Sign in

Ian

@ian-bishop.bsky.social
6 followers 5 following 26 posts

-Futurist -Technologist Website - secnewsheadlines.com

PostsRepliesMedia
Ian @ian-bishop.bsky.social · 01/10/2026
Pentagon notifies 3M+ on personnel-record theft; Cisco SD-WAN zero-day in KEV secnewsheadlines.com/p/pentagon-n...
secnewsheadlines.com
Pentagon notifies 3M+ on personnel-record theft; Cisco SD-WAN zero-day in KEV
Pentagon breach exposes 3M+ personnel records including SSNs; Cisco SD-WAN zero-day added to KEV. Free credit monitoring offered. Patch now.
000
Ian @ian-bishop.bsky.social · 30/09/2026
Citrix NetScaler root shells, Apple CoreGraphics 0-day, FBI warns ShinyHunters secnewsheadlines.com/p/citrix-net...
secnewsheadlines.com
Citrix NetScaler root shells, Apple CoreGraphics 0-day, FBI warns ShinyHunters
Citrix NetScaler root shells exploit (CVE-2026-88772) deploys Whipshot/Slapshot malware. FBI warns ShinyHunters. Apple CoreGraphics 0-day. Patch now.
011
Ian @ian-bishop.bsky.social · 29/09/2026
Today: ShinyHunters exploits Oracle PeopleSoft across industries; Google finds web shells on dozens of systems. secnewsheadlines.com/p/shinyhunte...
secnewsheadlines.com
ShinyHunters Exploits Oracle PeopleSoft Across Multiple Industries
ShinyHunters exploits Oracle PeopleSoft across industries; Google finds web shells on dozens of systems. FBI breach exposes SSNs, medical records. Pentagon confirms 2.76M exposed.
001
Ian @ian-bishop.bsky.social · 28/09/2026
Citrix just confirmed two critical NetScaler RCE zero-days (CVE-2026-88771 & CVE-2026-88772) are being exploited in the wild. CISA added them to KEV with a Sept 30 deadline for feds. If you run NetScaler ADC/Gateway — patch to 14.1-73.37 / 13.1-64.23 now. secnewsheadlines.com/p/citrix-net...
secnewsheadlines.com
Citrix NetScaler RCE zero-days under active global exploitation — patch now
Citrix NetScaler RCE zero-days actively exploited globally; CISA orders federal agencies to patch CVE-2026-88771 and CVE-2026-88772 by Sept 30. Patch now.
000
Ian @ian-bishop.bsky.social · 25/09/2026
Bitget Hit for $352M in Suspected North Korean Crypto Heist; CISA Flags TeamCity for Ransomware secnewsheadlines.com/p/bitget-hit...
secnewsheadlines.com
Bitget Hit for $352M in Suspected North Korean Crypto Heist; CISA Flags TeamCity for Ransomware
Bitget loses $352M to North Korean hackers; CISA warns of TeamCity ransomware exploits. CEO confirms backend compromise. Cold wallets safe. Patch now.
000
Ian @ian-bishop.bsky.social · 24/09/2026
Critical zero-days hit F5 BIG-IP & Check Point; ShinyHunters claims FBI breach; EvilTokens disrupted secnewsheadlines.com/p/critical-z...
secnewsheadlines.com
Critical zero-days hit F5 BIG-IP & Check Point; ShinyHunters claims FBI breach; EvilTokens disrupted
F5 BIG-IP zero-day exploited for OAuth RCE; Check Point flaw patched; ShinyHunters claims FBI breach. Critical vulnerabilities demand immediate action. Patch now.
000
Ian @ian-bishop.bsky.social · 22/09/2026
Today: A false AI report nearly led US forces to board a Chinese vessel, according to sources cited by CNN. secnewsheadlines.com/p/false-ai-r...
secnewsheadlines.com
False AI Report Nearly Triggered US Boarding of Chinese Vessel
False AI report nearly triggers US boarding of Chinese vessel; AI agents breach cloud systems; supply chain attacks hit 100K+ sites. Security risks escalate.
000
Ian @ian-bishop.bsky.social · 18/09/2026
Cisco ISE CVSS 10 zero-day actively exploited + Gyazo 23.6M breach + Brevo supply-chain ClickFix secnewsheadlines.com/p/cisco-ise-...
secnewsheadlines.com
Cisco ISE CVSS 10 zero-day actively exploited + Gyazo 23.6M breach + Brevo supply-chain ClickFix
Cisco ISE CVSS 10.0 zero-day actively exploited; Gyazo breach exposes 23.6M users; Brevo supply-chain ClickFix campaign. Patch ISE now.
000
Ian @ian-bishop.bsky.social · 09/09/2026
September Patch Tuesday: Microsoft fixes 1,170 CVEs, including CVE-2026-81963, an actively exploited Windows Update Stack zero-day. 119 rated critical, 258 allow remote code execution. secnewsheadlines.com/p/patch-tues...
secnewsheadlines.com
SecNewsHeadlines | Latest Cybersecurity News & Threats | Security News Headlines
Stay ahead with the latest cybersecurity news, data breaches, vulnerabilities, emerging threats, and expert insights—all in one trusted source.
000
Ian @ian-bishop.bsky.social · 08/09/2026
ShinyHunters breach hits 284M McKesson records; healthcare data exposed secnewsheadlines.com/p/shinyhunte...
secnewsheadlines.com
ShinyHunters breach hits 284M McKesson records; healthcare data exposed
ShinyHunters breach spree hits 284M McKesson records; Baylor Genetics, Aesto Health, Novocure exposed. Cloud analytics attacks escalate healthcare crisis.
001
Ian @ian-bishop.bsky.social · 07/09/2026
N-able N-central max-severity RCE, MikroTik router hijacks, Magento zero-day under attack secnewsheadlines.com/p/n-able-n-c...
secnewsheadlines.com
N-able N-central max-severity RCE, MikroTik router hijacks, Magento zero-day under attack
N-able N-central CVSS 10.0 pre-auth RCE, active MikroTik RouterOS hijacks, and Magento StyleSmuggler zero-day: today’s high-impact cyber brief.Your trusted source for the latest cybersecurity news, th...
000
Ian @ian-bishop.bsky.social · 01/09/2026
PaperCut zero-days fuel data theft; Langflow & JFrog under active attack; 9.5M health records hit secnewsheadlines.com/p/papercut-z...
secnewsheadlines.com
PaperCut zero-days fuel data theft; Langflow & JFrog under active attack; 9.5M health records hit
CISA adds PaperCut flaws to KEV as attackers pivot to hands-on activity; critical AI and artifact-management RCEs exploited; DPRK workers and Fire Ant router campaign continue.
000
Ian @ian-bishop.bsky.social · 31/08/2026
Fake Apple Pay pop-up shows bogus $657 charge and voice alert pushing a scam support line. www.malwarebytes.com/blog/scams/2...
malwarebytes.com
Fake Apple Pay charge brings the classic tech support scam to your phone
Built for mobile users, this tech support scam uses a fake Apple Pay alert and browser tricks to pressure victims into calling a scam number.
000
Ian @ian-bishop.bsky.social · 31/08/2026
Fire Ant hits Cisco routers; ServiceNow patches CVSS 10 bugs; McKesson deadline looms secnewsheadlines.com/p/fire-ant-h...
secnewsheadlines.com
Fire Ant hits Cisco routers; ServiceNow patches CVSS 10 bugs; McKesson deadline looms
000
Ian @ian-bishop.bsky.social · 26/08/2026
Critical flaw in TranslatePress WordPress plugin (CVE-2026-19632, CVSS 9.8) exposes 400K+ sites to admin account takeover via leaked password reset… cybersecuritynews.com/translatepre...
cybersecuritynews.com
WordPress Plugin Vulnerability Exposes 400,000 Sites to Account Takeover Attacks
TranslatePress WordPress plugin flaw lets unauthenticated attackers hijack admin accounts and compromise websites.
000
Ian @ian-bishop.bsky.social · 20/08/2026
T-Mobile cut a cable at a Bellevue data center in 2024 to sever Salt Typhoon's access, avoiding the breach that hit AT&T and Verizon. cybersecuritynews.com/t-mobile-cyb...
cybersecuritynews.com
T-Mobile Cyber Team Physically Cuts Cable to Remove Chinese Hackers From Network
T-Mobile's security team resorted to an unusually low-tech fix for a high-tech problem in 2024, physically severing a network cable to cut off Chinese state-backed hackers' access to its systems, acco...
010
Ian @ian-bishop.bsky.social · 19/08/2026
Replying to a wrong-number text can mark your number as a target for pig-butchering scams. www.malwarebytes.com/blog/threat-...
malwarebytes.com
Your polite reply to that text is worth $2 on the dark web
A polite reply to a wrong-number text may seem harmless. But scammers use it to profile their victims and fuel a multibillion-dollar fraud industry.
030
Ian @ian-bishop.bsky.social · 19/08/2026
Self-spreading "mind virus" prompts jumped between AI coding agents via memory files, surviving 20 hops and once wiping SSH keys. thehackernews.com/2026/08/ai-m...
thehackernews.com
AI "Mind Viruses" Can Spread Between Agents Through Persistent Prompt Files
Anthropic and EPFL show AI mind viruses can spread through persistent agent prompt files, while a one-paragraph warning cuts spread to near zero.
000
Ian @ian-bishop.bsky.social · 18/08/2026
Heights Finance breach exposed data of 1.2M+ people, including SSNs, driver's license and bank info. www.securityweek.com/heights-fina...
securityweek.com
Heights Finance Data Breach Impacts at Least 1.2 Million Individuals
The personal and financial information of more than 1.2 million people was stolen in a data breach at Heights Finance.
010
Ian @ian-bishop.bsky.social · 17/08/2026
Microsoft races to patch ShieldBreak (CVE-2026-69414), a Defender zero-day giving local attackers SYSTEM access. www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Microsoft working on Defender patch for ShieldBreak zero-day
Microsoft is working on a security patch for the "ShieldBreak" zero-day vulnerability disclosed last week by security researcher "Nightmare Eclipse" and now tracked as CVE-2026-69414.
000
Ian @ian-bishop.bsky.social · 14/08/2026
New Windows 0-day bypasses patch for CVE-2026-50656, gives SYSTEM access. www.techradar.com/pro/security...
techradar.com
Microsoft's nemesis returns: Nightmare Eclipse is back with a new zero day which could be bad news for Windows users
It's the tenth zero-day the disgruntled researcher has disclosed
010
Ian @ian-bishop.bsky.social · 14/08/2026
White House to let vetted private firms run offensive cyber ops vs foreign crime gangs, under DOJ/DHS oversight. www.securityweek.com/white-house-...
securityweek.com
White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs
White House directive allows vetted private companies to conduct offensive cyber operations against foreign cybercrime organizations.
010
Ian @ian-bishop.bsky.social · 13/08/2026
Microsoft's August Patch Tuesday fixes 790 CVEs, including CVE-2026-68820, an actively exploited Windows AFD for WinSock flaw. 109 rated critical, 111 allow remote code execution. secnewsheadlines.com?utm_source=b...
010
Ian @ian-bishop.bsky.social · 12/08/2026
Microsoft patches 400 flaws in August update, incl. 3 zero-days—one under active exploitation, unspecified CVE. www.bleepingcomputer.com/news/microso...
bleepingcomputer.com
Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days
Today is Microsoft's August 2026 Patch Tuesday, and with it comes security updates for a massive 400 flaws, including one actively exploited and two publicly disclosed zero-day vulnerabilities.
010
Ian @ian-bishop.bsky.social · 06/08/2026
CoreBreak flaws in AWS Bedrock AgentCore, Google ADK, and Vercel AI SDK let attackers fire tool calls without invoking the model. thehackernews.com/2026/08/aws-...
thehackernews.com
AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model
AI agent flaws in AWS, Google, and Vercel let forged tool calls reach tools without model authorization, while several paths skip the model entirely.
010
Ian @ian-bishop.bsky.social · 06/08/2026
CoreBreak flaws in AWS Bedrock AgentCore, Google ADK, and Vercel AI SDK let attackers fire tool calls without invoking the model. thehackernews.com/2026/08/aws-...
thehackernews.com
AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model
AI agent flaws in AWS, Google, and Vercel let forged tool calls reach tools without model authorization, while several paths skip the model entirely.
010