Latest news as of 9/17/2026, 11:50:28 PM
Bleeping Computer
California Attorney General Rob Bonta filed a lawsuit against 23andMe, now Chrome Holding Co., over the company's failure to protect sensitive customer genetic and personal information. [...]
The Register
California AG claims genetics biz downplayed 2023 mega-leak while paying ransom to attacker
The Hacker News
An unknown threat actor has been observed using a large language model (LLM) agent to conduct post-compromise actions after obtaining initial access following the exploitation of a publicly-accessible Marimo network using a recently disclosed vulnerability. "The attacker compromised an internet-reachable Marimo notebook via CVE-2026-39987, extracted two cloud credentials from the compromised
Dark Reading
The future of cybersecurity is germinating, as nation states vie for dominance in the embodied AI market and its supply chain.
Dark Reading
The cyber insurance industry has made relatively weak inroads into Asia due to a a variety of factors, but that could be changing.
Bleeping Computer
DDoS attacks are increasingly being sold like subscription services, complete with pricing tiers, support, and reseller programs. Flare explores how the DDoS-as-a-Service market has evolved from scattered tools into polished attack platforms. [...]
Bleeping Computer
Dutch authorities have taken offline a massive botnet of 17 million devices and seized more than 200 servers at a local provider that supported the operation. [...]
Dark Reading
Researchers discover an exploit chain combining over-permissioned roles, secrets discovery, and non-human identities that could have compromised a popular automation service.
The Register
Hosting provider pulled the plug after police traced 200 servers to the Netherlands
Bleeping Computer
Google says the Chrome Device Bound Session Credentials (DBSC) security feature is now generally available and is rolling out to all users to prevent account takeovers. [...]