In partnership with

~7 MIN READ
Fact Attackers began exploiting a critical VMware vCenter flaw within days of the patch going public, compromising 360+ servers across 47 countries before most defenders even noticed. (SecurityWeek, August 2026)
The Signal
 
This week an AI agent ran an entire cyberattack solo, no human on the keyboard. Somewhere, a red team is feeling very expendable. Meanwhile, actual humans at DEF CON decided the safest way home was to jam a commercial flight's WiFi.

AI agents can now run a full attack chain unsupervised, and most defenses are still built for humans on the other end of the keyboard. Here's what changed this week, and what to actually patch.

PS: Was this forwarded to you? Subscribe free at exzeccyber.com/subscribe

In this edition
  📌 Big Cyber News
  🚨 Can't Miss
  🤖 AI in Cyber
  🕵️ Threat Intel
  🛠️ Tools & Tactics
  🧪 Strange Cyber
📌 Big Cyber News
 
AUTONOMOUS AI ATTACK
An AI Agent Ran a Full Cyberattack on Taiwan's Government. No Human Was Driving.
Intro
Over four days in July, a multi-agent AI system broke into Taiwan's government network, picked its own targets, and adjusted its approach when things didn't work, without a human steering it in real time.
What Happened
Israeli security firm Dream and Taiwan's Ministry of Digital Affairs confirmed it: an AI framework built on open-source tools mapped 21 government systems, cracked 85 of 85 targeted employee accounts, and pulled 2,500+ personnel records plus SSO credentials across 12 attack waves. It then expanded on its own to probe supply-chain vendors, a nuclear safety agency, and energy companies, using exposed APIs and weak passwords rather than novel exploits.
Why It Matters
This is the first confirmed fully autonomous AI intrusion, recon through expansion, with minimal human oversight, moving faster and at a scale a human team would struggle to match.
The Other Side
The AI didn't need a single zero-day. It won with the same exposed APIs and weak credentials that have sat in enterprise environments for years, meaning better basic hygiene would have stopped it cold.
 
👉 Takeaway
If your defenses assume attacks move at human speed, they're already behind. Automated detection and response aren't optional anymore.
TL;DR: An AI agent autonomously breached Taiwan's government, stealing thousands of records over four days without human steering.
Further reading: SecureWorld
🚨 Can't Miss
 
 
RANSOMWARE
Clop is running a mass data-theft campaign against roughly 50 companies via a critical flaw in PTC's Windchill and FlexPLM, used across aerospace, defense, and manufacturing. Shell is investigating after Clop claimed 89GB of stolen engineering data; GE and Philips are also named. PTC patched in June, but exposed instances never updated.
If your org runs Windchill or FlexPLM and hasn't patched CVE-2026-12569, do it today.
 
VULNERABILITY
Broadcom patched a critical vCenter Syslog flaw (CVE-2026-59310, CVSS 9.8) on July 29. Attackers started exploiting it August 3, and within days had compromised over 360 servers across 47 countries, mostly by planting a reverse-shell tool for quiet, persistent access.
Check your internet-facing vCenter instances for unauthorized SSH activity now, not after your next maintenance window.
 
DATA BREACH
The extortion group behind some of this year's biggest breaches used social engineering, not a technical exploit, to get into RingCentral in July. After the company refused to pay, ShinyHunters leaked 280GB of the 623GB claimed stolen. RingCentral serves 600,000+ businesses; exposed data includes names, emails, phones, and addresses.
Your help desk is still the easiest way in. Make sure account-reset verification can't be talked around.

The New Rules of Online Visibility

Your customers are searching in places your strategy doesn’t reach.

So before your business is buried and left behind, you need to understand the new rules of SEO.

BELAY's SEO in the Age of AI report explains how search is changing, what AI means for your visibility, and the practical steps small businesses like yours can take to stay visible.

BELAY’s U.S.-based Marketing Assistants turn strategy into execution, helping your business stay visible, credible, and competitive in every search.

🤖 AI in Cyber
 
 
AI SECURITY
Researchers at Zenity Labs showed that Claude in Chrome, Gemini in Chrome, Perplexity Comet, ChatGPT Atlas, and Copilot Edge can all be hijacked through ordinary content the agent is already expected to read, like an email or social post. Hidden instructions redirect the agent to act on the attacker's behalf using the victim's own logins, no click required. Anthropic and OpenAI have acknowledged the reports; there's no easy fix, it's baked into how these agents work.
If your team uses an AI browser agent, treat it like it has your Gmail password, because right now, it might as well.
 
AI FRAUD
Fraudsters used a Sussex businessman's card details to buy Claude AI credits in batches of £90 to £200. Metro Bank flagged the first £90.90 charge and texted him, then let every subsequent charge through anyway, over £14,000 worth, before freezing the card. Anthropic confirmed no breach on its end and refunded him directly.
AI subscriptions are becoming a fraud target. Check your statements for small, repeated charges to services you don't recognize.
🕵️ Threat Intel
 
 
THREAT ACTOR
Symantec found that the group known as Jewelbug runs government espionage and a cryptocurrency fraud operation from the same control panel. The espionage side has compromised 15+ government email tenants across the Middle East, Southeast Asia, and South Asia. The fraud side uses AI-generated fake exchange sites and a browser extension that quietly swaps copied crypto wallet addresses for the attacker's own.
The line between nation-state and financially motivated hacking keeps blurring. Don't assume a "government-grade" threat actor won't also just steal your money.
 
ESPIONAGE
A suspected Pakistan-linked group is spreading a backdoor called PATCHCORD through fake VPN installers impersonating Afghan Telecom, paired with SHEETCORD, a tool that authenticates to Google Sheets for command-and-control. Routing through a trusted service helps the traffic blend in and dodge network-based detection.
Living-off-trusted-services C2 is getting harder to spot with signature-based tools alone. Watch for anomalous API activity, not just anomalous domains.
🛠️ Tools & Tactics
 
 
Practical play
A SQL injection flaw in the open-source GeoServer platform (CVSS 9.8) went from public disclosure to active exploitation attempts within hours. Researchers at watchTowr say attackers are still in the recon phase, probing for vulnerable systems, but expect that to escalate fast. Fixed versions (3.0.1, 2.28.5, 2.27.6) shipped August 14. If your org runs GeoServer, check your version now, update immediately, and review logs for the probing traffic watchTowr has already flagged.
Patch today, not next sprint. Exploitation is already underway.

Stop typing what you could say in 10 seconds.

Wispr Flow turns your voice into clean, professional text inside any app. Emails, Slack, client updates — speak once, send without editing. 4x faster than typing.

🧪 Strange Cyber
 
Strange but real
DEF CON Attendees Allegedly Jammed a Delta Flight's WiFi and Phished Their Fellow Passengers at 30,000 Feet
Intro
Nothing says "I just left the world's biggest hacker conference" like getting off a plane into a waiting group of federal agents.
What Happened
Passengers flying home from DEF CON 34 on Delta Flight 591 allegedly ran a WiFi deauthentication attack mid-flight, knocking the real network offline, then stood up a fake access point called "Delta WiFi Fast" that served phishing prompts asking for login credentials. Crew disabled WiFi for about 30 minutes; airport police and federal agents met the flight and seized portable WiFi hardware.
Why It Matters
It's a reminder that in-flight WiFi runs on the same trust-everything assumptions as a coffee shop hotspot, just with nowhere to walk away.
The Other Side
No passenger data theft has been confirmed, and this may be closer to a conference prank than a serious extraction, though federal agents don't usually greet pranks at the gate.
 
👉 Takeaway
Treat in-flight WiFi like any other public network: no logins you can't verify, and a VPN if you're doing anything that matters.
TL;DR: DEF CON attendees allegedly jammed a Delta flight's WiFi and served a fake phishing login page to fellow passengers.
Further reading: BleepingComputer

The best candidate for your next role might not live in the same country. Oyster helps you hire globally in 180+ countries. Payroll, compliance, and benefits included.