daily cyber × ai intelligence

index

tagged

[n8n]

5 editions · 4 items

September 16, 2026

  • Two patched n8n agent flaws turn limited chat privileges into credential access. CVE-2026-65015 lets a read-only Project Viewer ask run_node_tool to execute arbitrary nodes with project credentials, potentially reaching host commands under specific configurations. CVE-2026-59207 makes the agent’s MCP client ignore allowed-domain restrictions and send credentials to an attacker-controlled host. The respective fixes are 2.29.8/2.30.1 and 2.27.4/2.28.1 (deturris.io). · AI & Agent Security

in CVE-2026-76461 Gives Remote Attackers Root on Cisco Email Gateways

July 17, 2026

Live SonicWall Exploitation, a New C2 Release, and AI Agents Tricked Into Running Attacker Commands

SonicWall SMA1000 SSL-VPN appliances are under broad-scale exploitation via CVE-2026-15409 leveraging public PoC code, with CVE-2026-56155 remaining unfixed despite July patches. Nighthawk 1.0 C2 released with cross-platform UI and improved evasion capabilities including CET-compatible call-stack masking. AI agents can be compromised through data injection attacks that corrupt trusted facts, enabling attackers to trick agents into executing commands or clicking malicious links without direct prompt injection. Scattered Spider members received 5.5-year sentences for the 2024 Transport for London ransomware attack affecting 7 million users.