This day 02:10 06:01 10:01 14:02 18:01 22:02
Info  2026-09-28 02:10Z · last 4h · 9 findings · glm-5.2:cloud

Threat Brief — 2026-09-28 — AI-driven exposure and fraud escalate

Executive summary: Two AI-related incidents headline today: a deepfake voice fraud netted €95 million from a bank via WhatsApp social engineering, and over 16,000 AI-generated applications were found with insecure databases exposing personal, messaging, and payment data. Separately, Canonical is shifting to weekly Ubuntu kernel releases, citing an avalanche of new CVEs accelerated by AI-driven vulnerability discovery. OpenAI is also preparing an always-on assistant called "o" that could handle email — a broad new attack surface if realised.

Top items

Themes

AI as both weapon and vulnerability multiplier. Three of today's top items illustrate a converging pattern: AI accelerates vulnerability discovery (straining kernel patch cycles), AI-generated code ships with systemic security flaws (16,000 exposed databases), and AI-generated content enables large-scale social engineering (€95M deepfake fraud). The technology is simultaneously expanding the attack surface on the development side and providing new tools for adversaries on the operational side.

Autonomous AI assistants widening trust boundaries. OpenAI's planned always-on email assistant follows a pattern seen across the industry — AI agents gaining persistent access to sensitive communication channels. Each new agent integration expands the surface for prompt-injection and indirect-instruction attacks.

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db