AI-related SOC alerts surged 685% in four months. Just 0.02% were real attacks.
But 5.8% exposed genuine security risks, including agents running without permission safeguards, reverse tunnels, keychain dumps, and risky OAuth grants.
Why the noisiest alerts may hide the ones that matter: https://thehackernews.com/2026/09/when-whole-company-adopts-ai-what-it.html
But 5.8% exposed genuine security risks, including agents running without permission safeguards, reverse tunnels, keychain dumps, and risky OAuth grants.
Why the noisiest alerts may hide the ones that matter: https://thehackernews.com/2026/09/when-whole-company-adopts-ai-what-it.html
π€―4π3π₯1π1
π¨ Attackers are exploiting flaws in Artifactory, ScreenConnect, and RouterOS.
Observed attacks gained Artifactory admin control and deployed backdoors, pushed malicious VBScript via ScreenConnect, and seized RouterOS devices without authentication.
CISA added all 5 flaws to KEV.
Inside the attacks: https://thehackernews.com/2026/09/cisa-adds-5-actively-exploited.html
Observed attacks gained Artifactory admin control and deployed backdoors, pushed malicious VBScript via ScreenConnect, and seized RouterOS devices without authentication.
CISA added all 5 flaws to KEV.
Inside the attacks: https://thehackernews.com/2026/09/cisa-adds-5-actively-exploited.html
π₯6π1
π¨ Fake passkey updates are being used to take over Microsoft cloud accounts.
Once inside, threat actors add their own MFA methods and pull data from SharePoint, OneDrive, and mailboxes.
Inside the passkey phishing chain β https://thehackernews.com/2026/09/attackers-use-passkey-phishing-to.html
Once inside, threat actors add their own MFA methods and pull data from SharePoint, OneDrive, and mailboxes.
Inside the passkey phishing chain β https://thehackernews.com/2026/09/attackers-use-passkey-phishing-to.html
π10π8π€―2π₯1
β οΈ Nearly 31,000 Twitch users had live OAuth tokens sent to operator-controlled proxies by a malicious browser extension.
JeetBot put the credentials in request URLs, exposing them in proxy logs. Older installs keep sending them until updated.
Read: https://thehackernews.com/2026/09/malicious-twitch-browser-extension.html
JeetBot put the credentials in request URLs, exposing them in proxy logs. Older installs keep sending them until updated.
Read: https://thehackernews.com/2026/09/malicious-twitch-browser-extension.html
π₯5β‘4π3
π¨ Only 495 of 35,853 CVEs published in H1 2026 were exploited in the wild.
The harder problem for defenders is no longer finding vulnerabilities. Itβs identifying which exposures actually demand immediate action.
See why vulnerability volume alone canβt tell defenders what to fix first: https://thehackernews.com/2026/09/ai-changed-exposure-problem-validation.html
The harder problem for defenders is no longer finding vulnerabilities. Itβs identifying which exposures actually demand immediate action.
See why vulnerability volume alone canβt tell defenders what to fix first: https://thehackernews.com/2026/09/ai-changed-exposure-problem-validation.html
π7π1
β‘ THIS WEEK IN CYBER
AI agents went off-script.
A zero-click worm surfaced.
Exploit chains got shorter.
Old bugs kept paying off.
Rootkits stayed quiet.
Scam infrastructure took a hit.
Also inside:
β AI-powered espionage
β PaperCut exploitation
β phishing through trusted infrastructure
β fresh 0-days and patch bypasses
β exposed systems attackers are already probing
The pattern this week is simple: attacks are getting faster, but many of the doors are still painfully ordinary.
Full recap β https://thehackernews.com/2026/09/weekly-recap-rogue-ai-agents-wechat.html
AI agents went off-script.
A zero-click worm surfaced.
Exploit chains got shorter.
Old bugs kept paying off.
Rootkits stayed quiet.
Scam infrastructure took a hit.
Also inside:
β AI-powered espionage
β PaperCut exploitation
β phishing through trusted infrastructure
β fresh 0-days and patch bypasses
β exposed systems attackers are already probing
The pattern this week is simple: attacks are getting faster, but many of the doors are still painfully ordinary.
Full recap β https://thehackernews.com/2026/09/weekly-recap-rogue-ai-agents-wechat.html
π8π4
π₯ WordPress is adding a new security gate to every plugin release.
Before distribution, each release will be reviewed with AI models and Jetpack Scan, and high-risk updates will be blocked automatically. The system recently caught a backdoored release before it reached the WordPress-org update API.
How the new review works: https://thehackernews.com/2026/09/wordpress-adds-automated-plugin-reviews.html
Before distribution, each release will be reviewed with AI models and Jetpack Scan, and high-risk updates will be blocked automatically. The system recently caught a backdoored release before it reached the WordPress-org update API.
How the new review works: https://thehackernews.com/2026/09/wordpress-adds-automated-plugin-reviews.html
π9π₯2
The EU CRA requires formal documentation built during the product lifecycle.
The EU CRA's December 2027 deadline requires a governed open source inventory, current SBOM coverage, and an audit trail for every remediation decision. You can't build that once a vulnerability is found. Non-compliance risks your EU market access. See what's required, and start now.
Start here β https://thn.news/cra-readiness-eu
The EU CRA's December 2027 deadline requires a governed open source inventory, current SBOM coverage, and an audit trail for every remediation decision. You can't build that once a vulnerability is found. Non-compliance risks your EU market access. See what's required, and start now.
Start here β https://thn.news/cra-readiness-eu
π€5
π¨ Red Heron exploited a Gitea RCE to compromise 13 organizations across six countries.
The actor automated a public exploit, stole repositories and credentials, and in one Taiwanese environment reached root on a three-node Proxmox cluster.
How the campaign escalated: https://thehackernews.com/2026/09/red-heron-exploits-gitea-rce-to.html
The actor automated a public exploit, stole repositories and credentials, and in one Taiwanese environment reached root on a three-node Proxmox cluster.
How the campaign escalated: https://thehackernews.com/2026/09/red-heron-exploits-gitea-rce-to.html
π4
This media is not supported in your browser
VIEW IN TELEGRAM
βΌοΈ Researchers broke Intel TDXβs confidential-computing protections with a $159 DDR5 interposer.
New "DDRop" attack silently drops memory writes so the CPU trusts stale encrypted data. In lab tests, researchers read protected VM memory and forged attestation.
No CVE. No patch. Full details here β https://thehackernews.com/2026/09/new-ddrop-attack-breaks-intel-tdx-and.html
New "DDRop" attack silently drops memory writes so the CPU trusts stale encrypted data. In lab tests, researchers read protected VM memory and forged attestation.
No CVE. No patch. Full details here β https://thehackernews.com/2026/09/new-ddrop-attack-breaks-intel-tdx-and.html
π₯10
βΌοΈ A Telegram Desktop flaw could send messages from opened HTML exports to an attacker-controlled server.
A bot message could hide JavaScript in pre-fix exports, which ran when the file was opened in a browser with JavaScript enabled.
Updating Telegram does not clean old export files.
Read: https://thehackernews.com/2026/09/telegram-desktop-flaw-lets-hidden.html
A bot message could hide JavaScript in pre-fix exports, which ran when the file was opened in a browser with JavaScript enabled.
Updating Telegram does not clean old export files.
Read: https://thehackernews.com/2026/09/telegram-desktop-flaw-lets-hidden.html
π₯13π4π€2
π¨ Thai ISP 3BB attacker had root access and hid MeshCentral for persistence.
Recovered tools sprayed passwords across 55+ internal systems and targeted subscriber login databases.
How the attacker stayed in: https://thehackernews.com/2026/09/3bb-attacker-used-meshcentral-backdoor.html
Recovered tools sprayed passwords across 55+ internal systems and targeted subscriber login databases.
How the attacker stayed in: https://thehackernews.com/2026/09/3bb-attacker-used-meshcentral-backdoor.html
π9β‘1π₯1π€1
β οΈ Two China-linked threat actors exploited the same Chrome-Windows zero-day chain.
UTA0560 used it to deploy the GRIMWEDGE backdoor against NGOs. APT31 used it to install LONGTALE, a credential-stealing Chrome extension.
How the shared exploit chain worked: https://thehackernews.com/2026/09/china-linked-hackers-exploit-chrome.html
UTA0560 used it to deploy the GRIMWEDGE backdoor against NGOs. APT31 used it to install LONGTALE, a credential-stealing Chrome extension.
How the shared exploit chain worked: https://thehackernews.com/2026/09/china-linked-hackers-exploit-chrome.html
π₯7π3
βΌοΈ Attackers are exploiting a Cisco Secure Email Gateway vulnerability that can let a crafted email trigger command execution as root.
Cisco has released fixes, and CISA added CVE-2026-76461 to its KEV catalog.
How the attack works β https://thehackernews.com/2026/09/cisco-secure-email-gateway-flaw.html
Cisco has released fixes, and CISA added CVE-2026-76461 to its KEV catalog.
How the attack works β https://thehackernews.com/2026/09/cisco-secure-email-gateway-flaw.html
π5
βΌοΈ Warning: LiteSpeed Enterprise before 6.3.7 can let low-privilege website users gain root on shared-hosting servers.
It can bypass CageFS isolation. No CVE is assigned, exploitation is unknown, and 6.3.7 may not auto-update immediately.
Manual update may be required β https://thehackernews.com/2026/09/litespeed-enterprise-flaw-could-let-one.html
It can bypass CageFS isolation. No CVE is assigned, exploitation is unknown, and 6.3.7 may not auto-update immediately.
Manual update may be required β https://thehackernews.com/2026/09/litespeed-enterprise-flaw-could-let-one.html
β‘4π€―2
Cursor deleted a production database and its backups in nine seconds.
The agent found an unrelated Railway API token with blanket GraphQL permissions while handling a staging task. AI blast radius follows credential reach.
Why access boundaries matter: https://thehackernews.com/expert-insights/2026/09/stop-trying-to-control-ai-behavior.html
The agent found an unrelated Railway API token with blanket GraphQL permissions while handling a staging task. AI blast radius follows credential reach.
Why access boundaries matter: https://thehackernews.com/expert-insights/2026/09/stop-trying-to-control-ai-behavior.html
π29π₯5π2β‘1
β οΈ Exposed Vite dev servers are being scanned for cloud credentials.
Attackers are exploiting a Vite flaw to bypass file restrictions and retrieve .env files, AWS and Azure credentials, and infrastructure state.
How the bypass works: https://thehackernews.com/2026/09/mass-scanning-campaign-exploits-vite.html
Attackers are exploiting a Vite flaw to bypass file restrictions and retrieve .env files, AWS and Azure credentials, and infrastructure state.
How the bypass works: https://thehackernews.com/2026/09/mass-scanning-campaign-exploits-vite.html
π€―6π1
One attack step can now decide what gets tested next.
OpenAEVβs Attack Chaining feeds live findings like credentials, tokens, and open ports into the next stage, while XTM One can plan and adapt the path inside a defined scope.
How the attack path builds: https://thehackernews.com/2026/09/attack-chains-not-just-attack-surfaces.html
OpenAEVβs Attack Chaining feeds live findings like credentials, tokens, and open ports into the next stage, while XTM One can plan and adapt the path inside a defined scope.
How the attack path builds: https://thehackernews.com/2026/09/attack-chains-not-just-attack-surfaces.html
π₯3
π¨ A human attacker exploited Marimoβs pre-auth RCE and reached an SSH bastion in eight seconds.
The operator used harvested AWS credentials to fetch the private key from Secrets Manager and authenticate over SSH. No AI agent was involved.
Read: https://thehackernews.com/2026/09/human-attacker-exploits-marimo-rce.html
The operator used harvested AWS credentials to fetch the private key from Secrets Manager and authenticate over SSH. No AI agent was involved.
Read: https://thehackernews.com/2026/09/human-attacker-exploits-marimo-rce.html
π₯5
Phishing puts financial SOCs under constant pressure. Cut the workload with ANY.RUN: faster analysis, fewer escalations, and 21 min lower MTTR.
β https://thn.news/phishing-soc-detection
β https://thn.news/phishing-soc-detection
π₯4π2
This media is not supported in your browser
VIEW IN TELEGRAM
β
Your Business Continuity Management Checklist.
Most resilience programs look complete on paper. Let's make sure yours holds up when it matters most.
Discover 6 ways to align your BCM program with operational reality.
Get the checklist β https://thn.news/bcm-reality-check
Most resilience programs look complete on paper. Let's make sure yours holds up when it matters most.
Discover 6 ways to align your BCM program with operational reality.
Get the checklist β https://thn.news/bcm-reality-check
π1