Cybersecurity & AI News
A curated digest of the latest security alerts, CVEs, threat intelligence and AI risk — gathered automatically from trusted official and industry sources, updated through the day.
Microsoft fixes bug that wiped Windows desktop settings
Microsoft fixes bug that wiped Windows desktop settings BleepingComputer
Read at source ↗CVE-2026-7188
SQLi in Armiya Information Technologies' Access Control System
Read at source ↗CVE-2026-80354
Apache Camel K: Camel K Builder trait mavenProfiles ValueSources resolve tenant-named secrets in operator namespace
Read at source ↗CVE-2026-80351
Apache Camel K: Camel K Tenant repositories reach Maven execution inside operator pod
Read at source ↗CVE-2026-80352
Apache Camel K: Camel K Master trait serviceAccountName YAML injection lets CR author apply arbitrary objects
Read at source ↗CVE-2026-88770
Keycloak-services: keycloak-services: device authorization grant issues tokens to brute-force-locked accounts
Read at source ↗CVE-2026-78361
zipMoney(Zip Co) Payments Plugin for WooCommerce < 2.4.0 - Unauthenticated Arbitrary Option Deletion
Read at source ↗Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example "sk-1234" Admin Key
Nearly one in ten of the internet-facing LiteLLM servers that Wiz Research scanned in February accepted sk-1234, the example admin key in LiteLLM's…
Read at source ↗Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6
Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking…
Read at source ↗Trezor warns users of email provider breach, phishing attacks
Trezor warns users of email provider breach, phishing attacks BleepingComputer
Read at source ↗Anthropic launches Fable 5.1 as AI security worries mount
Anthropic launches Fable 5.1 as AI security worries mount Mashable
Read at source ↗Why Is Advanced Micro Devices (AMD) Pushing Trust Based AI Security?
Why Is Advanced Micro Devices (AMD) Pushing Trust Based AI Security? simplywall.st
Read at source ↗Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks
Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks BleepingComputer
Read at source ↗F5 Gains as Investor Conference Commentary and Recent AI Security Announcements Support Sentiment
F5 Gains as Investor Conference Commentary and Recent AI Security Announcements Support Sentiment quiverquant.com
Read at source ↗U.S. Disrupts Xinbi Guarantee Scam Marketplace, Freezes $52.8 Million in Crypto
The U.S. Department of Justice (DoJ) on Wednesday announced coordinated actions aimed at an illicit online marketplace called Xinbi Guarantee…
Read at source ↗Scans for Proxmox Servers
About a week ago, Proxmox published an advisory revealing a vulnerability in older versions of Proxmox VE, its flagship Virtual…
Read at source ↗CISA Adds Four Known Exploited Vulnerabilities to Catalog
CISA Adds Four Known Exploited Vulnerabilities to Catalog CISA (.gov)
Read at source ↗CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats
CISA Releases Updated Insider Threat Guide With New Insights to Mitigate Physical and Cyber Threats CISA (.gov)
Read at source ↗ISC Stormcast For Wednesday, September 9th, 2026
Read at source ↗Microsoft Plugs Nearly 1,000 Security Holes
Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software,…
Read at source ↗September 2026 Microsoft Patch Tuesday
This month, Microsoft released patches for a record-breaking 973 vulnerabilities, including 113 rated critical. It is by far the largest…
Read at source ↗Vulnerability Summary for the Week of August 31, 2026
Vulnerability Summary for the Week of August 31, 2026 CISA (.gov)
Read at source ↗No title
... (report_number: 7895)
Read at source ↗Clinejection — Compromising Cline's Production Releases just by Prompting an Issue Triager
UPDATE - NPM Package To make sure it's clear in the midst of the NPM package situation: I did NOT…
Read at source ↗ChatGPT Operator: Prompt Injection Exploits & Defenses
ChatGPT Operator is a research preview agent from OpenAI that lets ChatGPT use a web browser. It uses vision and…
Read at source ↗The hidden risks of shadow AI
Understanding why staff use unapproved AI tools is key to managing the security challenges they can create.
Read at source ↗Partner Portal
Partner Portal Cyber.gov.au
Read at source ↗NZ cyber alert exposes what standard policies don’t cover
NZ cyber alert exposes what standard policies don’t cover Insurance Business
Read at source ↗Gateway security guidance package: Executive guidance
Gateway security guidance package: Executive guidance Cyber.gov.au
Read at source ↗Archived ISM releases
Archived ISM releases Cyber.gov.au
Read at source ↗NCSC warns of ClickFix cyber threat targeting website visitors
NCSC warns of ClickFix cyber threat targeting website visitors Reseller News
Read at source ↗FBI Probes Service Selling 153M+ Drivers Licenses
A new identity theft service launched on the dark web this week is selling digital scans of more than 153…
Read at source ↗Disruptive cyber activity highlights risk from internet-exposed systems and edge devices
Owners of operational technology encouraged to address avoidable vulnerabilities, and build long-term cyber resilience.
Read at source ↗Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group…
Read at source ↗Managing the cyber risk of agentic AI
Use safeguards, sandboxing and active oversight to realise the benefits of autonomous systems while limiting the unintended activity.
Read at source ↗2degrees Activates Network-Level Protection Against Malicious Websites
2degrees Activates Network-Level Protection Against Malicious Websites The Fast Mode
Read at source ↗Key AI risk frameworks
The standards and knowledge bases behind responsible AI security — useful references when assessing AI systems.
Headlines, dates and summaries are sourced automatically from trusted public feeds and link to the original publisher. Cianaa Technologies does not author this content and is not affiliated with these sources.
Need help acting on an advisory?
Talk to an independent auditor or assessor — conflict-free, across New Zealand & Australia.
Book a scoping call →