Thursday, September 17, 2026
Tech Debrief

Cybersecurity

In-depth cybersecurity analysis and news for business executives.

Hackers Bypass Security With Help Desk Calls, Scattered Spider Attacks Show
Cybersecurity

Hackers Bypass Security With Help Desk Calls, Scattered Spider Attacks Show

Scattered Spider hackers bypass enterprise security by calling help desks and using social engineering to reset passwords and MFA tokens, recent UK retail breaches show.

7m ago
US Space Force Deploys Weapons in Orbit, Details Classified
Cybersecurity

US Space Force Deploys Weapons in Orbit, Details Classified

US Space Force confirms orbital deployment of classified "space control weapons," details undisclosed. Officials won't specify weapon type, launch method, or timing. International reactions and debris concerns follow announcement.

2h ago
Exaforce Launches AI Security Tool Using Existing Data to Track Agents
AI & ML

Exaforce Launches AI Security Tool Using Existing Data to Track Agents

Exaforce launched AI Security, monitoring agents across OpenAI, Gemini, and Copilot using existing security data without new sensors, addressing discovery and access control gaps identified in recent surveys.

4h ago
Startup Raises $40 Million to Audit AI Agents Before Enterprises Deploy Them
AI & ML

Startup Raises $40 Million to Audit AI Agents Before Enterprises Deploy Them

AIUC raised $40 million Series A to audit AI agents through 5,000 tests, producing certification reports for enterprises. Founded by early Anthropic employee and former METR COO, it applies SOC 2-style standards.

5h ago
Most Fake Hires Get Network Access Before Detection, Report Finds
Cybersecurity

Most Fake Hires Get Network Access Before Detection, Report Finds

Most fraudulent hires receive corporate credentials and network access before detection, with fake employees averaging 5.73 days of unsupervised access. HYPR's study found 98% of US HR executives have experienced candidate fraud firsthand.

7h ago
Microsoft 365 Attackers Use Passkey Prompts to Trick Employees, Steal Access
Cybersecurity

Microsoft 365 Attackers Use Passkey Prompts to Trick Employees, Steal Access

Microsoft warns attackers impersonate IT support to trick employees into compromising Microsoft 365 accounts using passkey-themed social engineering, tracking campaigns since May 2026 across cloud services.

8h ago
Malware Campaign Uses IoT Protocol to Control Systems Across Asia, South America
Cybersecurity

Malware Campaign Uses IoT Protocol to Control Systems Across Asia, South America

BambooToken malware has used an IoT messaging protocol to control Windows and Linux systems since February 2023, targeting organizations across Asia and South America while evading detection.

8h ago
Iran Uses Telegram-Controlled Malware to Spy on Dissidents Worldwide
Cybersecurity

Iran Uses Telegram-Controlled Malware to Spy on Dissidents Worldwide

U.S., U.K., and Dutch agencies revealed Iran's MOIS uses Telegram-controlled malware to spy on dissidents worldwide, capturing messages, screenshots, and audio since 2023.

10h ago
Brazilian Banking Malware Uses Blockchain to Hide Attack Infrastructure
Cybersecurity

Brazilian Banking Malware Uses Blockchain to Hide Attack Infrastructure

Brazilian banking malware KREMLIN uses Ethereum smart contracts to hide infrastructure, installs malicious Chrome extensions, and has infected over 1,500 systems, mostly in Brazil.

11h ago
Cisco Email Gateway Flaw Gave Hackers Root Access Before Patch
Cybersecurity

Cisco Email Gateway Flaw Gave Hackers Root Access Before Patch

12h ago
UK Lab Launches Rival to MITRE Security Testing as Vendors Drop Out
Cybersecurity

UK Lab Launches Rival to MITRE Security Testing as Vendors Drop Out

17h ago
Deepfake Sites Target Nearly 150 European Politicians, Most of Them Women
AI & ML

Deepfake Sites Target Nearly 150 European Politicians, Most of Them Women

20h ago
OpenRouter Launches U.S. Data Routing for Chinese AI Models
AI & ML

OpenRouter Launches U.S. Data Routing for Chinese AI Models

1d ago
Human Attacker Breached Cloud System in 8 Seconds, Matching AI Speed
Cybersecurity

Human Attacker Breached Cloud System in 8 Seconds, Matching AI Speed

1d ago
Twitch Browser Extension Sent 31,000 User Tokens to Russian Servers
Cybersecurity

Twitch Browser Extension Sent 31,000 User Tokens to Russian Servers

1d ago
Ex-FTC Chair Khan Urges Prosecution of AI Executives Under Existing Laws
AI & ML

Ex-FTC Chair Khan Urges Prosecution of AI Executives Under Existing Laws

1d ago
New York Seizes 12 Celebrity Deepfake Sites Depicting 1,200 Victims
AI & ML

New York Seizes 12 Celebrity Deepfake Sites Depicting 1,200 Victims

1d ago
HBO Max Reddit Account Hijacked to Push Malware in 48-Hour Campaign
Cybersecurity

HBO Max Reddit Account Hijacked to Push Malware in 48-Hour Campaign

1d ago
GitLab Flaw With Perfect Severity Score Lets Hackers Steal Secrets in One Request
Cybersecurity

GitLab Flaw With Perfect Severity Score Lets Hackers Steal Secrets in One Request

1d ago
China's spy chief warns AI threatens Communist Party control
AI & ML

China's spy chief warns AI threatens Communist Party control

1d ago
Top AI Lab Chiefs Call for Slowdown, Citing Cyber and Safety Risks
AI & ML

Top AI Lab Chiefs Call for Slowdown, Citing Cyber and Safety Risks

1d ago
AI Chat Logs Enter Legal Discovery After 3M Expert's Prompts Surface in Court
AI & ML

AI Chat Logs Enter Legal Discovery After 3M Expert's Prompts Surface in Court

2d ago
Revolut Confirms Data Breach After Fake Government Emails Trick Employees
Cybersecurity

Revolut Confirms Data Breach After Fake Government Emails Trick Employees

2d ago
Scammers Send 1 Million Fake CEO Emails in Three Days, Microsoft Says
Cybersecurity

Scammers Send 1 Million Fake CEO Emails in Three Days, Microsoft Says

3d ago
UK to Force Apple, Google to Block Child Nudity Images After Missed Deadline
Cybersecurity

UK to Force Apple, Google to Block Child Nudity Images After Missed Deadline

3d ago
Rubrik Launches Iceberg Data Protection for AWS Lakehouse Recovery
Cybersecurity

Rubrik Launches Iceberg Data Protection for AWS Lakehouse Recovery

3d ago
Meta Launches Muse AI Agent With Encrypted Virtual Machines, Bug Bounties
AI Apps

Meta Launches Muse AI Agent With Encrypted Virtual Machines, Bug Bounties

3d ago
Microsoft Deploys AI Security Scanner Using 100 Agents to US Government
AI & ML

Microsoft Deploys AI Security Scanner Using 100 Agents to US Government

4d ago
Indian Government Site Distributes Malware via Fake Cloudflare Page
Cybersecurity

Indian Government Site Distributes Malware via Fake Cloudflare Page

4d ago