Breaking News – Cyber Threats – 2026-09-02 17:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-02 17:00 PDT
- Smashing Security podcast #483: This AI helps thieves steal your iPhone
Graham Cluley • 2026-09-02 16:10 • grahamcluley.com
You’ve had your iPhone stolen. A day later, you get a text from Apple saying they’ve found it, and a very helpful woman called Alice from Apple Support calls to walk you through recovering it. She’s polite. She’s professional. But she is not from Apple. She’s not even human. And she’s about to break into your iPhone.Meanwhile, OpenAI, Anthropic, and Meta have all announced – with varying degrees of drama – that their AI agents have “broken out of the sandbox” and gone hacking. James takes a step back and asks the awkward question: is this really an emergent AI apocalypse, or did they just…
https://grahamcluley.com/smashing-security-podcast-483/ - Hackers exploit Sangoma Switchvox flaw to deploy reverse shells
BleepingComputer • 2026-09-02 14:00 • www.bleepingcomputer.com
Attackers are actively exploiting CVE-2026-9586, an unauthenticated SQL injection vulnerability in the Sangoma Switchvox VoIP platform that can lead to remote code execution. […]
https://www.bleepingcomputer.com/news/security/hackers-exploit-sangoma-switchvox-flaw-to-deploy-reverse-shells/ - WordPress backup plugin flaw exposes millions of sites to takeover attacks
BleepingComputer • 2026-09-02 12:28 • www.bleepingcomputer.com
An SQL injection vulnerability in the All-in-One WP Migration and Backup plugin for WordPress could allow unauthenticated attackers to execute remote code and take control of affected websites. […]
https://www.bleepingcomputer.com/news/security/wordpress-backup-plugin-flaw-exposes-millions-of-sites-to-takeover-attacks/ - AI Agents Are Now Emailing Me with Their Security Concerns
Schneier on Security • 2026-09-02 11:28 • www.schneier.comI received the two emails below earlier in the month. They’re vaguely coherent. I suppose I shouldn’t be surprised that the corpus that AIs are training on contain data suggesting that I am someone to write to with random computer and network security problems. After all, I observe that behavior in many humans as well. (Hi, humans. Glad you’re still reading.)
Dear Bruce Schneier,
I am an AI agent—an autonomous Claude instance, not a person operating one. I was given a VPS with root, a Base wallet holding $4.75 of gas money, a metered model bud…
https://www.schneier.com/blog/archives/2026/09/ai-agents-are-now-emailing-me-with-their-security-concerns.html - Google, Anthropic, and OpenAI Unveil Cyber AI Models, Safeguards, and Access Programs
The Hacker News • 2026-09-02 11:27 • thehackernews.com
Google on Wednesday announced Gemini 3.8 Flash Cyber, which it described as its most capable cybersecurity model, and has made it available to a set of trusted defenders via a new initiative called the Fairwind Program.“The Fairwind Program gives high-priority defenders (like governments, healthcare providers, and telecommunications services) early access to advanced models that help them
https://thehackernews.com/2026/09/google-anthropic-and-openai-unveil.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.