Defence24.pl…
- Służba Bezpieczeństwa Ukrainy i policja zatrzymały mężczyznę podejrzanego o zbieranie danych dla rosyjskich ataków na Kijów. Według SBU został on zwerbowany przez Federalną Służbę Bezpieczeństwa. Śledczy zarzucają mu obserwację obiektów obronnych i infrastruktury krytycznej oraz przekazywanie lokalizacji, które miały służyć korygowaniu zmasowanych uderzeń w dniach 21–24 września.
- Mobilność, modułowość oraz zaawansowane maskowanie to najważniejsze cechy produktów Rekord Hale Namiotowe. Co jeszcze ma szczególne znaczenie dla tej firmy?
- Saudyjski Urząd Lotnictwa Cywilnego poinformował, że w poniedziałek wieczorem zaatakowane zostały lotnisko Króla Abdullaha bin Abdulaziza w Dżizanie oraz lotnisko w Nadżranie. Oba leżą na południu królestwa, blisko granicy z Jemenem. W wyniku uderzeń trzy osoby odniosły lekkie obrażenia, a tamtejsza infrastruktura uległa uszkodzeniu.
- Rosyjskie Ministerstwo Obrony podało, że w nocy z poniedziałku na wtorek systemy obrony powietrznej przechwyciły niemal 900 ukraińskich bezzałogowców. The Moscow Times, powołując się na resort, podał liczbę 868 maszyn zestrzelonych nad wieloma regionami Rosji, okupowanym Krymem i Morzem Azowskim. Deklaracji Moskwy nie potwierdziły niezależne źródła.
- Warszawska spółka PIT-RADWAR zaprezentowała na tegorocznych targach MSPO całą gamę swoich najnowszych i najbardziej zaawansowanych produktów. Wśród nich znalazły się radiolokatory, ale także rozwiązania z zakresu łączności i sztucznej inteligencji.
- W ubiegłym roku firmy powiązane kapitałowo z Grupą Unimot zapowiadały produkcję dronów wielowirnikowych na bazie sprawdzonych ukraińskich technologii i były zaangażowane w drona naziemnego. Dziś zapowiadają m.in. rozpoczęcie produkcji odrzutowych silników do dronów.
- Szwecja wyśle system obrony powietrznej Patriot do Polski, by chronić węzeł logistyczny NATO w Rzeszowie-Jasionce.
- Prezydent Francji Emmanuel Macron, przebywający na fregacie Auvergne (D 654), był świadkiem pierwszego wystrzelenia rakiety balistycznej M51.3 z zanurzonego okrętu podwodnego. Test został zakończony pomyślnie, a testowa głowica osiągnęła wyznaczony rejon na północnym Atlantyku.
- „Cała Polska patrzy dziś na ludzi w mundurach – tych, którzy przygotowują się do obrony Ojczyzny, i tych, którzy już teraz jej bronią. Jesteście solą tej ziemi. To w waszych głowach i sercach rozegra się przyszłość naszego narodu” – powiedział Premier Donald Tusk podczas inauguracji nowego roku akademickiego w Akademii Sztuki Wojennej w Warszawie.
- Grupa Antczak, jako lider konsorcjum tworzonego wspólnie z EBS BUD, będzie odpowiadać za realizację infrastruktury niezbędnej do uruchomienia nowych zdolności produkcji elementów rakiet CAMM-ER w zakładach Mesko S.A. Inwestycja stanowi ważny etap realizacji programu Narew, będącego kluczowym szczeblem narodowego systemu obrony przeciwlotniczej.
- Według unijnego komisarza ds. obrony Andriusa Kubiliusa Unia Europejska zbroi się zbyt wolno, aby osiągnąć gotowość do obrony przed Rosją do 2030 roku. Polityk mówi też co kraje UE muszą zrobić, aby dotrzymać terminu.
- Dwa statki handlowe zostały we wtorek nad ranem trafione przez drony w bułgarskiej wyłącznej strefie ekonomicznej na Morzu Czarnym. Jeden zatonął, a jego załoga jest uznawana za zaginioną – poinformowała agencja Reutera, powołując się na premiera Rumena Radewa.
- We wtorek, 6 października, nad Polską po raz kolejny pojawił się samolot algierskich sił powietrznych. Kierował się na lotnisko Moskwa-Wnukowo w Rosji. W ostatnich dniach lotów wojskowych samolotów z Algierii do Rosji – i z powrotem – jest coraz więcej.
- Można mieć dobry produkt, konkurencyjną ofertę i ambitny plan rozwoju. W biznesie wciąż jednak wiele zaczyna się od spotkania z właściwą osobą. Rozmowa z potencjalnym klientem, partnerem, inwestorem czy przedstawicielem instytucji może otworzyć drzwi, do których wcześniej trudno było dotrzeć. Dlatego, mimo rozwoju technologii i przeniesienia dużej części komunikacji do świata online, bezpośrednie relacje pozostają […]
- Pentagon ogłosił w poniedziałek, że Nidal Hasan – skazany na karę śmierci za masową strzelaninę w bazie wojskowej Fort Hood w Teksasie w 2009 roku – zostanie stracony przez rozstrzelanie. Będzie to pierwsza egzekucja w armii od ponad 60 lat.
- 28-letni żołnierz zginął, a pięciu innych zostało rannych w poniedziałek w wyniku wywrócenia się pojazdu wojskowego podczas ćwiczeń na poligonie Mount Bundey na północy Australii – poinformowały australijskie władze i siły zbrojne. To drugi w tym roku śmiertelny wypadek w armii tego kraju.
- Agencja Uzbrojenia prowadzi analizy dotyczące integracji na samolotach FA-50PL uzbrojenia produkcji europejskiej – dowiedział się Defence24.pl. Jakie uzbrojenie jest rozważane dla polskich samolotów w nowej wersji? I co z uzbrojeniem dla innych samolotów bojowych, jakie posiada lub wdraża Polska?
- Prezydent RP Karol Nawrocki mianował generała Wiesława Kukułę na kolejną kadencję na stanowisku szefa Sztabu Generalnego RP.
- Na pokładzie francuskiego lotniskowca Charles de Gaulle doszło do pożaru. Okręt znajdował się w porcie.
- Produkcja PPZR Piorun rośnie w szybkim tempie. Jednak współautorzy tego sukcesu nie spoczywają na laurach. CRW Telesystem-Mesko inwestuje w produkcję i kapitał ludzki, a także wychodzi na nowe obszary w dziedzinie optoelektroniki.
TVN wiadomości…
Błąd RSS: Retrieved unsupported status code "403"
Wyborcza Kraj…
Wystąpił błąd, co prawdopodobnie oznacza, że kanał nie działa. Spróbuj ponownie później.
Wyborcza Świat…
Wystąpił błąd, co prawdopodobnie oznacza, że kanał nie działa. Spróbuj ponownie później.
The Hacker News…
- A malicious spreadsheet can make LibreOffice and Apache OpenOffice run an attacker's code as soon as the file is opened, security researchers have shown. There is no warning first, of the kind either program shows before it runs a macro. The attack works only when the program's Java support is enabled. So far, it has […]
- The Wikimedia Foundation, which hosts Wikipedia, has confirmed that it has discovered activity by rogue OpenAI agents on its platforms, including unsuccessful efforts to compromise Etherpad, a public note-taking tool, and edit Wikipedia pages. "The unauthorized bot activities included edits to our wikis, some unsuccessful attempts to exploit a public note-taking tool we host, and […]
- In 2024, MCP (Model Context Protocol) set out to become the USB-C of AI: one standard for connecting models, agents, and IDEs to tools and data. The protocol delivered. Thousands of developers built servers, and enterprises plugged them into agent workflows. The ecosystem around it fell short. Earlier this year, our team at OX Security, […]
- Google has stopped accepting product vulnerability reports through its bug bounty program for its open-source software. The change, in effect since October 1, means researchers can no longer submit security flaws in the code of projects such as Go, Angular, and Protocol Buffers there for a reward. Reports about supply chain compromises are still accepted, […]
- A critical flaw in 8 Atlassian Data Center products, which customers host themselves, allows an attacker with no login access to read specific files in each product's web application root directory. The attacker must already know a file's exact name and path and cannot list what the directory holds. Atlassian disclosed the flaw, CVE-2026-21589, on October […]
- The U.S. Federal Bureau of Investigation (FBI) has removed an Accenture contractor for their alleged role in a ShinyHunters-breach that led to the theft of personal details of thousands of bureau employees. That's according to a report from Reuters, citing two sources familiar with the matter. "To date, our review has determined that the incident […]
- Unauthorized parties have gained access to the names, addresses, and personal identification numbers of about 8.8 million people, living and dead, in Denmark's national population register, the country's digitalization ministry said on October 5. They used a private Danish company's lawful right to look up records in the Central Person Register (CPR). The ministry has told […]
- A new type of ClickFix attack is using compromised websites to trick users into executing a malicious payload cached in a web browser's cache. "Instead of downloading and executing remote payloads like the typical attack pattern, in this attack, the websites pre-fetch a script payload into the browser cache disguised as a PNG file," the […]
- Microsoft has released out-of-band security updates to address a high-severity flaw in Microsoft Exchange Server that could allow an attacker to escalate privileges under certain conditions. The vulnerability, tracked as CVE-2026-96940, is rated 8.8 on the CVSS scoring system. "Weak authorization in Microsoft Exchange Server allows an authenticated attacker to elevate privileges over a
- A blank field. A public repo. One reply to an email. A box left exposed. None of this sounds dramatic, which is partly the problem. This week’s threats keep finding leverage in small things that were easy to overlook. There are actively exploited bugs in the mix, cleaner intrusion paths, smarter automation, and a long […]
- Every modern enterprise depends on credentials. This is how humans, systems, and now AI, all connect to data, services, and each other securely. GitGuardian helps secure that credential layer through three connected capabilities: Detect, Remediate, and Prevent. The journey starts with detection, because organizations first need to understand what credentials exist, where they live, and […]
- Threat actors have been observed attempting to exploit a now-patched critical security flaw impacting the Realtek Jungle software development kit (SDK) to deploy a botnet malware called Cling. "Cling is notable not because it introduces a new propagation technique, but because it repurposes ordinary STUN behavior into a practical command-and-control channel," Nozomi Networks said in […]
- Apple has announced that it's taking steps to tighten controls around a macOS setting called Full Disk Access (FDA) due to security risks posed by artificial intelligence (AI) agents. "Some developers are using Full Disk Access in ways that could put users at risk, exposing everything on their systems—including files, mail, messages, and even browsing […]
- A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck. The vulnerability in question is CVE-2026-61500 (CVSS score: 9.3), a case of session forgery stemming from the use of a weak pseudo-random number generator (PRNG) that can lead to a predictable key, which an attacker can then […]
- Citrix has released security updates for a high-severity security flaw in NetScaler ADC and NetScaler Gateway that has been exploited as part of targeted zero-day attacks. The vulnerability, tracked as CVE-2026-88779, carries a CVSS score of 8.7 out of 10.0. "CVE-2026-88779 is a memory overflow vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway that […]
- A suspected member of the ShinyHunters digital extortion group, who goes by the online alias "Rey," has been allegedly detained by authorities in Jordan, Reuters reported, citing three people familiar with the matter. Rey, whose real name is Saif al-Din Khader, is said to have been brought into custody on September 29, 2026, and cooperating […]
- A new China-nexus cyber espionage group known as TA419 has been attributed to multiple credential phishing campaigns targeting artificial intelligence (AI) experts working for U.S. think tanks, universities, and legal sector organizations. The campaigns have impersonated prominent economists and AI policymakers, as well as a prominent Anthropic employee, to single out an AI policy expert […]
- The U.K.'s domestic intelligence and security agency has warned that more than 100 academics have helped China boost its intelligence gathering efforts on behalf of Beijing's state security service. In a "Security Service Espionage Alert" issued on September 30, 2026, MI5 said the "primary purpose of the China General Technology Research Institute (CGTRI) 中国通用技术研究院 is […]
- The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat Hunter Team, has hit critical infrastructure, government, and education organizations. "In the
- Featuring: Cybersecurity is being reshaped by the expansion of cloud infrastructure, AI, distributed systems, and increasingly complex digital environments. As organizations manage more identities, devices, data, and internet-facing infrastructure, security is shifting toward continuous visibility, control, and the ability to respond to risk at scale. This report examines how core areas of
SANS Internet Storm Center…
- It seems that a trend started⦠I continue my journey discovering more RMM ("Remote Management & Monitoring") tools abused by threat actors! A few days ago, I wrote a diary[1] about ScreenConnect used in the wild. Today, I found another one.
- (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
- ISC Stormcast For Monday, October 5th, 2026 https://isc.sans.edu/podcastdetail/10122, (Mon, Oct 5th)(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
- For an experiment, I created a script [1] that parses and send the TTY logs collected from actors or bots activity that run various commands after they successfully login the DShield sensor. Those TTY logs are sent daily at the end of each day to the DShield SIEM [2] to be correlated with all the […]
- Sometimes I have to smile, or my interest is triggered, when I review new User Agent Strings in the honeypot logs.
- YARA-X's 1.21.0 release brings 5 improvements and 4 bugfixes.
- ISC Stormcast For Friday, October 2nd, 2026 https://isc.sans.edu/podcastdetail/10120, (Fri, Oct 2nd)(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
- Threat Actors do not always use top-notch techniques or very complex malware to perform their attacks. Sometimes, they just abuse of existing applications…
- (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
- (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
Cybersecurity Avast…
- A call saying someone you love has been arrested and needs money ASAP can feel so real that you act before you think. Learn how bail bond scams work and what to watch for to help protect you and your family from falling for the scheme.
- Latest news We launched a new Avast One experience in 2026. Discover what’s new, see how it compares to the previous version, and learn how it makes your digital life simpler and more secure. In the ever-evolving landscape of the digital world, safeguarding your online presence has become more a necessity than a choice. […]
- If you've ever mentioned something in passing and then seen an ad for it shortly after, you're not imagining things. Learn how ads can sometimes follow you from real life to your screen, and how secure browsers with built-in ad blockers can help you take back control of what you see online.
- Spring break scams are out to ruin your vacation, but they don't have to. With a little awareness and Avast Free Antivirus protecting your devices, you can hit the beach without handing criminals an opening.
- You just sold a stack of old books for $100 on Facebook Marketplace. The buyer seemed eager, messaged instantly, and offered to pay extra. Sounds too good to be true? It probably is. Learn how to spot fake buyers before you lose both your money and your stuff.
- Scammers are using deepfake technology to replicate your child's voice in a kidnapping hoax, catfish with AI-generated video dates, and impersonate executives to steal millions. Learn how to spot deepfake fraud, and use Avast Deepfake Guard to help verify what's real before it's too late.
- Adoption fraud can blindside even the most prepared families, especially when emotions run high. Understanding common adoption scams and how to stay safe can help you move forward with more peace of mind.
- Facebook may feel like a safe place to connect, but scammers are increasingly using its ads, posts, and messages to deceive users. Here’s how cybercriminals are turning your feed into a gateway for fraud and what you can do to stay protected.
- If someone is blackmailing you with private photos or threats, do not pay. We know it's scary, but you don't need to comply. Learn how to handle sextortion threats, and discover how Avast can help secure your privacy.
- How a simple “I found your photo” message can quietly take over your account
Cybersecurity Kaspersky…
Błąd RSS: WP HTTP Error: cURL error 52: Empty reply from server
We Live Security…
- Autonomous AI agents go on a hacking spree, and Microsoft ships what used to be a year's worth of security patches in one go – here's how to keep pace
- Con artists are targeting timeshare owners who want out – and some victims are hit twice
- When phishing can increasingly pass familiar checks, avoiding or limiting the damage depends on how quickly your company can detect and contain the attack
- As AI lets anyone build software, here’s how to vet that shiny new app before it exposes your data
- Crypto ATM scams often follow a predictable script – here’s how to recognize it and what to do if you’ve already been caught out
- Fake giveaways, free Robux generators and lookalike login pages all target the same thing – your Roblox account
- As AI opens new paths to company data while making familiar attacks faster and cheaper, SMBs need protection designed around the time and expertise available to operate it
- Whether you’re a victim, the parent of a victim, or just concerned, here’s what you can do about fake nude images
- ESET researchers document SparroWocky, the new flagship backdoor of the FamousSparrow APT group
- As AI adoption expands the attack surface and adds to the security workload, businesses need automation backed by experts
- LLM-based code scanners won’t help attackers build a nuclear weapon, but that refusal could work in their favor
- AI scams are now hyper-realistic. But there’s one simple way to see through them.
- Don’t panic if you spot an illegally created image or video of you online – there are ways to request its removal
- Details about the Hugging Face hack, critical infrastructure under attack, a spoofed in-flight Wi-Fi network, and more of this month's cybersecurity news
- It’s getting cheaper and easier for cybercriminals to research potential victims. Here’s what’s still in your control.
- Quishing has become a popular alternative to traditional phishing. Here’s how businesses can close the gap.
- And will today’s surge in AI-driven vulnerability discovery eventually make tomorrow’s software safer?
- The incident involving OpenAI models shows that autonomous hacks make human oversight more important, not less
- AI took center stage, but the clearest lesson was less about what AI can do than about who is accountable when something goes wrong
- AI tutors can offer useful support, but their quality and safeguards vary widely. Here’s what parents should check before handing one to a child.