Safe word: What is it and why do you need one?
2026-09-10T20:51:33Z•8bb9505a4331798a53646f68bf64b2ae997cf7e2baa146dff06151b75d8c4e52
AI-enabled fraudAPTAndroid malwareEDR evasionGamaredonOSINTOT securityOceanLotusQR-code phishingRATScarCruftUEFI Secure BootWebwormaccount takeoverbootloader vulnerabilitiescredential theftcritical infrastructurecybersecurity awarenessdeepfakesinfostealerphishingransomwaresocial engineeringsupply-chain attacks
What happened
ESET WeLiveSecurity’s September 2026 feed covers current cyber threats and defensive guidance, with emphasis on AI-enabled fraud and deepfakes, QR-code phishing, account compromise, supply-chain attacks, APT activity, ransomware and EDR evasion, Android malware, critical infrastructure, and Secure Boot bypasses. The most technically significant item reports 11 vulnerable Microsoft-signed UEFI shim bootloaders that can allow attackers to bypass UEFI Secure Boot by exploiting legacy vulnerabilities.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- eset_welivesecurity
- Record identifier
- 8bb9505a4331798a53646f68bf64b2ae997cf7e2baa146dff06151b75d8c4e52
- Enrichment time
- 2026-09-10T20:51:33Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.