Threat actors are giving AI agents a bigger role in cyberattacks

2026-09-08T14:51:40Zfefd8e87712af205aa756ce687ce264b4c37d3e846664757b498957a5ce74ed6
AI-assisted cyberattacksJellyfinMetabaseMicrosoft 365WeChataccount hijackingcredential theftdata breachextortionpath traversalphishingransomwareresidential proxiessession token theftthreat intelligencevishingwormzero-click exploit

What happened

Help Net Security reports on AI-assisted cyberattacks, a zero-click WeChat worm, phishing and vishing campaigns targeting Trezor customers and Microsoft 365 users, a large Mathspace data breach via an unpatched Metabase vulnerability, Jellyfin security fixes, and ransomware operational tactics. The most severe items are the potentially wormable WeChat flaw, the Metabase compromise affecting more than one million people, and account-takeover activity targeting SaaS identities.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
fefd8e87712af205aa756ce687ce264b4c37d3e846664757b498957a5ce74ed6
Enrichment time
2026-09-08T14:51:40Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Threat actors are giving AI agents a bigger role in cyberattacks · Baitaphish