Cyber Security News
- Get link
- X
- Other Apps
"AWS Bedrock Agent flaws let attackers hijack AI agents and steal cloud credentials."
Views expressed in this cybersecurity, cybercrime update are those of the reporters and correspondents. Accessed on 11 October 2026, 0144 UTC.
Content and Source: "Cyber Security News" via email subscription from https://feedly.com.
https://feedly.com/i/subscription/content/feed%2Fhttps%3A%2F%2Fcyberpress.org%2Ffeed%2F
Please check subscription link or scroll down to read your selections. Thanks for joining us today. You can find recent posts and articles in the "Archive" section of this blog.
Russ Roberts (https://www.hawaiicybersecurityjournal.net).
Cyber Security News
6
6
Yesterday
A newly disclosed attack chain in Amazon Bedrock AgentCore lets attackers with chat access to an exposed AI agent steal temporary cloud credentials and compromise other agents in the same AWS account and region. The research, named AgentCorruption, connected prompt injection, metadata access, and excessive execution-role permissions. AgentCore runs containerized agents inside Firecracker microVMs IoC > 3 IPs and 6 file paths•by Tamilselvan / 19hHackers used artificial intelligence agents to turn an exposed application endpoint into full administrative control of a server in under 24 hours. The attackers executed hundreds of commands, stole credentials, and escalated privileges without deploying new malware or exploiting a zero-day vulnerability. Researchers Austin Ritchie and Daxton Wirth assessed with high confidence that large languag 9 TTPs•by Tamilselvan / 19hThreat actors are exploiting two zero-day vulnerabilities in Ahsay Cloud Backup Server (AhsayCBS) to compromise exposed backup servers without authentication and execute commands with SYSTEM privileges. Observed attacks have deployed web shells and cryptocurrency miners, raising concerns about the security of centrally managed backup infrastructure. According to Field Effect’s October 9, 2026, re 9 TTPs•by Tamilselvan / 19hDarkBlinders hackers are using a fake video meeting application and GitHub repositories to conduct cyberespionage against targets in Israel and the Kurdistan Region of Iraq. Researchers observed the campaign between August and October 2026 and reported that it remained active at publication. The investigation confirmed compromises involving a government cloud environment in Kurdistan and a promin IoC > 3 domains•by Tamilselvan / 19hA newly disclosed unprecedented surge in suspected Iranian VPN-over-DNS activity, with one domain generating 40 billion passive DNS observations within days. Published October 9, 2026, the investigation describes infrastructure that expanded across more than 100 domains during the conflict. Ian Campbell circumstantially linked the traffic to Iran but did not identify its operators, decode its con A new GhostAction campaign has compromised more than 500 GitHub accounts and, since October 7, 2026, has spread malicious workflows across tens of thousands of repositories. Socket researchers reported that the operation combines GitHub Actions secret theft with searches for cloud and artificial intelligence credentials embedded in source code and Git history. The expanded scope emerged after res
A newly disclosed attack chain in Amazon Bedrock AgentCore lets attackers with chat access to an exposed AI agent steal temporary cloud credentials and compromise other agents in the same AWS account and region. The research, named AgentCorruption, connected prompt injection, metadata access, and excessive execution-role permissions. AgentCore runs containerized agents inside Firecracker microVMs
IoC > 3 IPs and 6 file paths
by Tamilselvan / 19h
Hackers used artificial intelligence agents to turn an exposed application endpoint into full administrative control of a server in under 24 hours. The attackers executed hundreds of commands, stole credentials, and escalated privileges without deploying new malware or exploiting a zero-day vulnerability. Researchers Austin Ritchie and Daxton Wirth assessed with high confidence that large languag
9 TTPs
by Tamilselvan / 19h
Threat actors are exploiting two zero-day vulnerabilities in Ahsay Cloud Backup Server (AhsayCBS) to compromise exposed backup servers without authentication and execute commands with SYSTEM privileges. Observed attacks have deployed web shells and cryptocurrency miners, raising concerns about the security of centrally managed backup infrastructure. According to Field Effect’s October 9, 2026, re
9 TTPs
by Tamilselvan / 19h
DarkBlinders hackers are using a fake video meeting application and GitHub repositories to conduct cyberespionage against targets in Israel and the Kurdistan Region of Iraq. Researchers observed the campaign between August and October 2026 and reported that it remained active at publication. The investigation confirmed compromises involving a government cloud environment in Kurdistan and a promin
IoC > 3 domains
by Tamilselvan / 19h
A newly disclosed unprecedented surge in suspected Iranian VPN-over-DNS activity, with one domain generating 40 billion passive DNS observations within days. Published October 9, 2026, the investigation describes infrastructure that expanded across more than 100 domains during the conflict. Ian Campbell circumstantially linked the traffic to Iran but did not identify its operators, decode its con
A new GhostAction campaign has compromised more than 500 GitHub accounts and, since October 7, 2026, has spread malicious workflows across tens of thousands of repositories. Socket researchers reported that the operation combines GitHub Actions secret theft with searches for cloud and artificial intelligence credentials embedded in source code and Git history. The expanded scope emerged after res
Oct 8, 2026
by swathi / 1d“DRM” covers at least three different purchases wearing one acronym enterprise rights management that keeps policy attached to internal documents, hard-shell protection for content you sell (courses, reports, media), and the licensing plumbing behind streaming video, supported by modern Zero Trust security architectures . Buy the wrong lane and you’ll either suffocate collaboration or watch your by swathi / 1dFile integrity monitoring is one of those controls everyone must have PCI demands it, auditors expect it, incident responders depend on it and one of the easiest to buy wrong, supported by robust data security management frameworks . The enterprise reconciliation platform that delights a bank’s audit team will bury a five-person IT shop in alerts; the free agent that thrills a Linux engineer has 2 TTPs•by Tamilselvan / 1dA high-severity denial-of-service vulnerability in React Server Components can allow attackers to stall vulnerable Next.js servers using a single specially crafted HTTP POST request. Tracked as CVE-2026-23870, the flaw carries a CVSS score of 7.5 and affects React Server Component packages used by React 19 applications, including many Next.js deployments with reachable Server Actions. The issue r by swathi / 1dThere is no “best” ransomware recovery solution there’s the best one for your estate, team size, and tolerance for rebuild time, backed by robust data security management frameworks . A VMware-heavy mid-market firm, a cloud-native company with no backup servers, and a two-admin SMB behind an MSP need three different products, and vendor shortlists that ignore that difference produce shelfware. Be The FBI has warned that Chinese government-linked hackers are combining automated vulnerability scanning, large-scale botnets, and hands-on exploitation to steal sensitive information from organizations worldwide. A joint advisory published October 8, 2026 , identifies China-based Integrity Technology Group as an enabler supplying tools, infrastructure, and support for malicious operations. The w 3 TTPs•by Tamilselvan / 1dA newly disclosed critical authentication bypass in Sungrow’s iSolarCloud management platform that allowed attackers to access accounts without passwords, including administrative accounts controlling solar installations. The vulnerability affected the cloud platform’s business logic across four regional environments serving Europe, China, Australia, and international customers. Although each env Microsoft is preparing to add third-party synthetic audio and video detection to Microsoft Teams, allowing organizations to surface signs of manipulated meeting media inside the collaboration platform. The feature, listed under Microsoft 365 Roadmap ID 573451, remains in development, with rollout scheduled to begin in November 2026. The update will connect Teams with certified third-party detecti 17 TTPs•by Varshini / 1dCastleStealer has added remote shell capabilities that allow attackers to execute commands and deliver additional malware on infected systems. First discovered in April 2026, the C# information stealer has continued evolving, with newer samples also bypassing browser protections and sending stolen information through small encrypted transmissions. These changes expand the malware’s role beyond co Cisco Talos is urging enterprises to prepare and rehearse incident response plans as autonomous AI agents create new security challenges. Its guidance warns that attackers can combine automated vulnerability testing, phishing, credential theft, and infrastructure deployment to pressure defenders across several fronts. The concern extends beyond chatbots writing malicious code. Agentic AI systems ThreatLabz discovered a malicious Terraform provider in July 2026 that delivers credential stealers and backdoors to developer systems. The campaign uses trusted infrastructure workflows to infect macOS , Linux, and Windows devices, exposing sensitive browser data, terminal histories, and cryptocurrency wallet information. The activity overlaps with campaigns associated with TraderTraitor, a Nort Citrix has disclosed a critical memory overflow vulnerability in NetScaler ADC and NetScaler Gateway that could allow remote code execution or denial-of-service attacks under specific configuration conditions. Tracked as CVE-2026-107406, the vulnerability has a CVSS v4.0 base score of 9.5, prompting an urgent recommendation that affected customers upgrade their appliances. According to the suppli IoC > 2 hashes•by Varshini / 1d•7 TTPsWarden Stealer is expanding its reach across Windows systems, targeting cryptocurrency wallets, browser credentials, and sensitive application data. Written in Rust, the malware is sold as an infostealer service and has been promoted on underground forums since August 2026. Its developers advertise support for more than 200 cryptocurrency wallet extensions and over 360 application targets across ESET researchers have traced the evolution of MATCHBOIL, a custom C# downloader used by the Russia-aligned UAC-0099 cyberespionage group. The malware downloads, installs, and maintains access to another payload, usually the MATCHWOK backdoor. Newer versions add sandbox checks, stronger code obfuscation, and misleading application windows to hide malicious activity. The investigation covers sample Anthropic launched its Cyber Mission on October 8, 2026, introducing a long-term initiative to strengthen critical infrastructure and open-source software security using Claude AI, engineering support, threat research, and funding. The effort targets a widening gap between automated vulnerability discovery and the human-intensive processes required to validate findings, prioritize remediation, an by Varshini / 1dIts guidance highlights a challenge beyond protecting encrypted traffic ensuring that applications, devices, certificate authorities, and security infrastructure can handle new algorithms without breaking existing trust relationships. The company’s Post-Quantum Cryptography (PQC) Transport Layer Security (TLS) Pilot Program provides a controlled setting for certificate authorities to test these c The FBI’s Operation Blackout has targeted scam centers in Ghana, with more than 130 people arrested or detained, over 300 devices seized, and nearly $10 million in identified losses. Investigators have identified 89 victims, while the investigation remains ongoing. Patel announced the results as part of a broader campaign against global scam operations targeting Americans. The detention figure re 3 TTPs•by Tamilselvan / 1dA newly disclosed concentrated surge in exploitation attempts against Hikvision surveillance devices in Ukraine, with four IP addresses driving nearly all observed activity. The campaign focused on CVE-2021-36260, a critical command injection vulnerability that enables unauthenticated attackers to execute commands on affected, unpatched products. In its October 8 report, GreyNoise described incre 6 TTPs•by Tamilselvan / 2dA proof-of-concept exploit for CVE-2026-102489, a Zammad vulnerability that chains unauthenticated session disclosure into session hijacking and remote code execution. Researcher Zach Hanley published the technical analysis on October 7, 2026, showing how exposed administrator cookies let attackers execute commands as the Zammad operating system user. The disclosure follows a breach at the Dutch by Guru / 2dMost SIEM reviews are written for the people who sign the contract. This one is written for the people who work the queue because by 2027 the gap between those two audiences decides whether a platform succeeds. A SOC team’s SIEM is judged at 3 a.m.: how fast an alert becomes a story, how much the AI assistant actually removes from the plate, whether detection content can be tested like code, and A critical vulnerability in LMCache could allow unauthenticated remote attackers to execute arbitrary code on exposed distributed deployments, potentially with root privileges. Tracked as CVE-2026-105192, the flaw carries a CVSS score of 9.8 and stems from unsafe Python pickle deserialization in LMCache’s multiprocess ZeroMQ transport. JFrog Security Researcher Yuval Moravchick discovered and rep Privilege Escalation (Enterprise TA0004)•by Tamilselvan / 2dwolfSSL has released wolfSSH 1.6.0, addressing five security vulnerabilities spanning server authentication, Windows privilege escalation, key exchange, port forwarding, and SFTP memory handling. Published on October 6, 2026, the update fixes one critical, one high, and three medium severity flaws. The release also introduces stricter security defaults and additional cryptographic capabilities. T Modify Registry (Enterprise T1112)•by Tamilselvan / 2d
by swathi / 1d
“DRM” covers at least three different purchases wearing one acronym enterprise rights management that keeps policy attached to internal documents, hard-shell protection for content you sell (courses, reports, media), and the licensing plumbing behind streaming video, supported by modern Zero Trust security architectures . Buy the wrong lane and you’ll either suffocate collaboration or watch your
by swathi / 1d
File integrity monitoring is one of those controls everyone must have PCI demands it, auditors expect it, incident responders depend on it and one of the easiest to buy wrong, supported by robust data security management frameworks . The enterprise reconciliation platform that delights a bank’s audit team will bury a five-person IT shop in alerts; the free agent that thrills a Linux engineer has
2 TTPs
by Tamilselvan / 1d
A high-severity denial-of-service vulnerability in React Server Components can allow attackers to stall vulnerable Next.js servers using a single specially crafted HTTP POST request. Tracked as CVE-2026-23870, the flaw carries a CVSS score of 7.5 and affects React Server Component packages used by React 19 applications, including many Next.js deployments with reachable Server Actions. The issue r
by swathi / 1d
There is no “best” ransomware recovery solution there’s the best one for your estate, team size, and tolerance for rebuild time, backed by robust data security management frameworks . A VMware-heavy mid-market firm, a cloud-native company with no backup servers, and a two-admin SMB behind an MSP need three different products, and vendor shortlists that ignore that difference produce shelfware. Be
The FBI has warned that Chinese government-linked hackers are combining automated vulnerability scanning, large-scale botnets, and hands-on exploitation to steal sensitive information from organizations worldwide. A joint advisory published October 8, 2026 , identifies China-based Integrity Technology Group as an enabler supplying tools, infrastructure, and support for malicious operations. The w
3 TTPs
by Tamilselvan / 1d
A newly disclosed critical authentication bypass in Sungrow’s iSolarCloud management platform that allowed attackers to access accounts without passwords, including administrative accounts controlling solar installations. The vulnerability affected the cloud platform’s business logic across four regional environments serving Europe, China, Australia, and international customers. Although each env
Microsoft is preparing to add third-party synthetic audio and video detection to Microsoft Teams, allowing organizations to surface signs of manipulated meeting media inside the collaboration platform. The feature, listed under Microsoft 365 Roadmap ID 573451, remains in development, with rollout scheduled to begin in November 2026. The update will connect Teams with certified third-party detecti
17 TTPs
by Varshini / 1d
CastleStealer has added remote shell capabilities that allow attackers to execute commands and deliver additional malware on infected systems. First discovered in April 2026, the C# information stealer has continued evolving, with newer samples also bypassing browser protections and sending stolen information through small encrypted transmissions. These changes expand the malware’s role beyond co
Cisco Talos is urging enterprises to prepare and rehearse incident response plans as autonomous AI agents create new security challenges. Its guidance warns that attackers can combine automated vulnerability testing, phishing, credential theft, and infrastructure deployment to pressure defenders across several fronts. The concern extends beyond chatbots writing malicious code. Agentic AI systems
ThreatLabz discovered a malicious Terraform provider in July 2026 that delivers credential stealers and backdoors to developer systems. The campaign uses trusted infrastructure workflows to infect macOS , Linux, and Windows devices, exposing sensitive browser data, terminal histories, and cryptocurrency wallet information. The activity overlaps with campaigns associated with TraderTraitor, a Nort
Citrix has disclosed a critical memory overflow vulnerability in NetScaler ADC and NetScaler Gateway that could allow remote code execution or denial-of-service attacks under specific configuration conditions. Tracked as CVE-2026-107406, the vulnerability has a CVSS v4.0 base score of 9.5, prompting an urgent recommendation that affected customers upgrade their appliances. According to the suppli
IoC > 2 hashes
by Varshini / 1d
•7 TTPs
Warden Stealer is expanding its reach across Windows systems, targeting cryptocurrency wallets, browser credentials, and sensitive application data. Written in Rust, the malware is sold as an infostealer service and has been promoted on underground forums since August 2026. Its developers advertise support for more than 200 cryptocurrency wallet extensions and over 360 application targets across
ESET researchers have traced the evolution of MATCHBOIL, a custom C# downloader used by the Russia-aligned UAC-0099 cyberespionage group. The malware downloads, installs, and maintains access to another payload, usually the MATCHWOK backdoor. Newer versions add sandbox checks, stronger code obfuscation, and misleading application windows to hide malicious activity. The investigation covers sample
Anthropic launched its Cyber Mission on October 8, 2026, introducing a long-term initiative to strengthen critical infrastructure and open-source software security using Claude AI, engineering support, threat research, and funding. The effort targets a widening gap between automated vulnerability discovery and the human-intensive processes required to validate findings, prioritize remediation, an
by Varshini / 1d
Its guidance highlights a challenge beyond protecting encrypted traffic ensuring that applications, devices, certificate authorities, and security infrastructure can handle new algorithms without breaking existing trust relationships. The company’s Post-Quantum Cryptography (PQC) Transport Layer Security (TLS) Pilot Program provides a controlled setting for certificate authorities to test these c
The FBI’s Operation Blackout has targeted scam centers in Ghana, with more than 130 people arrested or detained, over 300 devices seized, and nearly $10 million in identified losses. Investigators have identified 89 victims, while the investigation remains ongoing. Patel announced the results as part of a broader campaign against global scam operations targeting Americans. The detention figure re
3 TTPs
by Tamilselvan / 1d
A newly disclosed concentrated surge in exploitation attempts against Hikvision surveillance devices in Ukraine, with four IP addresses driving nearly all observed activity. The campaign focused on CVE-2021-36260, a critical command injection vulnerability that enables unauthenticated attackers to execute commands on affected, unpatched products. In its October 8 report, GreyNoise described incre
6 TTPs
by Tamilselvan / 2d
A proof-of-concept exploit for CVE-2026-102489, a Zammad vulnerability that chains unauthenticated session disclosure into session hijacking and remote code execution. Researcher Zach Hanley published the technical analysis on October 7, 2026, showing how exposed administrator cookies let attackers execute commands as the Zammad operating system user. The disclosure follows a breach at the Dutch
by Guru / 2d
Most SIEM reviews are written for the people who sign the contract. This one is written for the people who work the queue because by 2027 the gap between those two audiences decides whether a platform succeeds. A SOC team’s SIEM is judged at 3 a.m.: how fast an alert becomes a story, how much the AI assistant actually removes from the plate, whether detection content can be tested like code, and
A critical vulnerability in LMCache could allow unauthenticated remote attackers to execute arbitrary code on exposed distributed deployments, potentially with root privileges. Tracked as CVE-2026-105192, the flaw carries a CVSS score of 9.8 and stems from unsafe Python pickle deserialization in LMCache’s multiprocess ZeroMQ transport. JFrog Security Researcher Yuval Moravchick discovered and rep
Privilege Escalation (Enterprise TA0004)
by Tamilselvan / 2d
wolfSSL has released wolfSSH 1.6.0, addressing five security vulnerabilities spanning server authentication, Windows privilege escalation, key exchange, port forwarding, and SFTP memory handling. Published on October 6, 2026, the update fixes one critical, one high, and three medium severity flaws. The release also introduces stricter security defaults and additional cryptographic capabilities. T
Modify Registry (Enterprise T1112)
by Tamilselvan / 2d
- Get link
- X
- Other Apps
Comments
Post a Comment
Please leave a comment about our recent post.