akuity, Bitsight, Cohesity, Dataminr, Nozomi …

    18 September 2026
    BitSight, Cohesity, Dataminr, IT, New
  • USA’s Venezuela takeover comes with bonus exposure to Chinese AI surveillance tech

    Think tank the Australian Strategic Policy Institute (ASPI) has warned that Venezuela is poised to adopt Chinese AI systems to enhance …

    18 September 2026
    AI, Chinese, IT, News, Venezuela
{"loadingDistance":1200,"stickyPosts":[],"nextPageLink":"https://itts.at/page/2","queryId":0}

●●●

CookieFree

NVD

  • CVE-2026-90392 – In the Linux kernel, the following vulnerability has been resolved: bpf: Fix potential …17 September 2026
  • CVE-2026-89064 – The All-in-One WP Migration and Backup plugin for WordPress is vulnerable to Insufficient …17 September 2026
  • CVE-2026-50603 – A vulnerability has been identified in the Acer Agent Service component included with …17 September 2026
  • CVE-2026-92838 – A DLL hijacking vulnerability exists in the GeoVision GV-Remote …17 September 2026
  • CVE-2026-81546 – The Affinity by Canva application before 3.3.0 (September 2026 release) did not perform …17 September 2026

EXPLOITS

  • CVE-2026-80428 Unauthenticated PHP Object Injection via Shibboleth – ILIAS < 9.22, 10.0 < 10.10, 11.0 < 11.3 - RCE11 September 2026
  • Metabase 0.61.0 – Authenticated Remote Code Execution3 September 2026
  • FreePBX 17.0.2 – Remote Code Execution (RCE)3 September 2026
  • Ghost_CMS 6.19.0 – Remote Code Execution2 September 2026
  • Bludit CMS 3.20.0 – Reflected Cross-Site Scripting2 September 2026

SECURELIST

  • The Odyssey and trojans again: MovieReaper attacks users in multiple countries via comprom17 September 2026
  • NightEagle targets Russian companies16 September 2026
  • Angry Birds: Toy Ghouls’ new toys4 September 2026
  • Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa wit1 September 2026
  • ValleyRAT masquerading as adware31 August 2026


Copyright © 2026 ITTS | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.