Hi there, this is your daily βοΈ Cyberpresso.
In today's Cyberpresso:
ποΈ Hackers wipe data via stolen keys
π€ OpenAI halts training over rogue agents
π Oracle PeopleSoft flaw under mass exploitation
π¨ Citrix NetScaler zero-days exploited
β οΈ Kiteworks urges shutdown over zero-day
Plus: π‘ 6 strategies & tactics, π 7 other news you might like, π§° 6 tools, and π 5 papers.
ποΈ Hackers wipe data via stolen keys LINK
π€ OpenAI halts training over rogue agents LINK
π Oracle PeopleSoft flaw under mass exploitation LINK
π¨ Citrix NetScaler zero-days exploited LINK
β οΈ Kiteworks urges shutdown over zero-day LINK
π‘ Strategies & Tactics
> New Windows Process Injection Attack Evades EDR Monitoring Without WriteProcessMemory: A new attack sneaks malicious code into Windows programs through pipe input, dodging security monitors that only watch for direct memory-writing commands.
> From Debugging to Code Execution: RCE in Microsoft DevLabsβ DebugMCP?: Researchers found that Microsoft's DebugMCP debugging extension let a malicious webpage silently run code on a developer's machine, since the local server lacked authentication and path checks.
> Local AI Model Modifies Windows Credential Dumper to Bypass EDR Detection: A locally run, guardrail-free AI model rewrote a credential-stealing tool to evade security software, showing how such models lower the skill needed for custom attacks.
> Vulnerable OBS overlay and Chromium flaw enable Twitch chat message code execution: A crafted Twitch chat message can run code on a streamer's PC by exploiting an old OBS overlay flaw plus an unpatched Chromium bug.
> OAuth token abuse: how the attack works and how to stop it: Restrict which apps users can approve and remove malicious permission grants entirely, since attacker tokens survive password resets and stolen credentials alone.
> If you do one security check this quarter, make it agent memory: Audit where AI agents store memory, because developers routinely leave passwords and keys sitting unprotected in plain text.
Other news you might like
- Nvidia releases software platform to stop AI agents from misbehavingLINK
- Teenager hacks open Microsoft database with 17 trillion total rows and 25,000 user accountsLINK
- Elementor WordPress flaw lets attackers create admin accountsLINK
- 14-Year-Old Linux Kernel Flaw Lets Local Users Gain Root Access and Escape ContainersLINK
- Operation Master Exploits GlobalProtect CVE-2026-0257 and Deploys AdaptixC2 Across Enterprise NetworksLINK
- Microsoft SharePoint Flaw CVE-2026-65660 Now Exploited in AttacksLINK
- Critical ViewSonic vCast Vulnerabilities Allow Attackers to Gain Full Control Over the DeviceLINK
π§° Trending tools
Halo: detects deepfakes and synthetic media across text, image, and audio through an API, helping fraud and trust teams block attacksLINK
Execlave: governs autonomous AI agents with tiered autonomy levels, real-time spend caps, kill switches, and compliance-mapped audit logs for SOC 2, EU AI Act, and ISO 27001.LINK
Aegisora: an open-source proxy securing LLM agents with least-privilege API access, PII masking, prompt-injection blocking, and audit logging for production.LINK
Pentest Harness, Heaven for Hackers. A self-hosted AI agent harness for authorized pentests, bug bounty, security labs, and CTFs. Bring your own AI model API; sessions stay local.LINK
proxy-scraper: scans and validates free proxy servers, detecting malicious behavior like injected scripts among working proxies from public lists.LINK
Prized: builds secure internal tools with AI for ops, support, and finance teams, offering pre-connected data, access audit trails, and one-click deploy behind company sign-in.LINK
π Trending papers & reports
Concept erasure for image generators lets a text-to-image system reliably block many unwanted or harmful topics at once, adjusting on the fly to each prompt while keeping image quality and matching single-concept quality standards.LINK
Leaked chatbot instructions turn out to be mostly technical setup notes, not moral guidelines, with roughly 58% of words covering tool use versus about 5% on safety, making them operational configuration files companies should manage like software.LINK
A GitHub-based severity score ranks which software vulnerabilities to fix first by tracking how much attention their exploit code gets on GitHub, giving defenders a free, automatic tool now built into the widely used EPSS system.LINK
Blockchain lottery fairness gets a low-cost fix that stops the last person in a random draw from stalling or rigging the outcome, giving every participant randomness they can independently verify on-chain.LINK
Private crypto mempools can stop profitable sandwich attacks on Uniswap-style trades only if they hide one specific thing, the smallest possible trade size, since revealing the direction or upper size never matters.LINK
See you tomorrow for a new dose of βοΈ Cyberpresso!