Security insights, vulnerability roundups, and updates from the Agent Breach team.
Security email updates
One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.
Cybercriminals are using infostealer malware to harvest AI platform session tokens, enabling unauthorized access even when MFA is enabled. These replayable tokens bypass traditional authentication safeguards.
The DOJ disrupted an online scam marketplace linked to Chinese organized crime, seizing Telegram channels and crypto assets. The operation targeted 13 scam compounds in Madagascar.
A recently patched Vim vulnerability in Ubuntu 26.04 LTS could allow attackers to execute arbitrary code through malicious tags files. Organizations should update immediately to mitigate potential exploitation.
A vulnerability in curl could lead to incorrect client certificate usage when reusing connections. Ubuntu 26.04 LTS users should apply the latest security update immediately.
Multiple vulnerabilities in ImageMagick affect several Ubuntu LTS versions, potentially enabling denial of service, remote code execution, and data exposure.
A pre-authentication remote code execution flaw in N-able N-central has been added to CISA's KEV catalog. Federal agencies must patch by September 11, 2026.
Microsoft addressed a record-breaking 974 vulnerabilities in its latest Patch Tuesday release. Two of these flaws are confirmed to be actively exploited in real-world attacks.
Attackers are leveraging compromised ConnectWise ScreenConnect clients to spread malware automatically to new connections. The campaign uses diverse entry points including tech support scams and phishing.