Posts 2026 09 23 Daily Hunt Feed - 2026-09-23
Post
Cancel

Daily Hunt Feed - 2026-09-23

Threat Hunt Feed (2026-09-23)

Hacker News: Best

  • Python Workers are now generally available — Mon, 21 Sep 2026 13:38:19 +0000
    • Matched TTPs: Serverless (T1584.007), Artificial Intelligence (T1588.007), JavaScript (T1059.007), DNS (T1071.004), Malware (T1588.001), Hardware (T1592.001), Databases (T1213.006), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Server (T1584.004), Proxy (T1090), Phishing (T1566), Lua (T1059.011), Firmware (T1592.003), Social Media (T1593.001), Python (T1059.006), Remote Desktop Protocol (T1021.001), At (T1053.002), Compression (T1027.015)

BleepingComputer

  • Chinese hackers exploit WordPress, Zyxel flaws to steal govt data — Tue, 22 Sep 2026 16:35:24 -0400
    • Matched TTPs: Malware (T1588.001), Hardware (T1592.001), Databases (T1213.006), Vulnerabilities (T1588.006), Server (T1584.004), Tool (T1588.002), Software (T1592.002), Exploits (T1588.005), Credentials (T1589.001), Impersonation (T1656), At (T1053.002), Local Accounts (T1078.003)
  • New ClosedQuorum Windows malware uses AI for attack decisions — Tue, 22 Sep 2026 14:04:39 -0400
    • Matched TTPs: Artificial Intelligence (T1588.007), Malware (T1588.001), Hardware (T1592.001), Server (T1584.004), Tool (T1588.002), Process Hollowing (T1055.012), Software (T1592.002), Credentials (T1589.001), At (T1053.002)
  • Reducing shadow IT visibility gaps with Wazuh — Tue, 22 Sep 2026 13:17:41 -0400
    • Matched TTPs: Network Devices (T1584.008), Malware (T1588.001), Hardware (T1592.001), Browser Extensions (T1176.001), Vulnerabilities (T1588.006), SSH (T1021.004), Remote Access Tools (T1219), Server (T1584.004), Tool (T1588.002), Software (T1592.002)
  • Check Point warns of Management Server zero-day exploited in attacks — Tue, 22 Sep 2026 12:32:47 -0400
    • Matched TTPs: IP Addresses (T1590.005), Malware (T1588.001), Hardware (T1592.001), Server (T1584.004), Tool (T1588.002), Software (T1592.002), At (T1053.002)
  • EvilTokens PhaaS disrupted after compromising 12,000 Microsoft accounts — Tue, 22 Sep 2026 11:00:00 -0400
    • Matched TTPs: Malware (T1588.001), Hardware (T1592.001), Domains (T1584.001), Server (T1584.004), Compromise Accounts (T1586), Tool (T1588.002), Phishing (T1566), Software (T1592.002), At (T1053.002)

Darkreading

The Hacker News

This post is licensed under CC BY 4.0 by the author.