UNIX CONSULTINGIT security, defense and AI compliance Back to site

Cybersecurity archive

Cybersecurity watch archive

This archive keeps previously published signals available through stable indexed URLs and makes older alerts easier to browse.

Page 2 of 20
Tracked sources CISA Microsoft MSRC Cisco Security Advisories SANS ISC BleepingComputer SecurityWeek The Hacker News Google Project Zero Cloudflare Security GitHub Security Lab

Trezor data breach impact now reaches 81,000 customers

BleepingComputer

Cryptocurrency hardware wallet maker Trezor says an August data breach at its shipping and logistics provider, ShipMonk, affects... Unix Consulting read: This signal deserves fast qualification: affected asset, exposure, potential impact, urgency and internal owner. The value comes from turning the...

Nightmare Eclipse Drops CrowdStrike, Nvidia, Avast Zero-Day Exploits

SecurityWeek

The proof-of-concept (PoC) exploits lead to privilege escalation, spawning a shell with System privileges. The post Nightmare... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

North Korean Hackers Deploy New Linux Espionage Toolkit

SecurityWeek

The stealthy toolkit embeds a backdoor in HAProxy and targets automotive and media organizations in South Korea for long-term... Unix Consulting read: This topic relates to a campaign, malware or intrusion technique. The operational value is to translate it into detections, filtering rules, targeted...

OpenAI Agents Hijack Another Victim Website

SecurityWeek

OpenAI agents made 15,000–18,000 autonomous edits to a German wiki over three months, evading moderation and echoing tactics seen... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Adobe Commerce Zero-Day Exploited to Backdoor Online Stores

SecurityWeek

The StyleSmuggler zero-day allows attackers to execute code and deploy a stealthy backdoor on Adobe Commerce and Magento stores.... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

Modified ScreenConnect Clients Used in Worm-Like Campaign

SecurityWeek

The attacks rely on backdoored ScreenConnect instances to transfer and execute payloads to newly connected clients. The post... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Your Cloud Security Checklist Doesn't Work the Way You Think It Does

The Hacker News

If managing security across multiple cloud providers wasn't hard enough, each one fails in a different way. For the 2026 Cloud... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

ChatGPT can now connect to your personal apps to mimic writing style

BleepingComputer

OpenAI appears to be testing a new "Writing Style" feature for ChatGPT that can learn how you write by looking at examples from... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Hackers exploit new MikroTik RouterOS flaws to hijack routers

BleepingComputer

Hackers are exploiting a chain of two recently disclosed vulnerabilities in MikroTik routers to take control of devices with SSH... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

ConnectWise warns of new ScreenConnect flaw without patch

BleepingComputer

ConnectWise has shared temporary mitigation measures for a new ScreenConnect Remote Access vulnerability that it plans to patch... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw

The Hacker News

Every on-premises N-central build below 2026.3.1.14 — including servers updated to Hotfix 3 a day earlier — needs Hotfix 4.... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies

The Hacker News

Cybersecurity researchers have unpacked JSCeal, a sophisticated compiled V8 JavaScript (JSC) malware with credential harvesting,... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

N-able patches max severity N-central flaw amid ongoing attacks

BleepingComputer

N-able has released an emergency hotfix for a maximum-severity remote code execution (RCE) flaw affecting its N-central remote... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

ChatGPT Astra is now rolling out to $20 Plus subscription

BleepingComputer

OpenAI is now rolling out ChatGPT Astra, its most powerful model to date, to those with a $20 Plus subscription, but there's no... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...

Critical MikroTik Vulnerability - Patch Now, (Sun, Sep 6th)

SANS ISC

Mikrotik released a patch late last week for an already-exploited vulnerability. The vulnerability allows an SSH authentication... Unix Consulting read: This signal should be mapped against the application inventory, internet exposure and patch-management process. The key point is not only the...

Attackers conceal phishing lures using invisible Unicode characters

BleepingComputer

Threat actors have adopted the ASCII smuggling technique in phishing campaigns, using invisible Unicode characters to evade email... Unix Consulting read: This signal relates to AI usage, assistants, models or data handled by these systems. It should be read through a governance lens: which data enters...