30 Sep, 2026

Bitget resumes Bitcoin withdrawals after $387.5 million crypto heist

Cryptocurrency exchange Bitget has resumed Bitcoin withdrawals suspended after suspected North Korean hackers breached its systems last week and stole over $350 million. Bitget added that it has addressed the security vulnerability exploited in the incident and will restore withdrawal services for all other supported assets and networks as soon as possible. It also shared […]

2 mins read

US soldier gets 70 months in prison for extorting 10 tech, telecom firms

A former U.S. Army soldier has been sentenced to 70 months in prison for hacking and extorting at least 10 U.S. technology and telecommunications companies between April 2023 and December 2024. 21-year-old Cameron John Wagenius (also known online as ‘kiberphant0m’ and ‘cyb3rph4nt0m’ ) was arrested in Texas in December 2024. He pleaded guilty in February 2025 to […]

2 mins read

CISA orders feds to patch exploited Citrix flaws by Wednesday

The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. government agencies over the weekend to secure their systems against attacks exploiting two critical Citrix NetScaler vulnerabilities. Citrix released security updates to address the flaws (tracked as CVE-2026-88771 and CVE-2026-88772) days after national cybersecurity agencies, IT suppliers, and security teams began privately contacting Citrix customers […]

4 mins read

OpenAI is preparing “o,” an always-on ChatGPT assistant that could handle email

OpenAI is testing a new always-on assistant called “o”, and references to the unannounced feature briefly appeared online. OpenAI hasn’t confirmed or denied that it’s working on a new always-on assistant, but as some users spotted on X, “o, your always-on assistant” was briefly listed as one of the benefits of the $100 ChatGPT Pro […]

1 min read

Citrix confirms two NetScaler RCE zero-days exploited in attacks

Citrix has confirmed that two critical NetScaler remote code execution vulnerabilities, tracked as CVE-2026-88771 and CVE-2026-88772, are being exploited in attacks and that it has released security updates to fix the flaws. The vulnerabilities are the same zero-days that cybersecurity researchers, IT providers, and national cybersecurity agencies began privately warning organizations about over the weekend. […]

5 mins read

Cloudflare fixes Containers cross-tenant flaw exposing customer data

Cloudflare has fixed a vulnerability in Containers and Sandboxes that allowed customers with a Workers Paid account to recover residual data from other customers’ containers on the same physical host. Cloudflare Containers is a service available on the Workers Paid plan that lets developers run containerized applications on Cloudflare’s infrastructure, alongside Cloudflare Workers. Developers and […]

2 mins read

Anthropic turns Claude into an AI marketplace with 2,000+ plugins and connectors

Anthropic has just announced a new Claude Marketplace, and it brings all AI-related tools into one place, including plugins, connectors, agents, and more. Claude’s marketplace is already public, and Anthropic says it’s already offering more than 2,000 connectors and plugins. These plugins or connectors are available from companies like Atlassian, Google, Microsoft, Notion, Salesforce, and […]

2 mins read

ShinyHunters uses WAF bypass trick in Oracle PeopleSoft attacks

The ShinyHunters extortion gang is using a URL-encoding trick to bypass web application firewall rules that mitigate the Oracle PeopleSoft CVE-2026-35273 flaw, allowing the threat actors to resume widespread exploitation of a flaw on vulnerable servers. Google’s Mandiant and Threat Intelligence Group (GTIG) say this new technique has allowed the threat actor to once again […]

5 mins read

Claude Opus 5.5 uses 95% fewer em dashes, but its answers are getting longer

Anthropic’s Claude Opus 5.5 appears to be changing how it writes, with new analysis showing fewer obvious AI writing patterns, shorter sentences, and simpler wording compared with Opus 5. Claude Opus 5.5 is not only one of the best models for coding, but it also appears to be a bit better at writing, as Anthropic […]

1 min read

Microsoft pauses KB5002907 update after Office license deactivations

Microsoft has paused the rollout of the KB5002907 Microsoft 365 update after users report that it deactivated, or in some cases completely removed, perpetual Office 2016 and Office 2019 installations. KB5002907, titled “Optional update for out-of-date Microsoft 365 Apps installations,” was released to help users update Microsoft 365 Apps installations that are more than 90 days […]

4 mins read