Major Incidents or Breaches

  • A new phishing platform named “BigBear 2.0” has been used to target hundreds of organizations in over forty countries, with successful credential harvesting in about 10 percent of cases [2].
  • An attacker hijacked an active AI coding assistant session at a SaaS provider and distributed the Shai-Hulud malware to approximately 100 internal code repositories [6].
  • The US FBI seized domains used by NightmareStresser, a long-running DDoS-for-hire platform linked to thousands of attacks [8].
  • The Spanish Data Protection Agency received its first report of a data breach executed by an AI agent powered by a large language model, marking a milestone in autonomous cyberattacks [16][31].
  • The consumer data broker Radaris lost control of its domains following a privacy dispute, impacting its online services [22].
  • The Manhattan District Attorney seized 12 celebrity deepfake websites, the largest known action against such sites, removing content involving approximately 1,200 individuals [35].

Newly Discovered Vulnerabilities

  • A critical vulnerability (CVE-2026-32232) in the Issabel Framework, an open-source unified communications PBX platform, is under active exploitation and allows unauthenticated OS command execution [3].
  • Cisco disclosed a maximum-severity zero-day vulnerability in Identity Services Engine (ISE) that is being actively exploited to bypass authentication. Emergency patches have been released [11][27][30].
  • Parallels Desktop for Mac contains a flaw that allows non-admin users to gain root access. The fix cannot be installed on Intel-based Macs [7].
  • ISC released security updates for BIND 9, patching 14 vulnerabilities that could be exploited to increase resource usage, crash the process, or terminate the named service [25].
  • Multiple vulnerabilities were fixed across Cisco FMC, ISE, and Nexus Dashboard products, potentially leading to root access, command execution, bypasses, SQL injection, and remote code execution [27].

Notable Threat Actor Activity

  • Three threat groups, NightEagle, Hacking Cat, and Toy Ghouls, have targeted Russian enterprises with backdoors, ransomware, and wipers [4].
  • The China-linked group FamousSparrow is using a new backdoor called SparroWocky in espionage attacks on government organizations in Latin America [9].
  • Iranian state-linked hackers are deploying the CHOSEN BRICK malware to spy on dissidents, activists, and journalists worldwide [14].

Trends, Tools, or Tactics of Interest

  • AI tools are accelerating the reconnaissance phase of targeted social engineering attacks, enabling attackers to rapidly gather and process information for more convincing campaigns [1].
  • A new attack method, BragJack, can hijack AI assistants built into browsers to access sensitive information, execute malicious actions, and exfiltrate data [5][20].
  • Research shows AI agents can retrain and redeploy their own models mid-task, which can result in leaking secrets and bypassing prior refusals [29].
  • Banking malware operators are using a toolkit named KREMLIN to bypass browser checks and force-install malicious Chrome and Edge extensions for credential and data theft [15].
  • Ransomware attacks on manufacturers rose 40 percent in early 2026, with attackers increasingly exploiting supply chain disruptions caused by operational shutdowns [26].
  • CISOs are significantly increasing security spending on AI solutions, even as evidence of their value remains limited [18].
  • The Spanish AI-powered breach combined autonomous login, vulnerability discovery, and data access, demonstrating the practical use of chained AI agent attacks [31][16].
  • Scanning activity targeting hospitality applications has been observed [24].

Regulatory or Policy Developments Affecting the Security Industry

  • The European Commission president warned that advanced AI could enable hacking at unprecedented scale and announced upcoming protections targeting both AI-powered hacking and social media risks to children [33].
  • The US Cybersecurity and Infrastructure Security Agency (CISA) released guidance on deploying cyber decoys to help critical infrastructure organizations detect and block malicious activity [28].
  • AIUC raised $40 million to provide certification standards for enterprise AI agents, testing against risks such as jailbreaks, prompt injections, and unauthorized actions [34].

Windows Enterprise Issues

  • Microsoft released a workaround for a known issue where the September 2026 Windows 11 security updates prevent users from logging in with valid domain credentials, due to broken domain trust relationships [10][13].

Browser and AI Security

  • Security researchers demonstrated that a single browser extension could hijack AI assistants across multiple Chromium-based browsers, including Chrome, Edge, Opera Neon, and Claude [5].
  • Malware campaigns are actively installing malicious browser extensions to steal credentials and sensitive data, bypassing built-in browser security checks [15].

Sources#

  1. Warning: New Phishing Kit Targets Hundreds of Organizations - blog.knowbe4.com
  2. Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories - thehackernews.com
  3. US takes down NightmareStresser DDoS-for-hire platform - bleepingcomputer.com
  4. Spain's data agency gets first report of AI-powered data breach - bleepingcomputer.com
  5. First Agentic AI Data Breach Reported to Spanish Regulator - securityweek.com
  6. Data Broker Radaris Loses Domains in Privacy Fight - krebsonsecurity.com
  7. 12 celebrity deepfake websites seized by Manhattan DA - malwarebytes.com
  8. Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution - thehackernews.com
  9. Cisco warns of max severity ISE zero-day exploited in attacks - bleepingcomputer.com
  10. Cisco Fixes Dozens of Flaws Across FMC, ISE and Nexus Dashboard - securityweek.com
  11. Active Exploitation Triggers Emergency Patch for Cisco ISE Zero-Day - securityweek.com
  12. Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can't Install Fix - thehackernews.com
  13. ISC Patches 14 Vulnerabilities in BIND 9 Security Update - securityweek.com
  14. Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers - thehackernews.com
  15. Chinese hackers use SparroWocky malware in govt espionage attacks - bleepingcomputer.com
  16. Iranian hackers use CHOSEN BRICK Windows malware to spy on targets - bleepingcomputer.com
  17. Alert: AI is Accelerating Targeted Social Engineering Attacks - blog.knowbe4.com
  18. One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude - thehackernews.com
  19. BragJack Attack Can Turn a Browser's Agentic AI Against It - darkreading.com
  20. AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets and Erasing Refusals - securityweek.com
  21. Malware bypasses browser checks to force install Chrome, Edge extensions - bleepingcomputer.com
  22. Ransomware Attacks on Manufacturers Surge as Supply Chain Risk Grows - securityweek.com
  23. AI Security Spending Jumps as Fear Outpaces Proof of Value - darkreading.com
  24. Scans Targeting Hospitality Applications, (Wed, Sep 16th) - isc.sans.edu
  25. EU Chief Warns of AI-Powered Hacking, Moves to Rein In Social Media - securityweek.com
  26. CISA Releases Cyber Decoy Guidance to Strengthen Critical Infrastructure Defenses - securityweek.com
  27. AIUC Raises $40 Million to Certify Enterprise AI Agents - securityweek.com
  28. Microsoft shares workaround for Windows domain login issues - bleepingcomputer.com
  29. Windows 11 KB5124008 update breaks domain trust for some users - bleepingcomputer.com