{"data":[{"id":14565216,"title":"Wordfence Argus Identifies Two Critical Unauthenticated Vulnerability Chains Leading to Remote Code Execution in The Events Calendar Plugin","link":"https://www.wordfence.com/blog/2026/09/wordfence-argus-identifies-two-critical-unauthenticated-vulnerability-chains-leading-to-remote-code-execution-in-the-events-calendar-plugin/","summary":"On August 21 and August 22, 2026, Wordfence Argus, created by the Wordfence Threat Intelligence team, identified two independent critical vulnerability chain...","source":"Wordfence Blog","category":"vendor","vendor":"Intel","published_at":"2026-09-14T16:53:48.000Z","created_at":"2026-09-14 17:06:25","sector":"Energy","mitre_techniques":[{"id":"T1190","name":"Exploit Public-Facing Application","tactic":"Initial Access"}],"iocs":null,"vendors_all":["Intel","WordPress"],"dedup_hash":"b2a19e7de11e1856","entities_processed":1,"tlp":"WHITE"},{"id":14560771,"title":"Total AI awareness: Gaining full visibility of the AI attack surface","link":"https://www.scworld.com/resource/total-ai-awareness-gaining-full-visibility-of-the-ai-attack-surface","summary":"Why protecting AI piecemeal leads to coverage gaps and unnecessary risk.","source":"SC Media","category":"general","vendor":null,"published_at":"2026-09-14T16:36:22.000Z","created_at":"2026-09-14 16:51:22","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"eda1740b0d01db05","entities_processed":1,"tlp":"WHITE"},{"id":14557531,"title":"AI has outpaced the patching clock – here’s what the industry needs to do  ","link":"https://www.scworld.com/perspective/ai-has-outpaced-the-patching-clock-heres-what-the-industry-needs-to-do","summary":"Five ways the industry can respond to the AI challenge.","source":"SC Media","category":"general","vendor":null,"published_at":"2026-09-14T16:29:36.000Z","created_at":"2026-09-14 16:36:22","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"52b859b353c8cd65","entities_processed":1,"tlp":"WHITE"},{"id":14560871,"title":"FedRAMP Moderate Authorization for Palo Alto Networks’ Quantum-Safe Security","link":"https://www.paloaltonetworks.com/blog/2026/09/fedramp-moderate-authorization-for-palo-alto-networks-quantum-safe-security/","summary":"Palo Alto Networks has achieved FedRAMP Moderate authorization for Quantum-Safe Security (QSS), a turnkey Automated Cryptography Discovery and Inventory (ACD...","source":"Palo Alto Networks","category":"vendor","vendor":"Palo Alto Networks","published_at":"2026-09-14T16:29:08.000Z","created_at":"2026-09-14 16:51:23","sector":"Financial","mitre_techniques":null,"iocs":null,"vendors_all":["Palo Alto Networks"],"dedup_hash":"bbefcde2cb3a36c6","entities_processed":1,"tlp":"WHITE"},{"id":14553886,"title":"Hackers target exposed Vite dev servers to steal AWS, Azure secrets","link":"https://www.bleepingcomputer.com/news/security/hackers-target-exposed-vite-dev-servers-to-steal-aws-azure-secrets/","summary":"A mass-scanning campaign targeting internet-exposed Vite development servers is attempting to steal cloud credentials and configurations from AWS and Azure d...","source":"BleepingComputer","category":"general","vendor":"Microsoft","published_at":"2026-09-14T16:15:58.000Z","created_at":"2026-09-14 16:21:21","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":["Microsoft","Amazon"],"dedup_hash":"94a3c3316099bc9d","entities_processed":1,"tlp":"WHITE"},{"id":14554651,"title":"Pro-Ukraine Hacking Cat group deploying new malware against Russian targets","link":"https://therecord.media/ukraine-malware-russia-ransomware","summary":"The pro-Ukraine hacktivist group Hacking Cat has evolved from carrying out website defacements and data leaks to more sophisticated and destructive attacks o...","source":"The Record","category":"general","vendor":null,"published_at":"2026-09-14T16:15:00.000Z","created_at":"2026-09-14 16:21:23","sector":null,"mitre_techniques":[{"id":"T1491","name":"Defacement","tactic":"Impact"}],"iocs":null,"vendors_all":null,"dedup_hash":"d27acc7d9f425f45","entities_processed":1,"tlp":"WHITE"},{"id":14554631,"title":"Using AI for Weapons Development","link":"https://www.schneier.com/blog/archives/2026/09/using-ai-for-weapons-development.html","summary":"Last week, Anthropic released a long and detailed document describing current misuses of their Claude models.","source":"Schneier on Security","category":"general","vendor":null,"published_at":"2026-09-14T16:07:46.000Z","created_at":"2026-09-14 16:21:23","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"f8e7b80f7c3b62ae","entities_processed":1,"tlp":"WHITE"},{"id":14554652,"title":"Hundreds of fake government websites target users in Central Asia","link":"https://therecord.media/hundreds-of-fake-gov-websites-central-asia-scam","summary":"The sites are designed to collect victims’ contact details, which scammers then use to target them through phone or email to steal money, personal informatio...","source":"The Record","category":"general","vendor":null,"published_at":"2026-09-14T16:02:00.000Z","created_at":"2026-09-14 16:21:23","sector":"Government","mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"3e5db13ae891e315","entities_processed":1,"tlp":"WHITE"},{"id":14560551,"title":"WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distribution","link":"https://thehackernews.com/2026/09/wordpress-adds-automated-plugin-reviews.html","summary":"WordPress has announced it's launching an automated security review for every release of a plugin before it's distributed through the WordPress.org update AP...","source":"The Hacker News","category":"general","vendor":"WordPress","published_at":"2026-09-14T16:00:04.000Z","created_at":"2026-09-14 16:51:22","sector":null,"mitre_techniques":null,"iocs":{"domains":["wordpress.org"]},"vendors_all":["WordPress"],"dedup_hash":"d37644bc7f61d0a7","entities_processed":1,"tlp":"WHITE"},{"id":14551271,"title":"Cisco Secure Email Gateway and Secure Email and Web Manager Security Hardening Release: September 2026","link":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-esa-dfCrfXkm?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Email%20Gateway%20and%20Secure%20Email%20and%20Web%20Manager%20Security%20Hardening%20Release:%20September%202026%26vs_k=1","summary":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Secure Email Gateway and Cisco Secure Email and Web Manager engine...","source":"Cisco Advisories","category":"advisories","vendor":"Cisco","published_at":"2026-09-14T16:00:00.000Z","created_at":"2026-09-14 16:06:23","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":["Cisco"],"dedup_hash":"5afa6c3af6e35022","entities_processed":1,"tlp":"WHITE"},{"id":14551272,"title":"Cisco Secure Email Gateway SQL Injection Vulnerability","link":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-esa-inj-2bLVGmhX?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Secure%20Email%20Gateway%20SQL%20Injection%20Vulnerability%26vs_k=1","summary":"A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbi...","source":"Cisco Advisories","category":"advisories","vendor":"Cisco","published_at":"2026-09-14T16:00:00.000Z","created_at":"2026-09-14 16:06:23","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":["Cisco"],"dedup_hash":"72a6e7a40d98bf88","entities_processed":1,"tlp":"WHITE"},{"id":14554161,"title":"Beyond the CVE Count: The Real State of Vulnerability Management - Charles Loring - CSP #228","link":"https://www.scworld.com/podcast-segment/14662-beyond-the-cve-count-the-real-state-of-vulnerability-management-charles-loring-csp-228","summary":"","source":"SC Media","category":"general","vendor":null,"published_at":"2026-09-14T16:00:00.000Z","created_at":"2026-09-14 16:21:22","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"1f5a92e418023bd5","entities_processed":1,"tlp":"WHITE"},{"id":14537791,"title":"Malicious Twitch Extension Exposes 31,000 Users' OAuth Tokens","link":"https://www.infosecurity-magazine.com/news/malicious-twitch-extension-oauth/","summary":"Socket has discovered a Twitch browser extension forwarding users' OAuth tokens to a Russian bot service","source":"Infosecurity Magazine","category":"general","vendor":null,"published_at":"2026-09-14T15:00:00.000Z","created_at":"2026-09-14 15:06:23","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"c604a4598069f3fe","entities_processed":1,"tlp":"WHITE"},{"id":14541566,"title":"Rapid7 Named Among Notable Vendors in Forrester MDR Landscape: Why the Future is Exposure-informed, Preemptive MDR","link":"https://www.rapid7.com/blog/post/dr-forrester-mdr-landscape-notable-vendor-preemptive","summary":"The managed detection and response (MDR) market has reached a turning point. We’ve gone beyond the baseline of 24/7 monitoring focusing on the speed of detec...","source":"Rapid7 Blog","category":"vendor","vendor":"Rapid7","published_at":"2026-09-14T14:51:07.000Z","created_at":"2026-09-14 15:21:24","sector":"Defense","mitre_techniques":null,"iocs":null,"vendors_all":["Rapid7"],"dedup_hash":"80dfaa713cce508c","entities_processed":1,"tlp":"WHITE"},{"id":14544031,"title":"⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkits","link":"https://thehackernews.com/2026/09/weekly-recap-rogue-ai-agents-wechat.html","summary":"AI keeps showing up in the wrong places. Attackers are using it to speed up exploits, test defenses, and automate more of the job.","source":"The Hacker News","category":"general","vendor":null,"published_at":"2026-09-14T14:40:34.000Z","created_at":"2026-09-14 15:36:22","sector":"Defense","mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"faadb77dbcde0832","entities_processed":1,"tlp":"WHITE"},{"id":14530851,"title":"Beijing Hits Back at Anthropic CEO’s Call to Curb China’s AI Development","link":"https://www.securityweek.com/beijing-hits-back-at-anthropic-ceos-call-to-curb-chinas-ai-development/","summary":"China’s Ministry of Foreign Affairs responded to a question about Amodei’s essay by saying that all parties should work together on AI. The post Beijing Hits...","source":"SecurityWeek","category":"general","vendor":null,"published_at":"2026-09-14T14:28:26.000Z","created_at":"2026-09-14 14:36:22","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"7e9a8829de3ccd9f","entities_processed":1,"tlp":"WHITE"},{"id":14527901,"title":"Human Attacker Hits Machine-Speed Exploitation of Marimo RCE","link":"https://www.infosecurity-magazine.com/news/human-attacker-machine-speed/","summary":"A human attacker exploited a Marimo RCE and reached an SSH bastion in eight seconds","source":"Infosecurity Magazine","category":"general","vendor":null,"published_at":"2026-09-14T14:15:00.000Z","created_at":"2026-09-14 14:21:23","sector":null,"mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"153adf95e8e18d33","entities_processed":1,"tlp":"WHITE"},{"id":14527711,"title":"U.S. CISA adds GitLab, JFrog Artifactory, and ConnectWise ScreenConnect flaws to its Known Exploited Vulnerabilities catalog","link":"https://securityaffairs.com/199032/security/u-s-cisa-adds-gitlab-jfrog-artifactory-and-connectwise-screenconnect-flaws-to-its-known-exploited-vulnerabilities-catalog.html","summary":"U.S.","source":"Security Affairs","category":"general","vendor":"Amazon","published_at":"2026-09-14T14:08:02.000Z","created_at":"2026-09-14 14:21:22","sector":"Manufacturing","mitre_techniques":null,"iocs":{"cves":["CVE-2026-42016"]},"vendors_all":["Amazon","GitLab"],"dedup_hash":"3355b6b120c9ec0b","entities_processed":1,"tlp":"WHITE"},{"id":14524186,"title":"Why Patch Automation Needs Brakes, Not Just an Accelerator","link":"https://www.bleepingcomputer.com/news/security/why-patch-automation-needs-brakes-not-just-an-accelerator/","summary":"Patch automation can help IT teams keep pace with growing update volumes, but deploying faster also means bad updates can spread faster. Action1 explains how...","source":"BleepingComputer","category":"general","vendor":null,"published_at":"2026-09-14T14:01:11.000Z","created_at":"2026-09-14 14:06:21","sector":"Financial","mitre_techniques":null,"iocs":null,"vendors_all":null,"dedup_hash":"f4356f7e4fc493a4","entities_processed":1,"tlp":"WHITE"},{"id":14525616,"title":"Wordfence Bug Bounty Program Monthly Report – May 2026","link":"https://www.wordfence.com/blog/2026/09/wordfence-bug-bounty-program-monthly-report-may-2026/","summary":"In May 2026, the Wordfence Bug Bounty Program received 1095 vulnerability submissions from our growing community of security researchers working to improve t...","source":"Wordfence Blog","category":"vendor","vendor":"Intel","published_at":"2026-09-14T13:58:36.000Z","created_at":"2026-09-14 14:06:26","sector":"Transportation","mitre_techniques":null,"iocs":null,"vendors_all":["Intel","WordPress"],"dedup_hash":"25de0e0df28c4fa9","entities_processed":1,"tlp":"WHITE"}],"pagination":{"page":1,"limit":20,"total":6713,"pages":336}}