September 11, 2026
- GreyNoise traced the PaperCut NG/MF campaign (CVE-2026-81578, CVE-2026-82078) to
45.142.193.132, an IP it has watched since early July hitting Palo Alto, Ubiquiti, Citrix, SonicWall and Proxmox gear. Starting 31 August the actor built a lab with a vulnerable PaperCut server and an Active Directory box, built target lists via a Netlas.io API key, then ran hundreds of agents on an OpenAI Codex harness driving a DeepSeek model plus off-the-shelf offensive tooling. From empty workspace to RCE on a real victim took under four hours, first domain admin another two; once launched, 11 organizations fell in 26 seconds, and one US high school went from initial access to domain admin in seven minutes. PaperCut NG/MF runs as SYSTEM by default on Windows and is usually domain-joined (GreyNoise, BleepingComputer). Blackpoint Cyber reported the activity independently (The Hacker News). Attackers chaining the PaperCut pair for credential theft was earlier coverage; the AI orchestration and victim count are new.
· Offensive AI in the Wild - SonicWall SMA1000 (CVE-2026-15409) was chained from SSRF into RCE in the appliance's Erlang service and on to automated DCSync from the appliance itself, in an intrusion at a UK council (Hunt.io).
· Exploitation in the Wild
in Four Hours to First Victim: AI Agents Ran a Global PaperCut Campaign
September 4, 2026
- CISA added seven actively exploited flaws to KEV, spanning an unusually broad stack: CVE-2026-83548 (SonicWall SMA 1000 pre-auth SSRF, CVSS 10.0), CVE-2026-82329 (JFrog Artifactory auth bypass), CVE-2026-9586 (Sangoma Switchvox pre-auth SQLi), CVE-2026-59822 (BerriAI LiteLLM improper authentication), CVE-2026-48710 (Starlette request smuggling) and CVE-2026-49869 (Kestra OSS command injection) (CISA). Observed post-exploitation is reverse shells and crypto miners (The Hacker News); the Artifactory bug is being used to forge admin tokens (BleepingComputer). LiteLLM sitting in KEV is the signal to watch — AI gateway middleware is now in the exploited-in-the-wild category.
· Exploitation & Vulnerabilities
in Malware That Gaslights the AI Analyst
September 3, 2026
- SonicWall SMA 1000 zero-days chained for unauthenticated RCE, exploited in the wild. CVE-2026-83548 (CVSS 10.0) is a pre-auth SSRF in the Appliance Work Place interface; chained with CVE-2026-83549 it yields unauthenticated remote code execution. Both were found internally by SonicWall and are confirmed under active exploitation (SonicWall PSIRT, BleepingComputer). This is the third round of edge-device zero-day exploitation at the vendor this summer (Dark Reading).
· Vulnerabilities & Exploitation
in Ten Hours, Fifty Techniques: AI Agents Ran the Whole Ransomware Intrusion
August 4, 2026
- INC Ransomware has become the dominant actor exploiting SonicWall SMA 1000 flaws. Resecurity reports INC accelerating sharply since the start of August, using the appliance bugs for root access and lateral movement and posting multiple victims to its leak site (The Hacker News, SecurityWeek).
· Vulnerabilities & Exploits
in Attackers Seize N-central RMM Servers After N-able's Second Fix Falls Short
July 29, 2026
- Huntress is also tracking an active SonicWall credential-stuffing campaign that has produced successful unauthorized logins to VPN and firewall accounts across dozens of organizations; the blog carries IOCs (Huntress).
· Threat Activity
in Artifactory Zero-Days Confirmed as the Hugging Face AI Agent's Escape Route
July 21, 2026
in Microsoft Graph Becomes a Spy's Dead Drop as WordPress "wp2shell" Exploitation Goes Live
July 17, 2026
- SonicWall SMA1000 SSL-VPN appliances are under broad-scale exploitation via CVE-2026-15409, with watchTowr's honeypot network logging activity from ~03:00 UTC leveraging publicly available PoC code (watchTowr); Rapid7 published a working non-root RCE PoC (GitHub). This follows the SMA1000 zero-days added to CISA KEV earlier this week (earlier coverage). watchTowr's advice: patch immediately and hunt logs for successful exploitation.
· Vulnerabilities & Exploits
- SonicWall's July patch for the in-the-wild ADFS bug CVE-2026-56155 does not actually fix the vulnerability — it only adds an audit log, with the hardening enforcement deferred, per Kevin Beaumont (Gossi) (discussion).
· Vulnerabilities & Exploits
in Live SonicWall Exploitation, a New C2 Release, and AI Agents Tricked Into Running Attacker Commands
July 16, 2026
- Two SonicWall SMA1000 zero-days are under active exploitation and now in CISA's KEV catalog. CVE-2026-15409 (CVSS 10.0) is an unauthenticated SSRF, and CVE-2026-15410 can enable arbitrary command execution; patch immediately. Sweden's national CERT has amplified the advisory. CERT-SE, The Hacker News, BleepingComputer
· Vulnerabilities & Exploits
in Relay Chains, Bind-Link Blindspots, and a Wave of Live Zero-Days