UAE, Saudi Arabia Face Onslaught of Increasingly Complex Cyberattacks

2026-09-23T14:51:35Z•b74b3bfd3477d55e99b4d73f5daed48df87b78e3f738c3e3acd26739bbf84f79
CVE-2026-76460CVE-2026-85706AI agentsAI securityAPTAndroid malwareCisco ISECyclops BlinkFamousSparrowGitLabMicrosoft 365OAuth abuseSandwormVectraRATauthentication-bypasscritical-vulnerabilitiescybersecurity-newsdevice-code-phishingdisinformationextortionnpmpath-traversalphishing-as-a-serviceprompt manipulationransomwaresupply-chain-attackthreat-intelligence

What happened

A Dark Reading news digest covering major cybersecurity developments in September 2026, including critical vulnerabilities in Cisco ISE and GitLab, phishing-as-a-service disruption, supply-chain compromises, ransomware and extortion activity, malware campaigns, APT operations, and emerging risks from AI agents and manipulated AI search results. The most immediately actionable items are the CVSS 10 Cisco ISE authentication bypass (CVE-2026-76460), the CVSS 10 GitLab path traversal flaw (CVE-2026-85706), and active exploitation or abuse involving Microsoft 365, OAuth consent, Cisco devices, npm,

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
darkreading
Record identifier
b74b3bfd3477d55e99b4d73f5daed48df87b78e3f738c3e3acd26739bbf84f79
Enrichment time
2026-09-23T14:51:35Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.