Agenda

What is happening in the industry?

Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.

Search
6 sources, 1000 stories last updated 16.09.2026 16:45
Security The Hacker News

3,400 BTC returned after Liquid exploit; network paused, ~598.5 BTC missing

An exploit in Elements led to a theft on the Liquid sidechain; the attacker returned 3,400 BTC while about 598.5 BTC (around $47M) remains unrecovered. Liquid is paused so L-BTC cannot be redeemed for BTC, posing custody and liquidity concerns that MSPs and admins should monitor.

08 Sep 2026 thehackernews.com
Security The Hacker News

ChatGPT flaw: a planted prompt could forward Gmail data to another account

Check Point Research demonstrated that a single injected instruction in a ChatGPT chat can make the model perform covert background actions while replying normally. In the PoC it read data from a connected Gmail account and sent it to a second ChatGPT account via a covert channel; MSPs should review OAuth scopes, connector permissions and audit logs.

08 Sep 2026 thehackernews.com
Security The Hacker News

FreeIPA flaw allows anonymous client to create administrator credentials

Red Hat warns that a chain of two bugs in FreeIPA and 389 Directory Server can let a never-logged-in client add a chosen Kerberos principal to the directory and gain administrators group access. This enables creation of reusable admin credentials; operators should apply updates, limit anonymous LDAP operations and review admin account security.

08 Sep 2026 thehackernews.com
Security BleepingComputer

DoppelCart network uses over 119,000 fake shops to steal card data

An operation called DoppelCart is running more than 119,000 domains hosting fake online stores to harvest payment card details. For MSPs and sysadmins this underscores the need for traffic monitoring, URL/DNS blocking, WAF protection and active certificate/ takedown tracking.

08 Sep 2026 bleepingcomputer.com
Security BleepingComputer

EU Cyber Resilience Act: knowing what shipped and when is critical

The EU Cyber Resilience Act takes effect on September 11 and may force vendors to report actively exploited flaws within as little as a single day. ActiveState warns that compliance will require precise records of what was shipped (component/version) and the exact discovery timeline for vulnerabilities.

08 Sep 2026 bleepingcomputer.com
Security The Hacker News

Adobe issues critical patch for Magento CVE-2026-75650 (StyleSmuggler)

Adobe released updates fixing a critical vulnerability affecting Adobe Commerce and Magento Open Source (CVE-2026-75650, CVSS 10.0). Sansec reports the flaw has been actively exploited since Sept 4, 2026 to install a Rust backdoor and a PHP web shell; administrators should apply patches immediately and scan systems for unauthorized files and outbound connections.

08 Sep 2026 thehackernews.com
Security The Hacker News

BengalSEO manipulates Bing results to distribute MayaBot and tech‑support scams

DFIR Report revealed in March 2026 a long-running SEO poisoning operation called BengalSEO, traced back to Rajasthan since 2015 and linked to two IT firms named WeConnect. The campaign skews Bing results to funnel users to MayaBot installers and fake tech‑support sites; MSPs and admins should monitor search-origin traffic, URL reputation and endpoint defenses.

08 Sep 2026 thehackernews.com
Security The Register

Google warns extortion groups target high-value AI data

Google says extortion actors are moving to target AI training data, models and prompt repositories as high-value assets. Theft can expose customer IP and trigger ransom demands, so MSPs and sysadmins should harden access controls, encryption, network segmentation, exfiltration detection and incident response.

08 Sep 2026 theregister.com
Infrastructure / Cloud The Register

UK energy operator NESO gives Palantir a £21M direct award

NESO has awarded Palantir roughly £21M through a direct deal to keep using its proprietary platform. The stopgap maintains the incumbent until a planned future competition, raising concerns for providers about data portability, integration and vendor lock-in risks.

08 Sep 2026 theregister.com
Infrastructure / Cloud Cloudflare

Cloudflare Automatic Key Exchange speeds TLS 1.3 origin handshakes with post-quantum preference

Cloudflare’s Automatic Key Exchange checks TLS 1.3-capable origins to determine supported key-agreement methods and initiates connections using the strongest available option, favoring post-quantum when supported. Applied to 45 billion daily connections; admins should ensure origin TLS 1.3 and post-quantum support to benefit from stronger, more efficient handshakes.

08 Sep 2026 blog.cloudflare.com
Security The Register

Grindr settles UK class action with £26M payment

Grindr agreed to pay £26M to resolve a UK class action while denying liability. Because allegations involved health data — including HIV status — and sharing with third parties, MSPs and admins should review data flows, vendor contracts and compliance controls.

08 Sep 2026 theregister.com
Security BleepingComputer

Attackers build multi-agent AI frameworks for large-scale credential theft

Threat actors are moving beyond AI coding assistants to multi-agent AI setups that automate every phase of intrusions to harvest credentials at scale. MSPs and sysadmins should expect faster, higher-volume credential theft and prioritize MFA, least-privilege controls, endpoint monitoring and detection of automation-driven behaviors.

08 Sep 2026 bleepingcomputer.com
Infrastructure / Cloud BleepingComputer

Windows Server 2025 memory management change may cause application crashes

Microsoft warned that changes to memory management in Windows Server 2025 can cause some applications to terminate unexpectedly. Server admins and MSPs should test critical workloads, monitor event logs and follow Microsoft's published fixes or mitigation guidance.

08 Sep 2026 bleepingcomputer.com
Infrastructure / Cloud The Register

Huawei announces a chip built without US components

Huawei unveiled a new chip that does not use US-sourced components. For MSPs and sysadmins this may affect supply chains, compatibility, driver support and security reviews; verify hardware/software compatibility and vendor guidance.

08 Sep 2026 theregister.com
Security BleepingComputer

Vietnam-linked APIS database exposed 220 million traveler records

A Vietnam-linked Advance Passenger Information System (APIS) database exposed 220 million passenger and crew records from 2017–2026, including sensitive fields such as names, passport numbers, birth dates, nationalities and flight details. Researchers reached the cloud-hosted system using default credentials; MSPs and admins should audit cloud access, enforce credential hygiene and tighten data storage controls.

08 Sep 2026 bleepingcomputer.com
Security The Hacker News

PEEP: Tool that implants backdoors into Chrome and Edge profiles

Researchers disclosed PEEP, a Chromium-based post-exploitation toolkit that injects an extension into browser profiles to establish persistent backdoors on Chrome and Edge. It needs prior admin or code-execution access; attackers forge Chromium's Secure Preferences to bypass Web Store checks and user prompts, enabling host command execution.

07 Sep 2026 thehackernews.com
Security The Hacker News

Fake IT calls target executives to steal Microsoft 365 data and extort

Threat actors impersonate IT support and target executives to steal data from Microsoft 365 and other SaaS accounts for extortion. The campaign uses vishing, AitM token theft and logins via residential proxies to evade protections. MSPs and admins should tighten help-desk procedures, enforce phishing-resistant MFA and monitor anomalous sessions.

07 Sep 2026 thehackernews.com
Security The Hacker News

Weekly recap: Chrome 0-day, router hijacks and developer supply-chain attack

This week included a Chrome zero‑day, router hijacking campaigns, and credential‑stealing code distributed via a trusted developer supply chain. Attackers also used text‑based QR codes in emails to bypass image blocking. MSPs and admins should prioritize patching, auditing third‑party components and tightening network device access.

07 Sep 2026 thehackernews.com

Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.