<<Page Under Construction 😉 >>
What does RSS even mean? RSS stands for “Really Simple Syndication”, which is a standardized system for the distribution of content from an online publisher to Internet users.
What this really means is that below, you’ll find some news feeds that I’ve chosen to follow on this page. I’m not responsible for the content, but I have tried to focus the sources to be interesting to Cybersecurity and Information Security professionals. Or, anyone who is interested in those topics. Or, anyone at all who would like to read them.
If you’re the author of a feed, or have a suggestion on one I should add to this page, please drop me a note!
General Cyber News Feeds
Forbes – Cybersecurity News
ZDNet – Security News
KrebsOnSecurity – In-depth Security News and Investigation
CSO Online, from IDG – Hottest Topics on Cyber and Security
The Hacker News – Cybersecurity News and Analysis
The Guardian – Data and Security
Threatpost – First Stop for Security News
Dark Reading – Connecting the Information and Security Community
SANS Institute – Security Awareness Tip of the Day
Help Net Security – Daily infosec news with a focus on enterprise security
IT Security Central – User Activity Monitoring | DLP | Employee Productivity
TechRepublic – Straight up Security
WeLiveSecurity – News, views, and insight from the ESET security community
Schneier on Security – A blog covering security and security technology
Lohrmann on Cybersecurity – Government Technology RSS Feed
Forbes – Cybersecurity News
- Feed has no items.
ZDNet – Security News
- Feed has no items.
Krebs On Security – In-depth Security News and Investigation
- Microsoft Plugs Nearly 1,000 Security Holeson 2026-09-08
Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial intelligence is helping to speed the discovery of vulnerabilities, but security experts warn that many organizations already are struggling to prioritize […]
- FBI Probes Service Selling 153M+ Drivers Licenseson 2026-09-01
A new identity theft service launched on the dark web this week is selling digital scans of more than 153 million drivers licenses from people in the United States and Canada. Based on interviews with individuals whose licenses are available for purchase on this service, it appears to be siphoning images collected by a widely-used identity […]
- Two Alleged ‘TeamPCP’ Hackers Arrested in Australiaon 2026-08-27
Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and […]
- Who’s Tracking You? Use This New Service to Find Outon 2026-08-14
It can be daunting to determine who's responsible for showing ads on the websites we visit, or who's harvesting data from the mobile apps we use every day. That information is already semi-public, but it is not easily parsed and traditionally much of it has remained walled away in the hands of large advertising platforms. Not anymore: A powerful […]
- Microsoft Plugs Nearly 400 Security Holeson 2026-08-11
Microsoft today released updates to remedy at least 398 security vulnerabilities in its Windows operating systems and supported software, including one weakness that is already being actively exploited and two others that were publicly detailed prior to today.
- Canadian Man Pleads Guilty in Snowflake Extortionson 2026-08-06
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider Snowflake. Connor Riley Moucka, of Kitchener, Ontario, also admitted to stealing call and text […]
CSO Online, from IDG – Hottest Topics on Cyber and Security
- Feed has no items.
The Hacker News – Cybersecurity News and Analysis
- New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computingon 2026-09-14 by info@thehackernews.com (The Hacker News)
Researchers have disclosed a new hardware attack, called DDRop, that breaks the memory protection in Intel and AMD confidential computing by silently dropping writes to a server's memory, so the processor keeps reading old encrypted data as if it were current. The attack requires an attacker who already controls the […]
- Red Heron Exploits Gitea RCE to Compromise 13 Organizations Across Six Countrieson 2026-09-14 by info@thehackernews.com (The Hacker News)
A Chinese threat actor tracked as Red Heron has been attributed to the rapid exploitation of a recently disclosed security vulnerability in Gitea to compromise internet-facing instances as part of a multi-national campaign. "Red Heron scanned 1,386 Gitea instances across seven countries and maintained a separate dataset […]
- WordPress Adds Automated Plugin Reviews to Block High-Risk Updates Before Distributionon 2026-09-14 by info@thehackernews.com (The Hacker News)
WordPress has announced it's launching an automated security review for every release of a plugin before it's distributed through the WordPress.org update API so as to analyze it for potential security issues and ensure there are no risks involved. "New plugins are reviewed before they enter the directory, but updates […]
- ⚡ Weekly Recap: Rogue AI Agents, WeChat Worm, PaperCut Attacks, AI Espionage, and Rootkitson 2026-09-14 by info@thehackernews.com (The Hacker News)
AI keeps showing up in the wrong places. Attackers are using it to speed up exploits, test defenses, and automate more of the job. Some models are also crossing lines on their own. That is not a great combination. The rest of the week is more familiar: old bugs still working, fresh exploit chains, exposed systems, weak […]
- AI Changed the Exposure Problem. Validation Needs to Change With It.on 2026-09-14 by info@thehackernews.com (The Hacker News)
There's a lot of noise around AI and cybersecurity right now. What’s actually important is far simpler, if often lost in the hubbub. Vulnerability discovery is getting faster and happening at a much greater scale, while defenders still have to work out which findings actually deserve their action. In the first half of […]
- Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Userson 2026-09-14 by info@thehackernews.com (The Hacker News)
A malicious cross-store Twitch browser extension has leaked OAuth tokens associated with nearly 31,000 users to proxy servers operated by a Russian commercial bot service. The extension, named "Twitch Enhanced Viewer | JeetBot," lists HISHIMIRO/jeetbot.cc as its developer and has the following identifiers on the Google […]
The Guardian – Data and Security
- Feed has no items.
Threatpost – First Stop for Security News
- Student Loan Breach Exposes 2.5M Recordson 2022-08-31 by Nate Nelson
2.5 million people were affected, in a breach that could spell more trouble down the line.
- Watering Hole Attacks Push ScanBox Keyloggeron 2022-08-30 by Nate Nelson
Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.
- Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firmson 2022-08-29 by Nate Nelson
Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.
- Ransomware Attacks are on the Riseon 2022-08-26 by Nate Nelson
Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.
- Cybercriminals Are Selling Access to Chinese Surveillance Camerason 2022-08-25 by Nate Nelson
Tens of thousands of cameras have failed to patch a critical, 11-month-old CVE, leaving thousands of organizations exposed.
- Twitter Whistleblower Complaint: The TL;DR Versionon 2022-08-24 by Threatpost
Twitter is blasted for security and privacy lapses by the company’s former head of security who alleges the social media giant’s actions amount to a national security risk.
Dark Reading – Connecting the Information and Security Community
- Feed has no items.
SANS Institute – Security Awareness Tip of the Day
- Feed has no items.
Help Net Security – Daily infosec news with a focus on enterprise security
- Entrust turns cryptographic inventory data into security actionon 2026-09-14 by Industry News
Entrust has unveiled new capabilities for its Cryptographic Security Platform (CSP) that help organizations turn Cryptographic Bill of Materials (CBOMs) data into action. Government agencies, financial institutions, healthcare organizations, and other critical infrastructure operators are navigating increased cyber threats, shorter certificate […]
- Bitsight connects threat intelligence and exposure monitoring across the supply chainon 2026-09-14 by Industry News
Bitsight access to a broad risk dataset, combining threat intelligence and continuous exposure monitoring to help teams mitigate risk across the supply chain. “The surge in third-party-originating cybersecurity breaches demands a fundamental shift in how cybersecurity leaders and their teams manage third-party cybersecurity risks,” said […]
- Dataminr uses agentic AI to predict and verify security threatson 2026-09-14 by Industry News
Dataminr has announced Dataminr Advanced for Corporate Security, delivering agentic AI capabilities that give corporate security teams the confidence to protect their people, sites, and operations before risk escalates. With Agentic Corroboration, Agentic Context, and Near-Term Predictive Intelligence, corporate security teams know what happened […]
- ENISA launched the CRA Single Reporting Platform for actively exploited vulnerabilitieson 2026-09-14 by Sinisa Markovic
The EU Agency for Cybersecurity switched on the Cyber Resilience Act‘s Single Reporting Platform on 11 September 2026, the same day the law’s reporting obligations started binding manufacturers. ENISA built the tool and runs its day-to-day operations, a job Article 16(1) of the CRA hands to the agency. Anyone placing a product with digital […]
- Airrived adds Agentic Observability to track AI agent actions and riskson 2026-09-14 by Industry News
Airrived will reveal Agentic Observability, a major expansion of its enterprise Agentic OS built to give organizations end-to-end visibility into how AI agents behave, from the moment enterprise data enters the platform, through agent reasoning and execution, to the final business outcome. Traditional application monitoring was designed to answer […]
- WhatsApp Restricted Chat locks a conversation to your primary phoneon 2026-09-14 by Sinisa Markovic
WhatsApp is building a per-chat setting that keeps a conversation on a single phone. The setting, called Restricted Chat, sits in the Android beta distributed through Google Play as version 2.26.36.5, and it stops the app from syncing a chosen conversation to linked devices. Switch it on and the chat stays on the primary mobile device, out of […]
IT Security Central – User Activity Monitoring | DLP | Employee Productivity
- Feed has no items.
TechRepublic – Straight up Security
- Texas Judge Finds TikTok Liable for Misleading Parents About Child Safety Controlson 2026-09-14 by Aminu Abdullahi
A Texas judge found TikTok liable for misleading parents about child safety controls, shifting the case toward penalties and possible restrictions. The post Texas Judge Finds TikTok Liable for Misleading Parents About Child Safety Controls appeared first on TechRepublic.
- LG Pushes Back on Claims That Its Smart TVs Are Spying on Userson 2026-09-14 by Madeline Clarke
Researchers allege LG smart TVs can capture ambient audio and scan home networks, while LG disputes the findings and explains its privacy controls. The post LG Pushes Back on Claims That Its Smart TVs Are Spying on Users appeared first on TechRepublic.
- Anthropic Says Claude Used in Possible Bioweapon Researchon 2026-09-11 by Kezia Jungco
Anthropic says researchers used Claude for biological work that could support weapons development, exposing new challenges for AI safeguards. The post Anthropic Says Claude Used in Possible Bioweapon Research appeared first on TechRepublic.
- EU Gets Access to Anthropic Cyber AI — But Not Its Newest Modelon 2026-09-11 by Aminu Abdullahi
ENISA has gained access to Anthropic’s Mythos 5, giving EU officials a chance to independently test the cyber AI after months of negotiations. The post EU Gets Access to Anthropic Cyber AI — But Not Its Newest Model appeared first on TechRepublic.
- AI Agents, Foldables, Cyberthreats, and Chip Deals Define This Week in Techon 2026-09-11 by TechRepublic Staff
See what you missed in Daily Tech Insider from Sept. 7–11. The post AI Agents, Foldables, Cyberthreats, and Chip Deals Define This Week in Tech appeared first on TechRepublic.
- US Accuses Six Chinese AI Firms of Distilling Frontier ModelsUS Accuses Six Chinese AI Firms of Distilling Frontier Modelson 2026-09-10 by Aminu Abdullahi
US agencies accuse six Chinese AI firms of distilling frontier models and recommend new defenses that could affect enterprise AI access and API use. The post US Accuses Six Chinese AI Firms of Distilling Frontier ModelsUS Accuses Six Chinese AI Firms of Distilling Frontier Models appeared first on TechRepublic.
WeLiveSecurity – News, views, and insight from the ESET security community
- GuardBreaker: Derailing AI-assisted malware analysis with a code commenton 2026-09-10
LLM-based code scanners won’t help attackers build a nuclear weapon, but that refusal could work in their favor
- Safe word: What is it and why do you need one?on 2026-09-09
AI scams are now hyper-realistic. But there’s one simple way to see through them.
- I’ve been deepfaked: What do I do?on 2026-09-02
Don’t panic if you spot an illegally created image or video of you online – there are ways to request its removal
- This month in security with Tony Anscombe – August 2026 editionon 2026-08-31
Details about the Hugging Face hack, critical infrastructure under attack, a spoofed in-flight Wi-Fi network, and more of this month's cybersecurity news
- AI-driven OSINT in the wrong hands – and why everyone could be a target for fraudon 2026-08-27
It’s getting cheaper and easier for cybercriminals to research potential victims. Here’s what’s still in your control.
- How QR-code phishing can slip past corporate security measureson 2026-08-17
Quishing has become a popular alternative to traditional phishing. Here’s how businesses can close the gap.
Schneier on Security – A blog covering security and security technology
- Feed has no items.
Lohrmann on Cybersecurity – Government Technology RSS Feed
- State and Local Government Cyber Leaders Prioritize AI, Identity and Stopping Fraudon 2026-09-13
What were the top themes when state and local government CISOs met this past week to compare notes and build strategies heading into the midterm elections this fall?
- The Identity Paradox: Digital State IDs Now Riskier, More Urgenton 2026-09-06
A major data breach that included 153 million drivers’ licenses was reported by “Krebs on Security” on Sept. 1. What might this mean for state digital identity management plans?
- NASTD 2026: Why Gov Tech Leaders Must Focus on Cultureon 2026-08-30
IT leaders from across the country gathered this past week for the National Association of State Technology Directors National Conference in Denver. One takeaway: Building culture remains key.
- Slopsquatting in the Supply Chain: Weaponized AI Hallucinationson 2026-08-23
In this interview with Snyk CTO Manoj Nair, we examine how attackers weaponize recurring LLM package hallucinations before developers even hit "run."
- Hacking Back Is Back: White House to Enable Cyber Privateerson 2026-08-17
In an Aug. 12 National Security Presidential Memorandum, President Donald Trump set out guidance for more private-sector action in global cyber battles. Here’s the rest of the story.
- Innovation or Negligence? What Recent AI Hacks Mean for the Future of Cybersecurityon 2026-08-09
Wonderful capability or ethical failure? Decoding the stories coming out of Black Hat USA and the unsanctioned AI cyber attacks of 2026.
#StayVigilant
#StaySafe
#LookOutForEachOther

















