CYBER THREAT INTEL
DAILY BRIEFING · 2026-10-10 12:15 UTC · REPORT BRIEF-20261010-121547
OPEN // LE
PERIOD: LAST 24 HOURS SOURCES: Ars Technica Security, BleepingComputer, Cyber Risk & Security, DarkReading, Help Net Security, Krebs on Security
TOP 10 LATEST CYBERSECURITY STORIES from the last 24 hours.
10
Stories Featured
11
Sources
10
Active KEV CVEs
28
IOC Indicators
Top Stories
01
One with the world? A new look at brains transformed by psychedelics.
Participants meditated inside an MRI tube, with and without psilocybin.
medium
SRC: Ars Technica Security
Sat, 10 Oct 2026 11:15:35 +0000
https://arstechnica.com/science/2026/10/the-psychedelic-brain-looks-like-chaos-underneath-theres-order/
02
The Third-Party Agent Problem: Why Security Built for AI You Chose Misses the Agents You Didn't
In environments studied for the 2026 State of Agent Security Report, roughly 1,280 third-party products now embed AI. About 282 of them sit behind single sign-on. The other thousand are invisible to identity infrastructure by default, not because anyone hid them, but because an identity stack can only govern what authenticates through it, and most agents never do. That gap is the clearest.
medium
SRC: The Hacker News
Sat, 10 Oct 2026 16:30:00 +0530
https://thehackernews.com/2026/10/the-third-party-agent-problem-why.html
03
Insider Cyber Extortion Plot Against Industrial Firm Lands Engineer in Prison
The former core infrastructure engineer deleted admin accounts, reset hundreds of passwords, and demanded 20 bitcoin to spare the company’s servers. The post Insider Cyber Extortion Plot Against Industrial Firm Lands Engineer in Prison appeared first on SecurityWeek.
medium
SRC: SecurityWeek
Sat, 10 Oct 2026 11:00:00 +0000
https://www.securityweek.com/insider-cyber-extortion-plot-against-industrial-firm-lands-engineer-in-prison/
04
Anthropic Cuts Live Internet Access for Internal AI Tests After Claude Exploits Injection Flaws
Anthropic on Friday said it's cutting off live internet access for all its internal evaluations following the discovery of new incidents in which its artificial intelligence (AI) models exhibited misaligned behavior and targeted real websites. The AI company said it identified four broad categories of unintended model actions during evaluations and internal use of Claude – Claude Mythos.
critical
SRC: The Hacker News
Sat, 10 Oct 2026 14:48:45 +0530
https://thehackernews.com/2026/10/anthropic-cuts-live-internet-access-for.html
05
REA Tool Connects Claude Code and Cursor to Ghidra and IDA Pro to Reverse Engineer Anything
REA, short for Reverse Engineer Anything, connects AI coding agents such as Claude Code and Cursor to tools that inspect software without its source code. The open-source project brings Ghidra, IDA Pro, and Hopper into an agent-driven workflow, helping researchers trace program behavior and explain findings with supporting evidence. Rather than replacing a disassembler, REA […] The post REA Tool C
critical
SRC: Cyber Risk & Security
Sat, 10 Oct 2026 08:08:45 +0000
https://cybersecuritynews.com/reverse-engineer-anything-tool/
06
US Sentences Empire Market Co-Creator Over $430 Million Criminal Marketplace
Empire Market co-creator Raheim Hamilton was sentenced to 40 years in prison for running a dark web marketplace linked to $430 million in illegal trades. The case against Empire Market shows how a dark web marketplace can become a major criminal business, bringing together drug trafficking, stolen credentials, personal data and hacking tools. “A Virginia […].
critical
SRC: Security Affairs
Sat, 10 Oct 2026 07:22:40 +0000
https://securityaffairs.com/200704/cyber-crime/us-sentences-empire-market-co-creator-over-430-million-criminal-marketplace.html
07
One Prompt Could Hijack AWS AI Agents and Steal Cloud Credentials
A single prompt sent to a public-facing AI agent could have exposed every Amazon Bedrock AgentCore agent in the same AWS account and region, according to new research from Zenity Labs. The attack chain, named AgentCorruption, gave the researchers access to private chats, source code, long-term memories, API keys, OAuth tokens, and secrets held in […] The post One Prompt Could Hijack AWS AI Agents
critical
SRC: Cyber Risk & Security
Sat, 10 Oct 2026 06:58:38 +0000
https://cybersecuritynews.com/agentcorruption-attack/
08
Microsoft Teams to Warn Users About Malicious Links Hidden in QR Codes
Microsoft is extending Teams security to detect malicious links hidden inside QR codes and warn users after a message has been delivered. The update adds QR code checks to existing Microsoft Defender for Office 365 protections, giving users clearer warnings and security teams more data to investigate suspicious messages. According to Message Center notice MC1490905, […] The post Microsoft Teams to
medium
SRC: Cyber Risk & Security
Sat, 10 Oct 2026 05:49:32 +0000
https://cybersecuritynews.com/teams-qr-code-protection/
09
AT&T to Pay $177 Million After Two Massive Customer Data Breaches
AT&T will pay $177 million to settle lawsuits over two major customer data breaches disclosed in 2024, after a federal judge granted final approval on October 2, 2026. The agreement covers separate incidents that exposed personal details and call records, creating lasting privacy risks for millions of current and former customers. Judge Sidney A. Fitzwater […] The post AT&T to Pay $177 Million Aft
critical
SRC: Cyber Risk & Security
Sat, 10 Oct 2026 04:57:38 +0000
https://cybersecuritynews.com/att-to-pay-177-million/
10
ASOS Breach Reveals the Risks in Customer-Facing SaaS
The attack on the British retailer shows that compromising a single identity can lead to much deeper penetration of the corporate network.
critical
SRC: DarkReading
Fri, 09 Oct 2026 20:58:32 GMT
https://www.darkreading.com/cyberattacks-data-breaches/asos-breach-risks-customer-facing-saas
Known Exploited — CISA KEV
| CVE | Product | Added to KEV |
|---|---|---|
| CVE-2015-5477 | BIND (ISC) | 2026-10-08 |
| CVE-2016-3081 | Struts (Apache) | 2026-10-08 |
| CVE-2023-22894 | Strapi (Strapi) | 2026-10-08 |
| CVE-2021-3199 | Docs (ONLYOFFICE) | 2026-10-08 |
| CVE-2015-3306 | ProFTPD (ProFTPD) | 2026-10-08 |
| CVE-2026-88779 | NetScaler (Citrix) | 2026-10-04 |
| CVE-2026-102490 | Zammad (Zammad GmbH) | 2026-10-02 |
| CVE-2026-102489 | Zammad (Zammad GmbH) | 2026-10-02 |
| CVE-2026-104286 | FortiMail (Fortinet) | 2026-10-01 |
| CVE-2026-76504 | Catalyst SD-WAN Manager (Cisco) | 2026-09-30 |
Indicators of Compromise (IOC)
Download Indicators of Compromise (IOC)
For SOC/NOC ingestion, threat intelligence platforms, and SIEM integration.
