<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>DEV Community: BeyondMachines</title>
    <description>The latest articles on DEV Community by BeyondMachines (@bsp_beyondmachines).</description>
    <link>https://dev.to/bsp_beyondmachines</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.us-east-2.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F2445503%2F3faf5e64-542b-44d9-9bb9-e5bdaa993b59.png</url>
      <title>DEV Community: BeyondMachines</title>
      <link>https://dev.to/bsp_beyondmachines</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://dev.to/feed/bsp_beyondmachines"/>
    <language>en</language>
    <item>
      <title>UCLA Health Reports Data Breach Affecting 6,050 Individuals</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Wed, 30 Sep 2026 13:01:14 +0000</pubDate>
      <link>https://dev.to/beyondmachines/ucla-health-reports-data-breach-affecting-6050-individuals-2bpf</link>
      <guid>https://dev.to/beyondmachines/ucla-health-reports-data-breach-affecting-6050-individuals-2bpf</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;UCLA Health reported a data breach affecting 6,050 individuals after attackers gained access to electronic medical records.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/ucla-health-reports-data-breach-affecting-6050-individuals-y-q-f-v-b/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Gallagher Transport International Reports Data Breach Following Ransomware Attack</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Wed, 30 Sep 2026 12:01:14 +0000</pubDate>
      <link>https://dev.to/beyondmachines/gallagher-transport-international-reports-data-breach-following-ransomware-attack-15k0</link>
      <guid>https://dev.to/beyondmachines/gallagher-transport-international-reports-data-breach-following-ransomware-attack-15k0</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Gallagher Transport International suffered a ransomware attack by the Sinobi group that compromised the personal and financial data of over 1,100 individuals.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/gallagher-transport-international-reports-data-breach-following-ransomware-attack-d-x-y-l-2/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Apple Patches Actively Exploited Zero-Day in iOS 26, iPadOS 26 and macOS</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Wed, 30 Sep 2026 11:01:13 +0000</pubDate>
      <link>https://dev.to/beyondmachines/apple-patches-actively-exploited-zero-day-in-ios-26-ipados-26-and-macos-2978</link>
      <guid>https://dev.to/beyondmachines/apple-patches-actively-exploited-zero-day-in-ios-26-ipados-26-and-macos-2978</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Apple patched a zero-click vulnerability (CVE-2026-86950) in iOS 26 and macOS 26 that allow remote code execution and data theft, and has been exploited&lt;/p&gt;

&lt;h3&gt;
  
  
  Take Action:
&lt;/h3&gt;

&lt;p&gt;If you use an iPhone, iPad or Mac, update it right now to iOS/iPadOS 26.7.1, macOS Tahoe 26.7.1 or macOS Sequoia 15.8.1. Alterantively, where possible, move to iOS 27. Attackers are already using this flaw to take over devices and steal personal data. If you're a likely target, such as a journalist, activist or executive, consider turning on Lockdown Mode for extra protection.&lt;/p&gt;




&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/apple-patches-actively-exploited-zero-day-in-ios-26-ipados-26-and-macos-p-i-5-p-7/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Kiteworks Patches Critical Vulnerability Following Federal Threat Warning</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Wed, 30 Sep 2026 10:01:13 +0000</pubDate>
      <link>https://dev.to/beyondmachines/kiteworks-patches-critical-vulnerability-following-federal-threat-warning-3an4</link>
      <guid>https://dev.to/beyondmachines/kiteworks-patches-critical-vulnerability-following-federal-threat-warning-3an4</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Kiteworks initiated a global system shutdown after federal authorities warned of an imminent cyberattack, leading to the discovery and patching of a critical vulnerability in its Advanced Forms feature.&lt;/p&gt;

&lt;h3&gt;
  
  
  Take Action:
&lt;/h3&gt;

&lt;p&gt;If you use Kiteworks, you can bring your systems back online after the advisory, but make sure they are updated to the latest release (9.5.1). If you run the Advanced Forms feature on your own servers, contact Kiteworks Support right away for the fix, and review access logs from the past few weeks for any unusual file downloads.&lt;/p&gt;




&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/kiteworks-patches-critical-vulnerability-following-federal-threat-warning-0-p-q-e-7/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Japanese Tokyo Metro and Times Car Hit by Cluster of Cyber Attacks</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Wed, 30 Sep 2026 09:01:14 +0000</pubDate>
      <link>https://dev.to/beyondmachines/japanese-tokyo-metro-and-times-car-hit-by-cluster-of-cyber-attacks-54m</link>
      <guid>https://dev.to/beyondmachines/japanese-tokyo-metro-and-times-car-hit-by-cluster-of-cyber-attacks-54m</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Two Japanese transport operators suffered a series of cyber attacks, including a breach of loyalty systems of Tokyo Metro and a massive data breach at Times Car affecting 6.6 million accounts. The railway operations are secure due to effective network segmentation.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/japanese-tokyo-metro-and-times-car-hit-by-cluster-of-cyber-attacks-f-5-w-z-k/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>WatchGuard Patches API Flaws in Wireless Access Points</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Wed, 30 Sep 2026 08:01:13 +0000</pubDate>
      <link>https://dev.to/beyondmachines/watchguard-patches-api-flaws-in-wireless-access-points-38e1</link>
      <guid>https://dev.to/beyondmachines/watchguard-patches-api-flaws-in-wireless-access-points-38e1</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;WatchGuard Technologies patched three vulnerabilities in its wireless access points, including two critical flaws that allow unauthenticated attackers to execute commands and bypass access controls.&lt;/p&gt;

&lt;h3&gt;
  
  
  Take Action:
&lt;/h3&gt;

&lt;p&gt;If you use WatchGuard wireless access points, make sure their management interfaces aren't reachable from the internet and can only be accessed from trusted admin networks. Update every access point to firmware 3.4.8 right away, and if a device was exposed, treat it as possibly compromised and factory reset it and rotate any credentials that were related to the device.&lt;/p&gt;




&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/watchguard-patches-api-flaws-in-wireless-access-points-4-q-i-x-2/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>WatchGuard Patches Critical Authentication Bypass and Command Injection Flaws in Access Points</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Tue, 29 Sep 2026 14:01:13 +0000</pubDate>
      <link>https://dev.to/beyondmachines/watchguard-patches-critical-authentication-bypass-and-command-injection-flaws-in-access-points-460d</link>
      <guid>https://dev.to/beyondmachines/watchguard-patches-critical-authentication-bypass-and-command-injection-flaws-in-access-points-460d</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;WatchGuard patched three vulnerabilities in its Access Point firmware, including two critical flaws that can be exploited by attackers with network access to affected devices. The vulnerabilities can allow authentication bypass and arbitrary command execution.&lt;/p&gt;

&lt;h3&gt;
  
  
  Take Action:
&lt;/h3&gt;

&lt;p&gt;Update affected WatchGuard Access Points to firmware version 3.4.8 or later. Until the update is applied, limit network access to affected access point services to trusted networks, as the two critical vulnerabilities can be exploited without authentication.&lt;/p&gt;




&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/watchguard-patches-critical-authentication-bypass-and-command-injection-flaws-in-access-points-7-0-t-3-k/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Modoc Medical Center Data Breach Exposes Patient Information Following WorldLeaks Claim</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Tue, 29 Sep 2026 12:01:13 +0000</pubDate>
      <link>https://dev.to/beyondmachines/modoc-medical-center-data-breach-exposes-patient-information-following-worldleaks-claim-4lhk</link>
      <guid>https://dev.to/beyondmachines/modoc-medical-center-data-breach-exposes-patient-information-following-worldleaks-claim-4lhk</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Modoc Medical Center disclosed a data breach after an unauthorized actor accessed its network and downloaded files containing personal and protected health information. The WorldLeaks extortion group claimed responsibility for the incident. The organization is offering affected individuals 12 or 24 months of credit monitoring and identity restoration services.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/modoc-medical-center-data-breach-exposes-patient-information-following-worldleaks-claim-f-5-7-l-v/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Vista Del Mar Child and Family Services Reports Data Breach Involving Personal and Health Information</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Tue, 29 Sep 2026 11:01:14 +0000</pubDate>
      <link>https://dev.to/beyondmachines/vista-del-mar-child-and-family-services-reports-data-breach-involving-personal-and-health-2im7</link>
      <guid>https://dev.to/beyondmachines/vista-del-mar-child-and-family-services-reports-data-breach-involving-personal-and-health-2im7</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Vista Del Mar Child and Family Services disclosed a data breach after an unauthorized actor accessed systems containing personal and protected health information. The organization took its network offline, engaged cybersecurity experts, and is reviewing affected files to identify and notify potentially impacted individuals.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/vista-del-mar-child-and-family-services-reports-data-breach-involving-personal-and-health-information-c-o-8-r-w/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Park Place Behavioral Healthcare Data Breach Exposes Personal, Health, and Financial Information</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Tue, 29 Sep 2026 10:01:14 +0000</pubDate>
      <link>https://dev.to/beyondmachines/park-place-behavioral-healthcare-data-breach-exposes-personal-health-and-financial-information-n2p</link>
      <guid>https://dev.to/beyondmachines/park-place-behavioral-healthcare-data-breach-exposes-personal-health-and-financial-information-n2p</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Park Place Behavioral Healthcare disclosed a data breach after an unauthorized party accessed its systems and copied files containing personal, health, and financial information. The organization reset account credentials and strengthened remote access controls. Park Place Behavioral Healthcare is offering complimentary credit monitoring and identity theft restoration services to affected individuals.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/park-place-behavioral-healthcare-data-breach-exposes-personal-health-and-financial-information-e-4-z-n-o/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>Millstone Medical Outsourcing Data Breach Exposes Health and Financial Information</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Tue, 29 Sep 2026 09:01:15 +0000</pubDate>
      <link>https://dev.to/beyondmachines/millstone-medical-outsourcing-data-breach-exposes-health-and-financial-information-3j36</link>
      <guid>https://dev.to/beyondmachines/millstone-medical-outsourcing-data-breach-exposes-health-and-financial-information-3j36</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;Millstone Medical Outsourcing disclosed a data breach involving unauthorized access to sensitive personal, financial, and health information between December 15 and 19, 2025. The company is offering 24 months of complimentary credit monitoring and identity protection.&lt;/p&gt;

&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/millstone-medical-outsourcing-data-breach-exposes-health-and-financial-information-v-7-4-a-t/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
    <item>
      <title>State of (in)security - Week 39, 2026</title>
      <dc:creator>BeyondMachines</dc:creator>
      <pubDate>Mon, 28 Sep 2026 17:01:13 +0000</pubDate>
      <link>https://dev.to/beyondmachines/state-of-insecurity-week-39-2026-5e4i</link>
      <guid>https://dev.to/beyondmachines/state-of-insecurity-week-39-2026-5e4i</guid>
      <description>&lt;h3&gt;
  
  
  Summary
&lt;/h3&gt;

&lt;p&gt;In week 39 of 2026 (Sept. 21–28), security events declined week over week to 16 advisories and 23 incidents affecting about 13.2 million known individuals. The largest was a ransomware attack that halted trading on the Nepal Stock Exchange (8 million exposed). Third-party compromise and unauthorized access were the leading causes. Finance is the most-hit sector. Actively exploited zero-days in Check Point, Citrix, F5, SharePoint and WordPress.&lt;/p&gt;

&lt;h3&gt;
  
  
  Take Action:
&lt;/h3&gt;

&lt;p&gt;Patch the actively exploited systems ASAP (Citrix NetScaler ADC and Gateway, Check Point gateways and management servers, VeloCloud Orchestrator, on-prem SharePoint, Zyxel GS1900 switches and WordPress). As usual, block internet access to their admin and management interfaces so only trusted internal IPs can reach them. Update Chrome and if you manage GitLab, reset your incoming email token and remove any "email to project" addresses you've posted publicly, because anyone who has that address can act as you.&lt;/p&gt;




&lt;p&gt;&lt;em&gt;&lt;a href="https://beyondmachines.net/event_details/state-of-in-security-week-39-2026-a-q-v-d-l/9uoJWdGwxq" rel="noopener noreferrer"&gt;Read the full article on BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;




&lt;p&gt;&lt;em&gt;This article was originally published on &lt;a href="https://beyondmachines.net" rel="noopener noreferrer"&gt;BeyondMachines&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;

</description>
      <category>cybersecurity</category>
      <category>infosec</category>
    </item>
  </channel>
</rss>
