Hackers abused Claude to extract secrets from 1.8M Android apps

2026-09-12T07:23:21Z81d5dd1b04c09f26adca0b308eafb43ed798f7b1b701dae6e361e7d4b5806ff0
CVE-2026-85706Cisco-FMCContiGitLabJFrog-ArtifactoryPaperCutactive-exploitationai-abuseandroid-malwarecredential-theftdata-breachidentity-and-accessmalwaremicrosoft-365path-traversalphishingransomwareremote-code-executionserver-securityspywaresupply-chainvulnerability-exploitation

What happened

Security news roundup covering AI platform abuse, credential-based breaches, phishing and Microsoft 365 data theft, exploitation of critical vulnerabilities in JFrog Artifactory, GitLab, PaperCut, and Cisco Secure Firewall Management Center, Android ransomware/spyware, data breaches, ransomware activity, and disruptive software update failures. The most urgent items involve actively exploited enterprise vulnerabilities and campaigns enabling unauthorized access, backdoors, ransomware deployment, or large-scale data theft.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
81d5dd1b04c09f26adca0b308eafb43ed798f7b1b701dae6e361e7d4b5806ff0
Enrichment time
2026-09-12T07:23:21Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.