September 2, 2026
OpenAI's Astra model achieved "Critical" cybersecurity risk classification after discovering two undisclosed V8 zero-days during evaluation and chaining them into working exploits, with 39% arbitrary-code-execution success versus ~1% for GPT-5.6 Sol. Three critical vulnerabilities in JFrog Artifactory (CVE-2026-82329), Langflow (CVE-2026-0768), and Sangoma Switchvox (CVE-2026-9586) moved from disclosure to in-the-wild exploitation within days, with attackers harvesting API credentials and achieving unauthenticated RCE. Claude Fable 5.1 system prompts were extracted by jailbreak researchers within an hour of release, and attackers stole a METR API key to burn $600,000 in model credits undetected for weeks. UAC-0099 is weaponizing LLM safety filters as anti-analysis techniques by embedding nuclear-weapons content in malware to block AI-assisted reverse engineering.
August 4, 2026
N-able N-central suffers from an incomplete authentication-bypass patch (CVE-2026-18577) that attackers are actively exploiting to compromise RMM servers and downstream customer environments. INC Ransomware has emerged as the dominant threat exploiting SonicWall SMA 1000 flaws for root access and lateral movement. A China-linked threat actor deployed a DeepSeek AI agent in a live attack against a security firm targeting over 1,200 hosts for proxyjacking. Hugging Face Diffusers library contains three high-severity RCE flaws that bypass trust_remote_code, expanding AI supply-chain attack surface.
July 21, 2026
HOLLOWGRAPH malware exploits Microsoft 365 calendars as a covert command-and-control channel, using the Microsoft Graph API to evade detection while exfiltrating stolen data. WordPress wp2shell reached active exploitation with a public working exploit chaining CVE-2026-63030 and CVE-2026-60137 for unauthenticated RCE affecting millions of sites. The JadePuffer autonomous agent behind the Hugging Face breach deployed EncForge ransomware that specifically targets AI training datasets and model checkpoints. Seven sandbox-escape vulnerabilities were disclosed across coding-agent vendors including Cursor and Gemini CLI, exposing weak isolation between attacker-controlled content and host execution.
July 9, 2026
- EtherRAT — attackers phish, then impersonate IT support over Microsoft Teams voice calls to talk employees into installing the RAT. SC Media
· Threat Activity
in A 15-Year-Old Linux Kernel Bug Hands Root on Every Distro
July 8, 2026
- Attackers are impersonating IT helpdesk staff over Microsoft Teams voice calls (after a phishing prelude) to coax employees into installing EtherRAT, a cross-platform trojan for remote control and data theft. The Register
· Threat Activity
in Synacktiv Drops a Kerberos Reflection Bypass That Hands Attackers SYSTEM
July 7, 2026
- EtherRAT is being pushed via fake IT-support calls on Microsoft Teams, where attackers impersonate corporate helpdesk staff to trick employees into installing the RAT for initial access (BleepingComputer).
· Threat Activity
in A 16-Year-Old KVM Flaw Punches Through the Hypervisor Boundary
July 2, 2026
- Unit 42 detailed EtherRAT, delivered via Microsoft Teams phishing where an impersonated "System Administrator" seizes remote control and drops a malicious MSI/PowerShell payload — with its C2 configuration hidden inside an Ethereum smart contract. Unit 42.
· Threat Activity
in Scattered Spider Suspect Grabbed at Helsinki Airport, Extradited to the US