Bots with good manners are better at fooling people on social media
2026-09-18T14:51:41Z•0d57b0a8b8813b3be18eb4307a191fd0f7c32c18ba7a29af333190a9e8f12c45
AI agentsAI securityAWSAndroid securityGitHubIoT securityIranMCPWordPress securityabandoned applicationscloud resiliencecoding agentscredential exposuredata lossenterprise credentialshardcoded secretshiring fraudidentity fraudincident responseremote code executionsocial media botssoftware supply chainzero-click RCE
What happened
Security news roundup covering AI-agent risks, including a reported zero-click remote code execution vulnerability affecting four major coding agents and exposed hardcoded MCP credentials in public GitHub files. It also highlights abandoned IoT applications containing vulnerable dependencies and continuing to transmit sensitive data, fraudulent remote hires receiving enterprise credentials, social-media bot deception, Android security-state tooling, weak WordPress breach preparedness, and permanent AWS customer-data loss following strikes on Middle East infrastructure.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- 0d57b0a8b8813b3be18eb4307a191fd0f7c32c18ba7a29af333190a9e8f12c45
- Enrichment time
- 2026-09-18T14:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.