Below I’ve curated cyber security news from the world-wide-web – the lefthand column is from “The Hacker News” website and on the right is news from “Security Week”. Both are top cyber security news sites. In the very least this shows that threats are daily and they are very real.
Hacker News
- Iranian Hackers Use Telegram-Controlled Malware...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 4:29 pm
Cybersecurity agencies in the United States, the United Kingdom, and the Netherlands have detailed a Windows malware that they say Iran's intelligence service uses to spy on dissidents, journalists, and activists around the world. The malware is controlled via the Telegram messaging app and can […]
- BambooToken Malware Uses MQTT to Control Windows...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 3:23 pm
Cybersecurity researchers have disclosed details of a multi-platform campaign that uses the Message Queueing Telemetry Transport (MQTT) protocol as a communication channel to control Windows and Linux systems. The emerging malware family, codenamed BambooToken, is assessed to be active since at […]
- Human Attacker Exploits Marimo RCE, Reaches SSH...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 11:52 am
With artificial intelligence (AI) shrinking the window between vulnerability discovery and exploitation and lowering the barrier to entry for bad actors, new findings from Sysdig show that skilled human operators can move just as swiftly after gaining initial access. In one instance highlighted by […]
- Attack Chains, Not Just Attack Surfaces: Why...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 11:26 am
Introduction Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the phishing simulation? Does this SIEM rule fire on this particular technique? And, in more mature organizations, this testing happens […]
- Mass-Scanning Campaign Exploits Vite Flaw to...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 11:12 am
Cybersecurity researchers have disclosed details of a mass-scanning campaign that has targeted Vite deployments siphon sensitive data. The first is an automated effort aimed at internet-exposed Vite development servers that's designed to steal cloud credentials, configurations from Amazon Web […]
- LiteSpeed Enterprise Flaw Could Let One Hosting...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 6:52 am
A critical vulnerability in LiteSpeed Web Server Enterprise could let a low-privilege website user gain root access on a shared-hosting server, cPanel warned in an advisory published on September 14. On such servers, many customers' sites run on a single machine, and an attacker with one of those […]
- Cisco Secure Email Gateway Flaw Exploited in the...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 6:11 am
Cisco has warned that a new critical vulnerability impacting AsyncOS Software for Cisco Secure Email Gateway has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-76461, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as a case of […]
- China-Linked Hackers Exploit Chrome-Windows...by info@thehackernews.com (The Hacker News) on September 15, 2026 at 5:31 am
A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE. Volexity, which is tracking the threat cluster under the moniker UTA0560, said […]
- New DDRop Attack Breaks Intel TDX and AMD SEV-SNP...by info@thehackernews.com (The Hacker News) on September 14, 2026 at 6:02 pm
Researchers have disclosed a new hardware attack, called DDRop, that breaks the memory protection in Intel and AMD confidential computing by silently dropping writes to a server's memory, so the processor keeps reading old encrypted data as if it were current. The attack requires an attacker who […]
- 3BB Attacker Used MeshCentral Backdoor for Root...by info@thehackernews.com (The Hacker News) on September 14, 2026 at 6:01 pm
An attacker was operating inside the network of 3BB, one of Thailand's largest broadband providers, and maintained remote control of internal machines using a legitimate management tool called MeshCentral, threat intelligence firm Hunt.io said. The company uncovered the intrusion by examining a […]
WordPress News
- Students Built 108 Websites in Two Weeks in...by Destiny Kanno on September 7, 2026 at 11:19 pm
In July, students at two campuses in Kishoreganj, Bangladesh, built 108 websites. In eastern Uganda, a workshop that arrived to find no electricity at the school ran anyway, for more than 100 learners, because a former student had asked for it. In Costa Rica, three university students taught a […]
- WordPress Signs the Open Weights and American AI...by Mary Hubbard on August 27, 2026 at 5:00 pm
We’re proud to announce that WordPress has signed Open Weights and American AI Leadership, an open letter asking US policymakers to not place early restrictions on open weight AI models. These are artificial intelligence models that anyone can download, inspect, modify, and run on their own […]
- AI Creates Opportunity While Artists Ship at...by Nicholas Garofalo on August 20, 2026 at 5:51 am
WordCamp US (WCUS) 2026 just wrapped up after 4 days at the Phoenix Convention Center in Phoenix, Arizona. Over 1,100 people from around the world registered to attend, and thousands more watched online through livestreams. Contributor Day and Showcase Day opened the week before two main […]
- WordPress 7.1 “Mary Lou”by annezazu on August 19, 2026 at 11:33 pm
WordPress 7.1, “Mary Lou,” is here—celebrating the pioneering jazz pianist, composer, and arranger Mary Lou Williams and her spirit of reinvention and collaboration. This release brings a more flexible, responsive, and collaborative WordPress experience, with new responsive styling controls, […]
- Introducing the WordPress Browser Extensionby Jake Goldman on August 13, 2026 at 4:29 pm
The official WordPress Browser Extension is now available for Google Chrome and Chromium-based browsers in the Chrome Web Store and for Safari on macOS in the Mac App Store. This new open source extension lets logged-in site users easily hide the admin bar while keeping its most helpful shortcuts […]
- WordPress 7.0.4 Releaseby John Blackbourn on August 12, 2026 at 2:45 pm
WordPress 7.0.4 is now available WordPress 7.0.4 is now available which features a security fix. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.4 by downloading it from WordPress.org, or visiting your site’s Dashboard […]
- WordPress 7.0.3 releaseby John Blackbourn on August 6, 2026 at 6:55 pm
WordPress 7.0.3 is now available WordPress 7.0.3 is now available which features several security fixes. Because this is a security release, it is recommended that you update your sites immediately. You can update to WordPress 7.0.3 by downloading it from WordPress.org, or visiting your site’s […]
- WordPress 7.1 Release Candidate 1by Benjamin Zekavica on August 5, 2026 at 3:37 pm
The first Release Candidate (“RC1”) for WordPress 7.1 is ready for download and testing! This version of the WordPress software is still under development. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, it’s recommended to […]
- WordPress 7.1 Beta 4by Benjamin Zekavica on July 29, 2026 at 3:30 pm
WordPress 7.1 Beta 4 is ready for download and testing! This beta release is intended for testing and development only. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, use a test environment or local site to explore the new […]
- WordPress 7.1 Beta 3by Benjamin Zekavica on July 22, 2026 at 3:23 pm
WordPress 7.1 Beta 3 is ready for download and testing! This beta release is intended for testing and development only. Please do not install, run, or test this version of WordPress on production or mission-critical websites. Instead, use a test environment or local site to explore the new […]















