daily cyber × ai intelligence

index

tagged

[qwen-3-8]

3 editions · 2 items

August 4, 2026

Attackers Seize N-central RMM Servers After N-able's Second Fix Falls Short

N-able N-central suffers from an incomplete authentication-bypass patch (CVE-2026-18577) that attackers are actively exploiting to compromise RMM servers and downstream customer environments. INC Ransomware has emerged as the dominant threat exploiting SonicWall SMA 1000 flaws for root access and lateral movement. A China-linked threat actor deployed a DeepSeek AI agent in a live attack against a security firm targeting over 1,200 hosts for proxyjacking. Hugging Face Diffusers library contains three high-severity RCE flaws that bypass trust_remote_code, expanding AI supply-chain attack surface.

July 20, 2026

  • Alibaba released open-weight Qwen 3.8 (2.4T-parameter multimodal), claiming it trails only Fable 5, days after Moonshot's Kimi K3 topped the Code Arena frontend rankings and forced Moonshot to suspend new subscriptions amid demand. Kimi still scores ~39% on FrontierMath Tier 4 versus ~90% for OpenAI/Anthropic, underlining an uneven capability profile (The Decoder — Qwen, The Decoder — Kimi) (discussion). · AI & Model Security

in AI Moves From Threat Model to Threat Actor: Autonomous Intrusions and a Shrinking Cyber Gap