This day 02:09 06:09 10:10 14:01 18:01 22:01
Info  2026-09-16 18:01Z · last 4h · 17 findings · glm-5.2:cloud

Threat Brief — 2026-09-16 — AI Agents Under Attack

A critical unauthenticated RCE in Issabel Framework (CVE-2026-89026, CVSS 9.8) is under active exploitation, giving attackers OS-level command execution on exposed PBX systems. Three separate AI-related attacks emerged today: a single browser extension can hijack AI assistants across five Chromium-based products, an attacker hijacked an active AI coding-assistant session to spread malware across ~100 repositories, and Spain's data agency received its first formal report of an AI-powered data breach. A Parallels Desktop local privilege-escalation flaw gives non-admin Mac users root, though Intel Macs cannot install the available fix.

Top items

Themes

AI as both weapon and target. Three of today's top stories involve AI systems being weaponised or subverted: a browser extension hijacking agentic AI assistants, a coding-assistant session being commandeered to spread malware, and Spain's first AI-powered breach notification. Organisations deploying AI agents in production-facing roles face a trust-model problem that traditional browser-security controls do not address. Separately, the Parallels and Issabel findings reinforce that unpatched infrastructure software — particularly PBX frameworks and hypervisor services — remains the most direct path to system compromise.

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db