Notable developments in infrastructure, security and cloud. Headlines and summaries are written in our own words; follow the link for the original source.
Invisible Unicode characters once used to hide instructions from AI models are now being applied to break up words inside emails so phishing and spam filters miss them. MSPs and admins should normalize and strip Unicode, add detection beyond simple signatures, and improve monitoring and user awareness to reduce successful evasions.
Microsoft reports that the ASCII smuggling method—known from AI prompt injection—has been repurposed to evade email defenses using invisible Unicode chars. Attackers insert hidden characters inside words to disrupt content scanning and signature detection, so mail flow rules, spam/antiphishing controls and detection/incident procedures should be reviewed.
HPE released a patch for a critical vulnerability in the ArubaOS-CX network OS that could enable remote code execution. MSPs and sysadmins should apply the update immediately; if patching isn't possible, restrict management access and monitor network traffic and device logs. Check the vendor advisory for affected versions.
A joint analysis by Citizen Lab and the SHARE Foundation found NSO Group's Pegasus on an iPhone owned by a Serbian student movement member, delivered via an iMessage attack that required no user interaction. Because zero-click compromises can evade typical defenses, MSPs and sysadmins should review mobile device management, patching and monitoring for related indicators.
Researcher Chaotic Eclipse published a FalconFlank PoC that abuses the Office macro remediation mechanism in the CrowdStrike Falcon sensor to achieve local privilege escalation. This weakness could allow attackers to leverage endpoint protection to gain higher privileges and move within customer environments; MSPs and admins should monitor sensor updates and settings.
CISA added seven actively exploited vulnerabilities to its KEV list. A prominent entry is CVE-2026-83548 (CVSS 10.0), an SSRF in SonicWall SMA 1000 that can permit unauthenticated remote actors to install malware or spawn reverse shells. MSPs should prioritize patches and monitor traffic and signs of crypto-mining.
Plex reported multiple security flaws in its desktop applications and media servers and is urging immediate application of released patches. For MSPs and system admins, unpatched hosts could enable unauthorized access or service disruption, so apply updates promptly and review access logs and permissions.
Major AI vendors unveiled cybersecurity-focused models including Google’s Gemini 3.8 Flash Cyber and introduced restricted-access programs for trusted defenders. These releases expand defensive tooling but raise operational questions for MSPs and admins about integration, data handling and vendor controls.
The Cyber Weapon Index report identified Claude Mythos as the sole examined model capable of carrying out a complete cyber kill chain, while other models handled only parts of an attack. For MSPs and sysadmins this raises urgency: AI-enabled attacks may accelerate, so review detection, access controls, patching and incident response processes.
Microsoft observed attackers abusing Microsoft Teams external collaboration to pose as IT support, obtain remote sessions and deploy a Node.js implant to move laterally across networks. Because legitimate collaboration and support tools are used, MSPs and admins should review external sharing controls, remote-support policies and Microsoft Defender detections.
Microsoft Threat Intelligence found an attack using Microsoft Teams external collaboration to trick victims into remote sessions under the guise of IT support. Attackers install a Node.js-based implant and use legitimate tools to move laterally; Microsoft Defender telemetry and blocking can help detect and stop the activity. Service providers should validate external sessions and monitor Defender alerts.
According to Microsoft, an active campaign uses fake download sites that impersonate trusted vendors to deliver malicious installers. Those installers turn off Windows Update and weaken Microsoft Defender settings, causing exposure across many organizations—especially China-based operations and Chinese-speaking users.
Manifold Security disclosed eight vulnerabilities across seven CLI AI coding agents; four remain unpatched. A malicious repository .git config can cause an agent to run a local command on the developer's machine outside its sandbox and without prompting, using the user's privileges. MSPs and sysadmins should treat untrusted repos cautiously and keep affected tools updated.
Attackers are exploiting an unauthenticated SQL injection (CVE-2026-9586) in Sangoma Switchvox to achieve remote code execution and install reverse shells on compromised devices. Administrators should apply vendor fixes, limit exposure with access controls or WAFs, and monitor logs and unusual connections.
SonicWall issued security updates for two zero-day vulnerabilities affecting Secure Mobile Access (SMA) 1000 appliances. Discovered by William Perry and Adam Babis, one flaw is CVE-2026-83548 (CVSS 10.0) — a pre-auth SSRF — and the issues can be chained for remote compromise; operators should patch immediately.
An SQL injection flaw in the All-in-One WP Migration and Backup plugin can let unauthenticated attackers execute code remotely and take over websites. MSPs and sysadmins should urgently update or remove the plugin, review logs and backups, and investigate any potential compromises.
Two vulnerabilities in GeoNetwork can be chained to enable remote code execution without authentication; the software is used behind many government geoportals. The project shipped fixes in versions 4.4.12 and 4.2.17 on July 8, 2026 and published details on August 31, 2026. Patch promptly and audit any hosted GeoNetwork instances.
A critical authentication bypass (CVE-2026-82329) in JFrog Artifactory is being actively exploited to allow attackers to generate tokens with administrative privileges. Administrators should apply the vendor patch immediately, revoke or rotate existing tokens, and review access logs for suspicious activity.
Headlines and summaries are written by RADAR in its own words. Copyright belongs to the respective publisher; use the source link for the full text.