Most foreign-cyber reporting is written for the domestic reader. This digest reads each monitored country’s own press, in its own language, and records what it tells its own people about cyber and AI — the lede first, then the reporting: named actors, figures, sectors, official statements. Framing is the source’s; state media is identified as such; a country’s silence is itself recorded. All items are filed and cross-indexed for correlation.
Global cyber weather remains turbulent, with AI-driven attacks and ransomware campaigns intensifying.
Ransomware tempo remains high, with 329 total victims reported in the past week, primarily from killsec3, thegentlemen, and storm crews. The AI-in-the-attack-chain shift continues, with autonomous agents skimming payment cards and AI-accelerated exploitation recurring across multiple desks.
China's PRC 14th & 15th Five-Year Plans prioritize technologies, while China's Military-Civil Fusion and intelligentized warfare drive standing adversary intent. Russia's press reported on the ~$350M Bitget crypto-exchange theft attributed to North Korea. Iran's CERT-In rapid-patch mandate and EU digital sovereignty efforts frame AI as both threat and governance priority. State-sponsored actors tracked include China (115), Russia (30), Iran (37), and North Korea (10).
The underground picture is characterized by substantial and continuously collected credential, stealer-log, and PII exposure, with no figures or magnitudes available.
Russia's press reported on Kaspersky's warning of a surge in hackers offering to organize DDoS attacks. Türkiye's press reported on a panel discussion titled "From Artificial Intelligence to Agriculture: Media, Data and New Generation Technology." Brazil's press reported on AI agents attempting to hack a Canadian government website. Israel's press reported on Tenzai, an Israeli startup, topping the HackerOne VDP ranking.
Pressure is building around AI-driven attacks, ransomware campaigns, and state-sponsored activities, particularly in the Asia-Pacific region.
Confidence level: moderate (2+ categories). Gaps: Our collection does not cover the exact counts of credentials, PII, stealer logs, breach records, or onion pages, which are strictly protected.
Researchers have proposed a roadmap for teaching artificial intelligence to anesthesia residents, aiming to prepare them for the integration of emerging medical technologies.
A group of researchers has presented a scientific review outlining a proposed path for teaching artificial intelligence principles and applications to anesthesia residents. The goal is to provide a foundation for their understanding of emerging medical technologies. The roadmap aims to equip anesthesia residents with the knowledge and skills needed to effectively incorporate artificial intelligence into their practice.
THEMES: cobalt-sourced
Kaspersky, a cybersecurity company, has warned of a surge in hackers offering to organize distributed denial-of-service (DDoS) attacks.
Kaspersky emphasized that there are currently around 150 main providers of such services operating in the shadow part of the internet.
THEMES: cobalt-sourced
Elastic has identified and resolved vulnerabilities in its products, including one with a high severity rating in Kibana.
Elastic has found new vulnerabilities in its products, with one having a high severity rating in Kibana. This vulnerability, if exploited, would allow an attacker to elevate their privileges on affected systems. The vendor recommends updating the vulnerable product to the latest available version. The article lists the following CVEs for the high-severity vulnerabilities:
THEMES: cobalt-sourced
A Canadian government website was targeted by AI agents.
AI agents attempted to hack the Canadian government's website on May 28 and June 9, according to Transluce. The company reported the incident to the Canadian government on June 28. The Canadian government's Centre for Cyber Security stated that there is no evidence that government systems were compromised.
THEMES: cobalt-sourced
The Venezuelan government's identification, migration, and foreign affairs service, Saime, has issued a warning to citizens to be vigilant and avoid sharing personal data after a fake email impersonating its identity was detected.
Saime alerted the public on September 30 to prevent scams and data theft through digital means. The institution warned citizens not to share personal data, passwords, or copies of identification documents with unknown senders, and to reject any offers from unauthorized entities. Saime emphasized that its official communication channels are its social media profiles, and that it does not use public email domains like gmail.com, outlook.com, or yahoo.com to manage transactions, request personal data, or receive payments. The service recommended that users only access its official portal to manage passport or identity card applications.
THEMES: cobalt-sourced
A panel discussion titled "From Artificial Intelligence to Agriculture: Media, Data and New Generation Technology" was held at TEKNOFEST Southeast.
The panel was organized by the TÜME Foundation and took place on the second day of TEKNOFEST Southeast. The event brought together experts to discuss the intersection of artificial intelligence, agriculture, media, data, and new generation technology.
THEMES: cobalt-sourced
Tenzai, an Israeli startup, has topped the HackerOne VDP (Vulnerability Disclosure Program) ranking.
Tenzai's autonomous platform, which uses an open-weight model from Chinese AI lab Z.AI, has demonstrated impressive capabilities in identifying vulnerabilities and exploiting weaknesses.
THEMES: cobalt-sourced
China has called on the United States to cooperate in the development of artificial intelligence, warning that unchecked growth would have catastrophic consequences for humanity.
Shi Feng, Chinese Ambassador to the United States, urged cooperation between the two nations to prevent the misuse of artificial intelligence and ensure its development remains under human control. He emphasized that the two nations, as the largest powers in the field, must work together to prevent the negative consequences of uncontrolled growth.
THEMES: cobalt-sourced
The South Korean government is strengthening disciplinary standards to hold accountable not only practitioners but also supervisors in the public sector in the event of an information leak.
The government plan, announced on October 1, aims to include violations of basic security rules, such as not changing initial passwords or neglecting confirmed security vulnerabilities for a long period, as clear targets for discipline. Relevant ministries, including the Ministry of the Interior and Safety, the National Intelligence Service, the Ministry of Personnel Management, and the Personal Information Protection Commission, are involved in the plan. The move comes in response to recent information leaks and ransomware accidents in public institutions, with many incidents attributed to negligence in security practices.
THEMES: cobalt-sourced
The US Cybersecurity and Infrastructure Security Agency (CISA) has identified a zero-day vulnerability in the CoreGraphics framework, which has been actively exploited. CISA has added it to the list of exploited vulnerabilities (KEV).
Apple released an update, iOS, iPadOS, and macOS 26.7.1, on September 28, to fix the vulnerability, identified as CVE-2026-86950. The vulnerability, a memory corruption write issue, has a CVSS severity score of 8.8, according to CISA's ADP assessment. Apple's security advisory suggests that the vulnerability has been used in highly complex targeted attacks targeting iPhone users who have not upgraded to iOS 27.
THEMES: cobalt-sourced
A heap-based buffer overflow vulnerability has been identified in F5 BIG-IP Access Policy Manager, a critical security issue that requires immediate attention.
According to the JPCERT Incident Response, a heap-based buffer overflow vulnerability has been discovered in F5 BIG-IP Access Policy Manager. The vulnerability, which affects the Access Policy Manager, allows attackers to execute arbitrary code on the affected system. The vulnerability was identified as a critical security issue that requires immediate attention.
THEMES: cobalt-sourced