Agregátor RSS

Linux OCFS2 Use After Free Risk Advisory 2026-47916db6c7

LinuxSecurity.com - 7 Září, 2026 - 18:12
A reported race in OCFS2, a Linux clustered file system for shared storage, can trigger a use-after-free while administrators configure a heartbeat region. The failure occurs when concurrent writes reach the same configfs device attribute and both manipulate one region's slot-data allocation.
Kategorie: Hacking & Security

Linux Advisory Timer Vulnerabilities Leading to Use-After-Free Issues

LinuxSecurity.com - 7 Září, 2026 - 18:05
A proposed Linux repair addresses two timer bugs that can trigger use-after-free conditions while one program replaces itself with another through exec(). Both failures begin with the same unusual transition: a thread that is not the process leader becomes the new leader, and Linux exchanges thread identifiers while timer and signal state still reflects the old ownership layout.
Kategorie: Hacking & Security

Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

The Hacker News - 7 Září, 2026 - 17:51
Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins. The activity, which mainly singles out directors, vice presidents, and other executive staff
Kategorie: Hacking & Security

Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks

The Hacker News - 7 Září, 2026 - 17:51
Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins. The activity, which mainly singles out directors, vice presidents, and other executive staffRavie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Jak zjistit, co iPhonu nejvíc ždímá baterii a proč samotná procenta neříkají všechno

Živě.cz - 7 Září, 2026 - 17:45
Nastavení iPhonu ukáže podrobnou spotřebu energie jednotlivých aplikací • Sledujte hlavně aktivitu na pozadí a slabý signál mobilní sítě • Stará baterie vyžaduje výměnu a ruční zavírání aplikací energii neušetří
Kategorie: IT News

BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations

Bleeping Computer - 7 Září, 2026 - 17:39
A phishing-as-a-service framework called BigBear 2.0 has been used to bypass multi-factor authentication at 258 organizations and steal more than 5,000 Microsoft 365 credentials. [...]
Kategorie: Hacking & Security

Ikea má nejlevnější chytrou termostatickou hlavici na trhu. Novinka Liljebagge bude stát pod 500 Kč

Živě.cz - 7 Září, 2026 - 16:45
Už několik měsíců se na smart home fórech diskutovalo, že Ikea vstoupí i do chytrého vytápění. Později vyplynulo z databáze Distributed Compliance Ledger, že chystá termostatickou hlavici Liljebagge. No a ta se nově začala prodávat, zatím však jen v domovském Švédsku. Ikea Liljebagge tam stojí 199 ...
Kategorie: IT News

Nightwing CEO has a Labor Day message for staff – and apparently The Register

The Register - Anti-Virus - 7 Září, 2026 - 16:43
Nightwing CEO Bob Coleman wanted to thank his employees for their hard work over the Labor Day weekend. Unfortunately, he also thanked The Register. The cybersecurity and intelligence contractor, which prides itself on “secure communications,” appears to have accidentally sent a for-employees'-eyes-only message from its chief executive to its media distribution list, giving journalists a brief and unsolicited glimpse into life at "Team Nightwing." The email, seen by The Register because, well, it was sent to us, is helpfully marked "For Internal Use Only." "Dear Colleagues," Coleman begins, addressing a group that apparently expanded rather dramatically when somebody selected the wrong mailing list. "As we head into this Labor Day weekend, I want to express my sincere appreciation for your commitment to Team Nightwing and the exceptional work you do every day," he adds. "Your efforts and unwavering dedication make all the difference in accomplishing our critical missions." Coleman went on to tell recipients that each of them plays "a vital role in our success," which came as welcome news to Vulture Central. "Please take this time to rest, recharge, and enjoy the well-deserved break with your loved ones," he states, before signing off simply: "Bob." Nightwing, which was spun out of defense giant Raytheon in 2024 and works across cybersecurity, intelligence, and national security, is perhaps not the sort of company you'd expect to struggle with the concept of an internal distribution list. We have asked Nightwing whether Bob's Labor Day message was intended to reach the press, although the words "For Internal Use Only" have given us a working theory. Either way, thanks, Bob. Hope you had a nice Labor Day too. ®
Kategorie: Viry a Červi

⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More

The Hacker News - 7 Září, 2026 - 16:36
Turning off email images should at least stop the pictures. This week, attackers had a workaround: a scannable QR code built out of text. It still appears, even with images blocked. A small detail, but an annoying one if that was a precaution you were counting on. Elsewhere, a trusted software source delivered code that stole credentials, and a protocol designed for secure network management
Kategorie: Hacking & Security

⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More

The Hacker News - 7 Září, 2026 - 16:36
Turning off email images should at least stop the pictures. This week, attackers had a workaround: a scannable QR code built out of text. It still appears, even with images blocked. A small detail, but an annoying one if that was a precaution you were counting on. Elsewhere, a trusted software source delivered code that stole credentials, and a protocol designed for secure network management Ravie Lakshmananhttp://www.blogger.com/profile/[email protected]
Kategorie: Hacking & Security

Nezkušení turisté si k plánování výstupu na horu vzali na pomoc Gemini. Akce skončila zásahem záchranářů

Živě.cz - 7 Září, 2026 - 15:45
Nezkušení mladíci věřili umělé inteligenci a zabloudili v horách • Místo krátkého výletu musela muže zachraňovat horská služba • Umělá inteligence podcenila zásoby jídla a náročnost celé trasy
Kategorie: IT News

Hackers drain $320M in Bitcoin from Liquid Network, claim they're the good guys

The Register - Anti-Virus - 7 Září, 2026 - 15:26
Hackers have drained roughly $320 million in Bitcoin from the federation wallet backing the Liquid Network, while claiming to be the good guys. Liquid, a Bitcoin sidechain developed by Blockstream and used by exchanges and other financial institutions, said in a post on X on Sunday that around 4,000 BTC had been withdrawn from its federation wallet by what it cautiously described as "purported white-hat hackers." The wallet held about 4,200 BTC before the incident, meaning whoever was behind the exploit removed roughly 95 percent of its holdings. Liquid disabled its bridge nodes while federation members investigate and asked exchanges to suspend L-BTC deposits and withdrawals. The people behind the withdrawal, meanwhile, appear keen to establish that this isn't your standard crypto heist. In a message embedded in a Bitcoin transaction, they identified themselves as "whitehats" and asked Blockstream to get in touch. Blockstream responded on-chain with contact details for its security team, and Liquid said the parties subsequently moved their communications to encrypted channels. Those responsible said they would return "most" of the Bitcoin once the vulnerability was fixed and Liquid's nodes had been updated. "Please fix the bug first," the on-chain message said. "The chain is under risk at latest commit right now. Make sure every node is patched. Then we will transfer the money back safely after confirming the fix." Exactly how they managed to move almost the entire federation wallet remains under investigation. Liquid said the BTC was withdrawn through SideSwap using its Peg-out Authorization Key, or PAK, but that neither SideSwap's key nor any other PAK appeared to have been compromised. PAKs allow federation functionaries to recognize destinations authorized to receive peg-outs; the functionaries collectively release the corresponding Bitcoin. That leaves the rather important question of how an apparently authorized SideSwap peg-out came to empty almost the entire federation wallet without the relevant PAK being compromised. Other assets issued on Liquid, including stablecoins, do not appear to have been directly affected, and the Bitcoin network itself was untouched. The incident is another reminder that adding Bitcoin to something does not give it Bitcoin's security model. Liquid is a federated sidechain whose members collectively manage the Bitcoin backing L-BTC, rather than relying on Bitcoin's miners to secure those funds. For now, those funds appear to be in the hands of people who insist they're conducting security research. Whether all 4,000 BTC eventually find their way home may determine how generous everyone feels about that description. ®
Kategorie: Viry a Červi

Mathspace discloses data breach affecting over 1 million people

Bleeping Computer - 7 Září, 2026 - 15:05
Online maths learning platform Mathspace disclosed over the weekend that attackers stole data from more than 1 million students, staff, and parents after breaching its Metabase internal reporting system. [...]
Kategorie: Hacking & Security

Sam Altman calls GPT-6 Astra rollout ‘messy’ as enterprise users wait for access

Computerworld.com [Hacking News] - 7 Září, 2026 - 14:20

OpenAI’s rollout of its GPT-6 Astra model ran into early access issues after paying ChatGPT users were unable to use the system shortly after launch, prompting CEO Sam Altman to apologize and say the release had been “messy.”

“First, sorry for the messy rollout,” OpenAI CEO Sam Altman acknowledged the issue in a post on X. “Second, when we screw up, we try to make it right.”

OpenAI had said GPT-6 Astra would be rolled out across ChatGPT tiers and APIs, positioning it as its most advanced model to date. However, the initial rollout did not translate into immediate access for all users, highlighting the gap between model launch and availability across subscription tiers.

Only the organizations enrolled in its Daybreak cybersecurity program were able to access the model, whereas Plus, Pro, Business, and Enterprise ChatGPT subscribers, along with developers using the OpenAI API, were left out.

“Third, we should be able to begin broad rollout to API customers and ChatGPT subscribers in the near future. As usual, we will start with pro subscribers,” Altman continued in the post.

Altman wrote in a follow-up X post on Friday that OpenAI had extended Astra to Pro, Enterprise, and Business Premium users in ChatGPT’s Work and Codex products and had opened it up through the API.

“It might take a few days to roll out to our Plus and Business users,” OpenAI’s official X account posted on September 5.

The company did not immediately respond to a request for comment.

Phased rollout continues without firm timelines

OpenAI introduced GPT-6 Astra on September 4, stating that availability would expand over time rather than being enabled simultaneously for all users.

Altman’s post followed complaints about access during the initial rollout window, although OpenAI has not disclosed how many users were affected or how access varied across tiers.

In a subsequent post on X, Altman said: “We are working towards getting Astra in everyone’s hands as quickly as we can; I know it is frustrating,” indicating that access was being expanded incrementally.

OpenAI technical staff member Thibault Sottiaux confirmed in a separate X post that Plus and Business users had gained access too, crediting the company’s infrastructure: “more scalable than we anticipated.”

The rollout approach is consistent with OpenAI’s initial communication that Astra would be made available over several days, rather than at once. Gartner also noted that the model was first released to a limited set of organizations before broader expansion.

Rollout highlights the gap between launch and access

Analysts said the sequence reflects a distinction between model announcement and actual availability.

Greyhound Research said the Astra rollout should be treated as an operational signal rather than a confirmation of readiness.

“Announced, available, entitled, and production-ready are four separate states,” said Sanchit Vir Gogia, chief analyst at Greyhound Research. “This must be treated as operational evidence, neither dismissed as theatre nor inflated into proof that Astra has failed.”

He added that staged availability reinforces the need for enterprises to verify what level of access they actually receive, rather than assume uniform rollout across users or environments.

Gartner said enterprises will need to strengthen governance as they evaluate Astra’s capabilities.

“CIOs must balance Astra’s advanced automation with stronger cybersecurity, governance, and cost controls before adoption,” Gartner analysts said in an initial note on the launch shared with Computerworld

The firm said Astra’s ability to execute more autonomous workflows will require tighter evaluation controls and observability.

It also pointed to challenges around identity, security posture, and accountability as AI agents take on more complex roles.

Contracts and control models under scrutiny

Greyhound Research said the rollout raises questions about how enterprises define access and operational control.

“A conventional uptime SLA is too narrow for Astra,” said Gogia. “Critical describes the engine. It does not tell the buyer how much of that engine reaches the road.”

He said enterprises need to account for how such systems behave in production, particularly when access, interruption, or task continuity may vary.

“A stop leaves a state the enterprise did not choose, and that state needs a record it can defend,” Gogia said.

The rollout also highlights changes in how governance responsibilities are distributed.

Gogia said administrative controls alone do not address enterprise requirements.

“Admin opt-in is not a safety certificate,” he said. “It is the point at which accountability crosses from vendor release policy into an enterprise governance decision.”

He added that such controls do not extend automatically to API-based deployments, where enforcement depends on enterprise-level systems.

Capability gains introduce trade-offs

OpenAI has positioned GPT-6 Astra as an advance in reasoning, coding, and automation capabilities.

Gartner said these improvements introduce trade-offs that enterprises will need to evaluate in production settings.

While Astra may reduce token usage for some tasks, organizations must consider overall task costs, including validation and oversight, the firm noted.

Gartner also cautioned against over-indexing on early capability claims. “Without more evidence, CIOs should ignore the AGI hype for now and instead focus on use-case-specific evaluations, demonstrated business outcomes and reliable autonomy,” the firm said.

The story originally appeared on CSO.

Kategorie: Hacking & Security

Trezor data breach impact now reaches 81,000 customers

Bleeping Computer - 7 Září, 2026 - 14:16
Cryptocurrency hardware wallet maker Trezor says an August data breach at its shipping and logistics provider, ShipMonk, affects an additional 67,000 U.S. customers. [...]
Kategorie: Hacking & Security

Your Cloud Security Checklist Doesn't Work the Way You Think It Does

The Hacker News - 7 Září, 2026 - 13:45
If managing security across multiple cloud providers wasn't hard enough, each one fails in a different way. For the 2026 Cloud Security Index, Intruder analyzed misconfiguration data from 3,000 organizations across AWS, Azure, and Google Cloud and found that risk profiles across providers have almost nothing in common. Here’s what the data looks like. How risk differs across cloud providers
Kategorie: Hacking & Security

Evropa staví nový superpočítač za 9,5 miliardy. Důležitou roli v něm dostali Češi

Živě.cz - 7 Září, 2026 - 13:45
Finský superpočítač Lumi AI vznikne i s českými penězi a díky pražské pobočce francouzské firmy Bull. • Zakázku na čipy pro finský projekt Lumi AI nakonec nezískala Nvidia, ale její rival AMD. • Nový stroj v Kajaani má mít až desetinásobný AI výkon a překonat hranici jednoho exaflopu.
Kategorie: IT News

Your Cloud Security Checklist Doesn't Work the Way You Think It Does

The Hacker News - 7 Září, 2026 - 13:45
If managing security across multiple cloud providers wasn't hard enough, each one fails in a different way. For the 2026 Cloud Security Index, Intruder analyzed misconfiguration data from 3,000 organizations across AWS, Azure, and Google Cloud and found that risk profiles across providers have almost nothing in common. Here’s what the data looks like. How risk differs across cloud providers [email protected]
Kategorie: Hacking & Security

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

The Hacker News - 7 Září, 2026 - 13:36
Cybersecurity researchers have disclosed details of worm-like activity that abuses ConnectWise ScreenConnect to distribute a malicious Visual Basic Script (VBScript) payload to newly connected systems. According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-delivered MSI installer, and a fake
Kategorie: Hacking & Security
Syndikovat obsah