Malicious Twitch Browser Extension Exposes 30,000 Users’ OAuth Tokens to Russian Bot Service
#Twitch
https://socket.dev/blog/malicious-twitch-browser-extension
The Threat Codex
The Threat Codex is a website that tracks news articles on threat actors, malware families, vulnerabilities, and online services.
IDScan confirms breach tied to 153 million stolen driver’s licenses
#IDScan.net
https://www.bleepingcomputer.com/news/security/idscan-confirms-breach-tied-to-153-million-stolen-drivers-licenses/
Tracking BigBear 2.0 Evilginx2 Phishing Campaign
#BigBear2.0
https://www.cloudsek.com/blog/tracking-bigbear-2-0-evilginx2-phishing-campaign
ShinyHunters claims breach of Florida DMV, threatens data leak
#ShinyHunters
https://cyberinsider.com/shinyhunters-claims-breach-of-florida-dmv-threatens-data-leak/
Update Chrome now to protect against an actively exploited vulnerability
#CVE_2026_87491
https://www.malwarebytes.com/blog/bugs/2026/09/update-chrome-now-to-protect-against-an-actively-exploited-vulnerability
Active exploitation of Cisco Secure Firewall Management Center vulnerabilities
#CVE_2026_20079 #CVE_2026_20316 #UAT_12197 #UAT_11823 #CyclopsBlink #UAT_11988
https://blog.talosintelligence.com/fmc-ongoing-exploitation/
CVE-2025-25249 Exploitation Delivers PivotC2, a FortiGate Post-Exploitation RAT
#CVE_2025_25249 #PivotC2
https://socradar.io/blog/cve-2025-25249-pivotc2-fortigate-rat/
Mind the (Patch) Gap: Multiple Chinese Threat Actors Chain 0-day Exploits in Chrome & Windows
#CVE_2026_85046 #UTA0560 #JungleBamboo #GRIMWEDGELoader #LONGTALE
https://www.volexity.com/blog/2026/09/09/mind-the-patch-gap-multiple-chinese-threat-actors-chain-0-day-exploits-in-chrome-windows/
CVE-2026-0310: PAN-OS Buffer Overflow Can Enable Root RCE on PA-Series Firewalls
#CVE_2026_0310
https://socprime.com/blog/cve-2026-0310-analysis/
Gray Rabbits and the Tale of a One-Click Backdoor
#CVE_2026_51990 #UNC3569 #GRAYRABBIT
https://www.gendigital.com/blog/insights/research/one-click-backdoor-sogou
More than 100,000 fake stores are out to steal your card details
#DoppelCart
https://www.malwarebytes.com/blog/scams/2026/09/more-than-100000-fake-stores-are-out-to-steal-your-card-details
Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell
#CVE_2026_75650
https://thehackernews.com/2026/09/adobe-patches-magento-zero-day.html
CVE-2026-86218: Active Exploitation of N-able N-central: Critical Pre-Auth Remote Code Execution (RCE) Vulnerability
#N_central #CVE_2026_86218
https://arcticwolf.com/resources/blog/cve-2026-86218/
CVE-2026-75650: StyleSmuggler — Critical RCE in Adobe Commerce and Magento
#CVE_2026_75650 #AdobeCommerce
https://www.akamai.com/blog/security-research/2026/sep/cve-2026-75650-stylesmuggler-adobe-commerce-magento
CVE-2026-67276: MikroTik RouterOS SSH Zero-Day Exploited in Router Takeover Attacks
#CVE_2026_67276
https://socprime.com/blog/cve-2026-67276-mikrotik-routeros-ssh-zero-day/
Inside ‘Project Lily’: The Humans Reading Your ChatGPT Chats
#ChatGPT
https://www.404media.co/inside-project-lily-the-humans-reading-your-chatgpt-chats/
CVE-2026-85706: Critical GitLab Path Traversal Exploited in the Wild
#CVE_2026_85706
https://www.rapid7.com/blog/post/etr-cve-2026-85706-critical-gitlab-path-traversal-exploited-in-the-wild/
Popular travel app used by 23M lets anyone spy on users, including soldiers
#Polarsteps
https://cybernews.com/security/polarsteps-travel-app-exposes-users-soldiers/
Once in a BlueMoon: Multiple State-Aligned Threat Actors Rapidly Adopt Novel Exploit Chain Using Chrome and Windows Zero-Days
#BlueMoon #TA412 #CVE_2026_85046 #CVE_2026_85880 #GemStone #UNK_LateNight #UNK_DoubleCheck #UNK_QuietRacket
https://www.proofpoint.com/us/blog/threat-insight/once-bluemoon-multiple-state-aligned-threat-actors-rapidly-adopt-novel-exploit
An alignment assessment of recent cybersecurity incidents
#Claude
https://www.anthropic.com/research/alignment-assessment-cybersecurity-incidents
