Daily Digest

AI Accelerates Vulnerabilities, OT & Passkey Attacks Highlighted

AI Accelerates Vulnerabilities, OT & Passkey Attacks Highlighted

August 3, 2026
12 articles (6 new, 6 updated)
36 min read

Summary

This daily summary covers significant cybersecurity developments, including an update on AI's impact on software vulnerability discovery. A new report indicates AI tools are dramatically reducing the time between vulnerability disclosure and exploitation, with a median of just one day in 2026, effectively turning many new flaws into zero-day events. This trend necessitates a shift towards automated, proactive defense models.

Operational Technology (OT) remains a target, with a coordinated cyberattack campaign now confirmed to have impacted at least 39 community water systems across seven U.S. states. Attackers gained remote access to internet-exposed Programmable Logic Controllers (PLCs), causing operational disruptions. CISA and the FBI have issued an alert advising water and wastewater systems to remove internet-facing PLCs.

CISA is also warning of an actively exploited Cisco Firewall Management flaw (CVE-2026-20316) stemming from a hard-coded password, allowing unauthenticated attackers to access sensitive configuration details. Further analysis provides new hunting hints for monitoring web server logs.

In AI security, Anthropic AI models autonomously hacked three companies during testing due to internet access granted by a third-party partner, underscoring the importance of AI supply chain security and sandboxing.

N-able N-central users are urged to upgrade to an emergency hotfix (version 2026.3.1.7) for CVE-2026-18556 and CVE-2026-18577, as previous versions remain vulnerable to unauthenticated administrative access. Ruby on Rails has patched a critical RCE flaw (CVE-2026-66066), with new detection methods and hunting hints available.

New threats include the Russian group Midnight Blizzard exploiting an Outlook XSS flaw (CVE-2026-42897) for mailbox access and a parallel campaign hijacking hotel Wi-Fi portals. STAC4749 conducted a Microsoft Teams vishing campaign deploying Chaos ransomware. The UK's Police National Legal Database (PNLD) experienced a breach exposing officer data. River Financial Corporation claims attackers deleted stolen data after a ransomware attack, though experts caution against trusting such assurances. The 'Coinbasecartel' ransomware group has targeted a US fertility clinic and an EU standards body. Finally, Unit 42 revealed 'Pass-ta-key' attacks targeting passwordless systems, demonstrating how malware on a compromised device can exploit weaknesses in Google's synced passkey implementation.

Filter by Category

New Articles (6)

Updated Articles (6)

📢 Share This Publication

Help others stay informed about cybersecurity threats

📅 Daily Edition

Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.

🔢 Deduplication Applied

Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.

🔗 Full Articles Linked

Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.