top of page

Weekly INK
Each week we compile an advisory on the latest threats, trends and newsworthy topics from the cyber security industry affecting small and medium enterprises. Join our subscribers below and help us prevent cybersecurity breaches.

Issue #218 - September 28, 2026
Automated AI agent used to breach cybersecurity nonprofit DIVD Source: BleepingComputer Dutch nonprofit DIVD said an attacker exploited a technical vulnerability and then used an autonomous AI agent for post-exploitation. Investigators observed rapid, self-directed actions, password spraying, and verbose comments that exposed the agent’s reasoning. The incident was reported to police, the Dutch privacy authority, and the national cybersecurity center. Link to article South Af

Weekly INK
Sep 282 min read
Issue #217 - September 21, 2026
Attackers Manipulate AI Chatbots in Mass Disinformation, Phishing Campaign Source: Dark Reading Researchers identified “Dark Sourcery,” a campaign that seeds the web with optimized fake support pages, fraudulent contact details, and phishing links so ChatGPT, Gemini, and Google AI Overview may repeat them as trusted answers. At least 374 brands were affected, underscoring the need to verify AI-provided contact and payment information. Link to article New Check Point flaw lets

Weekly INK
Sep 212 min read
Issue #216 - September 14, 2026
CISA Retires Weekly Vulnerability Bulletin in Risk-Based Pivot Source: SecurityWeek CISA will retire its weekly vulnerability bulletin on September 28 as it shifts federal vulnerability management toward real-world risk. The agency says BOD 26-04 emphasizes active exploitation, exposure, and the Known Exploited Vulnerabilities catalog, helping defenders prioritize urgent fixes instead of sorting thousands of entries primarily by severity. Link to article Cyber Op Targets Sout

Weekly INK
Sep 142 min read
Issue #215 - September 7, 2026
Critical NetScaler Vulnerability Exploited in Attacks Source: SecurityWeek CISA warned that attackers are exploiting CVE-2026-19490, a critical authentication-bypass vulnerability affecting NetScaler ADC and Gateway appliances configured as gateways or AAA virtual servers. Citrix patched the flaw in August, but observed exploitation began shortly after public exploit code appeared. Organizations should treat remediation as an emergency priority. Link to article OpenAI Agents

Weekly INK
Sep 72 min read
Issue #214 - August 31, 2026
Hackers push malicious Virtualizor update in BGP hijacking attack Source: BleepingComputer Attackers diverted Virtualizor update traffic by hijacking BGP routes associated with Softaculous infrastructure, then delivered a malicious package to a small number of servers. The vendor restored routing, released a security analyzer, and advised administrators to check for a suspicious service, rotate credentials, and audit systems for unauthorized access. Link to article Attackers

Weekly INK
Aug 312 min read
Issue #213 - August 24, 2026
New GPUThor Rowhammer Defeats ECC on NVIDIA RTX A6000 to Gain Host Root Access Source: The Hacker News Researchers demonstrated GPUThor, a Rowhammer technique that produced multi-bit errors on several NVIDIA Ampere workstation GPUs and bypassed the protection expected from ECC. With unprivileged CUDA execution, the team achieved denial of service and host privilege escalation. Defenders should limit untrusted GPU workloads, avoid cross-tenant sharing, and monitor ECC errors.

Weekly INK
Aug 242 min read
Issue #212 - August 17, 2026
'Grandoreiro' Malware Resurfaces With Mexico Campaign Source: Dark Reading The Grandoreiro banking Trojan has returned in a campaign aimed primarily at Mexican users. Operators disguise malicious archives as invoices, abuse a legitimate file-management application for DLL sideloading, and deploy a heavily protected loader with extensive sandbox, security-tool, and analysis checks before downloading the credential-stealing payload. Link to article New Cryptographic Context Inj

Weekly INK
Aug 172 min read
Issue #211 - August 10, 2026
Plug and Pwn attack uses fake USB devices for Windows SYSTEM access Source: BleepingComputer Researchers demonstrated that Windows Plug and Play can install exploitable vendor packages as SYSTEM when presented with emulated USB hardware. Some chains required no user interaction, while another worked through RDP USB redirection without physical hardware. Recommended protections include restricting device installation and disabling unnecessary Plug and Play redirection. Link to

Weekly INK
Aug 102 min read
Issue #210 - August 3, 2026
AI Sends Global Crime Syndicates Into Fraud Nirvana Source: Dark Reading Organized crime groups are industrializing fraud with AI-powered voice cloning, real-time deepfake video, synthetic identities, automated translation, and persona-management tools. These capabilities help gangs defeat identity verification and scale convincing scams across borders, increasing pressure on financial institutions to strengthen identity proofing, liveness checks, behavioral defenses, and int

Weekly INK
Aug 32 min read
Help us Prevent Breaches.
Subscribe to our Weekly INK newsletter. We will never share your information.
bottom of page

