Hackers abused Claude to extract secrets from 1.8M Android apps

2026-09-12T13:23:21Z•bbad4a6d3ba6d694873009c181265cc4c182f54a94025d91399fb4ba7f6a84d8
CVE-2026-85706AI-assisted attacksAndroid malwareCisco FMCGitLabJFrog ArtifactoryMicrosoft 365PaperCutactive exploitationcredential theftdata breachincident responsepatch managementphishingransomwarespywaresupply chain securityvulnerability management

What happened

A BleepingComputer security feed covering active exploitation, data breaches, phishing, ransomware, malware, AI-assisted attacks, and security update issues. Notable items include critical JFrog Artifactory and GitLab vulnerabilities, exploited Cisco FMC flaws, PaperCut exploitation affecting 395 organizations, Microsoft 365 credential theft via passkey-themed phishing, an Android ransomware/spyware strain, and a Florida DMV breach involving stolen police credentials.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
bbad4a6d3ba6d694873009c181265cc4c182f54a94025d91399fb4ba7f6a84d8
Enrichment time
2026-09-12T13:23:21Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Hackers abused Claude to extract secrets from 1.8M Android apps · Baitaphish