{
  "id": 12103479,
  "title": "Three citeable security samples from Time Signals",
  "url": "https://urgent.news/2026/10/05/three-citeable-security-samples-from-time-signals",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-05T08:04:44.000Z",
  "source": {
    "name": "Dev.to",
    "slug": "dev-to",
    "url": "https://dev.to/colorfultoolhub/three-citeable-security-samples-from-time-signals-20eg"
  },
  "original_language": "en",
  "account": "1. Bitget, a cryptocurrency exchange, suffered a multi-million dollar theft. The incident, reported on October 3, 2026, involved attackers exploiting third-party security products to steal $387 million from the exchange. The breach also involved North Korea, as reported in both English and Chinese versions of the timeline page. Evidence of the theft can be found at https://rekt.news/bitget-rekt and on X at https://x.com/TheBlockCo/status/2104585324362084504. Additional information on the theft can be found at https://blocksec.com/blog/bitget-387m-off-chain-breach and https://www.chainalysis.com/blog/387m-bitget-theft-2026/.\n\n2. The Technical University of Denmark (DTU) was targeted by attackers who gained access to its identity and access management system. The attackers downloaded a large amount of data, potentially exposing up to 200,000 users. The attack occurred on October 3, 2026, as evidenced by the timestamp on the BleepingComputer brief. The full report can be accessed at https://timeline.snamibo.com/en/briefs/febb6546f603e94a39df4d2991005671/.\n\n3. A vulnerability in GoAnywhere MFT, a file management system, was exploited in a recent incident. The vulnerability, CVE-2025-10035, allowed for deserialization issues and possible command injection through forged license response signature forgery. The remediation text references vendor mitigations and BOD 22-01, with a due date of October 20, 2025. The full incident report can be found at https://timeline.snamibo.com/en/incidents/e46990710227cb3ae67f463feb468a48/. Additional information on the vulnerability can be found on the CISA known exploited vulnerabilities catalog at https://www.cisa.gov/known-exploited-vulnerabilities-catalog?search_api_fulltext=CVE-2025-10035.",
  "summary": "Three items taken from pages that already return full HTML on Time Signals . Not a “trending” listicle — each row is a canonical URL plus the primary sources you should open. Written in early October 2026; always re-check the live page. 1. Bitget large theft — multi-source incident page EN: https://timeline.snamibo.com/en/incidents/f11786d0fea34650d0d29088406aa47f/ ZH:…",
  "key_points": [
    "Bitget exchange loses $387M in October 2026 theft",
    "DTU data breach exposes up to 200,000 users in Oct 2026",
    "GoAnywhere MFT vulnerability exploited via license forgery"
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}