ICYMI: 2026-10-02
Latest Headlines
GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Servers
Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign
Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes
OpenAI Parts Ways With Three Safety Researchers Over Sensitive Information Mishandling
Why CISOs Struggle to Answer the Board’s Three Hardest Questions, and How to Fix the Report
Android 17 Advanced Protection Locks Accessibility Services to Verified Accessibility Tools
Critical FortiMail Zero-Day Flaw Exploited in Attacks Allows Unauthenticated Arbitrary File Writes
ICE Has Been Dumping Protester Photos Into a Palantir Database
A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data
In Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI Chats
macOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD Backdoor
Warlock Expands SharePoint Exploitation in Critical Infrastructure Attacks
AI Agents Aimed SQL Injection at US and Canadian Government Sites
Exploited Fortinet FortiMail Zero-Day Calls for Urgent Action
Frontline Education breach exposes school district employee data
Warlock ransomware breach SharePoint in water, telecom operator attacks
GitLab warns of critical RCE vulnerability in AI Gateway service
US sanctions Tren de Aragua gang members in ATM hacks crackdown
The EDR blind spot: 3 ways browser attacks evade endpoint telemetry
Dell asks admins to patch max severity CSM flaws as soon as possible
– MTZ