ITSECURITY.GURU

Daily brief — Friday, 11 September 2026

IT Security · 2026-09-11

ITSECURITY.GURU

Daily brief

Friday, 11 September 2026

Three actively exploited flaws hit CISA's KEV list — Chrome and Windows Server both named

CISA lists one Google Chrome flaw and two Microsoft Windows Server flaws as known to be exploited, while SecurityWeek reports a new zero-day exploit that provides full System privileges on Windows machines running the September 2026 patches and targets Microsoft Defender.

The IT Security Desk


Elsewhere

Getting a stranger’s phone kicked off the cellular network costs a few dollars
Help Net Security

Companies may be measuring phishing resilience the wrong way
Help Net Security

AI is changing what Salesforce security needs to govern
Help Net Security

Ubuntu 24.04.5 LTS release patches security bugs across ten flavors
Help Net Security

New infosec products of the week: September 11, 2026
Help Net Security

Latest Anthropic horror story chills with tales of kamikaze drone swarms and bioweapons research
The Register

Treasury urges banks to file cyber scam reports, noting nearly $13 billion in losses since 2023
The Record

September Windows Server updates break Remote Desktop Services
BleepingComputer

Mandiant Founder Kevin Mandia Joins Amazon Board
SecurityWeek

CISA Adds Two Known Exploited Vulnerabilities to Catalog
CISA

Watch out: Apple timepiece can grab snippets of conversation without both speakers' consent
The Register


You are receiving this because you subscribed at itsecurity.guru. Headlines from other outlets belong to them and link back to them.

All editions from IT Security

More from IT Security