SANS: Top 5 Most Dangerous New Attack Techniques to Watch

2026-03-25T14:51:40Zd96d74b84cd6e5e442d56405ec174f33b9ae4421d0cd1f75d0c75a575648bb31
AI-driven attacksCI/CD compromiseCisco firewallOracle Fusion Middlewareagentic AIcredential theftiOS zero-daysinfostealerphishingransomwaresecurity governancesoftware supply chainsupply chainthreat actorsvulnerabilities

What happened

DarkReading roundup (Mar 2026) highlights a rapid shift toward AI-driven attack techniques and the defensive gap this creates. Key themes: agentic/AI-enabled social engineering, faster AI-powered ransomware, and attackers increasingly ‘logging in’ via credential theft and infostealers. Multiple supply-chain incidents and software compromises were reported (Trivy CI/CD compromise, poisoned GitHub packages, Checkmarx KICS/VS Code plugin hits, GlassWorm in Open VSX, LiteLLM targeting), plus high-impact vulnerabilities and exploit activity (critical Oracle Fusion Middleware RCE, a Cisco enterprise

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
darkreading
Record identifier
d96d74b84cd6e5e442d56405ec174f33b9ae4421d0cd1f75d0c75a575648bb31
Enrichment time
2026-03-25T14:51:40Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.