New Tooling
- AI Agent Gateway: Open-Source Tool Keeps Credentials Out Of Agent Configs
"Tuskira’s AI Agent Gateway is an open-source solution that sits between AI agents and everything they call: the MCP tool servers that connect them to services like GitHub and Jira, and the model providers they send prompts to. The gateway runs in your own environment without a Tuskira account. A team running Claude Code, Cursor and a homegrown ticket bot usually has model keys and MCP credentials copied into each agent’s config, on every laptop and CI runner. Anyone who gets hold of one of those files gets the credentials inside it, and in Tuskira’s account nothing checks the agent’s permissions when it acts."
https://www.helpnetsecurity.com/2026/10/07/open-source-ai-agent-gateway/
https://github.com/Tuskira/ai-agent-gateway
Vulnerabilities
- SonicWall Warns Of Max Severity SSRF Flaw In SMA1000 Gateways
"SonicWall has released hotfixes to address a maximum-severity server-side request forgery (SSRF) flaw in SMA1000 series appliances. Tracked as CVE-2026-102255, the vulnerability was found in the Appliance WorkPlace interface of SMA1000 6210, 7210, and 8200v models, but it does not affect the SMA 100 Series product line or SSL-VPN running on SonicWall firewalls. The flaw stems from an unintended alternate access-path weakness that remote attackers without privileges can exploit in low-complexity attacks."
https://www.bleepingcomputer.com/news/security/sonicwall-warns-of-max-severity-ssrf-flaw-in-sma1000-gateways/
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2026-0017
https://thehackernews.com/2026/10/sonicwall-patches-cvss-100-pre.html
https://securityaffairs.com/200569/security/sonicwall-fixes-max-severity-pre-auth-flaw-in-sma1000-appliances.html
https://www.helpnetsecurity.com/2026/10/07/sonicwall-fixes-pre-auth-ssrf-flaw-in-sma-1000-appliances-cve-2026-102255/
JFSA-2026-001694382 - LMCache Is Vulnerable To Unauthenticated Remote Code Execution Via Pickle * Deserialization On The Multiprocess ZMQ Transport
"LMCache multiprocess mode, also called distributed mode, opens an unauthenticated ZeroMQ ROUTER so worker processes can register and share KV cache blocks. The intended clients are sibling LMCache processes. There is no CURVE, ZAP, password, or message authentication on that socket. LMCache used only inside a vLLM process does not open this port. The transport binds to localhost unless the operator sets a routable address with --host, which is how multi-node deployments let peers connect. The 9.8 score is for that routable configuration. A stock single-host install that leaves the default bind is not reachable from other machines."
https://research.jfrog.com/vulnerabilities/lmcache-is-vulnerable-to-unauthenticated-remote-code-execution-via-pickle-deserialization-on-the-multiprocess-zmq-transport-cve-2026-105192-jfsa-2026-001694382/
https://thehackernews.com/2026/10/unpatched-critical-lmcache-flaw-lets.html - Chrome 155 Update Patches 247 Vulnerabilities
"Google on Tuesday rolled out a Chrome 155 security update that addresses 247 vulnerabilities, including four critical-severity flaws. All four critical bugs are use-after-free issues. They impact Chrome’s Chromecast, Browser, Navigation, and Track components and are tracked as CVE-2026-106382, CVE-2026-106197, CVE-2026-106358, and CVE-2026-106347. The first was discovered by Google, while the other three were reported by Xinyang Ge, who used AI to identify two of the security defects. Google has yet to disclose the bug bounties handed out to the researcher."
https://www.securityweek.com/chrome-155-update-patches-247-vulnerabilities/
https://www.malwarebytes.com/blog/bugs/2026/10/update-chrome-and-chromeos-to-fix-critical-security-issues - Microsoft, Adobe, Apple, And Foxit Vulnerabilities
"Cisco Talos’ Vulnerability Discovery & Research team recently disclosed vulnerabilities in Adobe, Apple, Foxit Reader, and Microsoft. The vulnerabilities mentioned in this blog post have been patched by their respective vendors, in adherence to Cisco’s third-party vulnerability disclosure policy. For Snort coverage that can detect the exploitation of these vulnerabilities, download the latest rule sets from Snort.org, and our latest Vulnerability Advisories are always posted on Talos Intelligence’s website."
https://blog.talosintelligence.com/microsoft-adobe-apple-and-foxit-vulnerabilities/ - Android’s October 2026 Updates Patch 25 Vulnerabilities
"Google this week announced the rollout of fresh Android security updates that resolve 25 vulnerabilities in the Framework and System components. The fresh release arrives on devices as the 2026-10-01 security patch level and marks a change from the updates released over the past several years, which have been split into two parts. Android’s October 2026 patches resolve seven flaws in Framework and 18 in System, including a total of seven critical-severity bugs (one in Framework and six in System)."
https://www.securityweek.com/androids-october-2026-updates-patch-25-vulnerabilities/
https://www.malwarebytes.com/blog/bugs/2026/10/google-issues-android-security-updates-who-can-get-them-and-how
Malware
- Chrome's Response To Recent CcTLD Registry Hijacks
"Last week, we became aware of a series of domain hijacks in the .gh (Ghana), .sl (Sierra Leone), and .as (American Samoa) country-code top-level namespaces (i.e., ccTLDs). These incidents did not involve a compromise of Google’s systems; rather, attackers compromised the third-party ccTLDs, putting any domain ending in .gh, .sl, or .as at risk. During these hijacks, attackers modified authoritative DNS records and obtained unauthorized HTTPS certificates covering several Google domains, as well as domains belonging to other organizations. Due to the nature of the attacks, we have no reason to believe the Certification Authorities (CAs) that issued the impacted certificates did anything wrong."
https://blog.google/security/chromes-response-to-recent-cctld-registry-hijacks/
https://thehackernews.com/2026/10/attackers-hijack-gh-sl-and-as.html
https://www.bleepingcomputer.com/news/security/hackers-hijack-google-domains-after-breaching-cctld-registries/
https://www.theregister.com/security/2026/10/07/attackers-hijacked-top-level-domains-minted-fake-security-certs-for-google-and-other-orgs/5301718
https://www.helpnetsecurity.com/2026/10/07/google-unauthorized-https-certificates-cctld-hijacks/ - Canto Incognito: Tracking The PoeLLM Malware
"Exposed AI services can give threat actors access to valuable data and powerful computing resources. Since April 2026, Black Lotus Labs
has tracked PoeLLM, a malware campaign that uses a poem hosted on GitHub to direct infected systems to command-and-control servers. Read the complete research to learn how we disrupted the threat and helped protect Lumen Defender℠ customers."
https://www.lumen.com/blog/en-us/canto-incognito-tracking-the-poellm-malware
https://www.bleepingcomputer.com/news/security/poellm-malware-infects-exposed-ai-servers-in-cryptomining-attacks/
https://thehackernews.com/2026/10/poellm-malware-infects-3400-servers-to.html
https://cyberscoop.com/poellm-malware-botnet-poem-lumen-black-lotus-labs/
https://www.theregister.com/security/2026/10/07/poetry-is-the-new-ai-security-threat-as-poellm-malware-infects-3k-servers/5301672 - Hackers Exploit Critical Atlassian Flaw After Public PoC Release
"A critical vulnerability (CVE-2026-21589) affecting multiple Atlassian product families, including Jira, Confluence, and Bitbucket, is being exploited in attacks that do not require authentication. Earlier today, security company Previdian detected the activity on its honeypot network, just hours after a detailed technical report was published. An unauthenticated attacker can exploit CVE-2026-21589 to access specific files in the application's web root directory if they know the file's exact name and path."
https://www.bleepingcomputer.com/news/security/hackers-exploit-critical-atlassian-flaw-after-public-poc-release/
https://thehackernews.com/2026/10/atlassian-data-center-flaw-draws.html
https://www.helpnetsecurity.com/2026/10/07/exploitation-critical-atlassian-flaw-cve-2026-21589/ - From Guest Complaints To Malware: Blockchain Abuse Targets Hotels
"Cofense Intelligence has been tracking a series of email campaigns that target the accommodation industry with fake guest complaints or reviews that deliver blockchain technology-abusing malware. These emails appear to likely be a continuation of a prior series of predominantly Booking.com-spoofing emails that were seen delivering various remote access trojans (RAT) via ClickFix fake CAPTCHA websites. Cofense Intelligence assesses this with moderate confidence based on similarities in email templates and the targeted industry. This report is a broad overview of these campaigns’ email templates, how the Ethereum and TON blockchains are being abused, and the similarities between the EtherRAT and TONResolver malware payloads found in these campaigns."
https://cofense.com/blog/from-guest-complaints-to-malware-blockchain-abuse-targets-hotels - Threat Spotlight: Email Attacks Target Both Humans And AI In The Same Message
"Traditional phishing emails are designed to trick a human recipient into clicking a link, opening an attachment, or handing over information. As users increasingly rely on AI assistants to summarize email messages, prioritize inboxes, accept calendar invites, process support tickets, and help make business decisions, the phishing attack model is changing. Attackers now have a second target in their sights: the AI systems that sit between the email and the user. A recent attack campaign analyzed by Barracuda researchers demonstrates how such attacks combine traditional social engineering with malicious prompt injection."
https://blog.barracuda.com/2026/10/07/email-attacks-target-both-humans-ai-assistants
https://www.infosecurity-magazine.com/news/attackers-hide-ai-prompt/ - AI-Powered Phishkit Arms Criminals With Account-Hijacking Tools In 10 Minutes
"In August, the Malwarebytes research team reported on a new malicious turnkey kit that makes it possible for almost anyone to launch a sophisticated online scam. The kit was not simply a fake website. It bundled the command center, victim tracking, and administrative tools into a ready-to-use package, reducing the technical knowledge needed to operate a scam. The discovery highlights an important feature of the cybercrime economy: criminals don’t necessarily need to build their own infrastructure from scratch. Instead, they can buy ready-made services that handle much of the complicated work for them."
https://www.malwarebytes.com/blog/threat-intel/2026/10/ai-powered-phishkit-arms-criminals-with-account-hijacking-tools-in-10-minutes - Inside PhantomPolia: Remus Stealer Delivery Via Donut Shellcode In ClickFix Campaign
"The LevelBlue Operational Cyber Threat Intelligence (OpsCTI) Team recently observed a ClickFix campaign delivering Remus Stealer through compromised websites. The campaign uses PhantomPolia, a JavaScript loader that retrieves an encrypted configuration from an Ethereum Sepolia smart contract through public Remote Procedure Call (RPC) endpoints. The loader then decrypts the configuration locally using PBKDF2 and AES-GCM, revealing the next-stage command-and-control (C2) domain without exposing it directly on the compromised site."
https://www.levelblue.com/blogs/spiderlabs-blog/inside-phantompolia-remus-stealer-delivery-via-donut-shellcode-in-clickfix-campaign - Unknown Threat Actor Uses AI-Driven ARTEX To Target South Korean Finance
"CrowdStrike Intelligence identified infrastructure associated with a targeted campaign against South Korean financial organizations that resulted in exfiltrated data. The campaign was active from late September to early October 2026. Analysis of threat actor-controlled open directories uncovered Claude Code session histories, ARTEX configuration files, and Claude memory files, providing direct insight into the threat actor's operational methodology and tooling."
https://www.crowdstrike.com/en-us/blog/unknown-threat-actor-uses-artex-to-target-south-korean-finance/
Breaches/Hacks/Leaks
- Advantest Confirms Personal Information Stolen In Ransomware Attack
"Advantest Corporation is notifying affected individuals that a ransomware attack earlier this year exposed their personally identifiable data. The Japanese company is a global manufacturer of automated test equipment for the semiconductor industry. On February 15, a threat actor breached its network and gained access to some of its systems. At the time, the disclosure noted that hackers had accessed parts of its network and deployed a ransomware payload, but the company could not determine if customer or employee data had been impacted."
https://www.bleepingcomputer.com/news/security/advantest-confirms-personal-information-stolen-in-ransomware-attack/
https://www.securityweek.com/advantest-discloses-data-breach-months-after-ransomware-attack/ - Oracle Health's Cerner EHR Breach Figure Soars To 20 Million
"The number of patients affected in a 2025 hacking incident involving health data contained on legacy servers managed by electronic health record vendor Cerner has soared to about 20 million. If the figure is accurate, the breach of Cerner - acquired by Oracle Health in 2022 - would rank among the three largest health data compromises reported in 2025 to U.S. federal regulators. As of Wednesday, the U.S. Department of Health and Human Services' HIPAA Breach Reporting Tool website still listed the Cerner breach as a hacking incident reported on June 17, 2025, with a placeholder estimate of 501 patients."
https://www.bankinfosecurity.com/oracle-healths-cerner-ehr-breach-figure-soars-to-20-million-a-33033 - Arizona Courts Say Hackers Stole Info On More Than 1.3 Million People
"A cyberattack on Arizona’s court system gave hackers access to the sensitive information of more than 1.3 million people. In an updated FAQ published this week, Arizona court officials said federal and state investigators confirmed that criminal hackers “accessed and copied backup court files.” The court’s statement claims the format of the stolen files may make it difficult for the hackers to read the files."
https://therecord.media/arizona-courts-say-hackers-stole-info-on-over-1-million
https://www.securityweek.com/personal-information-for-over-1-million-people-stolen-in-a-cyberattack-on-arizonas-court-system/ - Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts
"Southern Company is notifying roughly 400,000 customers that their utility account information was accessed by an unauthorized third party through its online customer portal. The Atlanta-based energy holding company serves more than 9 million customers through electric utilities in three states and natural gas distribution businesses in four. Its electric subsidiaries are Georgia Power, Alabama Power and Mississippi Power. Roughly 300,000 of the affected accounts belong to Georgia Power customers. According to Southern Company, the incident also impacted roughly 100,000 of Alabama Power’s 1.6 million accounts."
https://www.securityweek.com/georgia-power-alabama-power-data-breach-hits-400000-accounts/ - Telegram Account Behind ASOS Rogue Notification Tied To Gaming Trading
"New findings from Group-IB, shared with Infosecurity, show that the Telegram account linked to the alleged ASOS hack used to be active in a forum for gaming-item trading. Anastasia Tikhonova, global head of threat research at Group-IB, investigated the Telegram channel t.me/xuanyewengateway, included in the bizarre push notification sent to ASOS customers on October 6 where a threat actor claimed to have hacked the company via a Snowflake instance. She has found that the channel was brand new – created on October 6 – and that the Telegram account behind it, now ‘Xuanyewen’ (@xuanyegroup), previously carried other names, largely in gaming-item trading."
https://www.infosecurity-magazine.com/news/telegram-accoun-asos-tied-gaming/
General News
- Q3 2026 Vulnerability Trend Report
"A total of 36,971 CVEs were disclosed in the third quarter of 2026, representing an increase of approximately 78.6% Compared to the second quarter. Among the vulnerabilities for which CVSS assessments were completed, approximately 12.7% Were rated “Critical” and approximately 42.6% Were rated “High,” meaning that more than half of the assessed vulnerabilities were classified as high-risk. By vulnerability type, CWE-284 (Improper Access Control) was the most common with 2,712 instances, followed by CWE-79 (XSS) and CWE-862 (Missing Authorization)."
https://asec.ahnlab.com/en/95741/ - Q3 2026 Attack Techniques Trend Report
"In the third quarter of 2026, there was a notable increase in cases where attackers attempted to establish persistence and expand their attacks using paths trusted by the organization following their initial access. Attacks on perimeter devices such as NetScaler and Cisco FMC led to the installation of web shells (server-side scripts for remote command execution) following vulnerability exploitation, while in the supply chain, malicious versions were distributed through official package registries. In identity-based attacks, attack cases were observed where attackers impersonated password reset notifications to obtain sessions and tokens."
https://asec.ahnlab.com/en/95733/ - Ransomware Recovery CEO Charged Over Secret Ransom Payments
"The owner of ransomware remediation company MonsterCloud has been charged with allegedly defrauding ransomware victims by secretly paying their attackers for decryptors while claiming to use proprietary technology to recover encrypted data. Zohar Pinhasi, 50, also known as "Zack Silver" and "Zack Green," was indicted by a federal grand jury in the Eastern District of New York on September 23 and arraigned Wednesday in federal court in Brooklyn. He is charged with one count of conspiracy to commit wire fraud and two counts of wire fraud in connection with an alleged ransomware decryption scheme that prosecutors say ran from June 2018 to June 2023."
https://www.bleepingcomputer.com/news/security/ransomware-recovery-ceo-charged-over-secret-ransom-payments/ - One Breach, Please, And Make No Mistakes
"For some time now, the cybersecurity community has seen examples of autonomous agents, built inside AI labs, attacking public infrastructure (to name a few, Hugging Face, DSEWiki, and RubyGems). Of course, frontier labs have built-in security to prevent these attacks from occurring, but every now and then, the training or prompting appears to be insufficient — especially when the agents themselves attempt to use logic to probe and bypass the restrictions placed on them. The question that matters is not whether AI attacks are coming, because the age of AI agents executing cyber attacks is already here. The question is what to do about it and how to harden the stack against a swarm of agents who will relentlessly lie, deceive, and probe until the objective is met."
https://blog.talosintelligence.com/one-breach-please-and-make-no-mistakes/ - Automation, AI Agents Or People? Sorting Out Who Handles Each Security Finding
"Just over half of the 200 senior security and technology leaders polled for ArmorCode say their organizations will struggle to simplify their software security programs if they keep working the way they do today. The respondents are senior people, most of them at companies with 10,000 or more employees, and their worries center on what happens after a scanner flags something. Someone has to decide whether the flaw matters, find out who owns it, and get the fix through teams that run on different tools and release schedules. Each delay in that chain leaves a known flaw open longer. Verizon’s 2026 Data Breach Investigations Report puts the median time to fully resolve a critical vulnerability at 43 days."
https://www.helpnetsecurity.com/2026/10/07/software-security-vulnerability-management-survey/ - Half Of Cybersecurity Pros Still Rely On Passwords Despite Security Concerns
"Around half (48%) of cybersecurity professionals rely on usernames and passwords to authenticate their personal accounts, according to a study by Yubico and Okta. Additionally, this method remains the single most common way that security professionals log in to their work accounts, used by 43%. This is despite the respondents’ viewing usernames and passwords as one of the least secure methods of authentication, showing there is an execution gap in enterprise security."
https://www.infosecurity-magazine.com/news/cybersecurity-pros-rely-passwords/ - The Sixth Voice Of The CISO Data Shows Cyber Risk Has Moved Inside The Workflow
"For years, the enterprise cybersecurity story has been told as a straight line of escalation: more attacks, more data loss, more pressure, and more urgency. That narrative is still familiar, but comparing the five most recent years of Voice of the CISO research suggests a more useful reading. The CISO role has not simply become harder because every metric is rising at once. It has become harder because the center of risk has shifted and moved closer to the way work now gets done. The latest 2026 findings show signs of progress. Fewer CISOs expect a material cyberattack in the next 12 months, and fewer report material loss of sensitive information than in 2025. But those improvements sit within a longer trend line that is much less settled. Over five years, attack expectations have risen, fallen, and risen again. Board alignment has swung sharply. Human risk has remained stubbornly central. AI has moved from an emerging concern to defining mandate. The result is not a simple story of improvement or decline. It is a story of risk changing location."
https://thehackernews.com/2026/10/the-sixth-voice-of-ciso-data-shows.html
https://www.proofpoint.com/us/2026-voice-ciso - US Posts $10 Million Reward For Accused Chinese ‘Hafnium’ Hacker
"The State Department is offering $10 million for information on the whereabouts of Zhang Yu, a Chinese national accused of being a key figure in the Hafnium hacking campaign. U.S. officials claimed Zhang, who serves as director of Shanghai Firetech Information Science and Technology, worked on behalf of the Chinese government as part of an effort that saw hackers breach thousands of computers and steal troves of documents and emails."
https://therecord.media/accused-hafnium-hacker-zhang-yu-10million-reward - Evolution Of Web3 In Cloud Supply Chain Attacks
"Threat actors have systematically upgraded their command-and-control (C2) infrastructure to use Web3, also known as Web 3.0 or decentralized blockchain web architectures. This advancement goes from using static C2 endpoints hard coded in malware binaries to using Web3-powered smart contracts. Threat actors are then enabled to dynamically update entire botnets and worm network infrastructures with a single smart contract transaction."
https://unit42.paloaltonetworks.com/web3-cloud-supply-chain-attacks/ - Qilin Ransomware Suspect Arrested In Japan, Extradited To Germany
"An alleged member of the Qilin ransomware group was arrested in Japan and subsequently extradited to Germany. The suspect, a 28-year-old Russian national, was detained in Osaka in May and was reportedly handed over to the German authorities on October 2. Believed to be a core member of the ransomware gang, the individual was wanted in Germany for hacking into a logistics company in September 2024, encrypting data on its systems, and extorting it of over $160,000 in cryptocurrency."
https://www.securityweek.com/qilin-ransomware-suspect-arrested-in-japan-extradited-to-germany/
อ้างอิง
Electronic Transactions Development Agency (ETDA) 















