<<Page Under Construction 😉 >>
What does RSS even mean? RSS stands for “Really Simple Syndication”, which is a standardized system for the distribution of content from an online publisher to Internet users.
What this really means is that below, you’ll find some news feeds that I’ve chosen to follow on this page. I’m not responsible for the content, but I have tried to focus the sources to be interesting to Cybersecurity and Information Security professionals. Or, anyone who is interested in those topics. Or, anyone at all who would like to read them.
If you’re the author of a feed, or have a suggestion on one I should add to this page, please drop me a note!
General Cyber News Feeds
Forbes – Cybersecurity News
ZDNet – Security News
KrebsOnSecurity – In-depth Security News and Investigation
CSO Online, from IDG – Hottest Topics on Cyber and Security
The Hacker News – Cybersecurity News and Analysis
The Guardian – Data and Security
Threatpost – First Stop for Security News
Dark Reading – Connecting the Information and Security Community
SANS Institute – Security Awareness Tip of the Day
Help Net Security – Daily infosec news with a focus on enterprise security
IT Security Central – User Activity Monitoring | DLP | Employee Productivity
TechRepublic – Straight up Security
WeLiveSecurity – News, views, and insight from the ESET security community
Schneier on Security – A blog covering security and security technology
Lohrmann on Cybersecurity – Government Technology RSS Feed
Forbes – Cybersecurity News
- Feed has no items.
ZDNet – Security News
- Feed has no items.
Krebs On Security – In-depth Security News and Investigation
- Dutch Police Arrest ‘Reformed’ Hacker in Shiny Hunters Investigationon 2026-09-28
Authorities in the Netherlands have arrested a 23-year-old convicted cybercriminal on suspicion of aiding in data thefts and extortions by the prolific hacker group ShinyHunters. In the days immediately following the suspect's arrest, remaining ShinyHunters members dramatically escalated their attacks, stealing highly sensitive data from the FBI […]
- U.S. Soldier Gets 70 Months in Prison for AT&T, Verizon Extortionson 2026-09-25
A U.S. Army soldier who pleaded guilty to hacking into multiple telecommunications companies and stealing mobile call and text metadata for more than 100 million AT&T customers in 2024 was sentenced to 70 months in federal prison today and ordered to pay nearly $300,000 in restitution to victims.
- Data Broker Radaris Loses Domains in Privacy Fighton 2026-09-16
The consumer data broker Radaris.com has long had a reputation for ignoring requests to remove personal information from its vast empire of people-search services online. That reputation caught up with the company recently in a lawsuit alleging Radaris violated a New Jersey privacy law that provides for hefty fines against data brokers that […]
- Microsoft Plugs Nearly 1,000 Security Holeson 2026-09-08
Microsoft Corp. today issued updates to plug at least 974 security holes in its Windows operating systems and other software, by far its biggest single patch batch ever. Microsoft says artificial intelligence is helping to speed the discovery of vulnerabilities, but security experts warn that many organizations already are struggling to prioritize […]
- FBI Probes Service Selling 153M+ Drivers Licenseson 2026-09-01
A new identity theft service launched on the dark web this week is selling digital scans of more than 153 million drivers licenses from people in the United States and Canada. Based on interviews with individuals whose licenses are available for purchase on this service, it appears to be siphoning images collected by a widely-used identity […]
- Two Alleged ‘TeamPCP’ Hackers Arrested in Australiaon 2026-08-27
Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and […]
CSO Online, from IDG – Hottest Topics on Cyber and Security
- Feed has no items.
The Hacker News – Cybersecurity News and Analysis
- ShinyHunters Suspect Rey Reportedly Detained in Jordan, Helping FBI Identify Group Memberson 2026-10-04 by info@thehackernews.com (The Hacker News)
A suspected member of the ShinyHunters digital extortion group, who goes by the online alias "Rey," has been allegedly detained by authorities in Jordan, Reuters reported, citing three people familiar with the matter. Rey, whose real name is Saif al-Din Khader, is said to have been brought into custody on September 29, […]
- China-Aligned TA419 Targets U.S. AI Policy Experts With Microsoft AitM Phishingon 2026-10-04 by info@thehackernews.com (The Hacker News)
A new China-nexus cyber espionage group known as TA419 has been attributed to multiple credential phishing campaigns targeting artificial intelligence (AI) experts working for U.S. think tanks, universities, and legal sector organizations. The campaigns have impersonated prominent economists and AI policymakers, as well […]
- MI5 Says China’s MSS Funded Research Involving 100+ U.K.-Linked Academicson 2026-10-03 by info@thehackernews.com (The Hacker News)
The U.K.'s domestic intelligence and security agency has warned that more than 100 academics have helped China boost its intelligence gathering efforts on behalf of Beijing's state security service. In a "Security Service Espionage Alert" issued on September 30, 2026, MI5 said the "primary purpose of the China General […]
- Warlock Exploits SharePoint Flaws to Disable Security Tools and Deploy Ransomwareon 2026-10-03 by info@thehackernews.com (The Hacker News)
The suspected China-linked threat actor known as Warlock is still continuing to weaponize Microsoft SharePoint vulnerabilities, likely both old and new, in attacks targeting organizations in Portuguese- and Spanish-speaking countries. The activity, observed by the Symantec and Carbon Black Threat Hunter Team, has hit […]
- The State of Cybersecurity in 2026: Key Segments, Insights, and Innovationson 2026-10-03 by info@thehackernews.com (The Hacker News)
Featuring: Cybersecurity is being reshaped by the expansion of cloud infrastructure, AI, distributed systems, and increasingly complex digital environments. As organizations manage more identities, devices, data, and internet-facing infrastructure, security is shifting toward continuous visibility, control, and the […]
- GitLab Patches Critical 9.9 AI Gateway Flaw Allowing Command Execution on Self-Hosted Serverson 2026-10-02 by info@thehackernews.com (The Hacker News)
A critical flaw in GitLab's AI Gateway could let a logged-in user with Duo Agent Platform access run commands on the gateway under certain conditions, GitLab said in an advisory. The gateway is the service that connects a GitLab instance to AI models, and only organizations that host their own gateway need to act. The […]
The Guardian – Data and Security
- Feed has no items.
Threatpost – First Stop for Security News
- Student Loan Breach Exposes 2.5M Recordson 2022-08-31 by Nate Nelson
2.5 million people were affected, in a breach that could spell more trouble down the line.
- Watering Hole Attacks Push ScanBox Keyloggeron 2022-08-30 by Nate Nelson
Researchers uncover a watering hole attack likely carried out by APT TA423, which attempts to plant the ScanBox JavaScript-based reconnaissance tool.
- Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firmson 2022-08-29 by Nate Nelson
Over 130 companies tangled in sprawling phishing campaign that spoofed a multi-factor authentication system.
- Ransomware Attacks are on the Riseon 2022-08-26 by Nate Nelson
Lockbit is by far this summer’s most prolific ransomware group, trailed by two offshoots of the Conti group.
- Cybercriminals Are Selling Access to Chinese Surveillance Camerason 2022-08-25 by Nate Nelson
Tens of thousands of cameras have failed to patch a critical, 11-month-old CVE, leaving thousands of organizations exposed.
- Twitter Whistleblower Complaint: The TL;DR Versionon 2022-08-24 by Threatpost
Twitter is blasted for security and privacy lapses by the company’s former head of security who alleges the social media giant’s actions amount to a national security risk.
Dark Reading – Connecting the Information and Security Community
- Feed has no items.
SANS Institute – Security Awareness Tip of the Day
- Feed has no items.
Help Net Security – Daily infosec news with a focus on enterprise security
- Week in review: Researcher breaks into Microsoft analytics service, NetScaler RCE 0-day exploitedon 2026-10-04 by Sinisa Markovic
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: 16-year-old researcher breaks into Microsoft analytics service with access to 17 trillion rows of data A flaw in Titan, an internal Microsoft analytics service, could have let an attacker read employee records and Bing search analytics, a […]
- AI is giving attackers a head start, Microsoft warnson 2026-10-02 by Sinisa Markovic
Threat actors are using AI to find bugs, build malware and run intrusions faster than defenders can keep up. Microsoft’s 2026 Digital Defense Report, covering July 2025 to June 2026, describes a near-term period in which attackers collect the benefits of AI first and defenders have to move quickly to close the gap. “AI is changing the physics […]
- Chinese spies impersonate White House, Anthropic figures to phish AI policy expertson 2026-10-02 by Sinisa Markovic
A China-aligned espionage group has been posing as a former White House official and a prominent economist to get into the cloud accounts of AI policy experts in the US, Proofpoint have found. The group, which the researchers track as TA419, ran several credential phishing campaigns in July 2026. “In July 2026, TA419 impersonated multiple […]
- Critical FortiMail zero-day exploited in the wild (CVE-2026-104286)on 2026-10-02 by Sinisa Markovic
Fortinet is warning customers that attackers are exploiting a zero-day vulnerability (CVE-2026-104286) in FortiMail, its email security gateway. Fortinet says the flaw has been reported to be exploited in the wild, and urges customers to apply the workaround it shared until fixes are available. About CVE-2026-104286 “An Improper Limitation of a […]
- Criminal recruiters want people on your payrollon 2026-10-02 by Anamarija Pogorelec
Legitimate employee access can let criminals circumvent security controls that would be difficult to overcome from outside an organization. Routine actions such as information lookups, account resets, transaction approvals and shipment changes can become services sold to criminal customers, according to Intel 471’s Insiders for Hire: Underground […]
- Android 17 makes it harder for spyware to cover its trackson 2026-10-02 by Anamarija Pogorelec
When a journalist suspects their phone has been hacked, the first question is whether any trace of the attack is left. Google has added six features to Advanced Protection in Android 17, including one that keeps a copy of that evidence off the device. Existing users will receive a notification when the new capabilities become available on their […]
IT Security Central – User Activity Monitoring | DLP | Employee Productivity
- Feed has no items.
TechRepublic – Straight up Security
- FTC Probes OpenAI, Anthropic as AI Agent Safety Risks Draw Scrutinyon 2026-10-02 by Aminu Abdullahi
The FTC is investigating OpenAI, Anthropic and other AI firms over potential consumer harms, safety claims and risks tied to increasingly autonomous AI systems. The post FTC Probes OpenAI, Anthropic as AI Agent Safety Risks Draw Scrutiny appeared first on TechRepublic.
- Meta AI Shares Seller’s Address: Facebook Marketplace Buyer Shows Up at His Homeon 2026-09-30 by Caleb Kinchlow
Meta’s Muse AI shared a Facebook Marketplace seller’s pickup address and arranged a deal that ended with a buyer showing up unexpectedly. The post Meta AI Shares Seller’s Address: Facebook Marketplace Buyer Shows Up at His Home appeared first on TechRepublic.
- iPhone Security Warning: Apple Says iOS 26 Flaw May Have Been Exploitedon 2026-09-30 by Matt Gonzales
Apple patched an iPhone flaw that may have been exploited in targeted attacks. Here’s what iOS 26 users need to know and how to update. The post iPhone Security Warning: Apple Says iOS 26 Flaw May Have Been Exploited appeared first on TechRepublic.
- iOS 27.0.1 Is Here: 3 iPhone Problems Apple Just Fixedon 2026-09-29 by Matt Gonzales
Apple’s iOS 27.0.1 fixes three iPhone problems involving Face ID restarts, camera artifacts, and an unresponsive touchscreen. The post iOS 27.0.1 Is Here: 3 iPhone Problems Apple Just Fixed appeared first on TechRepublic.
- Private 5G Moves Into Banking at Hana Financial’s 16-Floor Headquarterson 2026-09-29 by TechRepublic Staff
Hana Financial’s new headquarters runs private 5G across 16 floors, giving roughly 3,000 employees secure wireless access to internal systems. The post Private 5G Moves Into Banking at Hana Financial’s 16-Floor Headquarters appeared first on TechRepublic.
- Anthropic Declines Australian AI Hearing as OpenAI Agent Breach Faces Scrutinyon 2026-09-28 by AI Cerrudo
Anthropic declined an Australian Senate AI hearing as officials investigate an OpenAI agent breach and consider mandatory AI incident reporting. The post Anthropic Declines Australian AI Hearing as OpenAI Agent Breach Faces Scrutiny appeared first on TechRepublic.
WeLiveSecurity – News, views, and insight from the ESET security community
- This month in security with Tony Anscombe – September 2026 editionon 2026-09-30
Autonomous AI agents go on a hacking spree, and Microsoft ships what used to be a year's worth of security patches in one go – here's how to keep pace
- Timeshare exit scams: From fake buyers to recovery fraudon 2026-09-29
Con artists are targeting timeshare owners who want out – and some victims are hit twice
- The devil is still in the email – but wears a new maskon 2026-09-28
When phishing can increasingly pass familiar checks, avoiding or limiting the damage depends on how quickly your company can detect and contain the attack
- Is that vibe coded app safe? 5 checks before you downloadon 2026-09-25
As AI lets anyone build software, here’s how to vet that shiny new app before it exposes your data
- Been told to pay at a Bitcoin ATM? Read this firston 2026-09-24
Crypto ATM scams often follow a predictable script – here’s how to recognize it and what to do if you’ve already been caught out
- Looking for free Robux? Here’s what’s real, and what’s a scamon 2026-09-22
Fake giveaways, free Robux generators and lookalike login pages all target the same thing – your Roblox account
Schneier on Security – A blog covering security and security technology
- Feed has no items.
Lohrmann on Cybersecurity – Government Technology RSS Feed
- What the Recent Frontier AI Incidents Mean for Security Leaderson 2026-10-04
Navigating the hidden fallout of autonomous frontier AI model incidents and what it means for enterprise defense.
- Think You'd Never Fall for a Scam Text? Think Againon 2026-09-27
As we head into October Cybersecurity Awareness Month, ponder this: Responding with "wrong number" to a strange text is exactly what the scammers want you to do.
- Forget AI — Here’s the Real Cyber Crisis Escalating Right Nowon 2026-09-21
Ransomware is surging in 2026, although few stories are grabbing the global attention that was much more common a few years back. Here’s what you need to know.
- State and Local Government Cyber Leaders Prioritize AI, Identity and Stopping Fraudon 2026-09-13
What were the top themes when state and local government CISOs met this past week to compare notes and build strategies heading into the midterm elections this fall?
- The Identity Paradox: Digital State IDs Now Riskier, More Urgenton 2026-09-06
A major data breach that included 153 million drivers’ licenses was reported by “Krebs on Security” on Sept. 1. What might this mean for state digital identity management plans?
- NASTD 2026: Why Gov Tech Leaders Must Focus on Cultureon 2026-08-30
IT leaders from across the country gathered this past week for the National Association of State Technology Directors National Conference in Denver. One takeaway: Building culture remains key.
#StayVigilant
#StaySafe
#LookOutForEachOther

















