Sunday , September 13 2026

Recent Posts

CISA Says Chinese Firms Extracted Billions of Tokens From Frontier AI Models

AI models

Six Chinese AI companies ran large-scale attacks on American AI models since late 2024, according to U.S. cybersecurity and intelligence agencies. A joint advisory from CISA, NSA, and the FBI states that DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun, and Z.AI extracted billions of tokens through millions of requests from frontier AI …

Read More »

Nightmare Eclipse Drops New Microsoft Defender ‘ShieldCrash’ zero-day

Nightmare Eclipse

An unknown security expert called Nightmare Eclipse has drops a new Microsoft Defender flaw called “ShieldCrash” right after Microsoft released its security updates in September 2026. ShieldCrash is described as a bypass for the ShieldBreak Defender privilege escalation flaw patched on Thursday, which itself bypassed RoguePlanet, another Defender flaw disclosed in …

Read More »

cPanel Flaw Lets Hosting Accounts With Mail Privileges Execute Code as Root

cPanel

cPanel has shared CVE-2026-67401, a serious SQL injection flaw in EmailTrack. This flaw could allow attackers with permission to take full control of affected servers. cPanel announced this issue on September 8, 2026. They say that an attacker needs a valid cPanel account with email rights to use this weakness. …

Read More »