National Cyber Warfare Foundation (NCWF)

Security Affairs newsletter Round 597 by Pierluigi Paganini INTERNATIONAL EDITION


0 user ratings
2026-09-27 14:26:07
milo
Blue Team (CND)
A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including international press. OpenAI Agents Accessed US Government Websites Without Authorization Exploit.in Database Reveals the Roots of Today’s Ransomware Ecosystem […


A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box.





Enjoy a new round of the weekly SecurityAffairs newsletter, including international press.





OpenAI Agents Accessed US Government Websites Without Authorization
Exploit.in Database Reveals the Roots of Today’s Ransomware Ecosystem
U.S. CISA adds WordPress flaw to its Known Exploited Vulnerabilities catalog
U.S. CISA adds Microsoft SharePoint and Mikrotik RouterOS flaws to its Known Exploited Vulnerabilities catalog
Cryptocurrency exchange Bitget Says North Korea-Linked Hackers Stole $351.6 Million
ClickFix Campaign Abuses Trusted Websites to Deploy Psychedelic Stealer
AI-Powered CARBONATO Botnet Steals Credentials to Fund Its Own LLM Gateway
U.S. CISA adds Adobe and WSO2 flaws to its Known Exploited Vulnerabilities catalog
Ryuk Member Karen Vardanyan Sentenced to Two Years in U.S. Prison
AI Helps Uncover MikroTrick Attack Chain in MikroTik RouterOS
OpenAI Agent Bypassed an Australian Government Health Portal During Internal Research
CLOSEDQUORUM, the malware that asks four AI models what to do next
U.S. CISA adds Check Point, Arista VeloCloud Orchestrator, and F5 BIG-IP APM flaws to its Known Exploited Vulnerabilities catalog
F5 BIG-IP APM Zero-Day Exploited in Zero-Day RCE Attacks
ShinyHunters claims FBI breach after alleged PeopleSoft zero-day attack
EvilTokens made phishing-as-a-service look easy. Then it got taken down
Fake LastPass on GitHub Led to an Infostealer That Killed 145 Security Tools
CVE-2026-87902: how close is your WordPress to remote code execution?
Check Point Fixes a New Actively Exploited Critical Security Flaw
Chaotic Eclipse Released BigDiskBuster, A PoC For Windows Defender Update DoS Zero-Day
Public PoC Exposes Critical Veeam Agent Privilege Escalation
U.S. CISA adds Zyxel flaw to its Known Exploited Vulnerabilities catalog
Contagious Interview: 30,000 devices infected by a fake job interview
Google Fined €403 Million Over Location Data Practices
Foreign Hackers Target Two Colorado Water Utilities
ChainScript: the RAT that hides its command server inside a blockchain contract
A BYD Shark 6 Hack Shows the Risks of Connected Cars
The Target Is No Longer the Model. It’s the Agent.
UK Police Data Faces Long-Standing Microsoft Cloud Security Concerns
U.S. CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog
AI Hallucinations Nearly Triggered a US-China Military Confrontation




International Press – Newsletter





Cybercrime





ShinyHunters hacks Clop leak site, threatens to extort ransomware gang





Unmasking EvilTokens: Getting to the root of device code phishing





Consumer Protection Tuesday: Taking Down Evil Tokens





ShinyHunters hackers say they breached FBI, stole data on bureau employees  





Tech CEO, Russian National Arrested on Complaint Alleging They Hid Russian Ownership and Development of Software Sold to U.S. Government





How Romanian Crime Rings Are Draining U.S. Welfare Accounts  





An undercover Google analyst infiltrated a notorious supply-chain hacking gang    





Armenian National Extradited to the United States Sentenced to Federal Prison for Ransomware Extortion Scheme     





Spraying in the Andes: TeamFiltration Returns to Exploit Forgotten Service Accounts  





Exploit.in: inside a Russian hacker forum, 2005 to 2008  





Kosovar National Pleads Guilty to Operating Cybercrime Marketplace Offering Tools and Products to Cybercriminals  





Malware





Threat Intel | One Kit, Forty Companies: How a Malware-as-a-Service Platform Used GitHub as a Distribution Network for its Campaign  





Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO  





Malicious npm campaign targets developers integrating Twilio





Graphalgo campaign spreads to Terraform providers and Go Modules     





Inside Corp MDM, the Android spyware targeting logistics companies     





ClickFix Malware Report  





Re-Enabled GitHub Actions Expose Thousands of Repositories to Mini Shai-Hulud   





Hacking





We got a cybersecurity expert to hack this BYD. It was too easy  





UPDATE: Active Exploitation CVE-2026-32996 of Veeam Agent  





Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity 





One Hidden Meta Muse Setting Could Let Attackers Turn the AI Assistant Into a Backdoor





WordPress 7.1.2 Security Release: Unauthenticated LFI to RCE 





Critical F5 BIG-IP Vulnerability Exploited as Zero-Day  





MikroTrick: technical analysis, disclosure process, and the use of LLM agents 





Top 10 attacks on Claude Code and what each one actually broke





Muse, Meta’s extraordinarily privileged AI assistant, has a serious 0-day  





Attackers Exploit WordPress CVE-2026-87902 Within Hours of Disclosure





Intelligence and Information Warfare  





Water Cyberattack Campaign 2026  





Exclusive: US military had close call after using AI for false intelligence report, sources say 





Foreign hackers breach two more US water utilities, threaten safety of Colorado residents  





North Korean “WaterPlum,” commonly referred to as “Contagious Interview,” Cyber Actor Group Targeting IT Professionals; Activities of North Korean IT Workers in Japan, the United States and Europe   





Cybersecurity





Sensitive UK police data vulnerable to ‘compromise’ by US government and foreign actors  





ENISA Threat Landscape 2026 Breadcrumb Home Publications ENISA Threat Landscape 2026  





Data Protection Commission fines Google €403 million following Inquiry into Google’s processing of location data  





How AI could make it harder for governments to use hacking tools





OpenAI Agent Bypassed Australian Medicare Portal Controls to Access Non-Public Files





Altman, Amodei Call for Global Cooperation on AI to Boost Safety





Follow me on Twitter: @securityaffairs and Facebook and Mastodon





Pierluigi Paganini





(SecurityAffairs – hacking, newsletter)



Source: SecurityAffairs
Source Link: https://securityaffairs.com/199841/breaking-news/security-affairs-newsletter-round-597-by-pierluigi-paganini-international-edition.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.