CYBER THREAT INTEL
DAILY BRIEFING · 2026-10-05 12:15 UTC · REPORT BRIEF-20261005-121535
OPEN // LE
PERIOD: LAST 24 HOURS SOURCES: Ars Technica Security, BBC Technology, BleepingComputer, BleepingComputer (Google News), Cyber Risk & Security, Cyber Threat Intelligence
TOP 10 LATEST CYBERSECURITY STORIES from the last 24 hours.
13
Stories Featured
53
Sources
10
Active KEV CVEs
28
IOC Indicators
Top Stories
01
Exploitation Hits Rejetto HFS Vulnerability Discovered by AI
CVE-2026-61500 allows attackers to recover the session-cookie signing key and gain administrative access and RCE.
The post Exploitation Hits Rejetto HFS Vulnerability Discovered by AI appeared first on SecurityWeek.
SRC: SecurityWeek
Mon, 05 Oct 2026 11:00:05 +0000
https://www.securityweek.com/exploitation-hits-rejetto-hfs-vulnerability-discovered-by-ai/
02
Google halts open-source bug bounty program amid AI spam surge
Google has now suspended submissions to its Open Source Software Vulnerability Rewards Program (OSS VRP) after being flooded by AI-generated reports. […]
SRC: BleepingComputer
Mon, 05 Oct 2026 04:27:46 -0400
https://www.bleepingcomputer.com/news/google/google-halts-open-source-bug-bounty-program-amid-ai-spam-surge/
03
Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
A critical security flaw impacting Rejetto HTTP File Server (HFS) is witnessing active exploitation attempts, according to VulnCheck.
The vulnerability in question is CVE-2026-61500 (CVSS score: 9.3), a case of session forgery stemming from the use of a weak pseudo-random number generator (PRNG) th
SRC: The Hacker News
Mon, 05 Oct 2026 13:39:23 +0530
https://thehackernews.com/2026/10/attackers-target-rejetto-hfs-flaw-that.html
04
New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
Citrix has released security updates for a high-severity security flaw in NetScaler ADC and Citrix NetScaler Gateway that has been exploited as part of targeted zero-day attacks.
The vulnerability, tracked as CVE-2026-88779, carries a CVSS score of 8.7 out of 10.0.
"CVE-2026-88779 is a memory over
SRC: The Hacker News
Mon, 05 Oct 2026 12:10:19 +0530
https://thehackernews.com/2026/10/new-netscaler-zero-day-exploited-in.html
05
The US needs a real plan to defend its water systems
Here’s what it would take: stronger defenses for large utilities, hands-on help for smaller systems and federal support to make both happen.
The post The US needs a real plan to defend its water systems appeared first on CyberScoop.
SRC: CyberScoop
Mon, 05 Oct 2026 10:00:00 +0000
https://cyberscoop.com/us-water-system-cybersecurity-ai-threats-op-ed/
06
MI5 Raises Alarm Over Chinese Funding of UK Academic Research
MI5 warns UK universities that over 100 academics may have unknowingly worked on research funded by a Chinese institute linked to the MSS. On September 30, MI5 published a formal warning naming the China General Technology Research Institute, CGTRI, also called CAGT in some translations, as an outfi
SRC: Security Affairs
Mon, 05 Oct 2026 09:12:58 +0000
https://securityaffairs.com/200396/intelligence/mi5-raises-alarm-over-chinese-funding-of-uk-academic-research.html
07
Iranian hacker accused of draining 31TB from university inboxes extradited to the US
Iranian hacker Amir Barati faces extradition to the US over an alleged Iranian campaign that stole 31TB of data from universities. Amir Barati spent June 25 getting arrested in Montenegro, and this week a Montenegrin court signed off on sending him to the United States. He’s a dual Turkish and Irani
SRC: Security Affairs
Mon, 05 Oct 2026 08:33:57 +0000
https://securityaffairs.com/200387/security/iranian-hacker-accused-of-draining-31tb-from-university-inboxes-extradited-to-the-us.html
08
ShinyHunters Suspect Detained in Jordan Helps FBI Track Down the Group
A suspected ShinyHunters member arrested in Jordan is reportedly cooperating with the FBI, helping investigators track down the group. A suspected member of ShinyHunters, the group that claims to have stolen data on every FBI employee, was picked up in Jordan this week. The man is Saif al-Din Khader
SRC: Security Affairs
Sun, 04 Oct 2026 13:41:21 +0000
https://securityaffairs.com/200338/cyber-crime/shinyhunters-suspect-detained-in-jordan-helps-fbi-track-down-the-group.html
09
Senate Passes Bipartisan Bill to Strengthen Healthcare Cybersecurity
More than 730 cyber breaches affected over 270 million Americans last year, costing an average of $10 million per breach.
The post Senate Passes Bipartisan Bill to Strengthen Healthcare Cybersecurity appeared first on SecurityWeek.
SRC: SecurityWeek
Mon, 05 Oct 2026 10:42:19 +0000
https://www.securityweek.com/senate-passes-bipartisan-bill-to-strengthen-healthcare-cybersecurity/
10
Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access
Apple has announced that it's taking steps to tighten controls around a macOS setting called Full Disk Access (FDA) due to security risks posed by artificial intelligence (AI) agents.
"Some developers are using Full Disk Access in ways that could put users at risk, exposing everything on their syst
SRC: The Hacker News
Mon, 05 Oct 2026 16:08:50 +0530
https://thehackernews.com/2026/10/apple-plans-tighter-macos-full-disk.html
11
OpenAI will show visual ads in ChatGPT while you generate images
OpenAI is expanding ads in ChatGPT, and one of the first new formats will show visual ads while you're generating images. […]
SRC: BleepingComputer
Mon, 05 Oct 2026 06:28:45 -0400
https://www.bleepingcomputer.com/news/artificial-intelligence/openai-will-show-visual-ads-in-chatgpt-while-you-generate-images/
12
Microsoft: Windows KB5124010 update crashes some games and apps
Microsoft confirmed over the weekend that some games and applications using AC-3 (Dolby Digital) audio decoding will crash after installing the September 2026 KB5124010 Windows 11 preview update. […]
SRC: BleepingComputer
Mon, 05 Oct 2026 05:37:56 -0400
https://www.bleepingcomputer.com/news/microsoft/microsoft-windows-kb5124010-update-crashes-some-games-and-apps/
13
Another OpenAI Safety Expert Quits and Raises New AI Safety Concerns
OpenAI safety veteran David Robinson resigns, warning that the company’s culture and fast AI development model could create bigger risks. OpenAI safety veteran David Robinson knows how his resignation looks. He starts his essay by calling himself “something of a cliché”: an AI company employee who q
SRC: Security Affairs
Mon, 05 Oct 2026 07:30:04 +0000
https://securityaffairs.com/200372/security/another-openai-safety-expert-quits-and-raises-new-ai-safety-concerns.html
Known Exploited — CISA KEV
| CVE | Product | Added to KEV |
|---|---|---|
| CVE-2026-88779 | NetScaler (Citrix) | 2026-10-04 |
| CVE-2026-102490 | Zammad (Zammad GmbH) | 2026-10-02 |
| CVE-2026-102489 | Zammad (Zammad GmbH) | 2026-10-02 |
| CVE-2026-104286 | FortiMail (Fortinet) | 2026-10-01 |
| CVE-2026-76504 | Catalyst SD-WAN Manager (Cisco) | 2026-09-30 |
| CVE-2026-86950 | Multiple Products (Apple) | 2026-09-29 |
| CVE-2026-88772 | NetScaler (Citrix) | 2026-09-27 |
| CVE-2026-88771 | NetScaler (Citrix) | 2026-09-27 |
| CVE-2026-67279 | RouterOS (MikroTik) | 2026-09-25 |
| CVE-2026-65660 | SharePoint (Microsoft) | 2026-09-25 |
Indicators of Compromise (IOC)
Download Indicators of Compromise (IOC)
For SOC/NOC ingestion, threat intelligence platforms, and SIEM integration.
