Offroad Emerges From Stealth With $7 Million to Tackle Enterprise Identity Risk

2026-06-04T19:24:05Z3a92f351a3b15e6268815f53eb93b3c9742fb3da18cfb03376dde001b95f9f36
AI agentsCisco Unified CMGeminiGitHub token theftMagentoMirasvitSSRFTA4922VS Codeautonomous agentscybercrime crackdownenterprise identitylaw enforcement disruptionproof-of-conceptremote code executionserialized PHP objectthird-party riskvoice assistant compromise

What happened

This collection of SecurityWeek items highlights multiple high-impact security developments: startups (Offroad, Willow) raised $7M each to address enterprise identity risk and secure autonomous AI agents; active vulnerabilities and exploits were disclosed or weaponized — a Mirasvit Full Page Cache Warmer flaw allows unauthenticated serialized PHP object payloads leading to remote code execution on Magento servers, a critical Cisco Unified CM bug (SSRF) now has a public PoC, and a VS Code flaw enables one-click GitHub token theft with a public PoC. Separately, attackers were shown hijacking the

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
3a92f351a3b15e6268815f53eb93b3c9742fb3da18cfb03376dde001b95f9f36
Enrichment time
2026-06-04T19:24:05Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.