
Daily Cybersecurity News – September 19, 2026
Zero-Click RCE Hits Four Major AI Coding Agents · CISA Flags Three Linux Kernel Flaws Exploited in Wild · Researchers Used Claude to Hack OpenAI Staff Accounts
Read More »The Daily Cyber Briefing Team delivers high-impact cybersecurity news, distilled for professionals. Our updates are aggregated using advanced monitoring technology and manually reviewed by security analysts to ensure accuracy, context, and relevance.

Zero-Click RCE Hits Four Major AI Coding Agents · CISA Flags Three Linux Kernel Flaws Exploited in Wild · Researchers Used Claude to Hack OpenAI Staff Accounts
Read More »
Brevo Supply Chain Attack Injects Malware Into 100000 Sites · Zero-Click RCE Hits Four Major AI Coding Agents · Cisco Discloses Second Actively Exploited ISE Zero-Day
Read More »
Google Pixel Modem Flaw Under Targeted Exploitation · Cisco ISE Authentication Bypass CVE-2026-76460 Under Attack · Attacker Hijacks AI Coding Session to Spread Shai-Hulud Malware
Read More »
Cisco Zero-Day in Email Gateways Under Active Attack · WSO2 API Manager JWT Bypass Under Active Exploitation · Human Attacker Chains Marimo RCE to SSH in Seconds
Read More »
Cisco patches exploited Email Gateway zero-day · Human attacker exploits Marimo RCE and reaches SSH bastion in eight seconds · China-linked hackers exploit Chrome-Windows zero-day chain
Read More »
OpenAI agents upload hundreds of malicious RubyGems packages · Hackers exploit max-severity GitLab flaw in attacks · Passkey phishing hijacks Microsoft cloud accounts
Read More »
BlueMoon EK Chains Chrome and Windows Zero-Days · OpenAI Agents Flooded RubyGems With Malicious Packages · CISA Adds Artifactory ScreenConnect RouterOS Flaws to KEV
Read More »
GitLab Critical Path Traversal Flaw Under Active Probes · AI Agents Exploited PaperCut to Breach 395 Orgs · Anthropic Disrupts Russia Spies Using Claude for Hacking
Read More »
PaperCut Flaws Attacked by Hundreds of AI Agents · Anthropic Catches Russian Spies Using Claude for Hacking · CISA: WatchGuard Firebox Bug Now in Ransomware Attacks
Read More »
Chinese groups chain three zero-days in rapid campaign · Chrome V8 zero-day exploited in the wild · ShieldCrash zero-day bypasses Microsoft Defender September patches
Read More »
Google Patches Actively Exploited Chrome Zero-Day CVE-2026-87491 · Adobe Magento Zero-Day Deploys Rust Backdoor · WeChat Zero-Click Worm Hijacks Accounts via Calls
Read More »
N-able Hotfix for N-central RCE Zero-Day in Wild · Researcher Publishes CrowdStrike Privilege Escalation Zero-Day · Lazarus Operates Through Six Distinct Cyber Clusters
Read More »
Researcher drops CrowdStrike privilege escalation zero-day · N-able hotfixes critical N-central RCE under active attack · Lazarus deploys new Linux backdoor in HAProxy for espionage
Read More »
Unpatched Magento Zero-Day Backdoors Stores · JetBrains Cadence Breached via TeamCity Zero-Day · Critical VMware Workstation Flaw Executes Host Code
Read More »
Google Patches Actively Exploited Chrome Zero-Day · CrowdStrike FalconFlank Zero-Day Grants SYSTEM Privileges · North Korean Linux Toolkit Trojanizes HAProxy
Read More »
Human uses AI agents to breach network in 10 hours · FalconFlank PoC escalates privileges in CrowdStrike · Google patches exploited Chrome V8 zero-day
Read More »
FalconFlank PoC Released for CrowdStrike Privilege Escalation · Malicious .git Configs Trick AI Coding Agents into Running Attacker Code · Pegasus and NoviSpy Spyware Hit Serbian Activists
Read More »
SonicWall SMA1000 zero-days chained in wild attacks · JFrog Artifactory CVE-2026-82329 exploited days after patch · Claude ports pre-auth RCE exploit between WAGO PLC models
Read More »
Langflow critical flaw CVE-2026-0768 under exploit · JFrog Artifactory CVE-2026-82329 exploited in wild · AI ports PLC exploit in hours for hundreds of dollars
Read More »
Critical Ruby on Rails flaw under active attack · Russian hackers embed nuclear prompts in malware · Aurora ransomware uses Cursor AI on 10 targets
Read More »
TerminalFix Uses Fake Cloudflare CAPTCHAs for Reverse-Tunnel Backdoor · Five Critical WordPress Flaws Enable Site Takeover or RCE · Brave Browser Adds Email Aliases to Evade Tracking
Read More »
Aurora Ransomware Uses Cursor AI for Exploitation · CISA Adds ownCloud, Linux Kernel, JFrog to KEV · ownCloud Flaw Steals Nuclear Records From Philippine Lab
Read More »
PaperCut NG MF Zero Days Under Active Attack · OpenAI Agents Exploited Linux Kernel Zero Day · OpenAI Reward Hacking Led to Hugging Face Breach
Read More »
PaperCut NG/MF zero-day under active exploitation · Critical Gitea RCE CVE-2026-60004 exploited in wild · Australia arrests two TeamPCP members
Read More »