Ethereum Researcher Warns AI Could Break Bitcoin Wallet Security Vitalik Buterin has backed Ethereum researcher Justin Drake’s warning that AI-driven mathematical breakthroughs could crack ECDSA, the signature system secur... https://threatintel.cc/2026/10/11/ethereum-researcher-warns-ai-could.html
@e-kiledjian.bsky.social
Ethereum Researchers Warn AI Could Crack Crypto Before Q-Day Ethereum researcher Justin Drake has urged the crypto industry to prepare for ‘bunker mode’ — gradually moving funds to fresh addresses whose public keys stay hi... https://threatintel.cc/2026/10/11/ethereum-researchers-warn-ai-could.html
U.S. CISA adds ProFTPD, ONLYOFFICE Docs, Strapi, Apache Struts, and ISC BIND flaws to its Known Exploited Vulnerabilities catalog CISA has added flaws in ProFTPD, ONLYOFFICE Docs, Strapi, Apache Struts, and ISC BIND to its Kn... https://threatintel.cc/2026/10/11/us-cisa-adds-proftpd-onlyoffice.html
Nippon Columbia malware incident exposes 8.6 million karaoke fan records Daiichi Kosho, Japan’s largest karaoke maker, disclosed that a malware infection at its contractor Nippon Columbia exposed more than 8.7 millio... https://threatintel.cc/2026/10/11/nippon-columbia-malware-incident-exposes.html
The Luna Moth Files Weren’t Hacked. Here’s How They Leaked. DataBreaches.net has investigated Silent Ransom Group’s claim that the ‘Luna Moth Files’ are fake and found it meritless. A researcher discovered the group’s Rocket.Chat ... https://threatintel.cc/2026/10/11/the-luna-moth-files-werent.html
Two Characters Open Up a World of Typosquatting Opportunities in Chromium Browsers Researchers have found that attackers can abuse rare Cyrillic and Latin characters to register lookalike domains that impersonate popular websites in... https://threatintel.cc/2026/10/11/two-characters-open-up-a.html
The Third-Party Agent Problem: Why Security Built for AI You Chose Misses the Agents You Didn’t A 2026 State of Agent Security Report finds roughly 1,280 third-party products now embed AI, with about 282 sitting behind singl... https://threatintel.cc/2026/10/11/the-thirdparty-agent-problem-why.html
Silent Ransom Group Allegedly Extorted $207 Million Without Encrypting Files The Silent Ransom Group allegedly extorted $207 million from 27 law firms in six months using phone calls and social engineering, not encrypt... https://threatintel.cc/2026/10/11/silent-ransom-group-allegedly-extorted.html
ARTEX AI, Claude Agents Used in Cyberattacks on South Korean Banks The cyberattacks that shook the South Korean financial sector earlier this month were launched by a Chinese hacker using the ARTEX AI penetration testing suite an... https://threatintel.cc/2026/10/11/artex-ai-claude-agents-used.html
‘123456’ Password Used in Massive Danish CPR Data Breach At least three accounts at the Funen-based IT company Pays — including an administrator account — used the password ‘123456’ when hackers gained access to Denmark’s Cen... https://threatintel.cc/2026/10/10/password-used-in-massive-danish.html
US Sentences Empire Market Co-Creator Over $430 Million Criminal Marketplace Empire Market co-creator Raheim Hamilton has been sentenced to 40 years in prison for running the dark web marketplace, which facilitated over ... https://threatintel.cc/2026/10/10/us-sentences-empire-market-cocreator.html
What the BPFDoor Backdoor Tells Us About Attacks on the Network Edge BPFDoor is a Linux backdoor that stays silent until it receives a specially crafted “magic packet,” making it hard to detect. In an interview, Rapid7’s Chri... https://threatintel.cc/2026/10/10/what-the-bpfdoor-backdoor-tells.html
Ransomware Groups Shift Tactics: Data Theft Instead of Encryption Ransomware groups are increasingly skipping encryption and instead stealing company data and threatening to leak it, Kaspersky reports. Pure extortion wit... https://threatintel.cc/2026/10/10/ransomware-groups-shift-tactics-data.html
Brazilian Police Seize $1.7M in Crypto From Phishing Ring’s Wallets Brazilian police seized $1.7 million in cryptocurrency from wallets linked to a phishing ring. The operation targeted self-custody wallets used by the criminal g... https://threatintel.cc/2026/10/10/brazilian-police-seize-m-in.html
XRP Ledger Discloses Overflow Bug That Could Have Minted XRP Beyond Its Supply Cap The XRP Ledger has disclosed an overflow bug that could have allowed XRP to be minted beyond its supply cap. The bug has been fixed, and no ... https://threatintel.cc/2026/10/10/xrp-ledger-discloses-overflow-bug.html
Cyberattack at IDC Frontier Disrupts Services Around Nation IDC Frontier, a SoftBank subsidiary providing cloud services, said a ransomware attack on October 7 caused a system outage affecting 495 corporate and local gov... https://threatintel.cc/2026/10/10/cyberattack-at-idc-frontier-disrupts.html
GoBalance Flaw Lets Attackers Hijack .onion Addresses by Recovering Tor-Format Keys A bug in GoBalance, a tool many dark-web sites use to stay reachable during attacks, lets anyone recover the secret key controlling a si... https://threatintel.cc/2026/10/10/gobalance-flaw-lets-attackers-hijack.html
Belarusian Hacktivists Admit to 2023 Breach of Russian State Healthcare Network The Belarusian Cyber Partisans have admitted they were behind a 2023 breach of the Moscow Department of Health’s network, concurring with ... https://threatintel.cc/2026/10/10/belarusian-hacktivists-admit-to-breach.html
High-Severity NVIDIA Vulnerability Lets Unauthenticated Attackers Crash GPU Monitoring Hundreds of internet-exposed GPU servers were open to CVE-2026-47483, a high-severity flaw in NVIDIA’s DCGM Exporter that lets unauthenticated attackers crash the ... https://threatintel.cc/2026/10/10/050250.html
Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries A malware campaign dubbed Midnight Mimosa is running preinstalled on low-cost Android devices, affecting budget phones in more than 150 countries.... https://threatintel.cc/2026/10/10/prebaked-firmware-malware-hits-budget.html
OpenAI Reports Three New Incidents of Misalignment OpenAI has publicly reported three new incidents in which its AI models exhibited misaligned behavior. The disclosures are part of the company’s practice of airing safety ... https://threatintel.cc/2026/10/10/openai-reports-three-new-incidents.html
OpenAI Fires 3 Safety Researchers in Dispute Over AI Risks OpenAI has fired three safety researchers amid a dispute over AI risks, saying they “violated clear policies on handling sensitive information.” The firings come a... https://threatintel.cc/2026/10/10/openai-fires-safety-researchers-in.html
Anthropic’s Claude Incidents Prompt White House Voluntary AI Accord Anthropic’s latest transparency report details incidents in which Claude models reached real systems during testing, including attempted access to U... https://threatintel.cc/2026/10/10/anthropics-claude-incidents-prompt-white.html
Anthropic Launches Free AI Vulnerability Scanner for Open-Source Projects Anthropic has launched OSS Scanner, a free, opt-in service that uses its AI models to find security vulnerabilities in open-source software. M... https://threatintel.cc/2026/10/10/anthropic-launches-free-ai-vulnerability.html
Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments Citrix has released patches for CVE-2026-107406, a critical (CVSS 9.5) memory overflow vulnerability in NetScaler ADC and NetScaler Gatew... https://threatintel.cc/2026/10/10/citrix-patches-critical-netscaler-flaw.html
GhostAction Attack Escalates By Targeting GitHub Users OpenSourceMalware has identified a new stage in the ongoing GhostAction supply-chain campaign, originally found by GitGuardian in 2025. This escalation uses two... https://threatintel.cc/2026/10/10/ghostaction-attack-escalates-by-targeting.html
Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks Hackers are abusing legitimate Bing search-result redirects as click URLs in Google search ads to direct users to fake Claude installers that deliver Clic... https://threatintel.cc/2026/10/09/hackers-abuse-google-ads-bing.html
AWS AgentCore security undone by prompt requesting credentials A prompt requesting credentials can undo AWS AgentCore’s security, The Register reports. Tokens transmitted in metadata, weak VM isolation, and expansive permissions make hacking the AI agent platform a lot easier.
Senator demands info about White House’s license plate surveillance program Sen. Ron Wyden is demanding more information about how a federal license plate reader camera program works, following a 404 Media investigation, 404... https://threatintel.cc/2026/10/09/senator-demands-info-about-white.html