IT Help Desk Impersonation Lets Hackers Bypass MFA

2026-09-08T08:51:36Zce77e02add8b23f2f13c3166abd5e126a73718bafdd6ea55a423eef2a5807e05
AI securityAdobe CommerceMFA bypassMagentoMicrosoft 365MikroTik RouterOSNVIDIASSHSaaS compromiseV8 bytecodeactive exploitationcryptocurrency stealerdata breachdata leakextortionhelp desk impersonationransomwaresandbox escapesocial engineeringzero-day

What happened

Security Affairs reporting highlights active and emerging threats including IT help-desk impersonation used to bypass MFA and steal Microsoft 365 sessions, a large alleged Condé Nast data sale, active exploitation of the Magento/Adobe Commerce StyleSmuggler zero-day, an NVIDIA memory-corruption zero-day PoC, crypto-stealing malware concealed in V8 bytecode, AI-agent sandbox and integrity failures, a major Rhysida ransomware data leak, and active exploitation of a MikroTik RouterOS SSH vulnerability. Organizations should prioritize patching exposed Magento, NVIDIA, and MikroTik systems, review

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
ce77e02add8b23f2f13c3166abd5e126a73718bafdd6ea55a423eef2a5807e05
Enrichment time
2026-09-08T08:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.