Cursor deleted a production database and its backups in nine seconds.
The agent found an unrelated Railway API token with blanket GraphQL permissions while handling a staging task. AI blast radius follows credential reach.
Why access boundaries matter: https://thehackernews.com/expert-insights/2026/09/stop-trying-to-control-ai-behavior.html
The agent found an unrelated Railway API token with blanket GraphQL permissions while handling a staging task. AI blast radius follows credential reach.
Why access boundaries matter: https://thehackernews.com/expert-insights/2026/09/stop-trying-to-control-ai-behavior.html
π29π₯5π2β‘1
β οΈ Exposed Vite dev servers are being scanned for cloud credentials.
Attackers are exploiting a Vite flaw to bypass file restrictions and retrieve .env files, AWS and Azure credentials, and infrastructure state.
How the bypass works: https://thehackernews.com/2026/09/mass-scanning-campaign-exploits-vite.html
Attackers are exploiting a Vite flaw to bypass file restrictions and retrieve .env files, AWS and Azure credentials, and infrastructure state.
How the bypass works: https://thehackernews.com/2026/09/mass-scanning-campaign-exploits-vite.html
π€―6π1
One attack step can now decide what gets tested next.
OpenAEVβs Attack Chaining feeds live findings like credentials, tokens, and open ports into the next stage, while XTM One can plan and adapt the path inside a defined scope.
How the attack path builds: https://thehackernews.com/2026/09/attack-chains-not-just-attack-surfaces.html
OpenAEVβs Attack Chaining feeds live findings like credentials, tokens, and open ports into the next stage, while XTM One can plan and adapt the path inside a defined scope.
How the attack path builds: https://thehackernews.com/2026/09/attack-chains-not-just-attack-surfaces.html
π₯3
π¨ A human attacker exploited Marimoβs pre-auth RCE and reached an SSH bastion in eight seconds.
The operator used harvested AWS credentials to fetch the private key from Secrets Manager and authenticate over SSH. No AI agent was involved.
Read: https://thehackernews.com/2026/09/human-attacker-exploits-marimo-rce.html
The operator used harvested AWS credentials to fetch the private key from Secrets Manager and authenticate over SSH. No AI agent was involved.
Read: https://thehackernews.com/2026/09/human-attacker-exploits-marimo-rce.html
π₯5
Phishing puts financial SOCs under constant pressure. Cut the workload with ANY.RUN: faster analysis, fewer escalations, and 21 min lower MTTR.
β https://thn.news/phishing-soc-detection
β https://thn.news/phishing-soc-detection
π₯4π2
This media is not supported in your browser
VIEW IN TELEGRAM
β
Your Business Continuity Management Checklist.
Most resilience programs look complete on paper. Let's make sure yours holds up when it matters most.
Discover 6 ways to align your BCM program with operational reality.
Get the checklist β https://thn.news/bcm-reality-check
Most resilience programs look complete on paper. Let's make sure yours holds up when it matters most.
Discover 6 ways to align your BCM program with operational reality.
Get the checklist β https://thn.news/bcm-reality-check
π1
π¨ BambooToken uses MQTT to control Windows and Linux hosts across Asia and South America.
Lumen identified a dozen compromised entities, with activity detected as recently as July 2026.
Learn what's inside the malwareβs MQTT command-and-control: https://thehackernews.com/2026/09/bambootoken-malware-uses-mqtt-to.html
Lumen identified a dozen compromised entities, with activity detected as recently as July 2026.
Learn what's inside the malwareβs MQTT command-and-control: https://thehackernews.com/2026/09/bambootoken-malware-uses-mqtt-to.html
π₯3π3
βΌοΈ Iran-attributed HEAVYGRAM, also tracked as CHOSEN BRICK, uses Telegram bots to spy on dissidents and journalists.
A joint U.S.-U.K.-Dutch advisory says the Windows malware can steal messages and passwords, record audio, capture screenshots, and exfiltrate files.
Details β https://thehackernews.com/2026/09/iranian-hackers-use-telegram-controlled.html
A joint U.S.-U.K.-Dutch advisory says the Windows malware can steal messages and passwords, record audio, capture screenshots, and exfiltrate files.
Details β https://thehackernews.com/2026/09/iranian-hackers-use-telegram-controlled.html
π€―10π₯6π€3
π¨ KREMLIN banking malware bypasses Chromium integrity checks to install a Chrome and Edge extension that steals credentials and session tokens.
It also uses Ethereum smart contracts to rotate C2 and payload locations.
How the attack chain works: https://thehackernews.com/2026/09/kremlin-banking-malware-hijacks-chrome.html
It also uses Ethereum smart contracts to rotate C2 and payload locations.
How the attack chain works: https://thehackernews.com/2026/09/kremlin-banking-malware-hijacks-chrome.html
π€―14π₯11π10
β οΈ Forged admin JWTs are being used in WSO2 API Manager exploitation attempts.
CVE-2026-5430 lets unsupported JWT algorithms bypass authentication and can lead to account takeover. Fixes are available.
Read: https://thehackernews.com/2026/09/active-exploitation-attempts-target.html
CVE-2026-5430 lets unsupported JWT algorithms bypass authentication and can lead to account takeover. Fixes are available.
Read: https://thehackernews.com/2026/09/active-exploitation-attempts-target.html
π₯3
π¨ Attackers are exploiting a critical WooCommerce Wholesale Lead Capture flaw to plant PHP web shells.
Wordfence has blocked over 100,000 exploit attempts since June against CVE-2026-27540, which affects versions through 2.0.3.1.
Read: https://thehackernews.com/2026/09/attackers-exploit-woocommerce-wholesale.html
Wordfence has blocked over 100,000 exploit attempts since June against CVE-2026-27540, which affects versions through 2.0.3.1.
Read: https://thehackernews.com/2026/09/attackers-exploit-woocommerce-wholesale.html
π₯3π1
A unified security dashboard can still hide a broken incident workflow.
Run one incident from detection to clean recovery. Count every console switch, permission change, and ownership handoff.
Six tests reveal whether consolidation actually reduces operational friction: https://thehackernews.com/expert-insights/2026/09/how-to-evaluate-unified-security.html
Run one incident from detection to clean recovery. Count every console switch, permission change, and ownership handoff.
Six tests reveal whether consolidation actually reduces operational friction: https://thehackernews.com/expert-insights/2026/09/how-to-evaluate-unified-security.html
π₯2
β οΈ Acronis Backup flaw exploited in limited targeted attacks.
CVE-2026-87886 lets a low-privileged attacker escalate permissions on affected Linux cPanel/WHM and Plesk deployments. Fixes are available.
Which builds need updating β https://thehackernews.com/2026/09/acronis-cpanel-backup-plugin.html
CVE-2026-87886 lets a low-privileged attacker escalate permissions on affected Linux cPanel/WHM and Plesk deployments. Fixes are available.
Which builds need updating β https://thehackernews.com/2026/09/acronis-cpanel-backup-plugin.html
π₯2
βΌοΈ ALERT - Google says a Pixel modem flaw may be under limited, targeted exploitation.
CVE-2026-58704 can enable adjacent privilege escalation without user interaction. Google patched it in the September Pixel update.
Whatβs known about the attacks β https://thehackernews.com/2026/09/google-patches-pixel-modem-flaw-amid.html
CVE-2026-58704 can enable adjacent privilege escalation without user interaction. Google patched it in the September Pixel update.
Whatβs known about the attacks β https://thehackernews.com/2026/09/google-patches-pixel-modem-flaw-amid.html
π€6π4
A leaked credential is only useful intelligence if you know it still works.
Penteraβs Recorded Future integration automatically tests exposed credentials against an organizationβs external attack surface to confirm which ones can actually be used.
How the validation works β https://thehackernews.com/2026/09/threat-intelligence-alone-wont-close.html
Penteraβs Recorded Future integration automatically tests exposed credentials against an organizationβs external attack surface to confirm which ones can actually be used.
How the validation works β https://thehackernews.com/2026/09/threat-intelligence-alone-wont-close.html
π₯3
π A Parallels Desktop flaw lets non-admin Mac users gain root, but Intel Macs canβt install the version containing the fix.
Tracked as CVE-2026-90894, JFrog demonstrated the flaw on Parallels Desktop 26.4.0 and reports no attacks.
How the root escalation works β https://thehackernews.com/2026/09/parallels-desktop-flaw-lets-non-admin.html
Tracked as CVE-2026-90894, JFrog demonstrated the flaw on Parallels Desktop 26.4.0 and reports no attacks.
How the root escalation works β https://thehackernews.com/2026/09/parallels-desktop-flaw-lets-non-admin.html
π4
β οΈ N0va phishing abuses legitimate sign-in flows to capture access and refresh tokens.
The campaign impersonates Teams, SharePoint, DocuSign, Google Drive, and other trusted services, then can establish SSO access to email, files, and cloud apps.
Inside the attack chain β https://thehackernews.com/2026/09/n0va-phishkit-targets-us-and-eu.html
The campaign impersonates Teams, SharePoint, DocuSign, Google Drive, and other trusted services, then can establish SSO access to email, files, and cloud apps.
Inside the attack chain β https://thehackernews.com/2026/09/n0va-phishkit-targets-us-and-eu.html
π2
β οΈ One hijacked AI coding session helped spread Shai-Hulud across about 100 internal repositories.
A poisoned PyPI package installed an infostealer, GitHub OAuth tokens were stolen, and a compromised package in the companyβs own namespace caused a second infection.
Read: https://thehackernews.com/2026/09/attacker-hijacks-ai-coding-assistant.html
A poisoned PyPI package installed an infostealer, GitHub OAuth tokens were stolen, and a compromised package in the companyβs own namespace caused a second infection.
Read: https://thehackernews.com/2026/09/attacker-hijacks-ai-coding-assistant.html
π9β‘1
βΌοΈ A browser extension could hijack AI agents in Comet, Edge, Opera Neon and Claude, while abusing Chromeβs Gemini integration to reach local files, the camera and mic.
Researchers used the same underlying trust-boundary weakness across all five products after the extension was already installed.
Here's the technique β https://thehackernews.com/2026/09/one-extension-could-hijack-ai.html
Researchers used the same underlying trust-boundary weakness across all five products after the extension was already installed.
Here's the technique β https://thehackernews.com/2026/09/one-extension-could-hijack-ai.html
π₯4π3π1
π¨ From compromised VPN credentials to MQTT and Matrix C2, three threat groups are targeting Russian enterprises.
NightEagle uses GhostContainer, Toy Ghouls now fields a custom backdoor, and Kaspersky links Hacking Cat to Gorilla RAT and destructive malware.
Read: https://thehackernews.com/2026/09/three-threat-groups-target-russian.html
NightEagle uses GhostContainer, Toy Ghouls now fields a custom backdoor, and Kaspersky links Hacking Cat to Gorilla RAT and destructive malware.
Read: https://thehackernews.com/2026/09/three-threat-groups-target-russian.html
π±5π4β‘1
βΌοΈ Attackers are exploiting a critical Issabel Framework flaw.
CVE-2026-89026 uses a hard-coded JWT signing key, letting unauthenticated remote attackers forge tokens and execute OS commands as the Asterisk user. A fix is available.
How the flaw works: https://thehackernews.com/2026/09/attackers-exploit-issabel-framework.html
CVE-2026-89026 uses a hard-coded JWT signing key, letting unauthenticated remote attackers forge tokens and execute OS commands as the Asterisk user. A fix is available.
How the flaw works: https://thehackernews.com/2026/09/attackers-exploit-issabel-framework.html
π₯10β‘2π€1