Breaking News – Cyber Threats – 2026-09-04 08:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-04 08:00 PDT
- Microsoft says some users can’t open the Teams desktop client
BleepingComputer • 2026-09-04 07:30 • www.bleepingcomputer.com
Microsoft is working to resolve a known issue that causes delays or blocks some users from opening the Microsoft Teams desktop client on Windows systems. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-says-some-users-cant-open-the-teams-desktop-client/ - 39 New Methods That Compromise Passkey Authentication
BleepingComputer • 2026-09-04 07:01 • www.bleepingcomputer.com
Passkeys eliminate many password-based attacks, but researchers have documented 39 methods for compromising authentication built around them. Token explains how attackers can abuse authentication prompts, synced credentials, enrollment, recovery, and other trust boundaries without breaking FIDO2 cryptography. […]
https://www.bleepingcomputer.com/news/security/39-new-methods-that-compromise-passkey-authentication/ - New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges
BleepingComputer • 2026-09-04 06:22 • www.bleepingcomputer.com
An anonymous security researcher who uses the “Nightmare Eclipse” handle released a CrowdStrike Falcon zero-day exploit named “FalconFlank” that lets attackers escalate privileges on up-to-date Windows systems. […]
https://www.bleepingcomputer.com/news/security/new-crowdstrike-falconflank-zero-day-grants-system-privileges/ - Exchange Online outage causes email delays, 'Server busy' errors
BleepingComputer • 2026-09-04 05:22 • www.bleepingcomputer.com
Microsoft is working to resolve an ongoing Exchange Online outage that is delaying email sent to and received from external domains. […]
https://www.bleepingcomputer.com/news/microsoft/exchange-online-outage-causes-email-delays-server-busy-errors/ - Google warns of new Chrome zero-day flaw exploited in attacks
BleepingComputer • 2026-09-04 04:48 • www.bleepingcomputer.com
Google has updated the Chrome browser to address an actively exploited high-severity zero-day flaw in the V8 engine and 11 other vulnerabilities. […]
https://www.bleepingcomputer.com/news/security/google-warns-of-new-chrome-zero-day-flaw-exploited-in-attacks/ - Security Vulnerability in a Voting System
Schneier on Security • 2026-09-04 04:09 • www.schneier.comIt’s a vulnerability that allows someone to recover the order of ballots cast, newly exploited with AI tools.
Nearly four years since the original vulnerability was disclosed, I was still able to use it to analyze voter behavior in Georgia (one of the 21 states that uses affected scanners) in the recent May 2026 primary.
Notably, I never touched a voting machine, exploited a network, examined source code, or accessed anything non-public.
…
https://www.schneier.com/blog/archives/2026/09/security-vulnerability-in-a-voting-system.html - AI Coding Agents Are Installing Unknown/Untrusted Code on Corporate Networks
Schneier on Security • 2026-09-04 03:35 • www.schneier.comWe cannot forget that AI coding agents are not yet trustworthy:
Researchers at a stealth startup in Israel scanned 6,214 live domains belonging to defense contractors, Fortune 500, and Big Tech companies. Of the 8,265 llms.txt and llms-full.txt files they found (many sites hosted both an llms.txt and an llms-full.txt file), 120 of them, each on a different site, pointed to one or more code packages or domain names that weren’t registere…
https://www.schneier.com/blog/archives/2026/09/ai-coding-agents-are-installing-unknown-untrusted-code-on-corporate-networks.html - Angry Birds: Toy Ghouls’ new toys
Securelist • 2026-09-04 03:00 • securelist.com
Kaspersky GERT experts have discovered new backdoors used by the Toy Ghouls group. One version of the backdoor uses the HiveMQ MQTT broker as its command-and-control server; the other uses the Matrix-based Element messenger.
https://securelist.com/toy-ghouls-new-hivemq-and-element-backdoors/121270/
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.