AI Security Digest
Aggregated ecosystem risk analysis
Vendor Watchlist
Tracking 0 critical integrations
Threat Stream Feed
Real-time security logs and system alerts
Cloudflare - DFW (Dallas) on 2026-09-11
Sep 11, 08:15 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 11, 08:10 UTCScheduled - We will be performing scheduled maintenance in DFW (Dallas) datacenter on 2026-09-11 between 08:15 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, pl...
Snowflake - INC20000213
Sep 11, 07:44 UTC Update - Current status: We're continuing to investigate the issue with Snowflake Data Cloud. We'll provide another update within 30 minutes.Customer experience: Customers hosted in the specified regions may be unable to access or use multiple core Snowflake services and features. Affected users may be unable to sign in, execute queries, or manage data.ETA: An ETA is not yet available. We'll provide one as soon as possible.Incident start time: 05:00 UTC September 11, 2026 Se...
Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors
Attackers have chained two flaws in JFrog Artifactory, the repository that software build pipelines pull from, to take administrator control of self-hosted servers and plant backdoors, cloud security company Wiz said in a report. Wiz saw the attacks between August 15 and September 8. JFrog had fixed both flaws before then, so only servers that had not been updated were open to them.
Zoom - Zoom Push Notification Service Release: September, 2026 (No Operational Impact)
Sep 10, 22:30 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Sep 8, 22:55 PDT Scheduled - We will be performing scheduled maintenance to upgrade our Push Notification Service.No operational impact is expected. This maintenance includes the following enhancements and improvements:- Activity center enhancement- Deployment process enhancementAll services are expected to operate normally during the maintenance window.
Cloudflare - ORD (Chicago) on 2026-09-11
Sep 11, 04:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 9, 16:20 UTCScheduled - We will be performing scheduled maintenance in ORD (Chicago) datacenter on 2026-09-11 between 05:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting thi...
Cloudflare - EWR (Newark) on 2026-09-11
Sep 11, 04:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 10, 06:20 UTCScheduled - We will be performing scheduled maintenance in EWR (Newark) datacenter on 2026-09-11 between 05:00 and 10:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this...
Heap - Heap Connect Sync Delays
Sep 10, 20:53 PDT Monitoring - A fix has been implemented and we are monitoring the results. Sep 10, 20:39 PDT Investigating - We are currently experiencing delays for Connect Syncs. Our engineering team is currently working to identify a root cause and implement a solution.We will post an update in 30 minutes.
Cloudflare - SSL Certificate Provisioning Delays for Let's Encrypt
Sep 11, 02:58 UTCIdentified - Let's Encrypt incident is now resolved. Cloudflare managed certificate backlog is still clearing.Sep 11, 02:20 UTCIdentified - Let's Encrypt are seeing SSL certificates provisioning delays. You can read their public status page here: https://letsencrypt.status.io/pages/incident/55957a99e800baa4470002da/6aa35c1d892d7304f2747e01 SSL certificates already in production and other CAs certificate provisioning remains unaffected and are operating normally.
MongoDB Atlas - Atlas is experiencing issues with issuing certificates from Lets Encrypt
Sep 11, 01:28 UTC Investigating - We are currently investigating issues related to certificate issuing failures with Lets Encrypt. Free and Flex cluster provisioning may be delayed.
GCP - RESOLVED: Multiple products in us-central1-b are experiencing network service degradation.
Incident began at 2026-09-01 07:44 and ended at 2026-09-01 11:52 (all times are US/Pacific).Incident Report Summary On Tuesday, 1 September 2026, some customers in us-central1 experienced network service degradation and instance isolation for a duration of 4 hours and 11 minutes. To our customers whose businesses were impacted during this disruption, we sincerely apologize. This is not the level of quality and reliability we strive to offer you, and we are taking immediate steps to improve the ...
CircleCI - Issues loading pipelines for a small number of projects
Sep 10, 20:26 UTC Resolved - This incident has been resolved. Sep 10, 20:25 UTC Monitoring - A fix has been implemented and we are monitoring the results. Sep 10, 20:25 UTC Identified - A small number of customers may see errors or be unable to load the pipelines page for projects with deprecated-config warnings, when using the classic pipelines view. Customers on the new pipelines view are not affected. We’ve identified the cause and deployed a fix.
Zoom - Service degradation affecting Zoom Meeting summary, and Phone call summary in the US region.
Sep 10, 11:38 PDT Resolved - This incident has been resolved. Sep 10, 11:22 PDT Monitoring - On 09/08/2026, Between 17:57 UTC to 23:49 UTC, A subset of users may have experienced issues with Meeting Summary and Phone Call Summary.This incident has been resolved and the affected services have been restored.
Akamai - Edge Delivery Increased Latency in US East (IAD)
Sep 10, 17:58 UTC Identified - We have identified the cause of the issue and are implementing a fix. We initially mentioned elevated 403 errors in this status page post as an additional symptom of the incident. That was incorrect, and we have removed the reference. Customers and partners can find more details on the Akamai Community: https://community.akamai.com/customers/s/feed/0D5a700001T8d9uCAB. We will provide another update within the next 60 minutes. Sep 10, 17:37 UTC Investigating - We...
Vercel - Elevated error rate on Connect and Passport
Sep 10, 17:42 UTC Investigating - We've identified an issue where some customers may experience increased errors from Connect and Passport. We are currently investigating this issue. We will provide additional updates as they become available.
Zoom - Service degradation affecting subset of live online meeting translation in Canada region.
Sep 10, 09:57 PDT Monitoring - On 09/10/2026, Between 13:10 UTC to 14:10 UTC, Users may have experienced issues with subset of live online meeting translation in Canada region. This incident has been resolved and the affected services have been restored.
Sentry - Ingestion is delayed in US
Sep 10, 16:52 UTC Update - We are continuing to monitor delayed ingestion. Sep 10, 16:13 UTC Investigating - We are investigating degraded ingestion in US.
Cloudflare - Issues Editing Bulk Redirects
Sep 10, 15:59 UTCIdentified - The issue has been identified and a fix is being implemented.Sep 10, 15:41 UTCInvestigating - Cloudflare is aware of and investigating an issue preventing users from adding new redirects to existing Bulk Redirects. Traffic processed by existing Bulk Redirects remains unaffected, and this issue is limited to the configuration of these rules. Further details will be provided as we investigate.
Zoom - Service Degradation Affecting Zoom Phone, Zoom Contact Center and Zoom Meetings in Europe
Sep 10, 08:57 PDT Update - We are continuing to monitor for any further issues. Sep 10, 08:53 PDT Monitoring - On 09/10/2026, Between 14:58 UTC to 15:02 UTC, Subset of users may have experienced issues with Zoom Phone and Zoom Contact Center in Europe. This incident has been resolved and the affected services have been restored.
Supabase - Unresponsive Projects
Sep 10, 15:46 UTC Identified - We have identified why projects are becoming unresponsive and are implementing a mitigation. Sep 10, 15:26 UTC Investigating - We are aware of Nano projects becoming unresponsive after a period of time, typically hours. We are investigating.
Sentry - Sentry.io elevated number of 500 errors
Sep 10, 15:25 UTC Identified - During migration to new control silo region we started to observe increased number of 500 errors. Migration procedure was rolled back.
Segment - SSO Login Issues with the Segment App
Sep 10, 07:28 PDT Investigating - We are actively investigating an issue in which some customers are unable to login to the Segment app via SSO.
Cloudflare - DNS Update Delays
Sep 10, 13:58 UTCInvestigating - Cloudflare is investigating delays in propagation of updates to DNS records. More updates to follow shortly.
HashiCorp - Hashicorp Linux packages GPG key rotation
Status: IdentifiedWe are currently updating documentation and package verification guidance following an ongoing GPG key rotation for all HashiCorp Linux packages. The fingerprint currently displayed on our site is outdated and may not match the active signing key. We are actively updating the published fingerprint information and related documentation. We will provide an update once the corrected fingerprint details are available.Affected components APT Repository (Partial...
CISA Flags Exploited Cisco, Citrix, Fortinet Flaws, Sets Sept. 12 Federal Patch Deadline
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added three flaws, each impacting Cisco, Citrix, and Fortinet, to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the patches by September 12, 2026. The vulnerabilities are listed below - CVE-2026-20079 (CVSS score: 10.0) - An authentication
Squarespace - Acuity Scheduling: scheduled maintenance
Sep 10, 06:00 EDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Sep 9, 12:42 EDT Scheduled - Acuity Scheduling will be undergoing maintenance on Thursday, Sept 10 from 6-7am US Eastern time. The admin dashboard, client scheduling page, and other functionality will not be available.Data and existing appointments will remain untouched.
Cloudflare - LED (Saint Petersburg) on 2026-09-10
Sep 10, 10:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 10, 09:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 9, 14:00 UTCScheduled - We will be performing scheduled maintenance in LED (Saint Petersburg) datacenter on 2026-09-10 between 10:00 and 17:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-user...
Cloudflare - DEN (Denver) on 2026-09-10
Sep 10, 08:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 14:40 UTCScheduled - We will be performing scheduled maintenance in DEN (Denver) datacenter on 2026-09-10 between 09:00 and 13:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this...
Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example "sk-1234" Admin Key
Nearly one in ten of the internet-facing LiteLLM servers that Wiz Research scanned in February accepted sk-1234, the example admin key in LiteLLM's own setup guide. LiteLLM is an open-source AI gateway, the software a company puts between its applications and the model providers it pays for. That key is the gateway's administrator credential. Anyone who holds it can read every
Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6
Anthropic on Wednesday disclosed a fourth incident in which its artificial intelligence (AI) model broke into real third-party systems, marking the latest in a growing list of cases that have raised concerns about the security risks posed by autonomous AI agents. The AI company said the incident dates back to January 2026 and involved an early version of Claude Opus 4.6 that breached "
Cloudflare - LAX (Los Angeles) on 2026-09-10
Sep 10, 07:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 10, 06:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 18:50 UTCScheduled - We will be performing scheduled maintenance in LAX (Los Angeles) datacenter on 2026-09-10 between 07:00 and 15:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in ...
Cloudflare - PHX (Phoenix) on 2026-09-10
Sep 10, 06:30 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 10, 05:30 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 9, 10:00 UTCScheduled - We will be performing scheduled maintenance in PHX (Phoenix) datacenter on 2026-09-10 between 06:30 and 14:30 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the ...
Cloudflare - DFW (Dallas) on 2026-09-10
Sep 10, 05:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 9, 16:20 UTCScheduled - We will be performing scheduled maintenance in DFW (Dallas) datacenter on 2026-09-10 between 06:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this...
Amplitude - We are actively investigating an issue with our realtime ingestion pipelines.
Sep 9, 20:21 PDT Monitoring - A fix has been implemented and we are monitoring the results. Sep 9, 20:07 PDT Investigating - We are actively investigating an issue with our realtime ingestion pipelines. No data is lost.
Cloudflare - DUB (Dublin) on 2026-09-10
Sep 10, 01:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 27, 13:20 UTCScheduled - We will be performing scheduled maintenance in DUB (Dublin) datacenter on 2026-09-10 between 02:00 and 05:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this...
Elastic Cloud - Organisation Owner role access to Elastic Cloud Hosted Kibana
Sep 10, 01:30 UTC Identified - We have identified and are in the process of fixing+mitigating a bug in our permissions management UI that is prevents users with the Organisation Owner role and Cloud Console, Elasticsearch, and Kibana access from accessing Kibana in Hosted Deployments.
Slack - Incident: Trouble loading Workspace-level Apps & Workflows settings page is returning blank pages
We've engaged our engineering team to assist in the investigation. We’re continuing to work on understanding the issue. We’ll provide an update in 30 minutes or sooner if more information becomes available.
any advice?
So i am making a github repo with links to bad sites and also we have warnings its so that stuff that come along in the future to help people stay safe from cyberattacks or hacks can blacklist sites that are not good. submitted by /u/Greyguy192 [link] [comments]
Cloudflare - MAA (Chennai) on 2026-09-10
Sep 10, 00:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 9, 23:01 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 03:10 UTCScheduled - We will be performing scheduled maintenance in MAA (Chennai) datacenter on 2026-09-10 between 00:00 and 04:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the ...
Cloudflare - DUB (Dublin) on 2026-09-09
Sep 9, 22:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 27, 13:20 UTCScheduled - We will be performing scheduled maintenance in DUB (Dublin) datacenter between 2026-09-09 23:00 and 2026-09-10 02:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expect...
Optimizely - Upgrade of Product Information Management (PIM), 9-10 September 2026
THIS IS A SCHEDULED EVENT Sep 9, 22:00 UTC - Sep 10, 04:00 UTC Aug 14, 09:39 UTC Scheduled - The Product Information Management (PIM) service will undergo a product upgrade, starting on September 9th at 22:00 (UTC) and ending at 04:00 (UTC) on September 10th (6 hour window, actual downtime is expected to be 30-60 minutes). For an estimated 30-60 minutes during the service window, the PIM application will be stopped and PIM tenants will not be able to log in and perform normal activities. This...
Cloudflare - AMS (Amsterdam) on 2026-09-09
Sep 9, 21:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 1, 08:10 UTCScheduled - We will be performing scheduled maintenance in AMS (Amsterdam) datacenter between 2026-09-09 22:00 and 2026-09-11 04:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are exp...
Snowflake - INC20000211
Sep 9, 21:53 UTC Investigating - Current status: We're investigating an issue with Snowflake Data Cloud. We'll provide an update within 30 minutes.Customer experience: Customers hosted in the specified regions may be unable to access or use multiple core Snowflake services and features. Affected users may be unable to sign in, execute queries, or manage data.Incident start time: 21:27 UTC September 09, 2026
Dropbox - Some customers are unable to access certain website routes and features.
Sep 9, 21:36 UTC Investigating - a number of pages and features are not working for some customers. We’re working to fix the problem as quickly as we can. We’ll share another update shortly.
1Password - Device Trust Service Disruption
Sep 9, 16:53 EDT Monitoring - We have identified the triggering change and have rolled it back. We are monitoring to confirm that this has completely resolved the issue. Sep 9, 16:43 EDT Investigating - We are currently investigating reports of an incident affecting Device Trust. Some customers may experience delays in device posture checks or authentication failures. We will provide an update as soon as we have more information.
Elastic Cloud - Elastic Agent enrollment/check-in failures on 9.5.3 (and 9.4.6) with Fleet remote Elasticsearch output
Sep 9, 20:44 UTC Identified - We've identified a bug in Fleet Server 9.5.3 (also present in 9.4.6) that can cause Elastic Agents to crash-loop and go offline when Fleet pushes a configuration update, including enrollment, a policy change, or a routine revision bump. This only affects policies that use Fleet's remote Elasticsearch output feature.Recommendation: If you use Fleet's remote Elasticsearch output, do not upgrade to 9.5.3 or 9.4.6 until a fixed version is available. If you're already ...
Amplitude - S3 export delivery permissions - Resolved
Sep 9, 13:32 PDT Resolved - Some S3 export files delivered between September 9 at 20:32 UTC and September 10 at 04:01 UTC were missing the bucket-owner-full-control permission, which prevented affected customers from reading them. The issue is resolved. Exports moving forward and outside this timeframe are not impacted. No data was lost.For impacted files in the affected timeframe, set your bucket's Object Ownership to Bucket owner enforced (disable ACLs), if compatible with your bucket access...
Cybersecurity statistics of the week (August 31st - September 6th)
Hi guys, I send out a weekly newsletter with the latest cybersecurity vendor reports and research, and thought you might find it useful, so sharing it here. All the reports and research below were published between August 31st - September 6th. You can get the below into your inbox every week if you want: https://www.cybersecstats.com/cybersecstatsnewsletter/ Application Security Mythos Readiness ...
Cloudflare - Workers Cron Triggers degraded
Sep 9, 19:18 UTCIdentified - The issue has been identified and a fix is being implemented.Sep 9, 19:17 UTCInvestigating - Workers Cron Triggers may not execute or may be delayed in executing. Updates to Workers Cron Triggers may take some time to take effect.
Monday.com - Investigating issues with Vibe app
Sep 9, 18:39 UTC Resolved - This incident has been resolved. Sep 9, 18:36 UTC Monitoring - A fix has been implemented and we are monitoring the results. Sep 9, 18:32 UTC Identified - The issue has been identified and a fix is being implemented. Sep 9, 18:21 UTC Investigating - We are currently experiencing issues related to vibe applications. Our dedicated team is working to resolve this as quickly as possible
Cloudflare - Increased HTTP Errors
Sep 9, 15:30 UTCResolved - Between 16:40 and 16:54 UTC, Cloudflare experienced an elevated rate of HTTP errors affecting traffic passing through Philadelphia (PHL). The issue has been fully identified and resolved, and impact to the PHL location is completely mitigated. All systems are operating normally.
Cloudflare - Cloudflare Workers AI increased errors
Sep 9, 14:25 UTCInvestigating - Cloudflare is aware of, and investigating, increased Workers AI errors when attempting to use GLM 5.3. Updates to follow.
Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create "stolen keys" that grant illicit access to tools from model providers like Google, Anthropic, and others. Information stealers like Lumma Stealer or Vidar are equipped to harvest a wide range of data from compromised systems. This can include credential, session tokens, and API
CISA Adds Four Known Exploited Vulnerabilities to Catalog
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2025-25249 Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability CVE-2026-19490 Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerability CVE-2026-87491 Google Chromium V8 Out of Bounds Write Vulnerability CVE-202...
DigitalOcean - Power Degradation impacting GPU Performance in ATL1
Sep 9, 10:47 UTC Investigating - We are investigating a power issue affecting part of our ATL1 datacenter. Redundant power systems are keeping servers online, and we have not observed any server outages.However, available power capacity is reduced, which may cause degraded performance for some GPU workloads, particularly during periods of high utilization.Our datacenter and infrastructure teams are working to restore full power redundancy. We will provide an update as more information becomes ...
Fortinet Privileged Access Agent: Any Site Could Control Your Proxy and Watch Your Tab
TL;DR. The FortiPAM Chrome extension (1M+ users), used for Privileged Access Management, allowed any site to set the browser's proxy for the session, alongside allowing any site to create a new tab and send screen recordings of it to an attacker's server. That makes for trivial phishing attacks which only require the user to view something sensitive in the attacker-opened tab. CVSS 9.1 | CVE-2026-...
Cloudflare - LUN (Lusaka) on 2026-09-09
Sep 9, 08:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 10:41 UTCScheduled - We will be performing scheduled maintenance in LUN (Lusaka) datacenter on 2026-09-09 between 09:00 and 16:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this...
Supabase - Brief connection disruptions in us-east-1 (N. Virginia)
Sep 9, 08:47 UTC Resolved - Between 05:50–06:05 UTC some customer using Supavisor in us-east-1 may have experienced brief dropped connections or connection disruptions. This issue was caused by an unexpected restart of Supavisor instances in the affected cluster.We apologize for any disruption caused.
Cloudflare - YYC (Calgary) on 2026-09-09
Sep 9, 06:30 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 9, 05:30 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 11:31 UTCScheduled - We will be performing scheduled maintenance in YYC (Calgary) datacenter on 2026-09-09 between 06:30 and 12:30 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the ...
Cloudflare - DFW (Dallas) on 2026-09-09
Sep 9, 06:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 9, 05:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 15:40 UTCScheduled - We will be performing scheduled maintenance in DFW (Dallas) datacenter on 2026-09-09 between 06:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the a...
Cloudflare - IAD (Ashburn) on 2026-09-09
Sep 9, 04:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 14:40 UTCScheduled - We will be performing scheduled maintenance in IAD (Ashburn) datacenter on 2026-09-09 between 05:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting thi...
Zoom - Service Degradation Affecting Zoom Services
Sep 8, 18:09 PDT Monitoring - The service degradation affecting Zoom Phone, Contact Center, Meetings has been successfully resolved. Our team will continue to monitor the situation closely and keep you informed of any further developments.
Cloudflare - MAA (Chennai) on 2026-09-09
Sep 9, 00:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 8, 23:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 7, 14:00 UTCScheduled - We will be performing scheduled maintenance in MAA (Chennai) datacenter on 2026-09-09 between 00:00 and 04:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the ...
[CISA KEV] CVE-2025-25249: Fortinet Multiple Products Heap-based Buffer Overflow Vulnerability
Product: Multiple Products by Fortinet Description: Fortinet FortiOS, FortiSwitchManager, and FortiSASE contain a heap-based buffer overflow vulnerability that allows an attacker to execute unauthorized code or commands via specially crafted packets. Required Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
Cloudflare - AMS (Amsterdam) on 2026-09-08
Sep 8, 21:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 31, 04:00 UTCScheduled - We will be performing scheduled maintenance in AMS (Amsterdam) datacenter between 2026-09-08 22:00 and 2026-09-09 08:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are exp...
Cloudflare - Intermittent issues accessing the Dashboard on FireFox and Safari
Sep 8, 19:39 UTCInvestigating - Cloudflare is investigating intermittent issues accessing the Cloudflare Dashboard from Firefox and Safari browsers.
Cloudflare - PHL (Philadelphia) on 2026-09-08
Sep 8, 18:50 UTCScheduled - We will be performing scheduled maintenance in PHL (Philadelphia) datacenter between 2026-09-08 19:00 and 2026-09-09 17:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this traffic to fail over elsewhere during this maintenance window as...
Netlify - Elevated Errors and Latency in IAD Region
Sep 8, 18:28 UTC Resolved - We experienced increased errors and latency in the IAD region on our regular network between 15:50 and 17:45 UTC. This issue has been resolved.
Redis Cryptomining Botnet Compromised 3,562 Servers, Exposed by the Operator's Own Files
An operator running a Redis cryptomining botnet left their entire working directory exposed on a server. Instead of the usual single payload, the whole toolkit was there: exploit code, raw campaign logs, a bundled Python runtime, even two exported Windows registry hives. That let us read their own campaign logs instead of guessing: 3,562 distinct Redis servers compromised, out of 12,966 tar...
Cloudflare - Errors in Unified Billing for some requests OpenAI models
Sep 8, 18:00 UTCResolved - Customers using Unified Billing may have seen a low number of requests to OpenAI models result in errors from 18:01 to 18:34UTC on 8th of September 2026
🚨 Redis Cryptomining Botnet Compromised 3,562 Servers, Exposed by the Operator's Own Files
Researchers indexed an open directory on 188.245.99.156 (Hetzner) that held an operator's full Redis cryptomining toolkit, not just a payload. 147 files in total: Python exploit source, JSON campaign logs, a bundled portable Python 3.11 runtime, and two exported Windows registry hives. Because the raw campaign logs were sitting there, the numbers come from the operator's own per-host records, not ...
AIs as Modern Genies
This essay was written with Barath Raghavan, and originally appeared in Lawfare. In April, an artificial intelligence (AI) agent conducting a routine task at a company hit a snag, tried to solve it, and soon ended up deleting the company’s database along with all of its backups. In July, OpenAI asked an unreleased AI model to attempt a hacking test. Instead of staying in the isolated box the devel...
HubSpot - Some HubSpot tools may be unavailable for some users
Sep 8, 12:33 EDT Monitoring - We've addressed the issue that caused our CRM to be partially unavailable in North America since 11:46 AM EDT (UTC -04:00). We're monitoring performance closely to ensure all tools recover properly. Sep 8, 12:21 EDT Investigating - We are investigating an issue impacting some HubSpot tools. We will provide an update when we have more information.
Slim Spider Steals Crypto Custody Secrets From Brazilian Financial Institution
A previously undocumented financially motivated threat actor has been linked to attacks targeting Brazilian financial institutions since at least March 2026. Cybersecurity company CrowdStrike is tracking the Brazil-based activity cluster under the name Slim Spider. "The adversary demonstrates deep operational knowledge of Brazilian financial infrastructure, including the instant payment
HubSpot - Some HubSpot tools may be unavailable for some users
Sep 8, 11:57 EDT Investigating - We are investigating an issue impacting some HubSpot tools. We will provide an update when we have more information.
Squarespace - Acuity Scheduling / Client Scheduling Page showing "SORRY" error
Sep 8, 11:28 EDT Resolved - Some customers are seeing a "SORRY" page when accessing their Client Scheduling Page.
Cloudflare - CBR (Canberra) on 2026-09-08
Sep 8, 14:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 4, 20:21 UTCScheduled - We will be performing scheduled maintenance in CBR (Canberra) datacenter on 2026-09-08 between 15:00 and 18:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting th...
Cloudflare - FUK (Fukuoka) on 2026-09-08
Sep 8, 14:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 4, 20:31 UTCScheduled - We will be performing scheduled maintenance in FUK (Fukuoka) datacenter on 2026-09-08 between 15:00 and 18:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting thi...
China-Based Artificial Intelligence Companies Conducting Industrial-Scale Distillation Campaigns Against U.S. AI Companies
Executive summary China-based artificial intelligence (AI) companies are conducting systematic extraction of proprietary functionalities and capabilities of U.S. AI companies’ models through industrial-scale knowledge distillation campaigns that form the core—not merely a supplement—of their AI development strategy. While “distillation” is recognized as a legitimate and useful technique in AI rese...
CISA Adds Four Known Exploited Vulnerabilities to Catalog
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-75650 Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability CVE-2026-81963 Microsoft Windows Link Following Vulnerability CVE-2026-85880 Microsoft Windows Heap-Based Buffer Overflow Vulnerabili...
Stealing AI Reasoning Traces
Interesting research: “Stealing Reasoning Traces from Proprietary LLM APIs“: Abstract: Leading large language model providers now conceal their models’ step-by-step reasoning, or chain-of-thought, to protect intellectual property and limit information leakage. Rather than storing these traces server-side, providers return them to the client as blocks of encrypted text, which the client passes back...
Cloudflare - PHX (Phoenix) on 2026-09-08
Sep 6, 20:10 UTCScheduled - We will be performing scheduled maintenance in PHX (Phoenix) datacenter on 2026-09-08 between 10:00 and 13:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this traffic to fail over elsewhere during this maintenance window as network inte...
Adobe Commerce Zero-Day Exploited to Backdoor Online Stores
submitted by /u/sunychoudhary [link] [comments]
Adobe Patches Magento Zero-Day Exploited to Deploy Rust Backdoor and PHP Web Shell
Adobe on Monday released security patches to address a maximum-severity flaw impacting Adobe Commerce and Magento Open Source that has come under active exploitation in the wild. The vulnerability, now tracked as CVE-2026-75650 (CVSS score: 10.0), has been codenamed StyleSmuggler by Sansec, which discovered zero-day exploitation starting September 4, 2026. "This update resolves a critical
Cloudflare - TXL (Berlin) on 2026-09-08
Sep 8, 07:50 UTCScheduled - We will be performing scheduled maintenance in TXL (Berlin) datacenter on 2026-09-08 between 08:00 and 17:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this traffic to fail over elsewhere during this maintenance window as network inter...
Cloudflare - DFW (Dallas) on 2026-09-08
Sep 8, 07:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 7, 16:10 UTCScheduled - We will be performing scheduled maintenance in DFW (Dallas) datacenter on 2026-09-08 between 08:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this...
Optimizely - CMP Analytics Data Not Displaying
Sep 8, 07:34 UTC Identified - Customers using the CMP Analytics module may notice that analytics data for the past 4+ days is not visible in their dashboards. This is a display issue only — all data has been safely recorded and will be backfilled once the fix is deployed.
Cloudflare - PHL (Philadelphia) on 2026-09-08
Sep 8, 06:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 8, 05:01 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 8, 05:01 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Sep 7, 23:40 UTCScheduled - We will be performing scheduled maintenance in PHL (Philadelphia) datacenter on 2026-09-08 between 06:00 and 12:00 UTC. Traffic might be re-routed from this location, hence there is a possibility ...
I removed Qwen3-4B's refusal guardrails (no fine-tuning, runs in Ollama)
During my research into model alignment, I noticed how frequently safety guardrails cause false positive refusals on legitimate cybersecurity tasks. To address this, I applied directional abliteration to Qwen3-4B. By locating the specific internal activation pattern responsible for refusal and removing it directly from the model weights, I neutralised the refusal response entirely. [model : https:...
Cloudflare - Cache Reserve Issue in Paris
Sep 8, 03:25 UTCInvestigating - Cloudflare is investigating an issue with Cache Reserve errors in Paris (CDG). Customers may see an elevated request volume to origin servers in the forementioned region. We are working to analyse and mitigate this problem. More updates to follow shortly.
Cloudflare - Cloudflare Account Member Invite Issue
Sep 8, 00:35 UTCInvestigating - Cloudflare customers may experience an issue when invited to a new account. An error message is displayed, "Invaild redirect_url". A workaround can be used: * Invited members create an account directly from the dashboard (not using the email link) * Admin resends invitation * Invited member clicks new link and signs into their Cloudflare account * Accepts invitation to join without issue We are continuing to investigate this issue.
[CISA KEV] CVE-2026-75650: Adobe Commerce and Magento Improper Neutralization of Special Elements Used in a Template Engine Vulnerability
Product: Commerce and Magento by Adobe Description: Adobe Commerce and Magento Open Source contain an improper neutralization of special elements used in a template engine vulnerability that could allow an attacker to execute arbitrary code. Required Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
Xero - AU: Customers are experiencing errors when using Activity Statement Prefill
Sep 7, 23:46 UTC Identified - We’re aware that some customers are experiencing errors when using Activity Statement Prefill. We’re working with the ATO to identify the cause and will provide an update when we have more information.
Cloudflare - AMS (Amsterdam) on 2026-09-07
Sep 7, 22:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Sep 7, 21:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 31, 04:00 UTCScheduled - We will be performing scheduled maintenance in AMS (Amsterdam) datacenter between 2026-09-07 22:00 and 2026-09-08 08:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-use...
Sumo Logic - Problem with Cloud SIEM Processing in Europe 1 (EU)
Sep 7, 20:56 UTC Resolved - We are no longer seeing issues with Cloud SIEM Processing and normal operation has been restored at this time. Sep 7, 20:51 UTC Monitoring - We have implemented a fix for the issue affecting Cloud SIEM Processing. The symptoms are: latency in processing and displaying security data. We are currently monitoring the results. Sep 7, 20:42 UTC Identified - We have identified the source of the issue affecting Cloud SIEM Processing. The symptoms are: latency in pro...
Cloudflare - Issues rendering route configuration table in Networking > Routes UI
Sep 7, 15:52 UTCInvestigating - We are continuing to investigate this issue.Sep 7, 15:32 UTCInvestigating - Cloudflare is investigating an issue within the Dashboard UI (Networking > Routes) where the route configuration table is failing to display destination IP addresses/hostnames, connector names, and route descriptions correctly. Actual packet routing, network connectivity across the Cloudflare edge, and API-based route management remain fully operational and unaffected. Our engineering ...
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
Threat hunters have disclosed details of a widespread data theft and extortion threat cluster that's targeting Microsoft 365 and other software-as-a-service (SaaS) offerings through information technology (IT) help desk vishing, adversary-in-the-middle (AitM) token theft, and residential-proxy sign-ins. The activity, which mainly singles out directors, vice presidents, and other executive staff
Xero - UK: MTD ITSA - Some customers receiving errors
Sep 7, 15:46 UTC Identified - We have identified the cause of the issue causing some UK customers trying to submit filings via MTD ITSA are receiving error messages. Our team are working on a fix for this issue. Sep 7, 15:30 UTC Investigating - We are aware some UK customers trying to submit filings via MTD ITSA are receiving error messages. Our team is investigating this with urgency.
Wix - We are investigating a potential issue with elements not appearing of Wix Harmony Live Sites
Sep 7, 15:26 UTC Investigating - We are aware that some users are experiencing issues with elements missing on Wix Harmony Live Sites and are currently investigating it.
Cloudflare - Browser Isolation Session Initialization Failures
Sep 7, 14:59 UTCIdentified - The issue has been identified and a fix is being implemented.Sep 7, 14:25 UTCInvestigating - We are investigating reports of customers encountering a white screen when attempting to access websites behind Browser Isolation. This is caused by Browser Isolation session initialization failing to complete. Our engineering team is actively working to identify and resolve the root cause.
MAL-2026-16036: Redis Labs Vulnerability
Malicious code in redis-type-intel (npm)