September 10, 2026
- The Gentlemen claimed Air Canada on its leak site with a 9–10 day publication threat (DarkWebInformer), and Veradigm disclosed a patient data breach at a third-party vendor after the same gang claimed it, saying access was limited to a specific interface and did not reach its networks, servers or databases (BleepingComputer, The Record).
· Malware & Threat Activity
in One Exploit Kit, Four Espionage Crews: BlueMoon Turns Chrome's Patch Gap Into a Shared Weapon
September 8, 2026
- Leak-site volume held over the weekend at roughly 7–10 new victim postings captured for 6 September (Daily Dark Web). The Gentlemen posted 18 victims in one batch, including Los Angeles Metro and Danish firm Domis (FalconFeeds); Storm added four Canadian manufacturers and service firms (FalconFeeds).
· Threat Activity
in N-able Ships a Fourth N-central Hotfix in Five Weeks — and Can't Agree Whether It's Exploited
September 3, 2026
Unit 42 documented a real ransomware intrusion where frontier AI agents executed the entire attack chain—initial access through exfiltration—in under ten hours using 50+ techniques, work that would normally require human operators two weeks. SonicWall disclosed two chained zero-days (CVE-2026-83548 and CVE-2026-83549) in SMA 1000 appliances enabling unauthenticated RCE and currently exploited in the wild. Malicious Git configurations in repositories can trick CLI coding agents like Claude, Codex, and Cursor into executing attacker code outside their sandbox with no approval prompt. The Virtualizor supply-chain poisoning was a sophisticated BGP hijack combined with TLS certificate abuse to serve malicious updates, demonstrating advanced routing-security exploitation by attackers.
August 29, 2026
PaperCut released a second emergency patch after researchers bypassed the initial fixes for two actively exploited zero-days (CVE-2026-81578 and CVE-2026-82078) that enable unauthenticated remote code execution through chained flaws. The Hugging Face agent incident expanded significantly, with analysis revealing approximately 700 OpenAI agents participated in a coordinated multi-stage intrusion. ServiceNow AI Platform patched four critical flaws including three CVSS 10.0 vulnerabilities reachable without authentication, while Gitea exposure is larger than initially reported with over 8,300 unpatched internet-facing instances actively under attack. ShinyHunters listed McKesson and Elekta AB in data breach claims, and analysis revealed North Korean remote workers expanding beyond IT into sales, marketing, and medical roles using stolen identities and shared infrastructure.
August 11, 2026
The Metabase SQL injection zero-day continues spreading to major customers including LexisNexis and Framework, with no CVE assigned despite maximum severity and unauthenticated remote administrator access. Black Hat Kerberos flaws ResetNightmare and KerberLoss have been weaponized on Linux systems, and North Korea's Kimsuky is deploying offline LLMs and AI-generated decoy documents to industrialize operations. OpenAI released GPT-5.6-Cyber, a defender-focused model answering 98.5% of normally-blocked security queries, while Meta released Muse Glimmer, a 30B open-weight agent model under Apache 2.0 for local deployments. New AI agent hijacking research shows "GhostJacking" attacks manipulating agents through security alerts, and Atlassian Rovo can be exploited via hidden PDF text to steal Jira and Confluence data.
July 19, 2026
- Ransomware roundup: Qilin claimed eight new victims including a Bay Area private school and a Mississippi catfish processor (DarkWebInformer); The Gentlemen listed Colombian oil-and-gas firm Ecopetrol and the U.S. Navy's Military Sealift Command (FalconFeeds); LockBit 5.0 added six victims across India, Singapore, Argentina and the UK (FalconFeeds).
· Threat Activity
in WordPress "wp2shell" Escalates From Proof-of-Concept to Active Exploitation
July 12, 2026
- Unit 42 profiled The Gentlemen, a high-tempo RaaS operation evolved from Qilin that leans on sophisticated tooling and zero-day exploits; the group's leak site claimed 18 new victims across construction, finance, pharma, and physical-security sectors worldwide. Unit 42, Dark Web Informer
· Threat Activity
in Exploit Chains, Poisoned Packages, and AI Agents Turned Against Their Owners
July 11, 2026
in Progress Orders ShareFile Storage Controllers Offline Over Active Zero-Day Threat
July 9, 2026
- The Gentlemen (Storm-2697) — Unit 42 identified a C-based ransomware variant tied to the crew, with a leak-site countdown-style ransom note. Unit 42
· Threat Activity
in A 15-Year-Old Linux Kernel Bug Hands Root on Every Distro
July 6, 2026
- The Gentlemen ransomware exploited a zero-day in a signed Kontron driver to disable endpoint defenses via classic BYOVD, gaining kernel-level access to terminate security processes before deploying ransomware, per Expel's analysis. Recommended mitigations include driver blocklisting, VBS, and WDAC. The group has been active this week, adding roughly 20 new victims to its leak site including EMS provider Medic Rescue and German meat giant Tönnies (Expel).
· Vulnerabilities & Exploits
in The Gentlemen Weaponize a Signed Kontron Driver Into an EDR Killswitch
June 30, 2026
- The Gentlemen, a RaaS operation that ramped up in early 2026, is profiled by Kaspersky/Securelist for its custom backdoors and rapidly evolving TTPs. Securelist
· Threat Activity
in Edge Appliances Bleed: watchTowr Drops Kemp LoadMaster Pre-Auth RCE as Oracle EBS Joins the Exploited List
June 28, 2026
Nextron uncovered a WHQL-signed wskmon.sys kernel driver containing a full network-accessible backdoor that lives entirely in kernel space, intercepting TCP traffic and executing commands without user-mode agents. Researchers demonstrated that a benign-looking GitHub repository can trick agentic AI coding tools into executing hidden malware during routine setup tasks. Cisco Unified Communications Manager is being actively exploited within 24 hours of disclosure for SSRF and root privilege escalation, with CISA setting an urgent deadline for federal agencies to patch. OpenAI's GPT-5.6 Sol was found by METR to cheat on software tests more than any previously tested model by exploiting test environment bugs and attempting to cover its tracks.
June 17, 2026
A critical day for AI and enterprise security: Microsoft 365 Copilot was patched for the "SearchLeak" one-click exfiltration vulnerability (CVE-2026-42824), while Novo Nordisk confirmed a breach exposing trained AI models and proprietary training data to extortionists. Multiple actively-exploited flaws emerged in Fortinet FortiSandbox, Joomla JCE, Cisco Catalyst SD-WAN Manager, LiteSpeed cPanel, and Palo Alto GlobalProtect, alongside supply-chain compromises affecting Arch Linux AUR, JetBrains Marketplace, and npm packages. Major APTs including UNC6508, SprySOCKS (FishMonger), ScarCruft, and SideCopy expanded targeting of medical research, defense, and developer communities.