Weekly Brief

SOC Minute Weekly

A busy week of active exploitation against management and developer infrastructure, attacks on sessions and trusted delivery paths, major personal-data exposure, and the expanding role of AI as both target and tool.

Weekly Episode
Duration
26:30
Stories
26 stories
Published
Watch on YouTube

About this episode

A busy week of active exploitation against management and developer infrastructure, attacks on sessions and trusted delivery paths, major personal-data exposure, and the expanding role of AI as both target and tool.

This episode brings together the week’s most relevant cybersecurity stories and their operational context for defenders.

Play the episode, then review the stories and chapter list for the reporting and topics covered.

Stories covered this week

Chapters

  1. Opening
  2. Cisco confirms active exploitation of critical FMC authentication bypass flaw
  3. Cisco FMC Flaws Exploited by Ransomware and State Hackers
  4. N-able patches critical RCE flaw in N-central amid active exploitation
  5. Critical MikroTik SSH Authentication Bypass Vulnerability Exploited
  6. Hackers Deploy Linux Rootkit on F5 BIG-IP APM Devices
  7. Microsoft September 2026 Patch Tuesday fixes 966 flaws and 2 zero-days
  8. AI-driven attack exploits PaperCut flaws to breach 395 organizations
  9. GitLab CVSS 10 File-Read Flaw Faces In-the-Wild Probes
  10. Critical Artifactory Flaws Exploited to Deploy Rust Backdoor Malware
  11. JetBrains Cadence Breached via Unpatched TeamCity, AWS Credentials Exposed
  12. Four Spy Groups Deploy BlueMoon Exploit Kit Targeting Chrome and Windows
  13. China-Linked UNC3569 Exploits Sogou Input Method Flaw for GRAYRABBIT Backdoor
  14. 5,400+ hacked sites deliver ClickFix malware via blockchain storage
  15. Attackers Use Invisible Unicode Characters to Bypass Email Filters
  16. Passkey-themed Social Engineering Enables Identity and Cloud Compromise
  17. BigBear Phishing Service Bypasses MFA at 258 Organizations
  18. JSCeal Malware Can Bypass Google Auth Using Stolen Session Cookies
  19. REVSTEALER Modules Disable Windows Defender to Run Crypto Miner
  20. Microsoft Flags AI-Driven Executive Impersonation and Invoice Fraud
  21. IDScan Confirms Breach Affecting 153 Million Driver’s License Records
  22. AdaptHealth Confirms Data Exposure of 4.1 Million in July Cyberattack
  23. Hackers Exploited Claude AI to Extract Secrets from 1.8M Android Apps
  24. AI Agent Exploits and Aggregates Stolen LLM Access via Insecure Gateways
  25. Securing Edge AI in Customer-Owned Environments
  26. Cloud Security Risks Vary Significantly Across Providers, New Data Shows
  27. U.S. Agencies Accuse China AI Firms of Distilling Major AI Models
  28. Closing