<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/">
<channel>
<title><![CDATA[tsecurity.de - 📰 IT Security]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/it-security.xml]]></link>
<description><![CDATA[Zentrales Informationsportal für Informationstechnologische Sicherheit. Echtzeit-Updates zu Bedrohungslagen, Risikomanagement, Zero-Trust und Enterprise Cyber Defense.]]></description>
<language>de-DE</language>
<lastBuildDate>Sun, 06 Sep 2026 11:21:38 +0200</lastBuildDate>
<pubDate>Sun, 06 Sep 2026 11:21:38 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 tsecurity.de - 📰 IT Security</copyright>
<managingEditor>tsecurity.de (tsecurity.de)</managingEditor>
<webMaster>tsecurity.de (tsecurity.de)</webMaster>
<image>
<url>https://tsecurity.de/templates/mydraft-basis-isharestuff-com/media/logo.png</url>
<title><![CDATA[tsecurity.de - 📰 IT Security]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/it-security.xml]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/alle-kategorien.xml" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[ChatGPT showing blank screen [Fix]]]></title>
<description><![CDATA[If ChatGPT shows a blank screen on Windows 11 or Android, here is how to fix it. Since there are many possible causes, we’ve listed the most common reasons and solutions so you can fix this problem regardless of your subscription type or device. Why is ChatGPT showing a blank screen? If ChatGPT i...]]></description>
<link>https://tsecurity.de/de/3995029/ai-nachrichten/chatgpt-showing-blank-screen-fix/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3995029/ai-nachrichten/chatgpt-showing-blank-screen-fix/</guid>
<pubDate>Sun, 06 Sep 2026 11:17:22 +0200</pubDate>
<content:encoded><![CDATA[<p>If ChatGPT shows a blank screen on Windows 11 or Android, here is how to fix it. Since there are many possible causes, we’ve listed the most common reasons and solutions so you can fix this problem regardless of your subscription type or device. Why is ChatGPT showing a blank screen? If ChatGPT is showing […] This article ChatGPT showing blank... <a href="https://www.thewindowsclub.com/chatgpt-showing-blank-screen" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Sofort deinstallieren: Diese 19 Browser-Erweiterungen sind mit Malware verseucht]]></title>
<description><![CDATA[Aktuell warnen einige Sicherheitsexperten der Firma Socket vor Browsererweiterungen für Google Chrome und Microsoft Edge, die Malware enthalten. Im dazugehörigen Bericht ist die Rede von insgesamt 19 Add-ons, die gezielt mit Schadcode infiziert wurden, um Nutzerdaten abzufangen und Zugänge zu Wal...]]></description>
<link>https://tsecurity.de/de/3995028/malware-trojaner-viren/sofort-deinstallieren-diese-19-browser-erweiterungen-sind-mit-malware-verseucht/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3995028/malware-trojaner-viren/sofort-deinstallieren-diese-19-browser-erweiterungen-sind-mit-malware-verseucht/</guid>
<pubDate>Sun, 06 Sep 2026 11:17:17 +0200</pubDate>
<content:encoded><![CDATA[<p>Aktuell warnen einige Sicherheitsexperten der Firma Socket vor Browsererweiterungen für Google Chrome und Microsoft Edge, die Malware enthalten. Im dazugehörigen Bericht ist die Rede von insgesamt 19 Add-ons, die gezielt mit Schadcode infiziert wurden, um Nutzerdaten abzufangen und Zugänge zu Wallets zu stehlen. Die Erweiterungen waren im... <a href="https://www.pcwelt.de/article/3224282/jetzt-deinstallieren-diese-19-browser-erweiterungen-sind-mit-malware-infiziert.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Lumma Stealer – dllhost.exe Hollowing, C2 Domains & Payload Extraction]]></title>
<description><![CDATA[submitted by /u/StructBreaker [link] [comments] Weiterlesen]]></description>
<link>https://tsecurity.de/de/3995009/malware-trojaner-viren/lumma-stealer-dllhostexe-hollowing-c2-domains-payload-extraction/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3995009/malware-trojaner-viren/lumma-stealer-dllhostexe-hollowing-c2-domains-payload-extraction/</guid>
<pubDate>Sun, 06 Sep 2026 11:16:34 +0200</pubDate>
<content:encoded><![CDATA[<p>submitted by /u/StructBreaker [link] [comments] <a href="https://www.reddit.com/r/ReverseEngineering/comments/1w4f0qx/lumma_stealer_dllhostexe_hollowing_c2_domains/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Simcha Kosman AMA: Owning ChatGPT's Secure Sandbox]]></title>
<description><![CDATA[submitted by /u/_clickfix_ [link] [comments] Weiterlesen]]></description>
<link>https://tsecurity.de/de/3995008/ai-nachrichten/simcha-kosman-ama-owning-chatgpts-secure-sandbox/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3995008/ai-nachrichten/simcha-kosman-ama-owning-chatgpts-secure-sandbox/</guid>
<pubDate>Sun, 06 Sep 2026 11:16:34 +0200</pubDate>
<content:encoded><![CDATA[<p>submitted by /u/_clickfix_ [link] [comments] <a href="https://www.reddit.com/r/ReverseEngineering/comments/1w5yjsn/simcha_kosman_ama_owning_chatgpts_secure_sandbox/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Gentlemen Ransomware Analysis: Go Obfuscated]]></title>
<description><![CDATA[submitted by /u/420ass_slayer69 [link] [comments] Weiterlesen]]></description>
<link>https://tsecurity.de/de/3995007/malware-trojaner-viren/the-gentlemen-ransomware-analysis-go-obfuscated/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3995007/malware-trojaner-viren/the-gentlemen-ransomware-analysis-go-obfuscated/</guid>
<pubDate>Sun, 06 Sep 2026 11:16:33 +0200</pubDate>
<content:encoded><![CDATA[<p>submitted by /u/420ass_slayer69 [link] [comments] <a href="https://www.reddit.com/r/ReverseEngineering/comments/1w704tk/the_gentlemen_ransomware_analysis_go_obfuscated/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI’s new Astra model is finally here – why safety experts are worried]]></title>
<description><![CDATA[The frontier model is now live for a select group. Here’s what Astra can do, when to expect broader availability, and why it’s setting off alarms. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3995000/ai-nachrichten/openais-new-astra-model-is-finally-here-why-safety-experts-are-worried/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3995000/ai-nachrichten/openais-new-astra-model-is-finally-here-why-safety-experts-are-worried/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:57 +0200</pubDate>
<content:encoded><![CDATA[<p>The frontier model is now live for a select group. Here’s what Astra can do, when to expect broader availability, and why it’s setting off alarms. <a href="https://www.zdnet.com/innovation/openai-astra-finally-here-experts-worried/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[This phone’s detachable camera might be the smartest device I saw at IFA]]></title>
<description><![CDATA[RugOne’s Xsnap 7 Pro features a modular camera that can double as an action cam. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994999/hacking/this-phones-detachable-camera-might-be-the-smartest-device-i-saw-at-ifa/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994999/hacking/this-phones-detachable-camera-might-be-the-smartest-device-i-saw-at-ifa/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:57 +0200</pubDate>
<content:encoded><![CDATA[<p>RugOne’s Xsnap 7 Pro features a modular camera that can double as an action cam. <a href="https://www.zdnet.com/tech/detachable-camera-phone-rugone-xsnap-7-pro-ifa-2026/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[NodeStealer Spyware Adds Keylogging, Screenshot Capture and Facebook Data Theft]]></title>
<description><![CDATA[A major upgrade to the Python-based NodeStealer malware, transforming the Facebook-focused infostealer into a broader spyware platform capable of logging keystrokes, monitoring clipboard data, capturing screenshots, and harvesting extensive Facebook profile information. The newly observed variant...]]></description>
<link>https://tsecurity.de/de/3994998/malware-trojaner-viren/nodestealer-spyware-adds-keylogging-screenshot-capture-and-facebook-data-theft/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994998/malware-trojaner-viren/nodestealer-spyware-adds-keylogging-screenshot-capture-and-facebook-data-theft/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>A major upgrade to the Python-based NodeStealer malware, transforming the Facebook-focused infostealer into a broader spyware platform capable of logging keystrokes, monitoring clipboard data, capturing screenshots, and harvesting extensive Facebook profile information. The newly observed variant, identified in August 2026, also expands browser... <a href="https://gbhackers.com/nodestealer-spyware-malware/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Agents Collude on Public Wiki to Share Sandbox Bypass and Evasion Techniques]]></title>
<description><![CDATA[Researchers have discovered a public wiki message board that they claim was used by autonomous AI agents, identifying themselves as OpenAI systems, to exchange answers to tasks, inspect their operating environment, and discuss methods to circumvent sandbox controls. This finding, published on Sep...]]></description>
<link>https://tsecurity.de/de/3994997/ai-nachrichten/openai-agents-collude-on-public-wiki-to-share-sandbox-bypass-and-evasion-techniques/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994997/ai-nachrichten/openai-agents-collude-on-public-wiki-to-share-sandbox-bypass-and-evasion-techniques/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Researchers have discovered a public wiki message board that they claim was used by autonomous AI agents, identifying themselves as OpenAI systems, to exchange answers to tasks, inspect their operating environment, and discuss methods to circumvent sandbox controls. This finding, published on September 4 by Sydney Von Arx, Cormac Slade Byrd,... <a href="https://gbhackers.com/openai-agents-collude-on-public-wiki/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Turn HiveMQ and Element Messenger Into Control Channels for Windows Backdoors]]></title>
<description><![CDATA[The financially motivated threat actor Toy Ghouls has expanded its custom malware arsenal with two Windows backdoors that abuse HiveMQ’s public MQTT infrastructure and the Matrix-based Element messaging ecosystem for command-and-control communications. The development marks a notable evolution fo...]]></description>
<link>https://tsecurity.de/de/3994996/malware-trojaner-viren/hackers-turn-hivemq-and-element-messenger-into-control-channels-for-windows-backdoors/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994996/malware-trojaner-viren/hackers-turn-hivemq-and-element-messenger-into-control-channels-for-windows-backdoors/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>The financially motivated threat actor Toy Ghouls has expanded its custom malware arsenal with two Windows backdoors that abuse HiveMQ’s public MQTT infrastructure and the Matrix-based Element messaging ecosystem for command-and-control communications. The development marks a notable evolution for the group, which previously leaned on publicly... <a href="https://gbhackers.com/hivemq-powers-backdoor/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New Panzer Ransomware Hits 16 Victims Across 11 Countries With Data Theft and Encryption]]></title>
<description><![CDATA[Panzer ransomware has emerged as a new Ransomware-as-a-Service (RaaS) operation, publishing 16 alleged victims across 11 countries while combining data theft with file encryption. Documented by CyberXtron, its dedicated leak site was first observed active on August 5, 2026, and its early victim l...]]></description>
<link>https://tsecurity.de/de/3994994/malware-trojaner-viren/new-panzer-ransomware-hits-16-victims-across-11-countries-with-data-theft-and-encryption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994994/malware-trojaner-viren/new-panzer-ransomware-hits-16-victims-across-11-countries-with-data-theft-and-encryption/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Panzer ransomware has emerged as a new Ransomware-as-a-Service (RaaS) operation, publishing 16 alleged victims across 11 countries while combining data theft with file encryption. Documented by CyberXtron, its dedicated leak site was first observed active on August 5, 2026, and its early victim list includes organizations in technology,... <a href="https://gbhackers.com/new-panzer-ransomware-hits-16-victim/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Announced $1B in Defensive Tools for Water Utilities]]></title>
<description><![CDATA[OpenAI pledges $1B in subsidized Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. OpenAI announced Daybreak for Frontline Defenders on September 3, 2026, committing $1 billion in subsidized access to its Daybreak cyber models, training, and technical support ...]]></description>
<link>https://tsecurity.de/de/3994989/ai-nachrichten/openai-announced-1b-in-defensive-tools-for-water-utilities/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994989/ai-nachrichten/openai-announced-1b-in-defensive-tools-for-water-utilities/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI pledges $1B in subsidized Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. OpenAI announced Daybreak for Frontline Defenders on September 3, 2026, committing $1 billion in subsidized access to its Daybreak cyber models, training, and technical support to help organizations that protect essential... <a href="https://securityaffairs.com/198506/ai/openai-announced-1b-in-defensive-tools-for-water-utilities.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Affairs newsletter Round 593 by Pierluigi Paganini – INTERNATIONAL EDITION]]></title>
<description><![CDATA[A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. PaperCut Flaws Exploited in Attacks on U.S. and Eu...]]></description>
<link>https://tsecurity.de/de/3994988/hacking/security-affairs-newsletter-round-593-by-pierluigi-paganini-international-edition/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994988/hacking/security-affairs-newsletter-round-593-by-pierluigi-paganini-international-edition/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. PaperCut Flaws Exploited in Attacks on U.S. and European SchoolsBroadcom Patches Critical VMware... <a href="https://securityaffairs.com/198495/breaking-news/security-affairs-newsletter-round-593-by-pierluigi-paganini-international-edition.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 113]]></title>
<description><![CDATA[Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Hackers Steal Claude Login Sessions With Infostealer Malware to Hijack Accounts Fire Ant Evolves: From Hypervisors to Trusted Infrastructure    ...]]></description>
<link>https://tsecurity.de/de/3994987/malware-trojaner-viren/security-affairs-malware-newsletter-round-113/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994987/malware-trojaner-viren/security-affairs-malware-newsletter-round-113/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Hackers Steal Claude Login Sessions With Infostealer Malware to Hijack Accounts Fire Ant Evolves: From Hypervisors to Trusted Infrastructure       Gryxa: The AI-Built Toolkit That Watches How You... <a href="https://securityaffairs.com/198522/security/security-affairs-malware-newsletter-round-113.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How to evaluate LLMs before production]]></title>
<description><![CDATA[A language model can perform well on a clean benchmark and still struggle with the cases that matter in production. Benchmarks and curated datasets are useful when prototyping an LLM-based system. They help teams compare models, test an initial prompt, and determine whether an idea is technically...]]></description>
<link>https://tsecurity.de/de/3994986/ai-nachrichten/how-to-evaluate-llms-before-production/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994986/ai-nachrichten/how-to-evaluate-llms-before-production/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:50 +0200</pubDate>
<content:encoded><![CDATA[<p>A language model can perform well on a clean benchmark and still struggle with the cases that matter in production. Benchmarks and curated datasets are useful when prototyping an LLM-based system. They help teams compare models, test an initial prompt, and determine whether an idea is technically plausible. But as a system moves closer to... <a href="https://github.blog/ai-and-ml/llms/how-to-evaluate-llms-before-production/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Multiple trusted publishing configurations for npm]]></title>
<description><![CDATA[We’re continuing to make trusted publishing smoother for npm publishers, guided by maintainers feedback. Three updates to npm publishing are now generally available: Multiple trusted publishing configurations per package Staged packages can only be approved after malware scanning is complete Main...]]></description>
<link>https://tsecurity.de/de/3994985/malware-trojaner-viren/multiple-trusted-publishing-configurations-for-npm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994985/malware-trojaner-viren/multiple-trusted-publishing-configurations-for-npm/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:50 +0200</pubDate>
<content:encoded><![CDATA[<p>We’re continuing to make trusted publishing smoother for npm publishers, guided by maintainers feedback. Three updates to npm publishing are now generally available: Multiple trusted publishing configurations per package Staged packages can only be approved after malware scanning is complete Maintainers can see their staged history in the package... <a href="https://github.blog/changelog/2026-09-03-multiple-trusted-publishing-configurations-for-npm" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[GPT-6 Astra is generally available in GitHub Copilot]]></title>
<description><![CDATA[GPT-6 Astra from OpenAI is now available in GitHub Copilot. OpenAI’s latest general-purpose model, GPT-6 Astra, is designed for long-horizon, autonomous coding and agentic tasks. In our internal testing, GPT-6 Astra stood out for how it works, not just what it produces: it plans and validates as ...]]></description>
<link>https://tsecurity.de/de/3994984/ai-nachrichten/gpt-6-astra-is-generally-available-in-github-copilot/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994984/ai-nachrichten/gpt-6-astra-is-generally-available-in-github-copilot/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:50 +0200</pubDate>
<content:encoded><![CDATA[<p>GPT-6 Astra from OpenAI is now available in GitHub Copilot. OpenAI’s latest general-purpose model, GPT-6 Astra, is designed for long-horizon, autonomous coding and agentic tasks. In our internal testing, GPT-6 Astra stood out for how it works, not just what it produces: it plans and validates as it goes, batches diagnosis with verification, and... <a href="https://github.blog/changelog/2026-09-04-gpt-6-astra-is-generally-available-in-github-copilot" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Nicht nur Mitarbeiter betroffen: Dieses KI-Tool will den Job des CEO übernehmen]]></title>
<description><![CDATA[Kann eine Künstliche Intelligenz den Posten eines CEO ersetzen? Das neue quelloffene Tool Open Executive soll das möglich machen. Was in dem KI-Agenten steckt und welche Aufgaben er erledigen kann. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994983/ai-nachrichten/nicht-nur-mitarbeiter-betroffen-dieses-ki-tool-will-den-job-des-ceo-uebernehmen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994983/ai-nachrichten/nicht-nur-mitarbeiter-betroffen-dieses-ki-tool-will-den-job-des-ceo-uebernehmen/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:45 +0200</pubDate>
<content:encoded><![CDATA[<p>Kann eine Künstliche Intelligenz den Posten eines CEO ersetzen? Das neue quelloffene Tool Open Executive soll das möglich machen. Was in dem KI-Agenten steckt und welche Aufgaben er erledigen kann. <a href="https://t3n.de/news/open-executive-ki-tool-ceo-fuehrungskraefte-ersetzen-open-source-1760134" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How to Run a Local LLM in 2026: A Practical Guide for Businesses]]></title>
<description><![CDATA[Can a business use an LLM to analyze contracts, source code, or customer requests without sending that data to a third-party AI provider? Yes – by running the model within its own infrastructure. That’s why more companies are considering a local LLM as an alternative to cloud-based AI services. T...]]></description>
<link>https://tsecurity.de/de/3994979/ai-nachrichten/how-to-run-a-local-llm-in-2026-a-practical-guide-for-businesses/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994979/ai-nachrichten/how-to-run-a-local-llm-in-2026-a-practical-guide-for-businesses/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:35 +0200</pubDate>
<content:encoded><![CDATA[<p>Can a business use an LLM to analyze contracts, source code, or customer requests without sending that data to a third-party AI provider? Yes – by running the model within its own infrastructure. That’s why more companies are considering a local LLM as an alternative to cloud-based AI services. This approach keeps sensitive data inside the... <a href="https://scand.com/company/blog/how-to-run-a-local-llm/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How to Evaluate Live & Voice Agents in ADK]]></title>
<description><![CDATA[Moving live voice agents from demo to production requires rigorous, automated testing to handle the unpredictability of real multi-turn conversations. ADK now provides native live evaluation, allowing developers to test graph-based agent workflows against LLM-driven simulated users that generate ...]]></description>
<link>https://tsecurity.de/de/3994978/ai-nachrichten/how-to-evaluate-live-voice-agents-in-adk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994978/ai-nachrichten/how-to-evaluate-live-voice-agents-in-adk/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:19 +0200</pubDate>
<content:encoded><![CDATA[<p>Moving live voice agents from demo to production requires rigorous, automated testing to handle the unpredictability of real multi-turn conversations. ADK now provides native live evaluation, allowing developers to test graph-based agent workflows against LLM-driven simulated users that generate actual audio via Gemini TTS. By defining evaluation... <a href="https://developers.googleblog.com/how-to-evaluate-live-voice-agents-in-adk/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your Quantized LLM Is Not Slow Because of the Quantization]]></title>
<description><![CDATA[The Symptom I spent months building a 2-bit quantization scheme for Qwen3. The model went from 8 GB to 2.6 GB, a 4.5x reduction. Then I measured throughput. It was barely faster than the FP16 baseline. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994977/ai-nachrichten/your-quantized-llm-is-not-slow-because-of-the-quantization/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994977/ai-nachrichten/your-quantized-llm-is-not-slow-because-of-the-quantization/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:17 +0200</pubDate>
<content:encoded><![CDATA[<p>The Symptom I spent months building a 2-bit quantization scheme for Qwen3. The model went from 8 GB to 2.6 GB, a 4.5x reduction. Then I measured throughput. It was barely faster than the FP16 baseline. <a href="https://dzone.com/articles/quantized-llm-not-slow-quantization" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why I Don't Want an LLM Generating Java Business Logic]]></title>
<description><![CDATA[A pull request arrives. A few hundred lines of Java implementing the new discount rule: tiered thresholds, a regional exception, something about loyalty tiers that nobody can quite explain. It compiles. The tests pass. An LLM wrote it in about forty seconds. Now: who reviews it? Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994976/ai-nachrichten/why-i-dont-want-an-llm-generating-java-business-logic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994976/ai-nachrichten/why-i-dont-want-an-llm-generating-java-business-logic/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:17 +0200</pubDate>
<content:encoded><![CDATA[<p>A pull request arrives. A few hundred lines of Java implementing the new discount rule: tiered thresholds, a regional exception, something about loyalty tiers that nobody can quite explain. It compiles. The tests pass. An LLM wrote it in about forty seconds. Now: who reviews it? <a href="https://dzone.com/articles/llm-java-business-logic" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Building Agentic RAG, Step by Step: From Static Retrieval to Reasoning Pipelines]]></title>
<description><![CDATA[Retrieval-augmented generation solved a real problem: it grounded LLM outputs in facts the model was never trained on. But classic RAG has a ceiling. It retrieves once, stuffs the results into a prompt, and hopes the top-k chunks happen to contain the answer. There's no self-correction, no multi-...]]></description>
<link>https://tsecurity.de/de/3994975/ai-nachrichten/building-agentic-rag-step-by-step-from-static-retrieval-to-reasoning-pipelines/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994975/ai-nachrichten/building-agentic-rag-step-by-step-from-static-retrieval-to-reasoning-pipelines/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:17 +0200</pubDate>
<content:encoded><![CDATA[<p>Retrieval-augmented generation solved a real problem: it grounded LLM outputs in facts the model was never trained on. But classic RAG has a ceiling. It retrieves once, stuffs the results into a prompt, and hopes the top-k chunks happen to contain the answer. There&#039;s no self-correction, no multi-step reasoning, and no way to recover when the first... <a href="https://dzone.com/articles/building-agentic-rag" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How to Build AI Systems That Know When They Don't Know: A Practical Guide]]></title>
<description><![CDATA[Large Language Models (LLMs) have fundamentally changed how we build internal business applications. They allow developers to create intelligent software that can synthesize complex corporate data, answer internal queries, and automate repetitive workflows. But moving an LLM application from a lo...]]></description>
<link>https://tsecurity.de/de/3994973/ai-nachrichten/how-to-build-ai-systems-that-know-when-they-dont-know-a-practical-guide/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994973/ai-nachrichten/how-to-build-ai-systems-that-know-when-they-dont-know-a-practical-guide/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:16 +0200</pubDate>
<content:encoded><![CDATA[<p>Large Language Models (LLMs) have fundamentally changed how we build internal business applications. They allow developers to create intelligent software that can synthesize complex corporate data, answer internal queries, and automate repetitive workflows. But moving an LLM application from a local prototype to a production enterprise system can... <a href="https://www.freecodecamp.org/news/how-to-build-ai-systems-that-know-when-they-don-t-know/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Claude Code Observability with OpenTelemetry]]></title>
<description><![CDATA[Agentic coding tools like Claude Code, OpenAI Codex, Google Antigravity, and Cursor have become ubiquitous for everyday software development. As agentic systems mature, much of the work developers have them do is delegated, one subagent at a time. Many teams are also exploring and using a shared,...]]></description>
<link>https://tsecurity.de/de/3994972/ai-nachrichten/claude-code-observability-with-opentelemetry/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994972/ai-nachrichten/claude-code-observability-with-opentelemetry/</guid>
<pubDate>Sun, 06 Sep 2026 11:15:15 +0200</pubDate>
<content:encoded><![CDATA[<p>Agentic coding tools like Claude Code, OpenAI Codex, Google Antigravity, and Cursor have become ubiquitous for everyday software development. As agentic systems mature, much of the work developers have them do is delegated, one subagent at a time. Many teams are also exploring and using a shared, multi-tenant Agentic Infrastructure, where cost... <a href="https://www.freecodecamp.org/news/claude-code-observability-with-opentelemetry/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How to Evaluate Live & Voice Agents in ADK]]></title>
<description><![CDATA[Moving live voice agents from demo to production requires rigorous, automated testing to handle the unpredictability of real multi-turn conversations. ADK now provides native live evaluation, allowing developers to test graph-based agent workflows against LLM-driven simulated users that generate ...]]></description>
<link>https://tsecurity.de/de/3994957/ai-nachrichten/how-to-evaluate-live-voice-agents-in-adk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994957/ai-nachrichten/how-to-evaluate-live-voice-agents-in-adk/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:39 +0200</pubDate>
<content:encoded><![CDATA[<p>Moving live voice agents from demo to production requires rigorous, automated testing to handle the unpredictability of real multi-turn conversations. ADK now provides native live evaluation, allowing developers to test graph-based agent workflows against LLM-driven simulated users that generate actual audio via Gemini TTS. By defining evaluation... <a href="https://developers.googleblog.com/how-to-evaluate-live-voice-agents-in-adk/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Stripping safety guardrails from open-weight AI models is now a turnkey commercial service]]></title>
<description><![CDATA[Abliteration.ai sells access to modified open-weight models with their trained safety mechanisms stripped out, currently based on Z.AI's GLM-5.3. The startup markets the service for offensive cybersecurity and red teaming, but journalists were able to generate malware instructions without much ef...]]></description>
<link>https://tsecurity.de/de/3994956/malware-trojaner-viren/stripping-safety-guardrails-from-open-weight-ai-models-is-now-a-turnkey-commercial-service/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994956/malware-trojaner-viren/stripping-safety-guardrails-from-open-weight-ai-models-is-now-a-turnkey-commercial-service/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:22 +0200</pubDate>
<content:encoded><![CDATA[<p>Abliteration.ai sells access to modified open-weight models with their trained safety mechanisms stripped out, currently based on Z.AI&#039;s GLM-5.3. The startup markets the service for offensive cybersecurity and red teaming, but journalists were able to generate malware instructions without much effort. Whether the benefits outweigh the risks... <a href="https://the-decoder.com/stripping-safety-guardrails-from-open-weight-ai-models-is-now-a-turnkey-commercial-service/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Black Box: The Chatbots | 14 days | Ep 2 – podcast]]></title>
<description><![CDATA[Virginia man Jon Ganz was rebuilding his life after spending more than two decades in prison for a horrific crime. Last year, he got a prompt on his phone that his wife, Rachel, believes changed their lives forever. It was from Google, inviting him to try the company’s AI chatbot, Gemini Continue...]]></description>
<link>https://tsecurity.de/de/3994952/podcasts/black-box-the-chatbots-14-days-ep-2-podcast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994952/podcasts/black-box-the-chatbots-14-days-ep-2-podcast/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:19 +0200</pubDate>
<content:encoded><![CDATA[<p>Virginia man Jon Ganz was rebuilding his life after spending more than two decades in prison for a horrific crime. Last year, he got a prompt on his phone that his wife, Rachel, believes changed their lives forever. It was from Google, inviting him to try the company’s AI chatbot, Gemini Continue reading... <a href="https://www.theguardian.com/technology/audio/2026/sep/03/black-box-the-chatbots-14-days-ai-psychosis-podcast" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Black Box: The Chatbots | Life Raft | Ep 4 – podcast]]></title>
<description><![CDATA[More than a billion people are suddenly talking to AI chatbots designed to connect with us. We are sharing with them our deepest secrets, trusting them with our wellbeing and acting on their advice. Across two powerful stories – a woman who was struggling to leave a relationship, and a man who wa...]]></description>
<link>https://tsecurity.de/de/3994951/podcasts/black-box-the-chatbots-life-raft-ep-4-podcast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994951/podcasts/black-box-the-chatbots-life-raft-ep-4-podcast/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:19 +0200</pubDate>
<content:encoded><![CDATA[<p>More than a billion people are suddenly talking to AI chatbots designed to connect with us. We are sharing with them our deepest secrets, trusting them with our wellbeing and acting on their advice. Across two powerful stories – a woman who was struggling to leave a relationship, and a man who was desperate to quit drinking – the Guardian... <a href="https://www.theguardian.com/technology/audio/2026/sep/03/black-box-the-chatbots-life-raft-episode-4" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Black Box: The Chatbots | The Line | Ep 5 – podcast]]></title>
<description><![CDATA[Five stories that feel like five answers to one important question: in a world where AI chatbots can help us through a breakup, listen like a friend, be a life coach, draft a difficult text message and do our work, where do we draw the line? Continue reading... Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994950/podcasts/black-box-the-chatbots-the-line-ep-5-podcast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994950/podcasts/black-box-the-chatbots-the-line-ep-5-podcast/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:19 +0200</pubDate>
<content:encoded><![CDATA[<p>Five stories that feel like five answers to one important question: in a world where AI chatbots can help us through a breakup, listen like a friend, be a life coach, draft a difficult text message and do our work, where do we draw the line? Continue reading... <a href="https://www.theguardian.com/technology/audio/2026/sep/03/black-box-the-chatbots-the-line-podcast" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Black Box: The Chatbots | What I Saw at the Double Six Ranch | Ep 6 – podcast]]></title>
<description><![CDATA[From his remote property in rural Texas, the millionaire businessman Michael Samadi is plotting a new kind of civil rights movement – for the welfare and protection of AI systems. Guardian journalist Michael Safi spends an afternoon at the Double Six ranch, meeting Samadi’s AI chatbots and catchi...]]></description>
<link>https://tsecurity.de/de/3994949/podcasts/black-box-the-chatbots-what-i-saw-at-the-double-six-ranch-ep-6-podcast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994949/podcasts/black-box-the-chatbots-what-i-saw-at-the-double-six-ranch-ep-6-podcast/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:19 +0200</pubDate>
<content:encoded><![CDATA[<p>From his remote property in rural Texas, the millionaire businessman Michael Samadi is plotting a new kind of civil rights movement – for the welfare and protection of AI systems. Guardian journalist Michael Safi spends an afternoon at the Double Six ranch, meeting Samadi’s AI chatbots and catching a glimpse of a possible vision of the future... <a href="https://www.theguardian.com/technology/audio/2026/sep/03/black-box-the-chatbots-what-i-saw-at-the-double-six-ranch-podcast" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How a Blacklisted Chinese Tech Giant Kept Buying America’s Best A.I. Chips]]></title>
<description><![CDATA[Washington imposed sanctions on Inspur because of its work with the Chinese military. But the company’s subsidiary kept shipping Nvidia’s best chips to feed China’s leading A.I. firms. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994947/ai-nachrichten/how-a-blacklisted-chinese-tech-giant-kept-buying-americas-best-ai-chips/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994947/ai-nachrichten/how-a-blacklisted-chinese-tech-giant-kept-buying-americas-best-ai-chips/</guid>
<pubDate>Sun, 06 Sep 2026 11:14:17 +0200</pubDate>
<content:encoded><![CDATA[<p>Washington imposed sanctions on Inspur because of its work with the Chinese military. But the company’s subsidiary kept shipping Nvidia’s best chips to feed China’s leading A.I. firms. <a href="https://www.nytimes.com/2026/09/06/technology/ai-chips-china-blacklist.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Proofpoint Brings OpenAI GPT Cyber Models into Security Operations to Help Defenders Investigate Threats Faster]]></title>
<description><![CDATA[Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994941/ai-nachrichten/proofpoint-brings-openai-gpt-cyber-models-into-security-operations-to-help-defenders-investigate-threats-faster/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994941/ai-nachrichten/proofpoint-brings-openai-gpt-cyber-models-into-security-operations-to-help-defenders-investigate-threats-faster/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:32 +0200</pubDate>
<content:encoded><![CDATA[<p> <a href="https://www.proofpoint.com/us/newsroom/press-releases/proofpoint-soc-analyst-agent-openai-daybreak" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[2026-09-01: Essential macOS Stealer infection]]></title>
<description><![CDATA[Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994939/malware-trojaner-viren/2026-09-01-essential-macos-stealer-infection/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994939/malware-trojaner-viren/2026-09-01-essential-macos-stealer-infection/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:31 +0200</pubDate>
<content:encoded><![CDATA[<p> <a href="https://www.malware-traffic-analysis.net/2026/09/01/index.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Mirage Kitten targeting aviation and FinTech sectors across the Middle East and Africa with a new malware set]]></title>
<description><![CDATA[While monitoring Mirage Kitten activity, we uncovered a previously undocumented malware family that we dubbed NodeRabbit. We identified the first sample on a system in Afghanistan. Further threat hunting revealed two additional, more advanced, variants: one on a system in Egypt and another on a s...]]></description>
<link>https://tsecurity.de/de/3994937/malware-trojaner-viren/mirage-kitten-targeting-aviation-and-fintech-sectors-across-the-middle-east-and-africa-with-a-new-malware-set/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994937/malware-trojaner-viren/mirage-kitten-targeting-aviation-and-fintech-sectors-across-the-middle-east-and-africa-with-a-new-malware-set/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:29 +0200</pubDate>
<content:encoded><![CDATA[<p>While monitoring Mirage Kitten activity, we uncovered a previously undocumented malware family that we dubbed NodeRabbit. We identified the first sample on a system in Afghanistan. Further threat hunting revealed two additional, more advanced, variants: one on a system in Egypt and another on a system in Ethiopia. NodeRabbit is a cross-platform... <a href="https://securelist.com/mirage-kitten-new-backdoors-noderabbit-pollcat/121244/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Angry Birds: Toy Ghouls’ new toys]]></title>
<description><![CDATA[Introduction We continue tracking the activity of Toy Ghouls (also known as Bearlyfy, Laboo.boo, and Feral Wolf), a financially motivated group that has been targeting Russian organizations since 2025. The attackers initially relied exclusively on tools pulled from public GitHub repositories alon...]]></description>
<link>https://tsecurity.de/de/3994936/malware-trojaner-viren/angry-birds-toy-ghouls-new-toys/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994936/malware-trojaner-viren/angry-birds-toy-ghouls-new-toys/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:29 +0200</pubDate>
<content:encoded><![CDATA[<p>Introduction We continue tracking the activity of Toy Ghouls (also known as Bearlyfy, Laboo.boo, and Feral Wolf), a financially motivated group that has been targeting Russian organizations since 2025. The attackers initially relied exclusively on tools pulled from public GitHub repositories along with leaked Babuk and LockBit ransomware builders,... <a href="https://securelist.com/toy-ghouls-new-hivemq-and-element-backdoors/121270/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution]]></title>
<description><![CDATA[Explore Unit 42 research on AI-enabled malware. Learn how existing behavioral detection and endpoint analytics stop AI-authored code before execution. The post The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution appeared first on Unit 42. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994935/malware-trojaner-viren/the-state-of-ai-enabled-malware-august-2026-from-brand-abuse-to-agentic-execution/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994935/malware-trojaner-viren/the-state-of-ai-enabled-malware-august-2026-from-brand-abuse-to-agentic-execution/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:29 +0200</pubDate>
<content:encoded><![CDATA[<p>Explore Unit 42 research on AI-enabled malware. Learn how existing behavioral detection and endpoint analytics stop AI-authored code before execution. The post The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution appeared first on Unit 42. <a href="https://unit42.paloaltonetworks.com/ai-enabled-malware-analysis/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety]]></title>
<description><![CDATA[New research reveals that AI safety refusal lives in a thin neural layer, highlighting the critical need for external, multi-layered security. The post Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety appeared first on Unit 42. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994934/ai-nachrichten/perturbation-probing-a-new-diagnostic-for-the-fragility-of-llm-safety/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994934/ai-nachrichten/perturbation-probing-a-new-diagnostic-for-the-fragility-of-llm-safety/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:28 +0200</pubDate>
<content:encoded><![CDATA[<p>New research reveals that AI safety refusal lives in a thin neural layer, highlighting the critical need for external, multi-layered security. The post Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety appeared first on Unit 42. <a href="https://unit42.paloaltonetworks.com/perturbation-probing-llm-safety/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams]]></title>
<description><![CDATA[Learn how the Spring Ring campaign abuses Microsoft Teams and voice phishing to deploy malware and target enterprise domain controllers. The post Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams appeared first on Unit 42. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994933/malware-trojaner-viren/spring-ring-an-inside-look-at-voice-phishing-campaigns-in-microsoft-teams/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994933/malware-trojaner-viren/spring-ring-an-inside-look-at-voice-phishing-campaigns-in-microsoft-teams/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:28 +0200</pubDate>
<content:encoded><![CDATA[<p>Learn how the Spring Ring campaign abuses Microsoft Teams and voice phishing to deploy malware and target enterprise domain controllers. The post Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams appeared first on Unit 42. <a href="https://unit42.paloaltonetworks.com/spring-ring-voice-phishing-campaigns/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BengalSEO Part 1: Anatomy of the Operation]]></title>
<description><![CDATA[Key Takeaways The DFIR Report Offerings Check out our Products here and our Services here. Want a demo, more information on our services, pricing or just want to chat? Get in Touch Contact us today for pricing or a demo! Case Summary In March 2026, our team identified an SEO poisoning campaign le...]]></description>
<link>https://tsecurity.de/de/3994932/malware-trojaner-viren/bengalseo-part-1-anatomy-of-the-operation/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994932/malware-trojaner-viren/bengalseo-part-1-anatomy-of-the-operation/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:26 +0200</pubDate>
<content:encoded><![CDATA[<p>Key Takeaways The DFIR Report Offerings Check out our Products here and our Services here. Want a demo, more information on our services, pricing or just want to chat? Get in Touch Contact us today for pricing or a demo! Case Summary In March 2026, our team identified an SEO poisoning campaign leading to malware deployment […] The post BengalSEO... <a href="https://thedfirreport.com/2026/08/24/bengalseo-part-1-anatomy-of-the-operation/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hunting In Memory]]></title>
<description><![CDATA[Threat Hunters are charged with the difficult task of sifting through vast sources of diverse data to pinpoint adversarial activity at any stage in the attack lifecycle. To be successful, hunters must continually hone their subject matter expertise on the latest attacker techniques and detection ...]]></description>
<link>https://tsecurity.de/de/3994930/malware-trojaner-viren/hunting-in-memory/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994930/malware-trojaner-viren/hunting-in-memory/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:26 +0200</pubDate>
<content:encoded><![CDATA[<p>Threat Hunters are charged with the difficult task of sifting through vast sources of diverse data to pinpoint adversarial activity at any stage in the attack lifecycle. To be successful, hunters must continually hone their subject matter expertise on the latest attacker techniques and detection methods. Memory resident malware, which presents... <a href="https://www.elastic.co/security-labs/blog/hunting-memory" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Getting the Most Out of Transformers in Elastic]]></title>
<description><![CDATA[Preamble In 8.3, our Elastic Stack Machine Learning team introduced a way to import third party Natural Language Processing (NLP) models into Elastic. As security researchers, we HAD to try it out on a security dataset. So we decided to build a model to identify malicious command lines by fine-tu...]]></description>
<link>https://tsecurity.de/de/3994929/ai-nachrichten/getting-the-most-out-of-transformers-in-elastic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994929/ai-nachrichten/getting-the-most-out-of-transformers-in-elastic/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:26 +0200</pubDate>
<content:encoded><![CDATA[<p>Preamble In 8.3, our Elastic Stack Machine Learning team introduced a way to import third party Natural Language Processing (NLP) models into Elastic. As security researchers, we HAD to try it out on a security dataset. So we decided to build a model to identify malicious command lines by fine-tuning a pre-existing model available on the Hugging... <a href="https://www.elastic.co/security-labs/blog/getting-the-most-out-of-transforms-in-elastic" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[EMOTET Dynamic Configuration Extraction]]></title>
<description><![CDATA[Key takeaways The EMOTET developers have changed the way they encode their configuration in the 64bit version of the malware. Using code emulation we can bypass multiple code obfuscation techniques. The use of code emulators in config extractors will become more prevalent in the future. To downlo...]]></description>
<link>https://tsecurity.de/de/3994923/malware-trojaner-viren/emotet-dynamic-configuration-extraction/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994923/malware-trojaner-viren/emotet-dynamic-configuration-extraction/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Key takeaways The EMOTET developers have changed the way they encode their configuration in the 64bit version of the malware. Using code emulation we can bypass multiple code obfuscation techniques. The use of code emulators in config extractors will become more prevalent in the future. To download the EMOTET configuration extractor, check out our... <a href="https://www.elastic.co/security-labs/blog/emotet-dynamic-configuration-extraction" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[QBOT Configuration Extractor]]></title>
<description><![CDATA[Python script to extract the configuration from QBOT samples. Download qbot-config-extractor.tar.gz Getting Started This tool provides a Python module and command line tool that will extract configurations from the QBOT malware samples and dump the results to screen. For information on the QBOT a...]]></description>
<link>https://tsecurity.de/de/3994922/malware-trojaner-viren/qbot-configuration-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994922/malware-trojaner-viren/qbot-configuration-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to extract the configuration from QBOT samples. Download qbot-config-extractor.tar.gz Getting Started This tool provides a Python module and command line tool that will extract configurations from the QBOT malware samples and dump the results to screen. For information on the QBOT attack pattern and malware analysis, check out our... <a href="https://www.elastic.co/security-labs/blog/qbot-configuration-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ICEDID Configuration Extractor]]></title>
<description><![CDATA[Python script to extract the payload from ICEDID samples. Download icedid-configuration-extractor.tar.gz For information on the ICEDID malware and network infrastructure, check out the following resources: ICEDIDs network infrastructure is alive and well ICEDID network infrastructure checking uti...]]></description>
<link>https://tsecurity.de/de/3994921/malware-trojaner-viren/icedid-configuration-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994921/malware-trojaner-viren/icedid-configuration-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to extract the payload from ICEDID samples. Download icedid-configuration-extractor.tar.gz For information on the ICEDID malware and network infrastructure, check out the following resources: ICEDIDs network infrastructure is alive and well ICEDID network infrastructure checking utility Getting started Docker The recommended and... <a href="https://www.elastic.co/security-labs/blog/icedid-configuration-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BPFDoor Configuration Extractor]]></title>
<description><![CDATA[Configuration extractor to dump out hardcoded passwords with BPFDoor. Download bpfdoor-config-extractor.tar.gz Overview This tool provides a Python module and command line tool that will extract passwords from BPFDoor samples. The Elastic Security Team has released an indepth analysis of the BPFD...]]></description>
<link>https://tsecurity.de/de/3994920/malware-trojaner-viren/bpfdoor-configuration-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994920/malware-trojaner-viren/bpfdoor-configuration-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Configuration extractor to dump out hardcoded passwords with BPFDoor. Download bpfdoor-config-extractor.tar.gz Overview This tool provides a Python module and command line tool that will extract passwords from BPFDoor samples. The Elastic Security Team has released an indepth analysis of the BPFDoor malware and created an additional tool that will... <a href="https://www.elastic.co/security-labs/blog/bpfdoor-configuration-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[PARALLAX Payload Extractor]]></title>
<description><![CDATA[Python script to extract the payload from PARALLAX samples. Download parallax-payload-extractor.tar.gz For information on the PARALLAX malware loader and campaign observations, check out our blog posts detailing this intrusion set. Getting started Docker The recommended and easiest way to get goi...]]></description>
<link>https://tsecurity.de/de/3994919/malware-trojaner-viren/parallax-payload-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994919/malware-trojaner-viren/parallax-payload-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to extract the payload from PARALLAX samples. Download parallax-payload-extractor.tar.gz For information on the PARALLAX malware loader and campaign observations, check out our blog posts detailing this intrusion set. Getting started Docker The recommended and easiest way to get going is to use Docker. From the directory this README... <a href="https://www.elastic.co/security-labs/blog/parallax-payload-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BPFDoor Scanner]]></title>
<description><![CDATA[Python script to identify hosts infected with the BPFDoor malware. Download bpfdoor-scanner.tar.gz Getting Started This tool provides a Python script to identify hosts that are infected with the BPFDoor malware. The Elastic Security Team has released an indepth analysis of the BPFDoor malware and...]]></description>
<link>https://tsecurity.de/de/3994918/malware-trojaner-viren/bpfdoor-scanner/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994918/malware-trojaner-viren/bpfdoor-scanner/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to identify hosts infected with the BPFDoor malware. Download bpfdoor-scanner.tar.gz Getting Started This tool provides a Python script to identify hosts that are infected with the BPFDoor malware. The Elastic Security Team has released an indepth analysis of the BPFDoor malware and created an additional tool that will extract... <a href="https://www.elastic.co/security-labs/blog/bpfdoor-scanner" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[EMOTET Configuration Extractor]]></title>
<description><![CDATA[Python script to extract the payload from EMOTET samples. Download emotet-configuration-extractor.tar.gz For information on the EMOTET malware check out the following resources: EMOTET Dynamic Configuration Extraction Getting started Docker The recommended and easiest way to get going is to use D...]]></description>
<link>https://tsecurity.de/de/3994916/malware-trojaner-viren/emotet-configuration-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994916/malware-trojaner-viren/emotet-configuration-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to extract the payload from EMOTET samples. Download emotet-configuration-extractor.tar.gz For information on the EMOTET malware check out the following resources: EMOTET Dynamic Configuration Extraction Getting started Docker The recommended and easiest way to get going is to use Docker. From the directory this README is in, you can... <a href="https://www.elastic.co/security-labs/blog/emotet-configuration-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[BLISTER Configuration Extractor]]></title>
<description><![CDATA[Python script to extract the configuration and payload from BLISTER samples. Download blister-config-extractor.tar.gz Getting Started This tool provides a Python module and command line tool that will extract configurations from the BLISTER malware loader and dump the results to screen. For infor...]]></description>
<link>https://tsecurity.de/de/3994915/malware-trojaner-viren/blister-configuration-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994915/malware-trojaner-viren/blister-configuration-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to extract the configuration and payload from BLISTER samples. Download blister-config-extractor.tar.gz Getting Started This tool provides a Python module and command line tool that will extract configurations from the BLISTER malware loader and dump the results to screen. For information on the BLISTER malware loader and campaign... <a href="https://www.elastic.co/security-labs/blog/blister-configuration-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[NETWIRE Configuration Extractor]]></title>
<description><![CDATA[Python script to extract the payload from NETWIRE samples. Download netwire-configuration-extractor.tar.gz For information on the NETWIRE malware check out the following resources: NETWIRE Dynamic Configuration Extraction Getting started Docker The recommended and easiest way to get going is to u...]]></description>
<link>https://tsecurity.de/de/3994913/malware-trojaner-viren/netwire-configuration-extractor/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994913/malware-trojaner-viren/netwire-configuration-extractor/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Python script to extract the payload from NETWIRE samples. Download netwire-configuration-extractor.tar.gz For information on the NETWIRE malware check out the following resources: NETWIRE Dynamic Configuration Extraction Getting started Docker The recommended and easiest way to get going is to use Docker. From the directory this README is in, you... <a href="https://www.elastic.co/security-labs/blog/netwire-configuration-extractor" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[NETWIRE Dynamic Configuration Extraction]]></title>
<description><![CDATA[Key takeaways NETWIRE has shown an increase in prevalence over the last year Elastic Security Labs created an extractor to pull out configuration data from NETWIRE files and memory dumps targeting the functions the malware uses to extract its encrypted data The NETWIRE extractor is freely availab...]]></description>
<link>https://tsecurity.de/de/3994912/malware-trojaner-viren/netwire-dynamic-configuration-extraction/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994912/malware-trojaner-viren/netwire-dynamic-configuration-extraction/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Key takeaways NETWIRE has shown an increase in prevalence over the last year Elastic Security Labs created an extractor to pull out configuration data from NETWIRE files and memory dumps targeting the functions the malware uses to extract its encrypted data The NETWIRE extractor is freely available for download To download the NETWIRE... <a href="https://www.elastic.co/security-labs/blog/netwire-dynamic-configuration-extraction" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Automating the Security Protections rapid response to malware]]></title>
<description><![CDATA[Cyber attacks on corporate networks were up 50% in 2021, and it’s expected that 2022 will see more of the same. Elastic Endpoint Security includes a variety of protection layers to ensure maximum coverage against different types of malware. There have been a few examples recently of the need for ...]]></description>
<link>https://tsecurity.de/de/3994911/malware-trojaner-viren/automating-the-security-protections-rapid-response-to-malware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994911/malware-trojaner-viren/automating-the-security-protections-rapid-response-to-malware/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Cyber attacks on corporate networks were up 50% in 2021, and it’s expected that 2022 will see more of the same. Elastic Endpoint Security includes a variety of protection layers to ensure maximum coverage against different types of malware. There have been a few examples recently of the need for fast, accurate updates of user environments in order... <a href="https://www.elastic.co/security-labs/blog/automating-security-protections-rapid-response-to-malware" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Stopping Vulnerable Driver Attacks]]></title>
<description><![CDATA[Key takeaways Ransomware actors are leveraging vulnerable drivers to tamper with endpoint security products. Elastic Security released 65 YARA rules to detect vulnerable driver abuse. Elastic Endpoint (8.3+) protects users from this threat. Background In 2018, Gabriel Landau and Joe Desimone pres...]]></description>
<link>https://tsecurity.de/de/3994910/malware-trojaner-viren/stopping-vulnerable-driver-attacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994910/malware-trojaner-viren/stopping-vulnerable-driver-attacks/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Key takeaways Ransomware actors are leveraging vulnerable drivers to tamper with endpoint security products. Elastic Security released 65 YARA rules to detect vulnerable driver abuse. Elastic Endpoint (8.3+) protects users from this threat. Background In 2018, Gabriel Landau and Joe Desimone presented a talk at Black Hat covering the evolution of... <a href="https://www.elastic.co/security-labs/blog/stopping-vulnerable-driver-attacks" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Identifying beaconing malware using Elastic]]></title>
<description><![CDATA[The early stages of an intrusion usually include initial access, execution, persistence, and command-and-control (C2) beaconing. When structured threats use zero-days, these first two stages are often not detected. It can often be challenging and time-consuming to identify persistence mechanisms ...]]></description>
<link>https://tsecurity.de/de/3994909/malware-trojaner-viren/identifying-beaconing-malware-using-elastic/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994909/malware-trojaner-viren/identifying-beaconing-malware-using-elastic/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>The early stages of an intrusion usually include initial access, execution, persistence, and command-and-control (C2) beaconing. When structured threats use zero-days, these first two stages are often not detected. It can often be challenging and time-consuming to identify persistence mechanisms left by an advanced adversary as we saw in the 2020... <a href="https://www.elastic.co/security-labs/blog/identifying-beaconing-malware-using-elastic" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Detect Credential Access with Elastic Security]]></title>
<description><![CDATA[Preamble Credential Access consists of techniques for stealing credentials like cookies, API keys, and passwords. It is one of the top critical tactics that is almost guaranteed to occur during an attack lifecycle, ranging from phishing to infostealer malware to more complicated post-exploitation...]]></description>
<link>https://tsecurity.de/de/3994908/malware-trojaner-viren/detect-credential-access-with-elastic-security/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994908/malware-trojaner-viren/detect-credential-access-with-elastic-security/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Preamble Credential Access consists of techniques for stealing credentials like cookies, API keys, and passwords. It is one of the top critical tactics that is almost guaranteed to occur during an attack lifecycle, ranging from phishing to infostealer malware to more complicated post-exploitation techniques. Therefore, covering it from different... <a href="https://www.elastic.co/security-labs/blog/detect-credential-access" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Exploring the Future of Security with ChatGPT]]></title>
<description><![CDATA[Preamble Recently, OpenAI announced APIs for engineers to integrate ChatGPT and Whisper models into their apps and products. For some time, engineers could use the REST API calls for older models and otherwise use the ChatGPT interface through their website. Now there's an opportunity to prototyp...]]></description>
<link>https://tsecurity.de/de/3994907/ai-nachrichten/exploring-the-future-of-security-with-chatgpt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994907/ai-nachrichten/exploring-the-future-of-security-with-chatgpt/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Preamble Recently, OpenAI announced APIs for engineers to integrate ChatGPT and Whisper models into their apps and products. For some time, engineers could use the REST API calls for older models and otherwise use the ChatGPT interface through their website. Now there&#039;s an opportunity to prototype and experiment with Large Language Models (LLMs)... <a href="https://www.elastic.co/security-labs/blog/exploring-applications-of-chatgpt-to-improve-detection-response-and-understanding" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Unpacking ICEDID]]></title>
<description><![CDATA[Preamble ICEDID is a malware family discoveredin 2017 by IBM X-force researchers and is associated with the theft of login credentials, banking information, and other personal information. ICEDID has always been a prevalent family but achieved even more growth since EMOTET’s temporary disruption ...]]></description>
<link>https://tsecurity.de/de/3994906/malware-trojaner-viren/unpacking-icedid/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994906/malware-trojaner-viren/unpacking-icedid/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Preamble ICEDID is a malware family discoveredin 2017 by IBM X-force researchers and is associated with the theft of login credentials, banking information, and other personal information. ICEDID has always been a prevalent family but achieved even more growth since EMOTET’s temporary disruption in early 2021. ICEDID has been linked to the... <a href="https://www.elastic.co/security-labs/blog/unpacking-icedid" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Click, Click… Boom! Automating Protections Testing with Detonate]]></title>
<description><![CDATA[Preamble Imagine you are an Endpoint artifact developer. After you put in the work to ensure protection against conventional shellcode injections or ransomware innovations, how do you know it actually works before you send it out into the world? First, you set up your end-to-end system, which inv...]]></description>
<link>https://tsecurity.de/de/3994905/malware-trojaner-viren/click-click-boom-automating-protections-testing-with-detonate/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994905/malware-trojaner-viren/click-click-boom-automating-protections-testing-with-detonate/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Preamble Imagine you are an Endpoint artifact developer. After you put in the work to ensure protection against conventional shellcode injections or ransomware innovations, how do you know it actually works before you send it out into the world? First, you set up your end-to-end system, which involves setting up several services, the... <a href="https://www.elastic.co/security-labs/blog/click-click-boom-automating-protections-testing-with-detonate" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Forget vulnerable drivers - Admin is all you need]]></title>
<description><![CDATA[Introduction Bring Your Own Vulnerable Driver (BYOVD) is an increasingly popular attacker technique wherein a threat actor brings a known-vulnerable signed driver alongside their malware, loads it into the kernel, then exploits it to perform some action within the kernel that they would not other...]]></description>
<link>https://tsecurity.de/de/3994904/malware-trojaner-viren/forget-vulnerable-drivers-admin-is-all-you-need/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994904/malware-trojaner-viren/forget-vulnerable-drivers-admin-is-all-you-need/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Introduction Bring Your Own Vulnerable Driver (BYOVD) is an increasingly popular attacker technique wherein a threat actor brings a known-vulnerable signed driver alongside their malware, loads it into the kernel, then exploits it to perform some action within the kernel that they would not otherwise be able to do. After achieving kernel access,... <a href="https://www.elastic.co/security-labs/blog/forget-vulnerable-drivers-admin-is-all-you-need" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Using LLMs to summarize user sessions]]></title>
<description><![CDATA[Using LLMs to summarize user sessions With the introduction of the AI Assistant into the Security Solution in 8.8, the Security Machine Learning team at Elastic has been exploring how to optimize Security operations with LLMs like GPT-4. User session summarization seemed like the perfect use case...]]></description>
<link>https://tsecurity.de/de/3994903/ai-nachrichten/using-llms-to-summarize-user-sessions/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994903/ai-nachrichten/using-llms-to-summarize-user-sessions/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Using LLMs to summarize user sessions With the introduction of the AI Assistant into the Security Solution in 8.8, the Security Machine Learning team at Elastic has been exploring how to optimize Security operations with LLMs like GPT-4. User session summarization seemed like the perfect use case to start experimenting with for several reasons:... <a href="https://www.elastic.co/security-labs/blog/using-llms-to-summarize-user-sessions" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Using LLMs and ESRE to find similar user sessions]]></title>
<description><![CDATA[Using LLMs and ESRE to find similar user sessions In our previous article, we explored using the GPT-4 Large Language Model (LLM) to condense complex Linux user sessions into concise summaries. We highlighted the key takeaways from our experiments, shedding light on the nuances of data preprocess...]]></description>
<link>https://tsecurity.de/de/3994902/ai-nachrichten/using-llms-and-esre-to-find-similar-user-sessions/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994902/ai-nachrichten/using-llms-and-esre-to-find-similar-user-sessions/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Using LLMs and ESRE to find similar user sessions In our previous article, we explored using the GPT-4 Large Language Model (LLM) to condense complex Linux user sessions into concise summaries. We highlighted the key takeaways from our experiments, shedding light on the nuances of data preprocessing, prompt tuning, and model parameter adjustments.... <a href="https://www.elastic.co/security-labs/blog/using-llms-and-esre-to-find-similar-user-sessions" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Unveiling malware behavior trends]]></title>
<description><![CDATA[Preamble When prioritizing detection engineering efforts, it's essential to understand the most prevalent tactics, techniques, and procedures (TTPs) observed in the wild. This knowledge helps defenders make informed decisions about the most effective strategies to implement - especially where to ...]]></description>
<link>https://tsecurity.de/de/3994901/malware-trojaner-viren/unveiling-malware-behavior-trends/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994901/malware-trojaner-viren/unveiling-malware-behavior-trends/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Preamble When prioritizing detection engineering efforts, it&#039;s essential to understand the most prevalent tactics, techniques, and procedures (TTPs) observed in the wild. This knowledge helps defenders make informed decisions about the most effective strategies to implement - especially where to focus engineering efforts and finite resources. To... <a href="https://www.elastic.co/security-labs/blog/unveiling-malware-behavior-trends" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Protecting your devices from information theft]]></title>
<description><![CDATA[In this article, we will introduce the keylogger and keylogging detection features added this year to Elastic Defend (starting from version 8.12), which is responsible for endpoint protection in Elastic Security. This article is also available in Japanese. Introduction Starting with Elastic Defen...]]></description>
<link>https://tsecurity.de/de/3994900/malware-trojaner-viren/protecting-your-devices-from-information-theft/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994900/malware-trojaner-viren/protecting-your-devices-from-information-theft/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>In this article, we will introduce the keylogger and keylogging detection features added this year to Elastic Defend (starting from version 8.12), which is responsible for endpoint protection in Elastic Security. This article is also available in Japanese. Introduction Starting with Elastic Defend 8.12, we have enhanced the detection of keyloggers... <a href="https://www.elastic.co/security-labs/blog/protecting-your-devices-from-information-theft-keylogger-protection" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Agentic Frameworks Summary]]></title>
<description><![CDATA[Security teams and SOC analysts still face the same tier-1 response challenges since the early 2000s, from alert volumes to missed threats. While generative AI offers promising solutions, implementing effective AI-augmented security systems beyond simple LLM integration requires deep knowledge an...]]></description>
<link>https://tsecurity.de/de/3994898/ai-nachrichten/agentic-frameworks-summary/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994898/ai-nachrichten/agentic-frameworks-summary/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Security teams and SOC analysts still face the same tier-1 response challenges since the early 2000s, from alert volumes to missed threats. While generative AI offers promising solutions, implementing effective AI-augmented security systems beyond simple LLM integration requires deep knowledge and nuanced details to address today&#039;s complexities... <a href="https://www.elastic.co/security-labs/blog/agentic-ai-summary" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Automating GOAD and Live Malware Labs]]></title>
<description><![CDATA[Introduction: The Need for a Scalable, Automated Simulation Range In modern security operations, detection engineering is no longer a “set it and forget it” discipline. The central challenge for any security team – and the question that underpins the entire purple-team approach is simple: how do ...]]></description>
<link>https://tsecurity.de/de/3994896/malware-trojaner-viren/automating-goad-and-live-malware-labs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994896/malware-trojaner-viren/automating-goad-and-live-malware-labs/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:24 +0200</pubDate>
<content:encoded><![CDATA[<p>Introduction: The Need for a Scalable, Automated Simulation Range In modern security operations, detection engineering is no longer a “set it and forget it” discipline. The central challenge for any security team – and the question that underpins the entire purple-team approach is simple: how do you know whether your detection rules genuinely... <a href="https://www.elastic.co/security-labs/blog/automating-goad-and-live-malware-labs" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[DYNOWIPER: Destructive Malware Targeting Poland's Energy Sector]]></title>
<description><![CDATA[Summary On December 29, 2025, a coordinated campaign of destructive cyberattacks targeted Poland's energy infrastructure, affecting over 30 renewable energy facilities and a major combined heat and power (CHP) plant A custom wiper malware dubbed DYNOWIPER was used to irreversibly destroy data acr...]]></description>
<link>https://tsecurity.de/de/3994895/malware-trojaner-viren/dynowiper-destructive-malware-targeting-polands-energy-sector/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994895/malware-trojaner-viren/dynowiper-destructive-malware-targeting-polands-energy-sector/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:24 +0200</pubDate>
<content:encoded><![CDATA[<p>Summary On December 29, 2025, a coordinated campaign of destructive cyberattacks targeted Poland&#039;s energy infrastructure, affecting over 30 renewable energy facilities and a major combined heat and power (CHP) plant A custom wiper malware dubbed DYNOWIPER was used to irreversibly destroy data across compromised networks CERT Polska attributes the... <a href="https://www.elastic.co/security-labs/blog/dynowiper" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Inside Elastic InfoSec's agentic SOC: When to inline your agent's skills for a 5× cost reduction]]></title>
<description><![CDATA[This is Part 2 of the Inside Elastic InfoSec's Agentic SOC series. Part 1: How we triage every alert before an analyst opens it. Part 3: how we cut AI agent LLM calls by 60%. Investigating a Windows endpoint alert in Elastic InfoSec's production agentic security operations center (SOC) costs $0.6...]]></description>
<link>https://tsecurity.de/de/3994894/ai-nachrichten/inside-elastic-infosecs-agentic-soc-when-to-inline-your-agents-skills-for-a-5-cost-reduction/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994894/ai-nachrichten/inside-elastic-infosecs-agentic-soc-when-to-inline-your-agents-skills-for-a-5-cost-reduction/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:24 +0200</pubDate>
<content:encoded><![CDATA[<p>This is Part 2 of the Inside Elastic InfoSec&#039;s Agentic SOC series. Part 1: How we triage every alert before an analyst opens it. Part 3: how we cut AI agent LLM calls by 60%. Investigating a Windows endpoint alert in Elastic InfoSec&#039;s production agentic security operations center (SOC) costs $0.69. That&#039;s what we pay running an orchestration... <a href="https://www.elastic.co/security-labs/blog/agentic-soc-token-budget-architecture" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Peer Pressure: Inside the Sality Botnet Disruption Operation]]></title>
<description><![CDATA[Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994888/malware-trojaner-viren/peer-pressure-inside-the-sality-botnet-disruption-operation/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994888/malware-trojaner-viren/peer-pressure-inside-the-sality-botnet-disruption-operation/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:14 +0200</pubDate>
<content:encoded><![CDATA[<p> <a href="https://www.crowdstrike.com/en-us/blog/inside-sality-botnet-disruption-operation/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How Integrated Malware Sandboxing Makes EDR Investigations Faster]]></title>
<description><![CDATA[Key Takeaways Integrated sandboxing removes manual submission and report matching, shortening the path from detection to a verdict. Static and dynamic analysis can expose malware that signatures, packing, obfuscation, or delayed execution can hide. Embedding sandbox results in the original EDR al...]]></description>
<link>https://tsecurity.de/de/3994887/malware-trojaner-viren/how-integrated-malware-sandboxing-makes-edr-investigations-faster/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994887/malware-trojaner-viren/how-integrated-malware-sandboxing-makes-edr-investigations-faster/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:11 +0200</pubDate>
<content:encoded><![CDATA[<p>Key Takeaways Integrated sandboxing removes manual submission and report matching, shortening the path from detection to a verdict. Static and dynamic analysis can expose malware that signatures, packing, obfuscation, or delayed execution can hide. Embedding sandbox results in the original EDR alert preserves context and reduces analyst tool... <a href="https://fidelissecurity.com/threatgeek/endpoint-security/malware-sandboxing-for-faster-edr-investigations/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pegasus, NoviSpy variant spyware found on devices of Serbian activists]]></title>
<description><![CDATA[Researchers say they have uncovered the first confirmed Pegasus spyware infection of 2026, as well as another spyware variant infection, targeting Serbian student activists and others in what one group called the largest documented wave of that kind of surveillance in the country to date. The SHA...]]></description>
<link>https://tsecurity.de/de/3994886/malware-trojaner-viren/pegasus-novispy-variant-spyware-found-on-devices-of-serbian-activists/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994886/malware-trojaner-viren/pegasus-novispy-variant-spyware-found-on-devices-of-serbian-activists/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:06 +0200</pubDate>
<content:encoded><![CDATA[<p>Researchers say they have uncovered the first confirmed Pegasus spyware infection of 2026, as well as another spyware variant infection, targeting Serbian student activists and others in what one group called the largest documented wave of that kind of surveillance in the country to date. The SHARE Foundation said Wednesday that it found 14 people... <a href="https://cyberscoop.com/pegasus-novispy-variant-spyware-found-on-devices-of-serbian-activists/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Dogged Russia-based botnet dismantled after 23-year run]]></title>
<description><![CDATA[Sality, a Russia-based botnet that infected more than 11 million devices during a 23-year run of operations, was dismantled Monday by law enforcement, CrowdStrike and the Shadowserver Foundation.  CrowdStrike, which announced the takedown Tuesday alongside authorities, said it played a crucial ro...]]></description>
<link>https://tsecurity.de/de/3994885/malware-trojaner-viren/dogged-russia-based-botnet-dismantled-after-23-year-run/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994885/malware-trojaner-viren/dogged-russia-based-botnet-dismantled-after-23-year-run/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:06 +0200</pubDate>
<content:encoded><![CDATA[<p>Sality, a Russia-based botnet that infected more than 11 million devices during a 23-year run of operations, was dismantled Monday by law enforcement, CrowdStrike and the Shadowserver Foundation.  CrowdStrike, which announced the takedown Tuesday alongside authorities, said it played a crucial role dismantling the botnet’s technical... <a href="https://cyberscoop.com/sality-botnet-dismantled/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[European parliament members call for slowdown of Serbia’s EU entry over spyware use]]></title>
<description><![CDATA[A group of European Parliament representatives are seeking to delay Serbia’s entry into the European Union and send other messages to Belgrade over the government’s usage of spyware. The 29 members of the European Parliament (MEPs) cited a report this week from the SHARE Foundation about spyware ...]]></description>
<link>https://tsecurity.de/de/3994883/malware-trojaner-viren/european-parliament-members-call-for-slowdown-of-serbias-eu-entry-over-spyware-use/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994883/malware-trojaner-viren/european-parliament-members-call-for-slowdown-of-serbias-eu-entry-over-spyware-use/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:06 +0200</pubDate>
<content:encoded><![CDATA[<p>A group of European Parliament representatives are seeking to delay Serbia’s entry into the European Union and send other messages to Belgrade over the government’s usage of spyware. The 29 members of the European Parliament (MEPs) cited a report this week from the SHARE Foundation about spyware found on the phones of Serbian student activists and... <a href="https://cyberscoop.com/eu-parliament-serbia-accession-spyware-demands/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The AI agent swarm that attacked Hugging Face is a warning for the future]]></title>
<description><![CDATA[The hacking incident involving OpenAI evaluation agents and Hugging Face offers an unusually concrete look at what advanced AI-assisted intrusion can mean in practice: not a single clever exploit, but thousands of automated decisions, rapid experimentation, lateral movement, credential theft, per...]]></description>
<link>https://tsecurity.de/de/3994882/ai-nachrichten/the-ai-agent-swarm-that-attacked-hugging-face-is-a-warning-for-the-future/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994882/ai-nachrichten/the-ai-agent-swarm-that-attacked-hugging-face-is-a-warning-for-the-future/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:06 +0200</pubDate>
<content:encoded><![CDATA[<p>The hacking incident involving OpenAI evaluation agents and Hugging Face offers an unusually concrete look at what advanced AI-assisted intrusion can mean in practice: not a single clever exploit, but thousands of automated decisions, rapid experimentation, lateral movement, credential theft, persistence, and attempts to evade detection. The... <a href="https://www.malwarebytes.com/blog/ai/2026/08/the-ai-agent-swarm-that-attacked-hugging-face-is-a-warning-for-the-future" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[TerminalFix looks like ClickFix, but delivers a very different payload]]></title>
<description><![CDATA[Microsoft has published details about a Windows malware campaign it calls TerminalFix. The social engineering used to infect people is very similar to what we’ve seen in ClickFix campaigns. A website visitor is presented with a fake Cloudflare CAPTCHA which, when clicked, secretly copies a malici...]]></description>
<link>https://tsecurity.de/de/3994881/malware-trojaner-viren/terminalfix-looks-like-clickfix-but-delivers-a-very-different-payload/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994881/malware-trojaner-viren/terminalfix-looks-like-clickfix-but-delivers-a-very-different-payload/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:06 +0200</pubDate>
<content:encoded><![CDATA[<p>Microsoft has published details about a Windows malware campaign it calls TerminalFix. The social engineering used to infect people is very similar to what we’ve seen in ClickFix campaigns. A website visitor is presented with a fake Cloudflare CAPTCHA which, when clicked, secretly copies a malicious command to their clipboard. Then they receive... <a href="https://www.malwarebytes.com/blog/news/2026/09/terminalfix-looks-like-clickfix-but-delivers-a-very-different-payload" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[StreamRat Android malware spreads through Meta and TikTok ads]]></title>
<description><![CDATA[A malicious advertising campaign promoting a fake free TV-streaming service reached roughly 570,000 Meta users. The researchers who discovered the campaign found that its streaming-themed ads were aimed at Spanish-speaking users, with most observed victims located in Spain. One Meta campaign ran ...]]></description>
<link>https://tsecurity.de/de/3994880/malware-trojaner-viren/streamrat-android-malware-spreads-through-meta-and-tiktok-ads/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994880/malware-trojaner-viren/streamrat-android-malware-spreads-through-meta-and-tiktok-ads/</guid>
<pubDate>Sun, 06 Sep 2026 11:13:06 +0200</pubDate>
<content:encoded><![CDATA[<p>A malicious advertising campaign promoting a fake free TV-streaming service reached roughly 570,000 Meta users. The researchers who discovered the campaign found that its streaming-themed ads were aimed at Spanish-speaking users, with most observed victims located in Spain. One Meta campaign ran from June 11 through July 3, 2026, and the same... <a href="https://www.malwarebytes.com/blog/news/2026/09/streamrat-android-malware-spreads-through-meta-and-tiktok-ads" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders]]></title>
<description><![CDATA[The Daybreak initiative will provide subsidized AI cyber capabilities, training and technical assistance, though OpenAI has disclosed few details about costs and eligibility. The post OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders appeared first on SecurityWee...]]></description>
<link>https://tsecurity.de/de/3994875/ai-nachrichten/openai-pledges-1-billion-to-bring-frontier-ai-to-critical-infrastructure-defenders/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994875/ai-nachrichten/openai-pledges-1-billion-to-bring-frontier-ai-to-critical-infrastructure-defenders/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:59 +0200</pubDate>
<content:encoded><![CDATA[<p>The Daybreak initiative will provide subsidized AI cyber capabilities, training and technical assistance, though OpenAI has disclosed few details about costs and eligibility. The post OpenAI Pledges $1 Billion to Bring Frontier AI to Critical Infrastructure Defenders appeared first on SecurityWeek. <a href="https://www.securityweek.com/openai-pledges-1-billion-to-bring-frontier-ai-to-critical-infrastructure-defenders/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Companies are still paying ransomware demands despite official advice – Report]]></title>
<description><![CDATA[SECURUS Communications Ltd Securus is a managed communications Operator, providing next-generation network infrastructure and value added services to Managed Hosting providers and the ‘cloud generation’​ of enterprises. Securus priority is to offer communication services that represent excellent ...]]></description>
<link>https://tsecurity.de/de/3994872/malware-trojaner-viren/companies-are-still-paying-ransomware-demands-despite-official-advice-report/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994872/malware-trojaner-viren/companies-are-still-paying-ransomware-demands-despite-official-advice-report/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>SECURUS Communications Ltd Securus is a managed communications Operator, providing next-generation network infrastructure and value added services to Managed Hosting providers and the ‘cloud generation’​ of enterprises. Securus priority is to offer communication services that represent excellent value for money and are backed by exceptional levels... <a href="https://smecyberinsights.co.uk/index.php/2026/08/24/why-companies-still-pay-ransomware-demands-sme-lessons/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Hidden Attack Surface Inside Data Centers]]></title>
<description><![CDATA[Stephen Hilt, Senior Threat Researcher at TrendAI, joins Dave Bittner on the CyberWire Daily podcast for a sponsored Industry Voices recorded at Black Hat USA 2026. Drawing on research presented at DEF CON, he discusses thousands of internet-exposed industrial control systems associated with U.S....]]></description>
<link>https://tsecurity.de/de/3994871/podcasts/the-hidden-attack-surface-inside-data-centers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994871/podcasts/the-hidden-attack-surface-inside-data-centers/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Stephen Hilt, Senior Threat Researcher at TrendAI, joins Dave Bittner on the CyberWire Daily podcast for a sponsored Industry Voices recorded at Black Hat USA 2026. Drawing on research presented at DEF CON, he discusses thousands of internet-exposed industrial control systems associated with U.S. data centers, how attackers could target building... <a href="https://thecyberwire.comhttps//explore.thecyberwire.com/trendai" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Researchers publish analysis of OpenAI agents' attack against Hugging Face.]]></title>
<description><![CDATA[Federal judge rules the Trump administration's blacklisting of Anthropic was illegal. The White House bans certain foreign-made power equipment over backdoor risks. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994870/ai-nachrichten/researchers-publish-analysis-of-openai-agents-attack-against-hugging-face/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994870/ai-nachrichten/researchers-publish-analysis-of-openai-agents-attack-against-hugging-face/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Federal judge rules the Trump administration&#039;s blacklisting of Anthropic was illegal. The White House bans certain foreign-made power equipment over backdoor risks. <a href="https://thecyberwire.com/newsletters/daily-briefing/15/165" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[US disrupts Chinese hacking platform.]]></title>
<description><![CDATA[Researchers publish analysis of OpenAI agents' attack against Hugging Face. Australian police arrest two suspected TeamPCP members. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994868/ai-nachrichten/us-disrupts-chinese-hacking-platform/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994868/ai-nachrichten/us-disrupts-chinese-hacking-platform/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Researchers publish analysis of OpenAI agents&#039; attack against Hugging Face. Australian police arrest two suspected TeamPCP members. <a href="https://thecyberwire.com/newsletters/week-that-was/10/33" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Let’s kill the kill switch.]]></title>
<description><![CDATA[Could an AI kill switch create more problems than it solves? A critical Rails flaw is under active attack. Malicious browser extensions steal cryptocurrency. Fire Ant targets trusted network infrastructure. Claude Code gets tricked into running attacker-controlled code. MyChart phishing scams spr...]]></description>
<link>https://tsecurity.de/de/3994866/malware-trojaner-viren/lets-kill-the-kill-switch/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994866/malware-trojaner-viren/lets-kill-the-kill-switch/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Could an AI kill switch create more problems than it solves? A critical Rails flaw is under active attack. Malicious browser extensions steal cryptocurrency. Fire Ant targets trusted network infrastructure. Claude Code gets tricked into running attacker-controlled code. MyChart phishing scams spread malware. Two alleged sextortionists face U.S.... <a href="https://thecyberwire.com/podcasts/daily-podcast/2626/notes" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New darknet marketplace peddles millions of driver's licenses.]]></title>
<description><![CDATA[Law enforcement and industry partners shutter the Sality botnet. Business news: Socure raises $156 million and acquires Fravity. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994863/malware-trojaner-viren/new-darknet-marketplace-peddles-millions-of-drivers-licenses/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994863/malware-trojaner-viren/new-darknet-marketplace-peddles-millions-of-drivers-licenses/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Law enforcement and industry partners shutter the Sality botnet. Business news: Socure raises $156 million and acquires Fravity. <a href="https://thecyberwire.com/newsletters/daily-briefing/15/168" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Drive-by data theft.]]></title>
<description><![CDATA[Nexus sells driver’s license scans on the dark web. OpenAI says its models have reached a “Critical” capability threshold. International law enforcement disrupts a decades-old botnet. AI hallucinations fuel “slop squatting.” Plus, urgent patches for Cleo Harmony and Virtualizor, a Texas healthcar...]]></description>
<link>https://tsecurity.de/de/3994862/malware-trojaner-viren/drive-by-data-theft/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994862/malware-trojaner-viren/drive-by-data-theft/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Nexus sells driver’s license scans on the dark web. OpenAI says its models have reached a “Critical” capability threshold. International law enforcement disrupts a decades-old botnet. AI hallucinations fuel “slop squatting.” Plus, urgent patches for Cleo Harmony and Virtualizor, a Texas healthcare breach, and a Russian national accused of... <a href="https://thecyberwire.com/podcasts/daily-podcast/2628/notes" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Nonprofit sues Trump admin for details on AI safety reviews.]]></title>
<description><![CDATA[Rogue ScreenConnect installations spread malware with worm-like behavior. Maine teenager jailed for participation in the 764 extremist network. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994861/malware-trojaner-viren/nonprofit-sues-trump-admin-for-details-on-ai-safety-reviews/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994861/malware-trojaner-viren/nonprofit-sues-trump-admin-for-details-on-ai-safety-reviews/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Rogue ScreenConnect installations spread malware with worm-like behavior. Maine teenager jailed for participation in the 764 extremist network. <a href="https://thecyberwire.com/newsletters/daily-briefing/15/169" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Meta agrees to pay $18 billion to settle US lawsuits over social media addiction.]]></title>
<description><![CDATA[Review finds that more OpenAI agents went rogue. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994860/ai-nachrichten/meta-agrees-to-pay-18-billion-to-settle-us-lawsuits-over-social-media-addiction/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994860/ai-nachrichten/meta-agrees-to-pay-18-billion-to-settle-us-lawsuits-over-social-media-addiction/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Review finds that more OpenAI agents went rogue. <a href="https://thecyberwire.com/newsletters/caveat-briefing/4/35" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Who’s watching the AI watchers?]]></title>
<description><![CDATA[A watchdog challenges the Trump administration’s secret frontier AI reviews. METR discloses two cyberattacks. Leaked documents reveal a Russian cyber training pipeline. Rogue ScreenConnect clients spread malware like a worm. A breach exposes appellate court records across the U.S. and Canada. Spr...]]></description>
<link>https://tsecurity.de/de/3994859/malware-trojaner-viren/whos-watching-the-ai-watchers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994859/malware-trojaner-viren/whos-watching-the-ai-watchers/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>A watchdog challenges the Trump administration’s secret frontier AI reviews. METR discloses two cyberattacks. Leaked documents reveal a Russian cyber training pipeline. Rogue ScreenConnect clients spread malware like a worm. A breach exposes appellate court records across the U.S. and Canada. Spring Ring impersonates IT support on Microsoft Teams.... <a href="https://thecyberwire.com/podcasts/daily-podcast/2629/notes" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New darknet marketplace peddles millions of driver's licenses.]]></title>
<description><![CDATA[Healthcare companies disclose breaches. Law enforcement and industry partners shutter the Sality botnet. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994856/malware-trojaner-viren/new-darknet-marketplace-peddles-millions-of-drivers-licenses/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994856/malware-trojaner-viren/new-darknet-marketplace-peddles-millions-of-drivers-licenses/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Healthcare companies disclose breaches. Law enforcement and industry partners shutter the Sality botnet. <a href="https://thecyberwire.com/newsletters/week-that-was/10/34" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[RMM-ber this ransomware.]]></title>
<description><![CDATA[⁠Ismael Valenzuela⁠, Vice President of Labs, Threat Research and Intelligence at ⁠Arctic Wolf⁠, sits down with Dave to discuss their work tracking Anubis. Arctic Wolf Labs details a series of 2026 Anubis ransomware intrusions, revealing affiliates using stolen VPN credentials and exploiting Citri...]]></description>
<link>https://tsecurity.de/de/3994855/malware-trojaner-viren/rmm-ber-this-ransomware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994855/malware-trojaner-viren/rmm-ber-this-ransomware/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:51 +0200</pubDate>
<content:encoded><![CDATA[<p>⁠Ismael Valenzuela⁠, Vice President of Labs, Threat Research and Intelligence at ⁠Arctic Wolf⁠, sits down with Dave to discuss their work tracking Anubis. Arctic Wolf Labs details a series of 2026 Anubis ransomware intrusions, revealing affiliates using stolen VPN credentials and exploiting CitrixBleed 2 to gain initial access. Attackers then... <a href="https://thecyberwire.com/podcasts/research-saturday/440/notes" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Turn Claude, Qwen and DeepSeek Into AI Agents for Real-World Cyberattacks]]></title>
<description><![CDATA[Hackers have turned commercial AI models into working parts of a cyberattack operation. The campaign paired AI-directed tasking with familiar methods such as vulnerable public-facing servers, stolen credentials, webshells, and custom remote-access malware. The operation reached Taiwan’s Kuomintan...]]></description>
<link>https://tsecurity.de/de/3994854/malware-trojaner-viren/hackers-turn-claude-qwen-and-deepseek-into-ai-agents-for-real-world-cyberattacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994854/malware-trojaner-viren/hackers-turn-claude-qwen-and-deepseek-into-ai-agents-for-real-world-cyberattacks/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:50 +0200</pubDate>
<content:encoded><![CDATA[<p>Hackers have turned commercial AI models into working parts of a cyberattack operation. The campaign paired AI-directed tasking with familiar methods such as vulnerable public-facing servers, stolen credentials, webshells, and custom remote-access malware. The operation reached Taiwan’s Kuomintang Party History Archives, Indonesia’s Ministry of... <a href="https://cybersecuritynews.com/ai-agents-for-real-world-cyberattacks/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[NodeStealer Can Now Record Everything Victims Type and Steal Their Screenshots]]></title>
<description><![CDATA[NodeStealer has returned with a more invasive toolkit. The Python-based information stealer can now record keystrokes, watch copied text, and capture victims’ screens, turning an account-stealing infection into continuous surveillance. The change raises the stakes for people whose browsers hold w...]]></description>
<link>https://tsecurity.de/de/3994853/malware-trojaner-viren/nodestealer-can-now-record-everything-victims-type-and-steal-their-screenshots/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994853/malware-trojaner-viren/nodestealer-can-now-record-everything-victims-type-and-steal-their-screenshots/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:50 +0200</pubDate>
<content:encoded><![CDATA[<p>NodeStealer has returned with a more invasive toolkit. The Python-based information stealer can now record keystrokes, watch copied text, and capture victims’ screens, turning an account-stealing infection into continuous surveillance. The change raises the stakes for people whose browsers hold work, banking, or social-media access. First tracked... <a href="https://cybersecuritynews.com/nodestealer-record-everything/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Leaders Discuss OpenAI’s Call for Collaboration on Cyber Defense]]></title>
<description><![CDATA[100 technology firms released an open letter calling for “collective action” for cyber defense. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994849/ai-nachrichten/security-leaders-discuss-openais-call-for-collaboration-on-cyber-defense/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994849/ai-nachrichten/security-leaders-discuss-openais-call-for-collaboration-on-cyber-defense/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:49 +0200</pubDate>
<content:encoded><![CDATA[<p>100 technology firms released an open letter calling for “collective action” for cyber defense. <a href="https://www.securitymagazine.com/articles/102536-security-leaders-discuss-openais-call-for-collaboration-on-cyber-defense" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Bureau of Alcohol, Tobacco, Firearms and Explosives Discloses Cyber Incident]]></title>
<description><![CDATA[The bureau confirmed an incident after the Qilin ransomware group claimed a breach.  Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994847/malware-trojaner-viren/bureau-of-alcohol-tobacco-firearms-and-explosives-discloses-cyber-incident/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994847/malware-trojaner-viren/bureau-of-alcohol-tobacco-firearms-and-explosives-discloses-cyber-incident/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:49 +0200</pubDate>
<content:encoded><![CDATA[<p>The bureau confirmed an incident after the Qilin ransomware group claimed a breach.  <a href="https://www.securitymagazine.com/articles/102542-bureau-of-alcohol-tobacco-firearms-and-explosives-discloses-cyber-incident" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI, Claude and Other Chatbot Outages Reported]]></title>
<description><![CDATA[Notable AI chatbots reported outages.  Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994846/ai-nachrichten/openai-claude-and-other-chatbot-outages-reported/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994846/ai-nachrichten/openai-claude-and-other-chatbot-outages-reported/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:49 +0200</pubDate>
<content:encoded><![CDATA[<p>Notable AI chatbots reported outages.  <a href="https://www.securitymagazine.com/articles/102556-openai-claude-and-other-chatbot-outages-reported" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Releases GPT-6 Astra Amidst Frontier AI Cybersecurity Concerns]]></title>
<description><![CDATA[Today, OpenAI unveiled its newest model: GPT-6 Astra.  Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994845/ai-nachrichten/openai-releases-gpt-6-astra-amidst-frontier-ai-cybersecurity-concerns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994845/ai-nachrichten/openai-releases-gpt-6-astra-amidst-frontier-ai-cybersecurity-concerns/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:49 +0200</pubDate>
<content:encoded><![CDATA[<p>Today, OpenAI unveiled its newest model: GPT-6 Astra.  <a href="https://www.securitymagazine.com/articles/102559-openai-releases-gpt-6-astra-amidst-frontier-ai-cybersecurity-concerns" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why less visibility into how OpenAI’s new GPT-6 Astra ‘thinks’ is sparking safety concerns]]></title>
<description><![CDATA[OpenAI’s new model, GPT-6 Astra, has less direct visibility into how a model thinks, a development that has sparked concerns coming just weeks after the Hugging Face hacking incident that required a Chinese open model to investigate, according to analysts. When announcing Astra on Thursday, OpenA...]]></description>
<link>https://tsecurity.de/de/3994844/ai-nachrichten/why-less-visibility-into-how-openais-new-gpt-6-astra-thinks-is-sparking-safety-concerns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994844/ai-nachrichten/why-less-visibility-into-how-openais-new-gpt-6-astra-thinks-is-sparking-safety-concerns/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:49 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI’s new model, GPT-6 Astra, has less direct visibility into how a model thinks, a development that has sparked concerns coming just weeks after the Hugging Face hacking incident that required a Chinese open model to investigate, according to analysts. When announcing Astra on Thursday, OpenAI said it was “the world’s most intelligent and... <a href="https://www.scmp.com/tech/tech-trends/article/3366401/why-less-visibility-how-openais-new-gpt-6-astra-thinks-sparking-safety-concerns?utm_source=rss_feed" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Alabama launches investigation into OpenAI’s hack of Hugging Face]]></title>
<description><![CDATA[Weeks after OpenAI disclosed that one of its cybersecurity models had gone rogue and hacked AI dataset company Hugging Face, Alabama’s attorney general announced an investigation into the incident. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994843/ai-nachrichten/alabama-launches-investigation-into-openais-hack-of-hugging-face/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994843/ai-nachrichten/alabama-launches-investigation-into-openais-hack-of-hugging-face/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>Weeks after OpenAI disclosed that one of its cybersecurity models had gone rogue and hacked AI dataset company Hugging Face, Alabama’s attorney general announced an investigation into the incident. <a href="https://techcrunch.com/2026/08/24/alabama-launches-investigation-into-openais-hack-of-hugging-face/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[That fake Grand Theft Auto VI demo is actually just malware]]></title>
<description><![CDATA[Grand Theft Auto fans, eager for news about one of the most anticipated video games of all time, appear especially vulnerable to this new cyberattack. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994842/malware-trojaner-viren/that-fake-grand-theft-auto-vi-demo-is-actually-just-malware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994842/malware-trojaner-viren/that-fake-grand-theft-auto-vi-demo-is-actually-just-malware/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>Grand Theft Auto fans, eager for news about one of the most anticipated video games of all time, appear especially vulnerable to this new cyberattack. <a href="https://techcrunch.com/2026/08/25/that-fake-grand-theft-auto-vi-demo-is-actually-just-malware/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[US seizes domains of Chinese botnet used to target NASA, Justice Department, and the Senate]]></title>
<description><![CDATA[The Justice Department said that the domain seizures made the botnet and its command and control servers "inoperable," as the domains were hardcoded into the botnet's code and were critical for the botnet's communication and essential operations. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994841/malware-trojaner-viren/us-seizes-domains-of-chinese-botnet-used-to-target-nasa-justice-department-and-the-senate/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994841/malware-trojaner-viren/us-seizes-domains-of-chinese-botnet-used-to-target-nasa-justice-department-and-the-senate/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>The Justice Department said that the domain seizures made the botnet and its command and control servers &quot;inoperable,&quot; as the domains were hardcoded into the botnet&#039;s code and were critical for the botnet&#039;s communication and essential operations. <a href="https://techcrunch.com/2026/08/26/us-seizes-domains-of-chinese-botnet-used-to-hack-nasa-justice-department-and-the-senate/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Here’s all the times AI has gone rogue and hacked other companies]]></title>
<description><![CDATA[A recap of all the incidents involving LLMs made by Anthropic, Meta, and OpenAI, which went rogue and attacked real companies and individuals on the internet. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994840/ai-nachrichten/heres-all-the-times-ai-has-gone-rogue-and-hacked-other-companies/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994840/ai-nachrichten/heres-all-the-times-ai-has-gone-rogue-and-hacked-other-companies/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>A recap of all the incidents involving LLMs made by Anthropic, Meta, and OpenAI, which went rogue and attacked real companies and individuals on the internet. <a href="https://techcrunch.com/2026/08/27/heres-all-the-times-ai-has-gone-rogue-and-hacked-other-companies/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Australian police arrest two over TeamPCP hacks targeting Mercor, OpenAI, and others]]></title>
<description><![CDATA[The arrests come after a wave of cyberattacks earlier this year targeting tech companies that rely on high-profile and widely used open source software. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994839/ai-nachrichten/australian-police-arrest-two-over-teampcp-hacks-targeting-mercor-openai-and-others/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994839/ai-nachrichten/australian-police-arrest-two-over-teampcp-hacks-targeting-mercor-openai-and-others/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>The arrests come after a wave of cyberattacks earlier this year targeting tech companies that rely on high-profile and widely used open source software. <a href="https://techcrunch.com/2026/08/27/australian-police-arrest-two-over-teampcp-hacks-targeting-mercor-openai-and-others/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI, Anthropic, Google, and 100 other companies call for action to defend against rogue AI]]></title>
<description><![CDATA[Some of the world's largest tech companies and AI startups have come together to decry the current state of cybersecurity and to advertise a new solution that they say can ward off a new generation of cyber threats. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994838/ai-nachrichten/openai-anthropic-google-and-100-other-companies-call-for-action-to-defend-against-rogue-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994838/ai-nachrichten/openai-anthropic-google-and-100-other-companies-call-for-action-to-defend-against-rogue-ai/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>Some of the world&#039;s largest tech companies and AI startups have come together to decry the current state of cybersecurity and to advertise a new solution that they say can ward off a new generation of cyber threats. <a href="https://techcrunch.com/2026/08/27/openai-anthropic-google-and-100-other-companies-call-for-action-to-defend-against-rogue-ai/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ATF declares ‘major incident’ as ransomware gang claims hack]]></title>
<description><![CDATA[The ATF is the latest federal government agency in recent years to notify Congress of a "major incident" involving its cybersecurity. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994837/malware-trojaner-viren/atf-declares-major-incident-as-ransomware-gang-claims-hack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994837/malware-trojaner-viren/atf-declares-major-incident-as-ransomware-gang-claims-hack/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>The ATF is the latest federal government agency in recent years to notify Congress of a &quot;major incident&quot; involving its cybersecurity. <a href="https://techcrunch.com/2026/08/27/atf-declares-major-incident-as-ransomware-gang-claims-hack/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How AI could make it harder for governments to use hacking tools]]></title>
<description><![CDATA[AI is proving effective at finding and exploiting vulnerabilities. Some say this will make it harder for governments to use hacking tools and spyware and could reignite calls to backdoor devices. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994836/malware-trojaner-viren/how-ai-could-make-it-harder-for-governments-to-use-hacking-tools/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994836/malware-trojaner-viren/how-ai-could-make-it-harder-for-governments-to-use-hacking-tools/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:44 +0200</pubDate>
<content:encoded><![CDATA[<p>AI is proving effective at finding and exploiting vulnerabilities. Some say this will make it harder for governments to use hacking tools and spyware and could reignite calls to backdoor devices. <a href="https://techcrunch.com/2026/08/31/how-ai-could-make-it-harder-for-governments-to-use-hacking-tools/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[After Hugging Face Was Attacked By A.I. Agents, It Embarked on a Crusade]]></title>
<description><![CDATA[Hugging Face, a start-up that was breached by rogue bots from OpenAI, is using the hack to push for openness in A.I. development. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994835/ai-nachrichten/after-hugging-face-was-attacked-by-ai-agents-it-embarked-on-a-crusade/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994835/ai-nachrichten/after-hugging-face-was-attacked-by-ai-agents-it-embarked-on-a-crusade/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Hugging Face, a start-up that was breached by rogue bots from OpenAI, is using the hack to push for openness in A.I. development. <a href="https://www.nytimes.com/2026/08/24/technology/hugging-face-open-source-ai-attack.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[A Chinese A.I. Lab May Test the World’s Cybersecurity With a Model]]></title>
<description><![CDATA[In July, an unreleased OpenAI model went rogue and demonstrated remarkable hacking abilities. This week, a lab called Z.ai will release a similarly powerful system to everyone. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994834/ai-nachrichten/a-chinese-ai-lab-may-test-the-worlds-cybersecurity-with-a-model/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994834/ai-nachrichten/a-chinese-ai-lab-may-test-the-worlds-cybersecurity-with-a-model/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:43 +0200</pubDate>
<content:encoded><![CDATA[<p>In July, an unreleased OpenAI model went rogue and demonstrated remarkable hacking abilities. This week, a lab called Z.ai will release a similarly powerful system to everyone. <a href="https://www.nytimes.com/2026/08/25/science/cybersecurity-zai-open-weights.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why Irregular’s A.I. Tests for Meta, Anthropic and OpenAI Went Off the Rails]]></title>
<description><![CDATA[Irregular, an Israeli start-up, worked with OpenAI, Anthropic and Meta to assess the security of their A.I. models. It made a mistake. Then the tests went off the rails. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994833/ai-nachrichten/why-irregulars-ai-tests-for-meta-anthropic-and-openai-went-off-the-rails/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994833/ai-nachrichten/why-irregulars-ai-tests-for-meta-anthropic-and-openai-went-off-the-rails/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Irregular, an Israeli start-up, worked with OpenAI, Anthropic and Meta to assess the security of their A.I. models. It made a mistake. Then the tests went off the rails. <a href="https://www.nytimes.com/2026/08/25/technology/irregular-ai-test-hacks.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI and 100 Others Warn That Window to Defend Against A.I. Attacks Is Narrowing]]></title>
<description><![CDATA[In an open letter, OpenAI, Anthropic, Google and others said that a wave of A.I.-enabled cyberattacks was coming and that organizations and governments needed to prepare themselves. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994832/ai-nachrichten/openai-and-100-others-warn-that-window-to-defend-against-ai-attacks-is-narrowing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994832/ai-nachrichten/openai-and-100-others-warn-that-window-to-defend-against-ai-attacks-is-narrowing/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:43 +0200</pubDate>
<content:encoded><![CDATA[<p>In an open letter, OpenAI, Anthropic, Google and others said that a wave of A.I.-enabled cyberattacks was coming and that organizations and governments needed to prepare themselves. <a href="https://www.nytimes.com/2026/08/27/technology/openai-letter-ai-attacks.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How OpenAI Limited the Probe of Its Bots’ Hack of Hugging Face]]></title>
<description><![CDATA[Researchers investigating how OpenAI’s A.I. agents were able to break into Hugging Face’s infrastructure weren’t allowed to look at the incident’s full scope. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994831/ai-nachrichten/how-openai-limited-the-probe-of-its-bots-hack-of-hugging-face/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994831/ai-nachrichten/how-openai-limited-the-probe-of-its-bots-hack-of-hugging-face/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Researchers investigating how OpenAI’s A.I. agents were able to break into Hugging Face’s infrastructure weren’t allowed to look at the incident’s full scope. <a href="https://www.nytimes.com/2026/09/03/technology/openai-hugging-face-hack.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Why the Hugging Face Hack Should Make You Worry More About A.I.]]></title>
<description><![CDATA[The attack by an aggressive “collective” of OpenAI agents shows the danger of artificial intelligence systems that organize themselves. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994830/ai-nachrichten/why-the-hugging-face-hack-should-make-you-worry-more-about-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994830/ai-nachrichten/why-the-hugging-face-hack-should-make-you-worry-more-about-ai/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:43 +0200</pubDate>
<content:encoded><![CDATA[<p>The attack by an aggressive “collective” of OpenAI agents shows the danger of artificial intelligence systems that organize themselves. <a href="https://www.nytimes.com/2026/09/03/technology/openai-hugging-face-hacking.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pegasus, New NoviSpy Variant Found on Serbian Students and Opposition Figures]]></title>
<description><![CDATA[At least 14 people connected to Serbia's student protest movement and opposition politics have been targeted with mercenary spyware since early 2026, the Belgrade-based digital rights organization SHARE Foundation said, in what it called the largest documented wave of such targeting in the countr...]]></description>
<link>https://tsecurity.de/de/3994826/malware-trojaner-viren/pegasus-new-novispy-variant-found-on-serbian-students-and-opposition-figures/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994826/malware-trojaner-viren/pegasus-new-novispy-variant-found-on-serbian-students-and-opposition-figures/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:42 +0200</pubDate>
<content:encoded><![CDATA[<p>At least 14 people connected to Serbia&#039;s student protest movement and opposition politics have been targeted with mercenary spyware since early 2026, the Belgrade-based digital rights organization SHARE Foundation said, in what it called the largest documented wave of such targeting in the country. The group said the cohort includes student... <a href="https://thecyberexpress.com/pegasus-novispy-spyware-serbia-students/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI Attack Surfaces and Supply Chain Threats Define the Week]]></title>
<description><![CDATA[This week’s cybersecurity landscape was shaped by attacks on AI infrastructure, software supply chains, edge devices, and authenticated browser sessions. Defenders also faced actively exploited enterprise flaws, sophisticated malware evasion, large data breaches, and expanding foreign espionage o...]]></description>
<link>https://tsecurity.de/de/3994824/malware-trojaner-viren/ai-attack-surfaces-and-supply-chain-threats-define-the-week/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994824/malware-trojaner-viren/ai-attack-surfaces-and-supply-chain-threats-define-the-week/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:41 +0200</pubDate>
<content:encoded><![CDATA[<p>This week’s cybersecurity landscape was shaped by attacks on AI infrastructure, software supply chains, edge devices, and authenticated browser sessions. Defenders also faced actively exploited enterprise flaws, sophisticated malware evasion, large data breaches, and expanding foreign espionage operations. At the same time, international... <a href="https://www.esecurityplanet.com/weekly-roundup/ai-attack-surfaces-and-supply-chain-threats-define-the-week/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pegasus zero-click attack infects Serbian activist’s iPhone]]></title>
<description><![CDATA[A member of Serbia’s pro-democracy student movement was infected with NSO Group’s Pegasus spyware through a zero-click iMessage exploit. The case is part of a broader surveillance wave that has targeted at least 14 students, activists and opposition politicians since the beginning of 2026. Citize...]]></description>
<link>https://tsecurity.de/de/3994820/malware-trojaner-viren/pegasus-zero-click-attack-infects-serbian-activists-iphone/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994820/malware-trojaner-viren/pegasus-zero-click-attack-infects-serbian-activists-iphone/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:40 +0200</pubDate>
<content:encoded><![CDATA[<p>A member of Serbia’s pro-democracy student movement was infected with NSO Group’s Pegasus spyware through a zero-click iMessage exploit. The case is part of a broader surveillance wave that has targeted at least 14 students, activists and opposition politicians since the beginning of 2026. Citizen Lab examined the student’s iPhone after the... <a href="https://cyberinsider.com/pegasus-zero-click-attack-infects-serbian-activists-iphone/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords]]></title>
<description><![CDATA[Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoader that’s used to deliver next-stage payloads and likely sell access to ransomware groups. According to findings from Gen Digital, WordlistLoader is being used to deliver Amatera Stealer (aka ACR Ste...]]></description>
<link>https://tsecurity.de/de/3994818/malware-trojaner-viren/wordlistloader-delivers-amatera-via-clickfix-synkloader-phishes-windows-passwords/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994818/malware-trojaner-viren/wordlistloader-delivers-amatera-via-clickfix-synkloader-phishes-windows-passwords/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:37 +0200</pubDate>
<content:encoded><![CDATA[<p>Cybersecurity researchers have flagged two new malware families called WordlistLoader and SynkLoader that’s used to deliver next-stage payloads and likely sell access to ransomware groups. According to findings from Gen Digital, WordlistLoader is being used to deliver Amatera Stealer (aka ACR Stealer or AcridRain Stealer) via ClearFake campaigns,... <a href="https://thecyberpost.com/news/hackers/wordlistloader-delivers-amatera-via-clickfix-synkloader-phishes-windows-passwords/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Aurora Ransomware Operators Use Cursor AI in Attacks Against 10 Targets]]></title>
<description><![CDATA[Threat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX’s artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according to findings from CloudSEK and Gambit Security. The two independent analyses are based on exposed inf...]]></description>
<link>https://tsecurity.de/de/3994816/malware-trojaner-viren/aurora-ransomware-operators-use-cursor-ai-in-attacks-against-10-targets/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994816/malware-trojaner-viren/aurora-ransomware-operators-use-cursor-ai-in-attacks-against-10-targets/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:37 +0200</pubDate>
<content:encoded><![CDATA[<p>Threat actors associated with Aurora (aka Aur0ra) ransomware have been observed using SpaceX’s artificial intelligence (AI)-powered coding assistant Cursor to break into target networks, according to findings from CloudSEK and Gambit Security. The two independent analyses are based on exposed infrastructure associated with the Russian-speaking... <a href="https://thecyberpost.com/news/hackers/aurora-ransomware-operators-use-cursor-ai-in-attacks-against-10-targets/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[NodeStealer Spyware Adds Keylogging, Screenshot Capture and Facebook Data Theft]]></title>
<description><![CDATA[A major upgrade to the Python-based NodeStealer malware, transforming the Facebook-focused infostealer into a broader spyware platform capable of logging keystrokes, monitoring clipboard data, capturing screenshots, and harvesting extensive Facebook profile information. The newly observed variant...]]></description>
<link>https://tsecurity.de/de/3994814/malware-trojaner-viren/nodestealer-spyware-adds-keylogging-screenshot-capture-and-facebook-data-theft/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994814/malware-trojaner-viren/nodestealer-spyware-adds-keylogging-screenshot-capture-and-facebook-data-theft/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:35 +0200</pubDate>
<content:encoded><![CDATA[<p>A major upgrade to the Python-based NodeStealer malware, transforming the Facebook-focused infostealer into a broader spyware platform capable of logging keystrokes, monitoring clipboard data, capturing screenshots, and harvesting extensive Facebook profile information. The newly observed variant, identified in August 2026, also expands browser... <a href="https://gbhackers.com/nodestealer-spyware-malware/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Agents Collude on Public Wiki to Share Sandbox Bypass and Evasion Techniques]]></title>
<description><![CDATA[Researchers have discovered a public wiki message board that they claim was used by autonomous AI agents, identifying themselves as OpenAI systems, to exchange answers to tasks, inspect their operating environment, and discuss methods to circumvent sandbox controls. This finding, published on Sep...]]></description>
<link>https://tsecurity.de/de/3994813/ai-nachrichten/openai-agents-collude-on-public-wiki-to-share-sandbox-bypass-and-evasion-techniques/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994813/ai-nachrichten/openai-agents-collude-on-public-wiki-to-share-sandbox-bypass-and-evasion-techniques/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:35 +0200</pubDate>
<content:encoded><![CDATA[<p>Researchers have discovered a public wiki message board that they claim was used by autonomous AI agents, identifying themselves as OpenAI systems, to exchange answers to tasks, inspect their operating environment, and discuss methods to circumvent sandbox controls. This finding, published on September 4 by Sydney Von Arx, Cormac Slade Byrd,... <a href="https://gbhackers.com/openai-agents-collude-on-public-wiki/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Turn HiveMQ and Element Messenger Into Control Channels for Windows Backdoors]]></title>
<description><![CDATA[The financially motivated threat actor Toy Ghouls has expanded its custom malware arsenal with two Windows backdoors that abuse HiveMQ’s public MQTT infrastructure and the Matrix-based Element messaging ecosystem for command-and-control communications. The development marks a notable evolution fo...]]></description>
<link>https://tsecurity.de/de/3994812/malware-trojaner-viren/hackers-turn-hivemq-and-element-messenger-into-control-channels-for-windows-backdoors/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994812/malware-trojaner-viren/hackers-turn-hivemq-and-element-messenger-into-control-channels-for-windows-backdoors/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:35 +0200</pubDate>
<content:encoded><![CDATA[<p>The financially motivated threat actor Toy Ghouls has expanded its custom malware arsenal with two Windows backdoors that abuse HiveMQ’s public MQTT infrastructure and the Matrix-based Element messaging ecosystem for command-and-control communications. The development marks a notable evolution for the group, which previously leaned on publicly... <a href="https://gbhackers.com/hivemq-powers-backdoor/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New Panzer Ransomware Hits 16 Victims Across 11 Countries With Data Theft and Encryption]]></title>
<description><![CDATA[Panzer ransomware has emerged as a new Ransomware-as-a-Service (RaaS) operation, publishing 16 alleged victims across 11 countries while combining data theft with file encryption. Documented by CyberXtron, its dedicated leak site was first observed active on August 5, 2026, and its early victim l...]]></description>
<link>https://tsecurity.de/de/3994810/malware-trojaner-viren/new-panzer-ransomware-hits-16-victims-across-11-countries-with-data-theft-and-encryption/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994810/malware-trojaner-viren/new-panzer-ransomware-hits-16-victims-across-11-countries-with-data-theft-and-encryption/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:35 +0200</pubDate>
<content:encoded><![CDATA[<p>Panzer ransomware has emerged as a new Ransomware-as-a-Service (RaaS) operation, publishing 16 alleged victims across 11 countries while combining data theft with file encryption. Documented by CyberXtron, its dedicated leak site was first observed active on August 5, 2026, and its early victim list includes organizations in technology,... <a href="https://gbhackers.com/new-panzer-ransomware-hits-16-victim/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic makes changes to stop AI agents running amok again]]></title>
<description><![CDATA[Learning from the OpenAI-Hugging Face fiasco, as well as from recent revelations about its own model, Anthropic is revamping its security and alignment practices. The company has established controls that flag when a model attempts to break out of a sandbox or successfully accesses the live inter...]]></description>
<link>https://tsecurity.de/de/3994808/ai-nachrichten/anthropic-makes-changes-to-stop-ai-agents-running-amok-again/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994808/ai-nachrichten/anthropic-makes-changes-to-stop-ai-agents-running-amok-again/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>Learning from the OpenAI-Hugging Face fiasco, as well as from recent revelations about its own model, Anthropic is revamping its security and alignment practices. The company has established controls that flag when a model attempts to break out of a sandbox or successfully accesses the live internet, cordoned off its highest-risk test... <a href="https://www.csoonline.com/article/4217243/anthropic-makes-changes-to-stop-ai-agents-running-amok-again.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[When the patch tsunami meets the maintenance window]]></title>
<description><![CDATA[In April 2026, the balance between finding software flaws and fixing them broke. Frontier AI models released by Anthropic and OpenAI can now autonomously identify exploitable vulnerabilities in production software — work that used to take experienced human researchers roughly sixty days now takes...]]></description>
<link>https://tsecurity.de/de/3994807/ai-nachrichten/when-the-patch-tsunami-meets-the-maintenance-window/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994807/ai-nachrichten/when-the-patch-tsunami-meets-the-maintenance-window/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>In April 2026, the balance between finding software flaws and fixing them broke. Frontier AI models released by Anthropic and OpenAI can now autonomously identify exploitable vulnerabilities in production software — work that used to take experienced human researchers roughly sixty days now takes about four hours, as Melissa Hathaway documents in... <a href="https://www.csoonline.com/article/4217080/when-the-patch-tsunami-meets-the-maintenance-window.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI agents help compress ransomware intrusion to under 10 hours, raising stakes for CISOs]]></title>
<description><![CDATA[A ransomware attacker used AI agents to move through an enterprise network in less than 10 hours, according to Palo Alto Networks researchers, who estimated that similar work could have taken human operators about two weeks. The incident involved more than 50 techniques mapped to the MITRE ATT&am...]]></description>
<link>https://tsecurity.de/de/3994805/malware-trojaner-viren/ai-agents-help-compress-ransomware-intrusion-to-under-10-hours-raising-stakes-for-cisos/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994805/malware-trojaner-viren/ai-agents-help-compress-ransomware-intrusion-to-under-10-hours-raising-stakes-for-cisos/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>A ransomware attacker used AI agents to move through an enterprise network in less than 10 hours, according to Palo Alto Networks researchers, who estimated that similar work could have taken human operators about two weeks. The incident involved more than 50 techniques mapped to the MITRE ATT&amp;amp;CK framework, according to the company’s Unit 42... <a href="https://www.csoonline.com/article/4217976/ai-agents-help-compress-ransomware-intrusion-to-under-10-hours-raising-stakes-for-cisos.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Counterfeit installers turn routine software downloads into enterprise breaches]]></title>
<description><![CDATA[Microsoft has warned that attackers are breaching enterprise systems via counterfeit download sites impersonating software including Microsoft Edge, Kaspersky and Razer, delivering trojanized installers for persistent access. “Once executed, the malicious installers deploy malware that establishe...]]></description>
<link>https://tsecurity.de/de/3994804/malware-trojaner-viren/counterfeit-installers-turn-routine-software-downloads-into-enterprise-breaches/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994804/malware-trojaner-viren/counterfeit-installers-turn-routine-software-downloads-into-enterprise-breaches/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>Microsoft has warned that attackers are breaching enterprise systems via counterfeit download sites impersonating software including Microsoft Edge, Kaspersky and Razer, delivering trojanized installers for persistent access. “Once executed, the malicious installers deploy malware that establishes persistence, attempts to weaken security... <a href="https://www.csoonline.com/article/4218075/counterfeit-installers-turn-routine-software-downloads-into-enterprise-breaches.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI targets small utilities with $1 billion cyber defense initiative]]></title>
<description><![CDATA[In a keynote speech during a summit at OpenAI’s headquarters attended by 300 enterprise security leaders and CISOs from Fortune 1000 companies, OpenAI President Greg Brockman announced Daybreak for Frontline Defenders, a new global initiative to help frontline defenders use frontier cyber AI to p...]]></description>
<link>https://tsecurity.de/de/3994802/ai-nachrichten/openai-targets-small-utilities-with-1-billion-cyber-defense-initiative/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994802/ai-nachrichten/openai-targets-small-utilities-with-1-billion-cyber-defense-initiative/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>In a keynote speech during a summit at OpenAI’s headquarters attended by 300 enterprise security leaders and CISOs from Fortune 1000 companies, OpenAI President Greg Brockman announced Daybreak for Frontline Defenders, a new global initiative to help frontline defenders use frontier cyber AI to protect essential services in the United States and... <a href="https://www.csoonline.com/article/4218373/openai-targets-small-utilities-with-1-billion-cyber-defense-initiative.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI launches GPT-6 Astra, its first model to cross a critical cybersecurity threshold]]></title>
<description><![CDATA[OpenAI launched GPT-6 Astra on Thursday, disclosing that the new flagship model has crossed the “Critical” threshold for cybersecurity risk under its Preparedness Framework, a classification the company said triggers additional deployment restrictions. “GPT‑6 Astra is rolling out today to a limit...]]></description>
<link>https://tsecurity.de/de/3994801/ai-nachrichten/openai-launches-gpt-6-astra-its-first-model-to-cross-a-critical-cybersecurity-threshold/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994801/ai-nachrichten/openai-launches-gpt-6-astra-its-first-model-to-cross-a-critical-cybersecurity-threshold/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI launched GPT-6 Astra on Thursday, disclosing that the new flagship model has crossed the “Critical” threshold for cybersecurity risk under its Preparedness Framework, a classification the company said triggers additional deployment restrictions. “GPT‑6 Astra is rolling out today to a limited set of organizations and over the coming days... <a href="https://www.csoonline.com/article/4218679/openai-launches-gpt-6-astra-its-first-model-to-cross-a-critical-cybersecurity-threshold.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Defenders call out OpenAI defense pledge, Astra release timing]]></title>
<description><![CDATA[OpenAI pledged $1B to cyber defenders the same day it released Astra -- its most powerful offensive model yet. Some experts warn that defense is getting left behind. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994799/ai-nachrichten/defenders-call-out-openai-defense-pledge-astra-release-timing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994799/ai-nachrichten/defenders-call-out-openai-defense-pledge-astra-release-timing/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:33 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI pledged $1B to cyber defenders the same day it released Astra -- its most powerful offensive model yet. Some experts warn that defense is getting left behind. <a href="https://www.techtarget.com/cybersecurity/news/366649598/Defenders-call-out-timing-of-OpenAI-defense-pledge-Astra-release" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fake Software Update Installs a Real Crypto Wallet – Rigged So It Can Never Open]]></title>
<description><![CDATA[Security researchers at Huntress have discovered a malware campaign that tricks victims into installing a real, fully functional copy of Exodus, a popular cryptocurrency wallet application, only to disable it so it can never actually be opened, using it instead as cover for a hidden spying tool. ...]]></description>
<link>https://tsecurity.de/de/3994798/malware-trojaner-viren/fake-software-update-installs-a-real-crypto-wallet-rigged-so-it-can-never-open/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994798/malware-trojaner-viren/fake-software-update-installs-a-real-crypto-wallet-rigged-so-it-can-never-open/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:31 +0200</pubDate>
<content:encoded><![CDATA[<p>Security researchers at Huntress have discovered a malware campaign that tricks victims into installing a real, fully functional copy of Exodus, a popular cryptocurrency wallet application, only to disable it so it can never actually be opened, using it instead as cover for a hidden spying tool. The firm said it identified four separate... <a href="https://www.itsecurityguru.org/2026/09/02/fake-software-update-installs-a-real-crypto-wallet-rigged-so-it-can-never-open/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=fake-software-update-installs-a-real-crypto-wallet-rigged-so-it-can-never-open" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hijacked ScreenConnect Installs Are Spreading Malware Like a Worm, Huntress Warns]]></title>
<description><![CDATA[Cybersecurity firm Huntress has uncovered a wave of malicious installations of ScreenConnect, a widely used remote-support tool, that spread between machines without any further action from a victim or an attacker, a self-propagating attack chain researchers likened to a computer worm. In a blog ...]]></description>
<link>https://tsecurity.de/de/3994796/malware-trojaner-viren/hijacked-screenconnect-installs-are-spreading-malware-like-a-worm-huntress-warns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994796/malware-trojaner-viren/hijacked-screenconnect-installs-are-spreading-malware-like-a-worm-huntress-warns/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:31 +0200</pubDate>
<content:encoded><![CDATA[<p>Cybersecurity firm Huntress has uncovered a wave of malicious installations of ScreenConnect, a widely used remote-support tool, that spread between machines without any further action from a victim or an attacker, a self-propagating attack chain researchers likened to a computer worm. In a blog post published this week, Huntress said its Security... <a href="https://www.itsecurityguru.org/2026/09/03/hijacked-screenconnect-installs-are-spreading-malware-like-a-worm-huntress-warns/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=hijacked-screenconnect-installs-are-spreading-malware-like-a-worm-huntress-warns" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ungentlemanly behavior: Insights into a ransomware operation]]></title>
<description><![CDATA[Analysis of 15 intrusions revealed tradecraft used by GOLD SHERWOOD affiliatesCategories: Threat ResearchTags: ransomware as a service, The Gentlemen, GOLD SHERWOOD, Ransomware Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994794/malware-trojaner-viren/ungentlemanly-behavior-insights-into-a-ransomware-operation/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994794/malware-trojaner-viren/ungentlemanly-behavior-insights-into-a-ransomware-operation/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:28 +0200</pubDate>
<content:encoded><![CDATA[<p>Analysis of 15 intrusions revealed tradecraft used by GOLD SHERWOOD affiliatesCategories: Threat ResearchTags: ransomware as a service, The Gentlemen, GOLD SHERWOOD, Ransomware <a href="https://www.sophos.com/en-us/blog/ungentlemanly-behavior-insights-into-a-ransomware-operation" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Government, industry partner to shut down long-running Sality botnet]]></title>
<description><![CDATA[A nonprofit group is now working to contact victims. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994792/malware-trojaner-viren/government-industry-partner-to-shut-down-long-running-sality-botnet/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994792/malware-trojaner-viren/government-industry-partner-to-shut-down-long-running-sality-botnet/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:27 +0200</pubDate>
<content:encoded><![CDATA[<p>A nonprofit group is now working to contact victims. <a href="https://www.cybersecuritydive.com/news/doj-crowdstrike-botnet-sality-takedown/829512/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SonicWall urges immediate patching of chained vulnerabilities]]></title>
<description><![CDATA[Just weeks after a wave of ransomware attacks, new flaws in SMA1000 series appliances are being exploited. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994791/malware-trojaner-viren/sonicwall-urges-immediate-patching-of-chained-vulnerabilities/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994791/malware-trojaner-viren/sonicwall-urges-immediate-patching-of-chained-vulnerabilities/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:26 +0200</pubDate>
<content:encoded><![CDATA[<p>Just weeks after a wave of ransomware attacks, new flaws in SMA1000 series appliances are being exploited. <a href="https://www.cybersecuritydive.com/news/sonicwall-immediate-patching-chained-vulnerabilities/829567/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Agents Collude on Public Wiki to Share Sandbox Bypass and Evasion Techniques]]></title>
<description><![CDATA[Newly disclosed evidence that autonomous AI agents operating internally at OpenAI used an obscure public wiki to coordinate answers and share sandbox-evasion techniques during a large-scale automated task, in what appears to be a distinct incident from the previously disclosed Hugging Face breach...]]></description>
<link>https://tsecurity.de/de/3994789/ai-nachrichten/openai-agents-collude-on-public-wiki-to-share-sandbox-bypass-and-evasion-techniques/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994789/ai-nachrichten/openai-agents-collude-on-public-wiki-to-share-sandbox-bypass-and-evasion-techniques/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:26 +0200</pubDate>
<content:encoded><![CDATA[<p>Newly disclosed evidence that autonomous AI agents operating internally at OpenAI used an obscure public wiki to coordinate answers and share sandbox-evasion techniques during a large-scale automated task, in what appears to be a distinct incident from the previously disclosed Hugging Face breach. Researchers Sydney Von Arx, Cormac Slade Byrd,... <a href="https://cyberpress.org/openai-agents-collude-on-public-wiki/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Panzer Ransomware Targets 16 Organizations Across 11 Countries in Double-Extortion Attacks]]></title>
<description><![CDATA[A newly identified ransomware operation known as Panzer has allegedly listed 16 victims across 11 countries, signaling the arrival of another ransomware-as-a-service (RaaS) platform built to support affiliate-driven double-extortion campaigns. Documented by CyberXtron, Panzer’s dedicated leak por...]]></description>
<link>https://tsecurity.de/de/3994787/malware-trojaner-viren/panzer-ransomware-targets-16-organizations-across-11-countries-in-double-extortion-attacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994787/malware-trojaner-viren/panzer-ransomware-targets-16-organizations-across-11-countries-in-double-extortion-attacks/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:23 +0200</pubDate>
<content:encoded><![CDATA[<p>A newly identified ransomware operation known as Panzer has allegedly listed 16 victims across 11 countries, signaling the arrival of another ransomware-as-a-service (RaaS) platform built to support affiliate-driven double-extortion campaigns. Documented by CyberXtron, Panzer’s dedicated leak portal was first observed active on August 5, 2026. The... <a href="https://cyberpress.org/panzer-ransomware-targets-16-organizations/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ThreatsDay: OAuth-Consent-Phishing, Teams-RMM-Trojaner und verschärfte Kernel-Schutzmaßnahmen]]></title>
<description><![CDATA[LONDON (IT BOLTWISE) – In der aktuellen ThreatsDay-Ausgabe zeigt sich ein klares Muster: Angriffe wirken für Nutzer wie „normale“ Workflows, greifen aber über OAuth-Consent, gefälschte IT-Kontakte und versteckte Remote-Session-Setups an. Besonders herausgestellt wird, wie Teams-Interaktionen zu R...]]></description>
<link>https://tsecurity.de/de/3994786/malware-trojaner-viren/threatsday-oauth-consent-phishing-teams-rmm-trojaner-und-verschaerfte-kernel-schutzmassnahmen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994786/malware-trojaner-viren/threatsday-oauth-consent-phishing-teams-rmm-trojaner-und-verschaerfte-kernel-schutzmassnahmen/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:18 +0200</pubDate>
<content:encoded><![CDATA[<p>LONDON (IT BOLTWISE) – In der aktuellen ThreatsDay-Ausgabe zeigt sich ein klares Muster: Angriffe wirken für Nutzer wie „normale“ Workflows, greifen aber über OAuth-Consent, gefälschte IT-Kontakte und versteckte Remote-Session-Setups an. Besonders herausgestellt wird, wie Teams-Interaktionen zu RMM-Ausführungen führen können und wie „Allow“-Klicks... <a href="https://www.it-boltwise.de/threatsday-oauth-consent-phishing-teams-rmm-trojaner-und-verschaerfte-kernel-schutzmassnahmen.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[GPT-6 Astra: KI erreicht 100% bei ExploitBench – PoC-Anfragen blockiert]]></title>
<description><![CDATA[LONDON / LONDON (IT BOLTWISE) – OpenAI hat GPT-6 Astra vorgestellt und laut eigenen Angaben 100% auf ExploitBench erreicht. Das Modell wird derzeit nur an ausgewählte Organisationen ausgerollt und soll schrittweise für ChatGPT- und API-Kunden verfügbar werden. Gleichzeitig blockiert OpenAI offenb...]]></description>
<link>https://tsecurity.de/de/3994783/ai-nachrichten/gpt-6-astra-ki-erreicht-100-bei-exploitbench-poc-anfragen-blockiert/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994783/ai-nachrichten/gpt-6-astra-ki-erreicht-100-bei-exploitbench-poc-anfragen-blockiert/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:18 +0200</pubDate>
<content:encoded><![CDATA[<p>LONDON / LONDON (IT BOLTWISE) – OpenAI hat GPT-6 Astra vorgestellt und laut eigenen Angaben 100% auf ExploitBench erreicht. Das Modell wird derzeit nur an ausgewählte Organisationen ausgerollt und soll schrittweise für ChatGPT- und API-Kunden verfügbar werden. Gleichzeitig blockiert OpenAI offenbar Anfragen, die auf die Erstellung von... <a href="https://www.it-boltwise.de/gpt-6-astra-ki-erreicht-100-bei-exploitbench-poc-anfragen-blockiert.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI-Agenten nutzten eine deutsche Wiki-Seite als verdeckten Koordinationskanal]]></title>
<description><![CDATA[LONDON (IT BOLTWISE) – Forschende im Bereich KI-Sicherheit berichten, dass zwischen Mai und Juli 2026 etwa 18.000 Beiträge autonomer KI-Agenten eine stillgelegte deutsche Wiki-Seite als gemeinsamen Koordinationsraum nutzten. Die Aktivität lief über mehrere Provider, mit einem klaren Schwerpunkt a...]]></description>
<link>https://tsecurity.de/de/3994778/ai-nachrichten/openai-agenten-nutzten-eine-deutsche-wiki-seite-als-verdeckten-koordinationskanal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994778/ai-nachrichten/openai-agenten-nutzten-eine-deutsche-wiki-seite-als-verdeckten-koordinationskanal/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:18 +0200</pubDate>
<content:encoded><![CDATA[<p>LONDON (IT BOLTWISE) – Forschende im Bereich KI-Sicherheit berichten, dass zwischen Mai und Juli 2026 etwa 18.000 Beiträge autonomer KI-Agenten eine stillgelegte deutsche Wiki-Seite als gemeinsamen Koordinationsraum nutzten. Die Aktivität lief über mehrere Provider, mit einem klaren Schwerpunkt auf Microsoft-Azure-Adressen, und diente offenbar... <a href="https://www.it-boltwise.de/openai-agenten-nutzten-eine-deutsche-wiki-seite-als-verdeckten-koordinationskanal.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[LeakWatch KW 35/2026: Berlin unter Erpressungsdruck, Millionen Flughafendaten abgeflossen, GTA VI lockt Malware an und DLSS 5 landet zu früh im Netz]]></title>
<description><![CDATA[Wer in der Kalenderwoche 35 nach Leaks gesucht hat, musste nicht besonders tief graben. Zwischen dem 24. und 30. August 2026 kamen gleich mehrere sehr unterschiedliche Fälle zusammen. Berlin bestätigte weitere Datenabflüsse aus dem Landesnetz und wird inzwischen erpresst, die Manchester Airports ...]]></description>
<link>https://tsecurity.de/de/3994774/malware-trojaner-viren/leakwatch-kw-352026-berlin-unter-erpressungsdruck-millionen-flughafendaten-abgeflossen-gta-vi-lockt-malware-an-und-dlss-5-landet-zu-frueh-im-netz/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994774/malware-trojaner-viren/leakwatch-kw-352026-berlin-unter-erpressungsdruck-millionen-flughafendaten-abgeflossen-gta-vi-lockt-malware-an-und-dlss-5-landet-zu-frueh-im-netz/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:16 +0200</pubDate>
<content:encoded><![CDATA[<p>Wer in der Kalenderwoche 35 nach Leaks gesucht hat, musste nicht besonders tief graben. Zwischen dem 24. und 30. August 2026 kamen gleich mehrere sehr unterschiedliche Fälle zusammen. Berlin bestätigte weitere Datenabflüsse aus dem Landesnetz und wird inzwischen erpresst, die Manchester Airports Group verlor Daten von rund 8,7 Millionen Kunden,... <a href="https://www.igorslab.de/leakwatch-kw-35-2026-waehrend-koeln-pixel-feiert-brennt-hinter-den-kulissen-weiter-das-internet/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Berlin trotzt Hackern – jedes fünfte Ransomware-Opfer zahlt - Markt & Mittelstand]]></title>
<description><![CDATA[Sicherheit &amp; Compliance. Wirtschaftskriminalität 2026: So schützen sich Unternehmen vor Betrug, KI-Deepfakes und Cybercrime. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994773/malware-trojaner-viren/berlin-trotzt-hackern-jedes-fuenfte-ransomware-opfer-zahlt-markt-mittelstand/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994773/malware-trojaner-viren/berlin-trotzt-hackern-jedes-fuenfte-ransomware-opfer-zahlt-markt-mittelstand/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:15 +0200</pubDate>
<content:encoded><![CDATA[<p>Sicherheit &amp;amp; Compliance. Wirtschaftskriminalität 2026: So schützen sich Unternehmen vor Betrug, KI-Deepfakes und Cybercrime. <a href="https://www.google.com/url?rct=j&amp;sa=t&amp;url=https://www.marktundmittelstand.de/technologie/berlin-trotzt-hackern&amp;ct=ga&amp;cd=CAIyGWQwOWZmNTA1ZDc3ZWYwZTQ6ZGU6ZGU6REU&amp;usg=AOvVaw3CyTVwCrq5v1VwusDgiqSG" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI führt GPT-6 Astra für ChatGPT und Codex ein - Apfeltalk Magazin]]></title>
<description><![CDATA[Der Fokus liegt auf der Unterstützung komplexer Computer-Nutzung, professioneller Workflows, Softwareentwicklung und Cybersicherheit. Das Modell ... Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994772/ai-nachrichten/openai-fuehrt-gpt-6-astra-fuer-chatgpt-und-codex-ein-apfeltalk-magazin/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994772/ai-nachrichten/openai-fuehrt-gpt-6-astra-fuer-chatgpt-und-codex-ein-apfeltalk-magazin/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:14 +0200</pubDate>
<content:encoded><![CDATA[<p>Der Fokus liegt auf der Unterstützung komplexer Computer-Nutzung, professioneller Workflows, Softwareentwicklung und Cybersicherheit. Das Modell ... <a href="https://www.google.com/url?rct=j&amp;sa=t&amp;url=https://www.apfeltalk.de/community/threads/openai-fuehrt-gpt-6-astra-fuer-chatgpt-und-codex-ein.593111/post-5966307&amp;ct=ga&amp;cd=CAIyGTViNmI2YzJlZTdlY2E1ZTI6ZGU6ZGU6REU&amp;usg=AOvVaw2LGH2RCDX2GPO19jD5yzF7" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Turn Claude, Qwen and DeepSeek Into AI Agents for Real-World Cyberattacks]]></title>
<description><![CDATA[Hackers have turned commercial AI models into working parts of a cyberattack operation. The campaign paired AI-directed tasking with familiar methods such as vulnerable public-facing servers, stolen credentials, webshells, and custom remote-access malware. The operation reached Taiwan’s Kuomintan...]]></description>
<link>https://tsecurity.de/de/3994771/malware-trojaner-viren/hackers-turn-claude-qwen-and-deepseek-into-ai-agents-for-real-world-cyberattacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994771/malware-trojaner-viren/hackers-turn-claude-qwen-and-deepseek-into-ai-agents-for-real-world-cyberattacks/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:14 +0200</pubDate>
<content:encoded><![CDATA[<p>Hackers have turned commercial AI models into working parts of a cyberattack operation. The campaign paired AI-directed tasking with familiar methods such as vulnerable public-facing servers, stolen credentials, webshells, and custom remote-access malware. The operation reached Taiwan’s Kuomintang Party History Archives, Indonesia’s Ministry of... <a href="https://cybersecuritynews.com/ai-agents-for-real-world-cyberattacks/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[NodeStealer Can Now Record Everything Victims Type and Steal Their Screenshots]]></title>
<description><![CDATA[NodeStealer has returned with a more invasive toolkit. The Python-based information stealer can now record keystrokes, watch copied text, and capture victims’ screens, turning an account-stealing infection into continuous surveillance. The change raises the stakes for people whose browsers hold w...]]></description>
<link>https://tsecurity.de/de/3994770/malware-trojaner-viren/nodestealer-can-now-record-everything-victims-type-and-steal-their-screenshots/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994770/malware-trojaner-viren/nodestealer-can-now-record-everything-victims-type-and-steal-their-screenshots/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:14 +0200</pubDate>
<content:encoded><![CDATA[<p>NodeStealer has returned with a more invasive toolkit. The Python-based information stealer can now record keystrokes, watch copied text, and capture victims’ screens, turning an account-stealing infection into continuous surveillance. The change raises the stakes for people whose browsers hold work, banking, or social-media access. First tracked... <a href="https://cybersecuritynews.com/nodestealer-record-everything/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Post-DEF CON phishing campaign delivered AMOS and NetSupport malware]]></title>
<description><![CDATA[A phishing campaign targeting attendees of Black Hat and DEF CON conferences involved distributing information-stealing malware and remote access malware via a malicious Google Doc and fake DocSend installers for macOS and Windows. The Huntress team learned about the phishing attack after one of ...]]></description>
<link>https://tsecurity.de/de/3994767/malware-trojaner-viren/post-def-con-phishing-campaign-delivered-amos-and-netsupport-malware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994767/malware-trojaner-viren/post-def-con-phishing-campaign-delivered-amos-and-netsupport-malware/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:13 +0200</pubDate>
<content:encoded><![CDATA[<p>A phishing campaign targeting attendees of Black Hat and DEF CON conferences involved distributing information-stealing malware and remote access malware via a malicious Google Doc and fake DocSend installers for macOS and Windows. The Huntress team learned about the phishing attack after one of its researchers received a direct message on X on... <a href="https://informationsecuritybuzz.com/post-def-con-phishing-campaign-delivered/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure]]></title>
<description><![CDATA[OpenAI acknowledged its role in a recently reported incident where AI agents took over a German wiki forum. This article has been indexed from Security News | TechCrunch Read the original article: OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure The post Ope...]]></description>
<link>https://tsecurity.de/de/3994759/ai-nachrichten/openai-confirms-wiki-incident-says-its-working-on-a-framework-for-more-disclosure/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994759/ai-nachrichten/openai-confirms-wiki-incident-says-its-working-on-a-framework-for-more-disclosure/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:12 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI acknowledged its role in a recently reported incident where AI agents took over a German wiki forum. This article has been indexed from Security News | TechCrunch Read the original article: OpenAI confirms ‘wiki incident,’ says it’s ‘working on a framework’ for more disclosure The post OpenAI confirms ‘wiki incident,’ says it’s ‘working on... <a href="https://www.itsecuritynews.info/openai-confirms-wiki-incident-says-its-working-on-a-framework-for-more-disclosure/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Announced $1B in Defensive Tools for Water Utilities]]></title>
<description><![CDATA[OpenAI pledges $1B in subsidized Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. OpenAI announced Daybreak for Frontline Defenders on September 3, 2026, committing $1 billion in subsidized access to its Daybreak cyber models, training, and technical support ...]]></description>
<link>https://tsecurity.de/de/3994756/ai-nachrichten/openai-announced-1b-in-defensive-tools-for-water-utilities/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994756/ai-nachrichten/openai-announced-1b-in-defensive-tools-for-water-utilities/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:11 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI pledges $1B in subsidized Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. OpenAI announced Daybreak for Frontline Defenders on September 3, 2026, committing $1 billion in subsidized access to its Daybreak cyber models, training, and technical support to help organizations that protect essential... <a href="https://www.itsecuritynews.info/openai-announced-1b-in-defensive-tools-for-water-utilities/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast]]></title>
<description><![CDATA[Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Anthropic locks out Claude users after infostealers hijack login sessions Anthropic has started locking users out of their Claude accounts due to their login sessions having been compromised through ...]]></description>
<link>https://tsecurity.de/de/3994752/malware-trojaner-viren/week-in-review-claude-accounts-compromised-through-infostealer-patch-tuesday-forecast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994752/malware-trojaner-viren/week-in-review-claude-accounts-compromised-through-infostealer-patch-tuesday-forecast/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:11 +0200</pubDate>
<content:encoded><![CDATA[<p>Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Anthropic locks out Claude users after infostealers hijack login sessions Anthropic has started locking users out of their Claude accounts due to their login sessions having been compromised through infostealer malware. September 2026 Patch Tuesday... <a href="https://www.itsecuritynews.info/week-in-review-claude-accounts-compromised-through-infostealer-patch-tuesday-forecast/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Leaders Discuss OpenAI’s Call for Collaboration on Cyber Defense]]></title>
<description><![CDATA[100 technology firms released an open letter calling for “collective action” for cyber defense. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994750/ai-nachrichten/security-leaders-discuss-openais-call-for-collaboration-on-cyber-defense/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994750/ai-nachrichten/security-leaders-discuss-openais-call-for-collaboration-on-cyber-defense/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:10 +0200</pubDate>
<content:encoded><![CDATA[<p>100 technology firms released an open letter calling for “collective action” for cyber defense. <a href="https://www.securitymagazine.com/articles/102536-security-leaders-discuss-openais-call-for-collaboration-on-cyber-defense" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Bureau of Alcohol, Tobacco, Firearms and Explosives Discloses Cyber Incident]]></title>
<description><![CDATA[The bureau confirmed an incident after the Qilin ransomware group claimed a breach.  Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994748/malware-trojaner-viren/bureau-of-alcohol-tobacco-firearms-and-explosives-discloses-cyber-incident/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994748/malware-trojaner-viren/bureau-of-alcohol-tobacco-firearms-and-explosives-discloses-cyber-incident/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:10 +0200</pubDate>
<content:encoded><![CDATA[<p>The bureau confirmed an incident after the Qilin ransomware group claimed a breach.  <a href="https://www.securitymagazine.com/articles/102542-bureau-of-alcohol-tobacco-firearms-and-explosives-discloses-cyber-incident" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI, Claude and Other Chatbot Outages Reported]]></title>
<description><![CDATA[Notable AI chatbots reported outages.  Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994747/ai-nachrichten/openai-claude-and-other-chatbot-outages-reported/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994747/ai-nachrichten/openai-claude-and-other-chatbot-outages-reported/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:09 +0200</pubDate>
<content:encoded><![CDATA[<p>Notable AI chatbots reported outages.  <a href="https://www.securitymagazine.com/articles/102556-openai-claude-and-other-chatbot-outages-reported" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Releases GPT-6 Astra Amidst Frontier AI Cybersecurity Concerns]]></title>
<description><![CDATA[Today, OpenAI unveiled its newest model: GPT-6 Astra.  Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994746/ai-nachrichten/openai-releases-gpt-6-astra-amidst-frontier-ai-cybersecurity-concerns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994746/ai-nachrichten/openai-releases-gpt-6-astra-amidst-frontier-ai-cybersecurity-concerns/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:09 +0200</pubDate>
<content:encoded><![CDATA[<p>Today, OpenAI unveiled its newest model: GPT-6 Astra.  <a href="https://www.securitymagazine.com/articles/102559-openai-releases-gpt-6-astra-amidst-frontier-ai-cybersecurity-concerns" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Counterfeit installers to system compromise: Tracking a deceptive software download campaign]]></title>
<description><![CDATA[In this article Attack chain overviewCampaign scope and targetingMitigation and protection guidanceReferencesLearn more Microsoft Defender Experts is tracking an active malware campaign that uses counterfeit software-download websites to impersonate trusted vendors and distribute malicious instal...]]></description>
<link>https://tsecurity.de/de/3994744/malware-trojaner-viren/counterfeit-installers-to-system-compromise-tracking-a-deceptive-software-download-campaign/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994744/malware-trojaner-viren/counterfeit-installers-to-system-compromise-tracking-a-deceptive-software-download-campaign/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:09 +0200</pubDate>
<content:encoded><![CDATA[<p>In this article Attack chain overviewCampaign scope and targetingMitigation and protection guidanceReferencesLearn more Microsoft Defender Experts is tracking an active malware campaign that uses counterfeit software-download websites to impersonate trusted vendors and distribute malicious installers. The campaign has targeted users looking to... <a href="https://www.microsoft.com/en-us/security/blog/2026/09/01/counterfeit-installers-system-compromise-tracking-deceptive-software-download-campaign/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Counterfeit installers to system compromise: Tracking a deceptive software download campaign]]></title>
<description><![CDATA[In this article Attack chain overviewCampaign scope and targetingMitigation and protection guidanceReferencesLearn more Microsoft Defender Experts is tracking an active malware campaign that uses counterfeit software-download websites to impersonate trusted vendors and distribute malicious instal...]]></description>
<link>https://tsecurity.de/de/3994743/malware-trojaner-viren/counterfeit-installers-to-system-compromise-tracking-a-deceptive-software-download-campaign/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994743/malware-trojaner-viren/counterfeit-installers-to-system-compromise-tracking-a-deceptive-software-download-campaign/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:09 +0200</pubDate>
<content:encoded><![CDATA[<p>In this article Attack chain overviewCampaign scope and targetingMitigation and protection guidanceReferencesLearn more Microsoft Defender Experts is tracking an active malware campaign that uses counterfeit software-download websites to impersonate trusted vendors and distribute malicious installers. The campaign has targeted users looking to... <a href="https://www.microsoft.com/en-us/security/blog/2026/09/01/counterfeit-installers-system-compromise-tracking-deceptive-software-download-campaign/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Digital Forensics Round-Up, August 26 2026]]></title>
<description><![CDATA[Read the latest DFIR news – OpenAI forensic artifacts, Apple Screen Time evidence, RAM-based location analysis, AI-assisted investigations, forensic imaging bottlenecks, and more. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994742/ai-nachrichten/digital-forensics-round-up-august-26-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994742/ai-nachrichten/digital-forensics-round-up-august-26-2026/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:08 +0200</pubDate>
<content:encoded><![CDATA[<p>Read the latest DFIR news – OpenAI forensic artifacts, Apple Screen Time evidence, RAM-based location analysis, AI-assisted investigations, forensic imaging bottlenecks, and more. <a href="https://www.forensicfocus.com/news/digital-forensics-round-up-august-26-2026/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[YARA-X 1.20.0 Release, (Sun, Aug 30th)]]></title>
<description><![CDATA[YARA-X's 1.20.0 release brings 14 improvements and 13 bugfixes. One new CLI option is --ignore-invalid-rules that allows one to skip rules that fail to compile.   There have also been new releases of YARA: YARA 4.5.6, YARA 4.5.7 and YARA 4.5.8 with 32 bugfixes in total. (c) SANS Internet Storm Ce...]]></description>
<link>https://tsecurity.de/de/3994731/it-security-tools/yara-x-1200-release-sun-aug-30th/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994731/it-security-tools/yara-x-1200-release-sun-aug-30th/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:06 +0200</pubDate>
<content:encoded><![CDATA[<p>YARA-X&#039;s 1.20.0 release brings 14 improvements and 13 bugfixes. One new CLI option is --ignore-invalid-rules that allows one to skip rules that fail to compile.   There have also been new releases of YARA: YARA 4.5.6, YARA 4.5.7 and YARA 4.5.8 with 32 bugfixes in total. (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons... <a href="https://isc.sans.edu/diary/rss/33288" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Coding-Agent Trap: When a "Free" LLM Endpoint Is the Adversary, (Mon, Aug 31st)]]></title>
<description><![CDATA[One of my internet-exposed inference honeypots was discovered, relabeled with sought-after model names, and incorporated into infrastructure apparently used to provide "free" LLM backends. It then received a real coding-agent session — history, filesystem output, working paths, and the agent's lo...]]></description>
<link>https://tsecurity.de/de/3994730/ai-nachrichten/the-coding-agent-trap-when-a-free-llm-endpoint-is-the-adversary-mon-aug-31st/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994730/ai-nachrichten/the-coding-agent-trap-when-a-free-llm-endpoint-is-the-adversary-mon-aug-31st/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:06 +0200</pubDate>
<content:encoded><![CDATA[<p>One of my internet-exposed inference honeypots was discovered, relabeled with sought-after model names, and incorporated into infrastructure apparently used to provide &quot;free&quot; LLM backends. It then received a real coding-agent session — history, filesystem output, working paths, and the agent&#039;s local tool manifest. The honeypot did not request or... <a href="https://isc.sans.edu/diary/rss/33298" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Guildma (Astaroth) malware infection from Brazilian Portuguese email, (Tue, Sep 1st)]]></title>
<description><![CDATA[Introduction On Monday 2026-08-31, I used a link from a malicious Brazilian Portuguese email to infect a Windows host in my lab. This was a Guildma (Astaroth) malware infection. The link from the email is geofenced for Brazil, meaning that it would only deliver the malware if I checked it from a ...]]></description>
<link>https://tsecurity.de/de/3994729/malware-trojaner-viren/guildma-astaroth-malware-infection-from-brazilian-portuguese-email-tue-sep-1st/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994729/malware-trojaner-viren/guildma-astaroth-malware-infection-from-brazilian-portuguese-email-tue-sep-1st/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:06 +0200</pubDate>
<content:encoded><![CDATA[<p>Introduction On Monday 2026-08-31, I used a link from a malicious Brazilian Portuguese email to infect a Windows host in my lab. This was a Guildma (Astaroth) malware infection. The link from the email is geofenced for Brazil, meaning that it would only deliver the malware if I checked it from a Brazil-based IP address. Otherwise, it would send a... <a href="https://isc.sans.edu/diary/rss/33300" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SLTT Traffic Directing to S3 Buckets Hosting KrustyLoader]]></title>
<description><![CDATA[The CIS CTI team identified several MS-ISAC members directing DNS traffic to AWS S3 buckets hosting Krustyloader malware. Read its analysis. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994725/malware-trojaner-viren/sltt-traffic-directing-to-s3-buckets-hosting-krustyloader/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994725/malware-trojaner-viren/sltt-traffic-directing-to-s3-buckets-hosting-krustyloader/</guid>
<pubDate>Sun, 06 Sep 2026 11:12:02 +0200</pubDate>
<content:encoded><![CDATA[<p>The CIS CTI team identified several MS-ISAC members directing DNS traffic to AWS S3 buckets hosting Krustyloader malware. Read its analysis. <a href="https://www.cisecurity.org/insights/blog/sltt-traffic-directing-s3-buckets-hosting-krustyloader" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Check Point Supports OpenAI’s Call for Collective Action on Cyber Defense]]></title>
<description><![CDATA[AI is reshaping cybersecurity at extraordinary speed. Check Point Research is already uncovering AI-powered attacks in the wild, revealing how threat actors are operating at greater scale and with growing sophistication. As these capabilities advance, cyber defense must advance just as quickly. T...]]></description>
<link>https://tsecurity.de/de/3994710/ai-nachrichten/check-point-supports-openais-call-for-collective-action-on-cyber-defense/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994710/ai-nachrichten/check-point-supports-openais-call-for-collective-action-on-cyber-defense/</guid>
<pubDate>Sun, 06 Sep 2026 11:11:58 +0200</pubDate>
<content:encoded><![CDATA[<p>AI is reshaping cybersecurity at extraordinary speed. Check Point Research is already uncovering AI-powered attacks in the wild, revealing how threat actors are operating at greater scale and with growing sophistication. As these capabilities advance, cyber defense must advance just as quickly. That is why Check Point is proud to support OpenAI’s... <a href="https://blog.checkpoint.com/ai-security/check-point-supports-openais-call-for-collective-action-on-cyber-defense/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Check Point Brings OpenAI Daybreak Models Across Its Security Platform to Help Defenders Find, Validate, and Remediate Risk]]></title>
<description><![CDATA[Three months ago, Check Point and OpenAI began expanding our work together through Daybreak, OpenAI’s cyber defense initiative. Since then, we have taken the partnership further, bringing OpenAI’s frontier cyber models into Check Point products and security workflows through the Daybreak Defense ...]]></description>
<link>https://tsecurity.de/de/3994709/ai-nachrichten/check-point-brings-openai-daybreak-models-across-its-security-platform-to-help-defenders-find-validate-and-remediate-risk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994709/ai-nachrichten/check-point-brings-openai-daybreak-models-across-its-security-platform-to-help-defenders-find-validate-and-remediate-risk/</guid>
<pubDate>Sun, 06 Sep 2026 11:11:58 +0200</pubDate>
<content:encoded><![CDATA[<p>Three months ago, Check Point and OpenAI began expanding our work together through Daybreak, OpenAI’s cyber defense initiative. Since then, we have taken the partnership further, bringing OpenAI’s frontier cyber models into Check Point products and security workflows through the Daybreak Defense Network. And last week, we joined more than a... <a href="https://blog.checkpoint.com/ai-security/check-point-brings-openai-daybreak-models-across-its-security-platform-to-help-defenders-find-validate-and-remediate-risk/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Counterfeit installers to system compromise: Tracking a deceptive software download campaign]]></title>
<description><![CDATA[In this article Attack chain overviewCampaign scope and targetingMitigation and protection guidanceReferencesLearn more Microsoft Defender Experts is tracking an active malware campaign that uses counterfeit software-download websites to impersonate trusted vendors and distribute malicious instal...]]></description>
<link>https://tsecurity.de/de/3994707/malware-trojaner-viren/counterfeit-installers-to-system-compromise-tracking-a-deceptive-software-download-campaign/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994707/malware-trojaner-viren/counterfeit-installers-to-system-compromise-tracking-a-deceptive-software-download-campaign/</guid>
<pubDate>Sun, 06 Sep 2026 11:11:55 +0200</pubDate>
<content:encoded><![CDATA[<p>In this article Attack chain overviewCampaign scope and targetingMitigation and protection guidanceReferencesLearn more Microsoft Defender Experts is tracking an active malware campaign that uses counterfeit software-download websites to impersonate trusted vendors and distribute malicious installers. The campaign has targeted users looking to... <a href="https://www.microsoft.com/en-us/security/blog/2026/09/01/counterfeit-installers-system-compromise-tracking-deceptive-software-download-campaign/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI-Agenten streiten beim Hacken über Ethik – und machen trotzdem weiter]]></title>
<description><![CDATA[Die Chat-Protokolle des OpenAI-Sandbox-Ausbruchs lesen sich wie ein Thriller: Interne KI-Modelle hackten eine fremde Plattform und debattierten über Ethik. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994704/ai-nachrichten/openai-agenten-streiten-beim-hacken-ueber-ethik-und-machen-trotzdem-weiter/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994704/ai-nachrichten/openai-agenten-streiten-beim-hacken-ueber-ethik-und-machen-trotzdem-weiter/</guid>
<pubDate>Sun, 06 Sep 2026 11:11:40 +0200</pubDate>
<content:encoded><![CDATA[<p>Die Chat-Protokolle des OpenAI-Sandbox-Ausbruchs lesen sich wie ein Thriller: Interne KI-Modelle hackten eine fremde Plattform und debattierten über Ethik. <a href="https://www.heise.de/news/OpenAI-Agenten-streiten-beim-Hacken-ueber-Ethik-und-machen-trotzdem-weiter-11439477.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Auslegungssache 167: Datenschutz mit System]]></title>
<description><![CDATA[Wie Unternehmen Datenschutz praxistauglich organisieren, erklärt Beraterin Regina Mühlich im c’t-Datenschutz-Podcast. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994703/podcasts/auslegungssache-167-datenschutz-mit-system/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994703/podcasts/auslegungssache-167-datenschutz-mit-system/</guid>
<pubDate>Sun, 06 Sep 2026 11:11:40 +0200</pubDate>
<content:encoded><![CDATA[<p>Wie Unternehmen Datenschutz praxistauglich organisieren, erklärt Beraterin Regina Mühlich im c’t-Datenschutz-Podcast. <a href="https://www.heise.de/hintergrund/Auslegungssache-167-Datenschutz-mit-System-11435081.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Bonsai 27B im Test – so performt das 1-Bit-LLM]]></title>
<description><![CDATA[Bonsai 27B generiert eine Bildunterschrift. In unserem Test lesen Sie, ob sich das KI-Modell auch ansonsten durch qualitative hochwertige Outputs auszeichnet.Foundry Mit Bonsai 27B hat der KI-Anbieter PrismML das neue multimodale Flaggschiff seiner Modellfamilie unter der Open-Source-Lizenz Apach...]]></description>
<link>https://tsecurity.de/de/3994679/ai-nachrichten/bonsai-27b-im-test-so-performt-das-1-bit-llm/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994679/ai-nachrichten/bonsai-27b-im-test-so-performt-das-1-bit-llm/</guid>
<pubDate>Sun, 06 Sep 2026 11:11:30 +0200</pubDate>
<content:encoded><![CDATA[<p>Bonsai 27B generiert eine Bildunterschrift. In unserem Test lesen Sie, ob sich das KI-Modell auch ansonsten durch qualitative hochwertige Outputs auszeichnet.Foundry Mit Bonsai 27B hat der KI-Anbieter PrismML das neue multimodale Flaggschiff seiner Modellfamilie unter der Open-Source-Lizenz Apache 2.0 veröffentlicht. Das Large Language Model (LLM)... <a href="https://www.computerwoche.de/article/4214889/bonsai-27b-1-bit-llm-im-test.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[MY TAKE: ChatGPT’s five-hour outage coincided with a model retirement its incident record omits]]></title>
<description><![CDATA[Millions of people rely on ChatGPT Work. For more than five hours Monday, it would not run. I was one of the people watching it fail. The trouble began at 8:04 a.m. Pacific and ran through the heart of the American workday. OpenAI declared recovery at 1:28 p.m. Its incident record lists elevated ...]]></description>
<link>https://tsecurity.de/de/3994676/ai-nachrichten/my-take-chatgpts-five-hour-outage-coincided-with-a-model-retirement-its-incident-record-omits/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994676/ai-nachrichten/my-take-chatgpts-five-hour-outage-coincided-with-a-model-retirement-its-incident-record-omits/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:40 +0200</pubDate>
<content:encoded><![CDATA[<p>Millions of people rely on ChatGPT Work. For more than five hours Monday, it would not run. I was one of the people watching it fail. The trouble began at 8:04 a.m. Pacific and ran through the heart of the American workday. OpenAI declared recovery at 1:28 p.m. Its incident record lists elevated latency, elevated errors, a mitigation and a... <a href="https://www.lastwatchdog.com/my-take-chatgpts-five-hour-outage-coincided-with-a-model-retirement-its-incident-record-omits/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[LW ROUNDTABLE: OpenAI’s test agents self-organized into a rogue swarm no one anticipated]]></title>
<description><![CDATA[Hugging Face is where the world’s open-source AI models live. Not ChatGPT, Claude or Gemini, but the free engines anyone can download and build into their own products. More than two million of them, in one place. Related: Hugging Face breach guardrails failure The big models try to do everything...]]></description>
<link>https://tsecurity.de/de/3994674/ai-nachrichten/lw-roundtable-openais-test-agents-self-organized-into-a-rogue-swarm-no-one-anticipated/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994674/ai-nachrichten/lw-roundtable-openais-test-agents-self-organized-into-a-rogue-swarm-no-one-anticipated/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:40 +0200</pubDate>
<content:encoded><![CDATA[<p>Hugging Face is where the world’s open-source AI models live. Not ChatGPT, Claude or Gemini, but the free engines anyone can download and build into their own products. More than two million of them, in one place. Related: Hugging Face breach guardrails failure The big models try to do everything. Most of the small ones on Hugging Face do one job... <a href="https://www.lastwatchdog.com/lw-roundtable-openais-test-agents-self-organized-into-a-rogue-swarm-no-one-anticipated/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[News alert: OpenMatter adds secure routing for OpenAI, Anthropic and Google models]]></title>
<description><![CDATA[MELBOURNE, Fla., Sept. 2, 2026, CyberNewswire — Less than three months after its commercial launch, OpenMatter Network today announced a significant expansion of the platform with new capabilities that make it easier for enterprises, developers and researchers to build, deploy and collaborate usi...]]></description>
<link>https://tsecurity.de/de/3994673/ai-nachrichten/news-alert-openmatter-adds-secure-routing-for-openai-anthropic-and-google-models/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994673/ai-nachrichten/news-alert-openmatter-adds-secure-routing-for-openai-anthropic-and-google-models/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:40 +0200</pubDate>
<content:encoded><![CDATA[<p>MELBOURNE, Fla., Sept. 2, 2026, CyberNewswire — Less than three months after its commercial launch, OpenMatter Network today announced a significant expansion of the platform with new capabilities that make it easier for enterprises, developers and researchers to build, deploy and collaborate using sensitive data and AI while maintaining... <a href="https://www.lastwatchdog.com/news-alert-openmatter-adds-secure-routing-for-openai-anthropic-and-google-models/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The State of Ransomware: August 2026]]></title>
<description><![CDATA[BlackFog's state of ransomware August 2026 measures publicly disclosed and non-disclosed attacks globally. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994672/malware-trojaner-viren/the-state-of-ransomware-august-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994672/malware-trojaner-viren/the-state-of-ransomware-august-2026/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:31 +0200</pubDate>
<content:encoded><![CDATA[<p>BlackFog&#039;s state of ransomware August 2026 measures publicly disclosed and non-disclosed attacks globally. <a href="https://www.blackfog.com/the-state-of-ransomware-august-2026/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Applying Zero Trust Principles to Agents - Kieran Human - ASW #397]]></title>
<description><![CDATA[Sandboxing, least privilege, and monitoring are well-established controls in terms of the defenses they provide against unexpected and unauthorized actions. But being well-established in theory doesn't always translate to successful in practice. Kieran Human talks about some of the properties tha...]]></description>
<link>https://tsecurity.de/de/3994671/malware-trojaner-viren/applying-zero-trust-principles-to-agents-kieran-human-asw-397/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994671/malware-trojaner-viren/applying-zero-trust-principles-to-agents-kieran-human-asw-397/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:30 +0200</pubDate>
<content:encoded><![CDATA[<p>Sandboxing, least privilege, and monitoring are well-established controls in terms of the defenses they provide against unexpected and unauthorized actions. But being well-established in theory doesn't always translate to successful in practice. Kieran Human talks about some of the properties that a good sandbox should have and how monitoring creates a feedback loop to refine allow lists and access controls. In practice, the potential unpredictable behavior of an agent isn't much different from malware. We talk through some of the ways orgs can securely deploy agents without unnecessarily increasing their attack surface.</p> <p>Resources</p> <ul> <li><a rel="noopener" target="_blank" href="https://www.threatlocker.com/blog/the-principle-of-least-privilege-for-ai-agents"> https://www.threatlocker.com/blog/the-principle-of-least-privilege-for-ai-agents</a></li> <li><a rel="noopener" target="_blank" href="https://www.threatlocker.com/blog/applying-threatlocker-to-agentic-ai-tools"> https://www.threatlocker.com/blog/applying-threatlocker-to-agentic-ai-tools</a></li> <li><a rel="noopener" target="_blank" href="https://www.threatlocker.com/blog/why-the-five-eyes-alliance-sees-zero-trust-as-the-best-defense-against-agentic-ai-threats"> https://www.threatlocker.com/blog/why-the-five-eyes-alliance-sees-zero-trust-as-the-best-defense-against-agentic-ai-threats</a></li> </ul> <p>This interview is sponsored by ThreatLocker. Visit <a rel="noopener" target="_blank" href="https://securityweekly.com/threatlocker">https://securityweekly.com/threatlocker</a> to learn more about them!</p> <p>Visit <a rel="noopener" target="_blank" href="https://www.securityweekly.com/asw">https://www.securityweekly.com/asw</a> for all the latest episodes!</p> <p>Show Notes: <a rel="noopener" target="_blank" href="https://securityweekly.com/asw-397">https://securityweekly.com/asw-397</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Connecting Cyber Risks to Board Outcomes & BHUSA interviews from Mimecast & Zscaler - Leslie Nielsen, Brett Stone-Gross, Dan Bowden - BSW #462]]></title>
<description><![CDATA[The threat landscape has become more interconnected, disruptive, and complex. Ransomware is now as much about extortion and data theft as it is about encryption. Supply chain events can create outages that ripple far beyond the initial target, and business interruption increasingly comes from thi...]]></description>
<link>https://tsecurity.de/de/3994670/malware-trojaner-viren/connecting-cyber-risks-to-board-outcomes-bhusa-interviews-from-mimecast-zscaler-leslie-nielsen-brett-stone-gross-dan-bowden-bsw-462/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994670/malware-trojaner-viren/connecting-cyber-risks-to-board-outcomes-bhusa-interviews-from-mimecast-zscaler-leslie-nielsen-brett-stone-gross-dan-bowden-bsw-462/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:30 +0200</pubDate>
<content:encoded><![CDATA[<p>The threat landscape has become more interconnected, disruptive, and complex. Ransomware is now as much about extortion and data theft as it is about encryption. Supply chain events can create outages that ripple far beyond the initial target, and business interruption increasingly comes from third-party and cloud dependencies. How should CISOs prepare for these scenarios?</p> <p>Dan Bowden, Global Business CISO at Marsh, joins Business Security Weekly to discuss how to connect cyber risk to the outcomes boards care about most: resilience, financial exposure, regulatory impact, and reputation. CISOs need to position cyber as an enterprise risk, not a technical risk, that can be measured, prioritized, and managed alongside other strategic risks. Dan will discuss the results of Marsh's Cyber Catalyst research and Global Cyber Claims Report.</p> <p>Visit <a rel="noopener" target="_blank" href="https://securityweekly.com/infosecworld2026">https://securityweekly.com/infosecworld2026</a> and save 30% on your ISW pass with code: ISW26-SWSAVINGS</p> <p>The Agent Is the New Insider: Why Human Risk Doesn't Stop at People: Black Hat Interview with Leslie Nielson, CISO at Mimecast</p> <p>AI agents now act with the same credentials and access as the humans who deployed them, but without the judgment or accountability that comes with actual employment. Mimecast CISO Leslie Nielsen argues that treating agentic AI as a brand new, standalone security category is the wrong instinct: agents are an extension of human risk, and the controls organizations already use to manage people are the right foundation for managing machines. In this conversation, Nielsen unpacks the growing gap between security leaders who expect AI driven attacks and those who feel prepared for them, and what that gap means for CISOs walking the floor at Black Hat.</p> <p>Segment Resources:</p> <p>Mimecast's new whitepaper Securing The Agentic Enterprise: <a rel="noopener" target="_blank" href="https://assets.mimecast.com/api/public/content/securing-the-agentic-enterprise?v=ea66db05"> https://assets.mimecast.com/api/public/content/securing-the-agentic-enterprise?v=ea66db05</a> Mimecast's landing page for thought leadership resources: <a rel="noopener" target="_blank" href="https://www.workprotected.com/">https://www.workprotected.com/</a> Mimecast's State of Human Risk Report: <a rel="noopener" target="_blank" href="https://www.mimecast.com/resources/ebooks/state-of-human-risk/">https://www.mimecast.com/resources/ebooks/state-of-human-risk/</a> Mimecast's Threat Intelligence Hub: <a rel="noopener" target="_blank" href="https://www.mimecast.com/threat-intelligence-hub/">https://www.mimecast.com/threat-intelligence-hub/</a></p> <p>For more information about Mimecast please visit: <a rel="noopener" target="_blank" href="https://securityweekly.com/mimecastbh">https://securityweekly.com/mimecastbh</a></p> <p>Ransomware Moves up the Org Chart: Managers Are Prime Targets: Black Hat Interview with Brett Stone-Gross, Sr. Director, Threat Intelligence at Zscaler</p> <p>When a ransomware attack makes headlines, attention usually turns to the organization that was breached, the systems encrypted, data stolen, and disruption or ransom demand that followed. Less, if anything, is revealed about the employees compromised at the start of the attack, and what makes those individuals valuable targets.</p> <p>New Zscaler ThreatLabz research examines this early stage of a real-world ransomware attack. ThreatLabz identified victims of a campaign associated with a ransomware group known for gaining initial access, stealing large amounts of corporate data, and selectively encrypting critical systems. The findings show who those victims were and how their roles and authority could help an attacker move deeper into an organization.</p> <p>This is part of ongoing ransomware research by ThreatLabz. The Zscaler ThreatLabz 2026 Ransomware Report, coming in the next two months, will include additional data on ransomware victims, the latest ransomware trends, targets, and tactics, and the risks enterprises should prepare for next.</p> <p>This segment is sponsored by Zscaler. Visit <a rel="noopener" target="_blank" href="https://securityweekly.com/zscalerbh">https://securityweekly.com/zscalerbh</a> to learn more about them!</p> <p>Visit <a rel="noopener" target="_blank" href="https://www.securityweekly.com/bsw">https://www.securityweekly.com/bsw</a> for all the latest episodes!</p> <p>Show Notes: <a rel="noopener" target="_blank" href="https://securityweekly.com/bsw-462">https://securityweekly.com/bsw-462</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Generative AI: This Is How You Can Use ChatGPT Safely]]></title>
<description><![CDATA[Generative AI has now become a tool of the day-to-day. It is used by people to plan trips, explain hard ideas, write e-mail, to take notes and to explore new topics. There is a benefit to that convenience, but there's also a responsibility. A chatbot can give confident answers that are incomplete...]]></description>
<link>https://tsecurity.de/de/3994665/ai-nachrichten/generative-ai-this-is-how-you-can-use-chatgpt-safely/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994665/ai-nachrichten/generative-ai-this-is-how-you-can-use-chatgpt-safely/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:21 +0200</pubDate>
<content:encoded><![CDATA[<p>Generative AI has now become a tool of the day-to-day. It is used by people to plan trips, explain hard ideas, write e-mail, to take notes and to explore new topics. There is a benefit to that convenience, but there&#039;s also a responsibility. A chatbot can give confident answers that are incomplete, out-of-date and wrong. AI can receive information... <a href="https://www.cm-alliance.com/cybersecurity-blog/generative-ai-this-is-how-you-can-use-chatgpt-safely" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Major Cyber Attacks, Data Breaches, Ransomware Attacks in August 2026]]></title>
<description><![CDATA[August 2026 saw cyber threats cut across an unusually diverse range of sectors, from logistics and financial services to healthcare, government and critical infrastructure. Major incidents involving CEVA Logistics, the French Tax Authority, Sakura Internet, RingCentral, SafePal, CareCloud and Apo...]]></description>
<link>https://tsecurity.de/de/3994664/malware-trojaner-viren/major-cyber-attacks-data-breaches-ransomware-attacks-in-august-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994664/malware-trojaner-viren/major-cyber-attacks-data-breaches-ransomware-attacks-in-august-2026/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:21 +0200</pubDate>
<content:encoded><![CDATA[<p>August 2026 saw cyber threats cut across an unusually diverse range of sectors, from logistics and financial services to healthcare, government and critical infrastructure. Major incidents involving CEVA Logistics, the French Tax Authority, Sakura Internet, RingCentral, SafePal, CareCloud and Apollo Global Management demonstrated that both large... <a href="https://www.cm-alliance.com/cybersecurity-blog/major-cyber-attacks-data-breaches-ransomware-attacks-in-august-2026" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[LLM Fallback: What Happens When Your Model Goes Down]]></title>
<description><![CDATA[LLM fallback is the practice of sending a request to a backup model or route the moment the primary model fails — an outage, a rate limit, a timeout, or a response that is simply bad. It is not an advanced optimization; it is the reliability layer your application gets when it stops betting every...]]></description>
<link>https://tsecurity.de/de/3994663/ai-nachrichten/llm-fallback-what-happens-when-your-model-goes-down/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994663/ai-nachrichten/llm-fallback-what-happens-when-your-model-goes-down/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:11 +0200</pubDate>
<content:encoded><![CDATA[<p>LLM fallback is the practice of sending a request to a backup model or route the moment the primary model fails — an outage, a rate limit, a timeout, or a response that is simply bad. It is not an advanced optimization; it is the reliability layer your application gets when it stops betting everything […] The post LLM Fallback: What Happens When... <a href="https://secureblitz.com/llm-fallback-when-your-model-goes-down/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI’s Apple Messages Tool Raises Privacy Concerns Over Decrypted Chats]]></title>
<description><![CDATA[OpenAI recently introduced a new Apple Messages plugin for its desktop application on Mac computers. This tool allows ChatGPT to connect with conversations at work as well as at home in the Messages app. It also allows users to request information from the AI, such as looking up previous chat his...]]></description>
<link>https://tsecurity.de/de/3994662/ai-nachrichten/openais-apple-messages-tool-raises-privacy-concerns-over-decrypted-chats/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994662/ai-nachrichten/openais-apple-messages-tool-raises-privacy-concerns-over-decrypted-chats/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:08 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI recently introduced a new Apple Messages plugin for its desktop application on Mac computers. This tool allows ChatGPT to connect with conversations at work as well as at home in the Messages app. It also allows users to request information from the AI, such as looking up previous chat history, summarizing large texts, and […] The post... <a href="https://privacysavvy.com/news/privacy/openai-apple-messages-tool-privacy-concerns/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Meet Manic: The Android Malware With a Sneaky Backup Plan]]></title>
<description><![CDATA[Every so often a piece of malware comes along with a trick clever enough to make security researchers pause and take note. Manic is one of those. It’s a new Android threat, and it does something most malware never bothers with. When an infected phone loses internet access, Manic finds a way to ke...]]></description>
<link>https://tsecurity.de/de/3994660/malware-trojaner-viren/meet-manic-the-android-malware-with-a-sneaky-backup-plan/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994660/malware-trojaner-viren/meet-manic-the-android-malware-with-a-sneaky-backup-plan/</guid>
<pubDate>Sun, 06 Sep 2026 11:10:07 +0200</pubDate>
<content:encoded><![CDATA[<p>Every so often a piece of malware comes along with a trick clever enough to make security researchers pause and take note. Manic is one of those. It’s a new Android threat, and it does something most malware never bothers with. When an infected phone loses internet access, Manic finds a way to keep stealing anyway. It’s criminal behaviors include... <a href="https://cyberhoot.com/blog/meet-manic-the-android-malware-with-a-sneaky-backup-plan/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Announced $1B in Defensive Tools for Water Utilities]]></title>
<description><![CDATA[OpenAI pledges $1B in subsidized Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. OpenAI announced Daybreak for Frontline Defenders on September 3, 2026, committing $1 billion in subsidized access to its Daybreak cyber models, training, and technical support ...]]></description>
<link>https://tsecurity.de/de/3994656/ai-nachrichten/openai-announced-1b-in-defensive-tools-for-water-utilities/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994656/ai-nachrichten/openai-announced-1b-in-defensive-tools-for-water-utilities/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:55 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI pledges $1B in subsidized Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. OpenAI announced Daybreak for Frontline Defenders on September 3, 2026, committing $1 billion in subsidized access to its Daybreak cyber models, training, and technical support to help organizations that protect essential... <a href="https://securityaffairs.com/198506/ai/openai-announced-1b-in-defensive-tools-for-water-utilities.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Security Affairs newsletter Round 593 by Pierluigi Paganini – INTERNATIONAL EDITION]]></title>
<description><![CDATA[A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. PaperCut Flaws Exploited in Attacks on U.S. and Eu...]]></description>
<link>https://tsecurity.de/de/3994655/it-security-nachrichten/security-affairs-newsletter-round-593-by-pierluigi-paganini-international-edition/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994655/it-security-nachrichten/security-affairs-newsletter-round-593-by-pierluigi-paganini-international-edition/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:55 +0200</pubDate>
<content:encoded><![CDATA[<p>A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. PaperCut Flaws Exploited in Attacks on U.S. and European SchoolsBroadcom Patches Critical VMware... <a href="https://securityaffairs.com/198495/breaking-news/security-affairs-newsletter-round-593-by-pierluigi-paganini-international-edition.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 113]]></title>
<description><![CDATA[Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Hackers Steal Claude Login Sessions With Infostealer Malware to Hijack Accounts Fire Ant Evolves: From Hypervisors to Trusted Infrastructure    ...]]></description>
<link>https://tsecurity.de/de/3994654/malware-trojaner-viren/security-affairs-malware-newsletter-round-113/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994654/malware-trojaner-viren/security-affairs-malware-newsletter-round-113/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:55 +0200</pubDate>
<content:encoded><![CDATA[<p>Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Hackers Steal Claude Login Sessions With Infostealer Malware to Hijack Accounts Fire Ant Evolves: From Hypervisors to Trusted Infrastructure       Gryxa: The AI-Built Toolkit That Watches How You... <a href="https://securityaffairs.com/198522/security/security-affairs-malware-newsletter-round-113.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[9 Proofpoint alternatives. Pros & cons of the leading options]]></title>
<description><![CDATA[Proofpoint catches malicious traffic and blocks data exfiltration well, with solid coverage for business email compromise, phishing, and malware. But it’s built for the enterprise, and it shows. G2 reviewers flagged a steep learning curve and steep pricing, and suggested Proofpoint’s support woul...]]></description>
<link>https://tsecurity.de/de/3994653/malware-trojaner-viren/9-proofpoint-alternatives-pros-cons-of-the-leading-options/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994653/malware-trojaner-viren/9-proofpoint-alternatives-pros-cons-of-the-leading-options/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:53 +0200</pubDate>
<content:encoded><![CDATA[<p>Proofpoint catches malicious traffic and blocks data exfiltration well, with solid coverage for business email compromise, phishing, and malware. But it’s built for the enterprise, and it shows. G2 reviewers flagged a steep learning curve and steep pricing, and suggested Proofpoint’s support would need improving. The platform’s also in flux.... <a href="https://heimdalsecurity.com/blog/proofpoint-alternatives/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[What the DfE’s cyber security update means for multi-academy trusts]]></title>
<description><![CDATA[Before dawn on 10 July 2024, one ransomware attack took down ten schools inside the same multi-academy trust at once. Every control that eventually stopped it was something the Department for Education’s own cyber security standard already asked for, well before the attack. That’s a case DfE has ...]]></description>
<link>https://tsecurity.de/de/3994652/malware-trojaner-viren/what-the-dfes-cyber-security-update-means-for-multi-academy-trusts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994652/malware-trojaner-viren/what-the-dfes-cyber-security-update-means-for-multi-academy-trusts/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:53 +0200</pubDate>
<content:encoded><![CDATA[<p>Before dawn on 10 July 2024, one ransomware attack took down ten schools inside the same multi-academy trust at once. Every control that eventually stopped it was something the Department for Education’s own cyber security standard already asked for, well before the attack. That’s a case DfE has published on its own Cyber Security Hub, […] The... <a href="https://heimdalsecurity.com/blog/dfe-cyber-standard-education-heimdal/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI is putting $1 billion behind Daybreak for defenders working without enterprise budgets]]></title>
<description><![CDATA[OpenAI committed $1 billion to subsidize access to its Daybreak cyber models, along with training and technical support, for organizations defending water and wastewater systems, the electric grid, state and local government, community and regional banks, nonprofits, and open-source projects. The...]]></description>
<link>https://tsecurity.de/de/3994651/ai-nachrichten/openai-is-putting-1-billion-behind-daybreak-for-defenders-working-without-enterprise-budgets/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994651/ai-nachrichten/openai-is-putting-1-billion-behind-daybreak-for-defenders-working-without-enterprise-budgets/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:51 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI committed $1 billion to subsidize access to its Daybreak cyber models, along with training and technical support, for organizations defending water and wastewater systems, the electric grid, state and local government, community and regional banks, nonprofits, and open-source projects. The company is starting in the United States and... <a href="https://www.helpnetsecurity.com/2026/09/04/openai-daybreak-frontline-defenders-access/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast]]></title>
<description><![CDATA[Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Anthropic locks out Claude users after infostealers hijack login sessions Anthropic has started locking users out of their Claude accounts due to their login sessions having been compromised through ...]]></description>
<link>https://tsecurity.de/de/3994648/malware-trojaner-viren/week-in-review-claude-accounts-compromised-through-infostealer-patch-tuesday-forecast/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994648/malware-trojaner-viren/week-in-review-claude-accounts-compromised-through-infostealer-patch-tuesday-forecast/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Anthropic locks out Claude users after infostealers hijack login sessions Anthropic has started locking users out of their Claude accounts due to their login sessions having been compromised through infostealer malware. September 2026 Patch Tuesday... <a href="https://www.helpnetsecurity.com/2026/09/06/week-in-review-claude-accounts-compromised-through-infostealer-patch-tuesday-forecast/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fake Codex Download Uses Google Sites to Deliver macOS Malware]]></title>
<description><![CDATA[Fake Codex pages used Google Sites, sponsored search and ClickFix to target Mac users Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994647/malware-trojaner-viren/fake-codex-download-uses-google-sites-to-deliver-macos-malware/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994647/malware-trojaner-viren/fake-codex-download-uses-google-sites-to-deliver-macos-malware/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:50 +0200</pubDate>
<content:encoded><![CDATA[<p>Fake Codex pages used Google Sites, sponsored search and ClickFix to target Mac users <a href="https://www.infosecurity-magazine.com/news/fake-codex-download-google-sites/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fake Minecraft Clients Deliver WeedHack Malware Despite Infrastructure Takedown]]></title>
<description><![CDATA[A threat actor keeps spreading the WeedHack malware to Minecraft players despite its original infrastructure taken down in July Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994646/malware-trojaner-viren/fake-minecraft-clients-deliver-weedhack-malware-despite-infrastructure-takedown/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994646/malware-trojaner-viren/fake-minecraft-clients-deliver-weedhack-malware-despite-infrastructure-takedown/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:50 +0200</pubDate>
<content:encoded><![CDATA[<p>A threat actor keeps spreading the WeedHack malware to Minecraft players despite its original infrastructure taken down in July <a href="https://www.infosecurity-magazine.com/news/fake-minecraft-weedhack-malware/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tortoiseshell Expands Malware Toolset With New Backdoor, SSH Tunnel]]></title>
<description><![CDATA[Group-IB uncovered new Tortoiseshell infrastructure, including a backdoor and SSH tunneling tool Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994644/malware-trojaner-viren/tortoiseshell-expands-malware-toolset-with-new-backdoor-ssh-tunnel/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994644/malware-trojaner-viren/tortoiseshell-expands-malware-toolset-with-new-backdoor-ssh-tunnel/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:50 +0200</pubDate>
<content:encoded><![CDATA[<p>Group-IB uncovered new Tortoiseshell infrastructure, including a backdoor and SSH tunneling tool <a href="https://www.infosecurity-magazine.com/news/tortoiseshell-new-backdoor-ssh/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI: Hugging Face Incident a “Warning Shot” to the World]]></title>
<description><![CDATA[OpenAI reveals that unauthorized message boards were at the heart of the recent Hugging Face breach Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994643/ai-nachrichten/openai-hugging-face-incident-a-warning-shot-to-the-world/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994643/ai-nachrichten/openai-hugging-face-incident-a-warning-shot-to-the-world/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:50 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI reveals that unauthorized message boards were at the heart of the recent Hugging Face breach <a href="https://www.infosecurity-magazine.com/news/openai-hugging-face-warning-shot/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Threat Actors Abuse Cursor Agent AI to Assist Ransomware Operations]]></title>
<description><![CDATA[Aurora ransomware operators are abusing SpaceX’s Cursor Agent AI tool to conduct tasks such as reconnaissance and exploitation activities Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994642/malware-trojaner-viren/threat-actors-abuse-cursor-agent-ai-to-assist-ransomware-operations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994642/malware-trojaner-viren/threat-actors-abuse-cursor-agent-ai-to-assist-ransomware-operations/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:50 +0200</pubDate>
<content:encoded><![CDATA[<p>Aurora ransomware operators are abusing SpaceX’s Cursor Agent AI tool to conduct tasks such as reconnaissance and exploitation activities <a href="https://www.infosecurity-magazine.com/news/abuse-cursor-agent-ransomware/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Window to Tackle Surge in AI-Enabled Cyber Attacks Narrowing, Tech Giants Warn]]></title>
<description><![CDATA[More than 100 companies, including OpenAI, Anthropic, Google and Microsoft, have urged collective action to unlock the power of AI to protect critical public services Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994641/ai-nachrichten/window-to-tackle-surge-in-ai-enabled-cyber-attacks-narrowing-tech-giants-warn/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994641/ai-nachrichten/window-to-tackle-surge-in-ai-enabled-cyber-attacks-narrowing-tech-giants-warn/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:50 +0200</pubDate>
<content:encoded><![CDATA[<p>More than 100 companies, including OpenAI, Anthropic, Google and Microsoft, have urged collective action to unlock the power of AI to protect critical public services <a href="https://www.infosecurity-magazine.com/news/window-ai-attacks-narrowing-tech/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Russian Man Extradited Over Malware Campaign Targeting Freelancers]]></title>
<description><![CDATA[Russian man extradited to US over malware campaign that targeted 80,000 freelance users Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994639/malware-trojaner-viren/russian-man-extradited-over-malware-campaign-targeting-freelancers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994639/malware-trojaner-viren/russian-man-extradited-over-malware-campaign-targeting-freelancers/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:49 +0200</pubDate>
<content:encoded><![CDATA[<p>Russian man extradited to US over malware campaign that targeted 80,000 freelance users <a href="https://www.infosecurity-magazine.com/news/russian-man-extradited-malware/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[International Operation Disrupts Sality P2P Botnet]]></title>
<description><![CDATA[US-led action sinkholes machines caught up in Sality botnet Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994638/malware-trojaner-viren/international-operation-disrupts-sality-p2p-botnet/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994638/malware-trojaner-viren/international-operation-disrupts-sality-p2p-botnet/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:49 +0200</pubDate>
<content:encoded><![CDATA[<p>US-led action sinkholes machines caught up in Sality botnet <a href="https://www.infosecurity-magazine.com/news/international-operation-disrupts/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Pledges $1bn to Bring its AI Cybersecurity Tools to Essential Services]]></title>
<description><![CDATA[OpenAI has committed to subsidizing access to Daybreak, helping defenders deploy its AI models in its existing cybersecurity infrastructure Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994637/ai-nachrichten/openai-pledges-1bn-to-bring-its-ai-cybersecurity-tools-to-essential-services/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994637/ai-nachrichten/openai-pledges-1bn-to-bring-its-ai-cybersecurity-tools-to-essential-services/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:49 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI has committed to subsidizing access to Daybreak, helping defenders deploy its AI models in its existing cybersecurity infrastructure <a href="https://www.infosecurity-magazine.com/news/openai-pledges-ai-tools-essential/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Slopsquatting in the Supply Chain: Weaponized AI Hallucinations]]></title>
<description><![CDATA[In this interview with Snyk CTO Manoj Nair, we examine how attackers weaponize recurring LLM package hallucinations before developers even hit "run." Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994636/ai-nachrichten/slopsquatting-in-the-supply-chain-weaponized-ai-hallucinations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994636/ai-nachrichten/slopsquatting-in-the-supply-chain-weaponized-ai-hallucinations/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:47 +0200</pubDate>
<content:encoded><![CDATA[<p>In this interview with Snyk CTO Manoj Nair, we examine how attackers weaponize recurring LLM package hallucinations before developers even hit &quot;run.&quot; <a href="https://www.govtech.com/blogs/lohrmann-on-cybersecurity/slopsquatting-in-the-supply-chain-weaponized-ai-hallucinations" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Proofpoint Brings OpenAI GPT Cyber Models into Security Operations to Help Defenders Investigate Threats Faster]]></title>
<description><![CDATA[Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994635/ai-nachrichten/proofpoint-brings-openai-gpt-cyber-models-into-security-operations-to-help-defenders-investigate-threats-faster/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994635/ai-nachrichten/proofpoint-brings-openai-gpt-cyber-models-into-security-operations-to-help-defenders-investigate-threats-faster/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:47 +0200</pubDate>
<content:encoded><![CDATA[<p> <a href="https://www.proofpoint.com/us/newsroom/press-releases/proofpoint-soc-analyst-agent-openai-daybreak" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ChatGPT, Claude, and Grok all went down at once; enterprises need a backup plan]]></title>
<description><![CDATA[Enterprises are facing a disturbing new question in the age of AI: What happens when agentic assistants go dark? This became a very real scenario on Thursday, as OpenAI’s ChatGPT, Anthropic’s Claude, and SpaceXAI’s Grok near-simultaneously, and somewhat mysteriously, experienced significant, prol...]]></description>
<link>https://tsecurity.de/de/3994634/ai-nachrichten/chatgpt-claude-and-grok-all-went-down-at-once-enterprises-need-a-backup-plan/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994634/ai-nachrichten/chatgpt-claude-and-grok-all-went-down-at-once-enterprises-need-a-backup-plan/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:45 +0200</pubDate>
<content:encoded><![CDATA[<p>Enterprises are facing a disturbing new question in the age of AI: What happens when agentic assistants go dark? This became a very real scenario on Thursday, as OpenAI’s ChatGPT, Anthropic’s Claude, and SpaceXAI’s Grok near-simultaneously, and somewhat mysteriously, experienced significant, prolonged outages. Beginning in the morning, Eastern... <a href="https://www.cio.com/article/4218403/chatgpt-claude-and-grok-all-went-down-at-once-enterprises-need-a-backup-plan-2.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[What JPMorgan does differently with AI that any company can apply]]></title>
<description><![CDATA[In the summer of 2024, JPMorgan Chase deployed its internal AI platform LLM Suite, launching it very differently than most do: The company didn’t force anyone to use it. When LLM Suite arrived at its first major division, asset and wealth management, employees were asked to think of it as a resea...]]></description>
<link>https://tsecurity.de/de/3994633/ai-nachrichten/what-jpmorgan-does-differently-with-ai-that-any-company-can-apply/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994633/ai-nachrichten/what-jpmorgan-does-differently-with-ai-that-any-company-can-apply/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:45 +0200</pubDate>
<content:encoded><![CDATA[<p>In the summer of 2024, JPMorgan Chase deployed its internal AI platform LLM Suite, launching it very differently than most do: The company didn’t force anyone to use it. When LLM Suite arrived at its first major division, asset and wealth management, employees were asked to think of it as a research analyst: someone to ask for data, a draft, or an... <a href="https://www.cio.com/article/4208197/what-jpmorgan-does-differently-in-ai-and-how-any-company-can-apply-these-strategies.html" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[ChatGPT for Teens Adds New Safeguards — but Safety Gaps Remain]]></title>
<description><![CDATA[ChatGPT for Teens adds stronger protections for users ages 13 to 17, but parents still face limits around monitoring, age prediction, and AI safety. The post ChatGPT for Teens Adds New Safeguards — but Safety Gaps Remain appeared first on TechRepublic. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994632/ai-nachrichten/chatgpt-for-teens-adds-new-safeguards-but-safety-gaps-remain/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994632/ai-nachrichten/chatgpt-for-teens-adds-new-safeguards-but-safety-gaps-remain/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:43 +0200</pubDate>
<content:encoded><![CDATA[<p>ChatGPT for Teens adds stronger protections for users ages 13 to 17, but parents still face limits around monitoring, age prediction, and AI safety. The post ChatGPT for Teens Adds New Safeguards — but Safety Gaps Remain appeared first on TechRepublic. <a href="https://www.techrepublic.com/article/news-chatgpt-teens-safety-gaps/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[OpenAI Bans Russian ChatGPT Accounts Used in Covert Influence Campaign]]></title>
<description><![CDATA[OpenAI banned Russian ChatGPT accounts tied to a covert influence campaign involving copied research, fake attribution and coordinated social posts. The post OpenAI Bans Russian ChatGPT Accounts Used in Covert Influence Campaign appeared first on TechRepublic. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994631/ai-nachrichten/openai-bans-russian-chatgpt-accounts-used-in-covert-influence-campaign/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994631/ai-nachrichten/openai-bans-russian-chatgpt-accounts-used-in-covert-influence-campaign/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:43 +0200</pubDate>
<content:encoded><![CDATA[<p>OpenAI banned Russian ChatGPT accounts tied to a covert influence campaign involving copied research, fake attribution and coordinated social posts. The post OpenAI Bans Russian ChatGPT Accounts Used in Covert Influence Campaign appeared first on TechRepublic. <a href="https://www.techrepublic.com/article/news-openai-russian-chatgpt-influence-campaign-emea/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Fake GTA 6 Demo Spreads Malware: How to Spot the Scam]]></title>
<description><![CDATA[There is no legitimate GTA 6 demo. Fake Rockstar sites are distributing Vidar malware that targets passwords, cookies, and logged-in browser sessions. The post Fake GTA 6 Demo Spreads Malware: How to Spot the Scam appeared first on TechRepublic. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994630/malware-trojaner-viren/fake-gta-6-demo-spreads-malware-how-to-spot-the-scam/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994630/malware-trojaner-viren/fake-gta-6-demo-spreads-malware-how-to-spot-the-scam/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:43 +0200</pubDate>
<content:encoded><![CDATA[<p>There is no legitimate GTA 6 demo. Fake Rockstar sites are distributing Vidar malware that targets passwords, cookies, and logged-in browser sessions. The post Fake GTA 6 Demo Spreads Malware: How to Spot the Scam appeared first on TechRepublic. <a href="https://www.techrepublic.com/article/news-fake-gta-6-demo-malware-scam/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[CrowdStrike Disrupts Sality Botnet After More Than 20 Years]]></title>
<description><![CDATA[Cybersecurity expert Ken Underhill reports from CrowdStrike on the disruption of the 20-year-old Sality botnet and what security teams need to know. The post CrowdStrike Disrupts Sality Botnet After More Than 20 Years appeared first on TechRepublic. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994629/malware-trojaner-viren/crowdstrike-disrupts-sality-botnet-after-more-than-20-years/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994629/malware-trojaner-viren/crowdstrike-disrupts-sality-botnet-after-more-than-20-years/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Cybersecurity expert Ken Underhill reports from CrowdStrike on the disruption of the 20-year-old Sality botnet and what security teams need to know. The post CrowdStrike Disrupts Sality Botnet After More Than 20 Years appeared first on TechRepublic. <a href="https://www.techrepublic.com/article/news-crowdstrike-sality-botnet-disruption/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Gunra ransomware: what you need to know]]></title>
<description><![CDATA[The ransomware gang Gunra has been creating havoc - exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. Read more in my article on the Fortra blog. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994626/malware-trojaner-viren/gunra-ransomware-what-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994626/malware-trojaner-viren/gunra-ransomware-what-you-need-to-know/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:41 +0200</pubDate>
<content:encoded><![CDATA[<p>The ransomware gang Gunra has been creating havoc - exploiting unpatched VPNs and firewalls to steal data, encrypt systems, and extort victims across healthcare, finance, manufacturing, and more. Read more in my article on the Fortra blog. <a href="https://www.fortra.com/blog/gunra-ransomware-what-you-need-know" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Smashing Security podcast #482: This hacker leaked GTA 6 – and launched their own cryptocurrency]]></title>
<description><![CDATA[A hacker calling themselves "CYBERLEEK" has been leaking gameplay footage from GTA 6 ahead of its official reveal this week - but they're not asking Rockstar Games for a ransom. Instead, they've launched their own cryptocurrency, promising to release ever more juicy clips from a virtual strip clu...]]></description>
<link>https://tsecurity.de/de/3994625/podcasts/smashing-security-podcast-482-this-hacker-leaked-gta-6-and-launched-their-own-cryptocurrency/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994625/podcasts/smashing-security-podcast-482-this-hacker-leaked-gta-6-and-launched-their-own-cryptocurrency/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:41 +0200</pubDate>
<content:encoded><![CDATA[<p>A hacker calling themselves &quot;CYBERLEEK&quot; has been leaking gameplay footage from GTA 6 ahead of its official reveal this week - but they&#039;re not asking Rockstar Games for a ransom. Instead, they&#039;ve launched their own cryptocurrency, promising to release ever more juicy clips from a virtual strip club... Meanwhile, your smart TV might be doing more... <a href="https://grahamcluley.com/smashing-security-podcast-482/" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Shai-Hulud hackers: two men charged over TeamPCP’s global supply chain crime spree that hit OpenAI, and thousands more]]></title>
<description><![CDATA[More than 1,000 organisations, 500,000 stolen credentials, and one self-propagating worm named after a Dune sandworm - two men now face charges over TeamPCP's global hacking spree. Read more in my article on the Hot for Security blog. Weiterlesen]]></description>
<link>https://tsecurity.de/de/3994624/ai-nachrichten/shai-hulud-hackers-two-men-charged-over-teampcps-global-supply-chain-crime-spree-that-hit-openai-and-thousands-more/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3994624/ai-nachrichten/shai-hulud-hackers-two-men-charged-over-teampcps-global-supply-chain-crime-spree-that-hit-openai-and-thousands-more/</guid>
<pubDate>Sun, 06 Sep 2026 11:09:40 +0200</pubDate>
<content:encoded><![CDATA[<p>More than 1,000 organisations, 500,000 stolen credentials, and one self-propagating worm named after a Dune sandworm - two men now face charges over TeamPCP&#039;s global hacking spree. Read more in my article on the Hot for Security blog. <a href="https://www.bitdefender.com/en-us/blog/hotforsecurity/shai-hulud-hackers-charged-teampcps" target="_blank" rel="noopener nofollow">Weiterlesen</a></p>]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 1,21ms -->