SANS: Top 5 Most Dangerous New Attack Techniques to Watch
2026-03-25T14:51:40Z•d96d74b84cd6e5e442d56405ec174f33b9ae4421d0cd1f75d0c75a575648bb31
AI-driven attacksCI/CD compromiseCisco firewallOracle Fusion Middlewareagentic AIcredential theftiOS zero-daysinfostealerphishingransomwaresecurity governancesoftware supply chainsupply chainthreat actorsvulnerabilities
What happened
DarkReading roundup (Mar 2026) highlights a rapid shift toward AI-driven attack techniques and the defensive gap this creates. Key themes: agentic/AI-enabled social engineering, faster AI-powered ransomware, and attackers increasingly ‘logging in’ via credential theft and infostealers. Multiple supply-chain incidents and software compromises were reported (Trivy CI/CD compromise, poisoned GitHub packages, Checkmarx KICS/VS Code plugin hits, GlassWorm in Open VSX, LiteLLM targeting), plus high-impact vulnerabilities and exploit activity (critical Oracle Fusion Middleware RCE, a Cisco enterprise
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- d96d74b84cd6e5e442d56405ec174f33b9ae4421d0cd1f75d0c75a575648bb31
- Enrichment time
- 2026-03-25T14:51:40Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.