Search the site
Industry Insights
Podcasts
Briefings
Stories
Events
Glossary
N2K Pro
CISO Perspectives
Podcasts
Briefings
Hash Table
1
st
Principles Course
About
Our Story
Press
Team
Testimonials
Sponsor
Partners
Account
Profile
Logout
Home
Search the site
Industry Insights
Podcasts
Briefings
Stories
Events
Glossary
N2K Pro
CISO Perspectives
Podcasts
Briefings
Hash Table
1
st
Principles Course
About
Our Story
Press
Team
Testimonials
Sponsor
Partners
October 10, 2026
Join Pro
LOGIN
14 hours ago
Contents may be malicious.
Adam Meyers, Head of Counter Adversary Operations at CrowdStrike, is discussing their work on "PhantomRaven, An LLM-Generated Information Stealer Developed for Bug Bounty Hunting." PhantomRaven, a JavaScript-based information stealer distributed through malicious npm packages by a financially motivated threat actor posing as a bug bounty hunter. The malware targets system information and continuous integration and continuous deployment (CI/CD) environment variables, likely seeking credentials, with analysis suggesting its code was generated using a large language model. The report explores how AI-generated tools may lower the barrier to cybercrime and outlines steps organizations can take to mitigate risks, including restricting package installation scripts, using private npm registries, and monitoring dependencies.
Research Saturday
14 hours ago
Contents may be malicious.
Adam Meyers, Head of Counter Adversary Operations at CrowdStrike, is discussing their work on "PhantomRaven, An LLM-Generated Information Stealer Developed for Bug Bounty Hunting." PhantomRaven, a JavaScript-based information stealer distributed through malicious npm packages by a financially motivated threat actor posing as a bug bounty hunter. The malware targets system information and continuous integration and continuous deployment (CI/CD) environment variables, likely seeking credentials, with analysis suggesting its code was generated using a large language model. The report explores how AI-generated tools may lower the barrier to cybercrime and outlines steps organizations can take to mitigate risks, including restricting package installation scripts, using private npm registries, and monitoring dependencies.
Research Saturday
Cybersecurity News
Week that Was
15 hours ago
Maximum-severity SonicWall flaw is now under active exploitation.
FBI fires a contractor over ShinyHunters data breach. US Justice Department disrupts China-linked hacking tools.
CyberWire Daily
23 hours ago
The Flax Typhoon gets a cold front.
An international coalition disrupts Chinese state-backed hacking operations. Officials dismantle cybercrime centers in Ghana. Anthropic launches initiatives aimed at quicker remediation. A maximum-severity SonicWall vulnerability is under active exploitation. The Cybersecurity Information Sharing Act remains in legislative limbo. Ransomware spikes. Attackers exploiting unpatched vulnerabilities in AhsayCBS backup software. Midnight Mimosa targets cheap Android device firmware. Prosecutors saddle a money mule. Maria Varmazis joins me to continue our CyberWire’s 10th anniversary celebration with a conversation about public-private partnerships. Open AI does the math.
Daily Briefing
Oct 9, 2026
US Justice Department disrupts China-linked hacking tools.
Maximum-severity SonicWall flaw is now under active exploitation. Some low-cost Android devices come with preinstalled malware.
CyberWire Daily
Oct 8, 2026
You can’t secure what you can’t see.
An OT cyber coalition urges CISA to establish baseline security requirements. Another OpenAI safety worker resigns. Maryland lawmakers seek funding for Cyber Command’s mental health initiatives. Hackers compromised country-code domain registries for TLS certs. The FBI and French authorities shut down alleged CSAM AI deepfake websites. Ransomware recovery firm CEO indicted for secretly paying attackers. MATCHBOIL keeps simmering. Apollo software pioneer Margaret Hamilton dies. On today’s Industry Voices Sanjay Jeyakumar, Co-Founder of Abnormal AI, discusses why AI agents are challenging traditional security models. And how do I hack thee? Let me count the ways.
Story
Oct 8, 2026
Why AI Agents Are Challenging Traditional Security Models with Sanjay Jeyakumar from Abnormal AI
Sanjay Jeyakumar, Co-Founder and CTO at Abnormal AI, joins Dave Bittner on the CyberWire Daily podcast for a sponsored Industry Voices conversation about why AI agents are challenging traditional security models. Using a recent OpenAI and Hugging Face incident as an example, Sanjay explains how agents can combine legitimate permissions, stale credentials, and over-privileged identities in unexpected ways. He discusses why securing agentic AI requires organizations to look beyond known threats and focus on whether identities are behaving as expected.
Caveat
Oct 8, 2026
Alleged ShinyHunter member detained in Jordan.
The UK looks to establish itself as a global AI leader.
Daily Briefing
Oct 8, 2026
Russian APT continues improving its MATCHBOIL downloader.
OT security coalition asks CISA to set mandatory safety requirements. Ransomware recovery firm CEO indicted for secretly paying attackers.
AI Security Brief
Oct 8, 2026
Is trust holding back automated remediation?
The “AI trust paradox” in cybersecurity goes like this: organizations invest in AI automation, then hold back from fully implementing it. Yet as attackers continue to use AI to move faster, defenders need to leverage AI to fix things as fast as it finds them. In this episode, Tyler Shields, Chief Marketing Officer at Allstacks and a cybersecurity industry analyst with more than 25 years advising security vendors and teams, shares the steps needed to build trust in autonomous remediation without sacrificing human judgment and control.
Hacking Humans
Oct 8, 2026
No such thing as a free parking spot.
This week, hosts of N2K CyberWire Maria Varmazis and Dave Bittner alongside Joe Carrigan are discussing the latest in social engineering scams, phishing schemes, and criminal exploits that are making headlines. We start with some follow up from Maria on ACATS fraud, including a reminder that protecting your accounts starts with the basics: strong passwords and multifactor authentication. Joe also has a follow-up inspired by 2001: A Space Odyssey and an experiment with AI. Joe covers a New York parking scam involving fake QR codes placed on parking kiosks, then takes a strange detour into Pennsylvania’s spotted lanternfly quarantine and an alleged scheme involving fake lanternfly permits. Dave looks at a fake iPhone Duo preorder scam that uses an Apple-style site and a supposed $500 voucher to deliver a DarkSword exploit to vulnerable iPhones. Maria explores new Consumer Reports research showing that 91% of Americans have encountered a digital scam or cyberattack attempt, while confidence in the privacy of personal data continues to fall. Our Catch of the Day comes from Reddit, where a spam caller appears to be on the hunt for someone named Juan.
Caveat
Oct 8, 2026
Expanding the digital evidence trail.
This week, Dave and Ben look at two court cases where one involves a judge ruling that law enforcement's use of Flock cameras was unconstitutional and another where the AI chat logs were used as evidence to levy felony charges. Additionally, Dave sits down with Meredith Burkart, Senior Director of Government Affairs and Public Policy at Halcyon, to discuss how ransomware attacks could be considered as acts of terrorism.
CyberWire Daily
Oct 7, 2026
The door into SonicWall.
SonicWall issues emergency patches. European wind and solar sites are exposed online. South Korea warns of AI-powered attacks on banks. Maria Varmazis unpacks the EU’s new Space Threat Response Architecture. Google patches dozens of high-severity Chrome flaws. Researchers uncover an SSRF vulnerability in Harbor. AI reshapes vulnerability management. Wikimedia says OpenAI agents repeatedly broke its rules. Pwn2Own kicks off in Ireland. Our guest is Derek Holt, CEO of Digital.ai, who says AI has killed the cybersecurity response window. VIN there, done that.
Business
Oct 7, 2026
Armadin has raised $255.5 million in a Series B round led by Andreessen Horowitz and Accel
Quantum eMotion has agreed to acquire British Columbia-based cybersecurity provider Plurilock.
Load More
Gain instant access to our exclusive podcast and briefing content, the Pro Academy, live events and more by subscribing to N2K Pro.
Subscribe Now