Anthropic-linked CVEs pile up, attackers mostly shrug
2026-09-22T07:23:53Z•5ef854c39c4449af2cb24719d95779528c189c076d58bc539b1e7cfcbaa1cc29
AI-agentsAI-securityAppleChinaCiscoClickFixGitLabGoogle PixelIranNorth KoreaRubyGemsactive-exploitationcredential-theftcritical-infrastructurecyber-espionagedata-breachfake-job-interviewsmalwareransomwareremote-code-executionsocial-engineeringsupply-chain-securityvulnerability-managementzero-clickzero-day
What happened
A security news digest covering actively exploited zero-days, critical vulnerabilities, malware campaigns, supply-chain and social-engineering attacks, data exposures, cybercrime operations, and emerging risks from AI agents. Notable items include zero-click attacks against Google Pixel devices, critical Cisco and GitLab flaws under active exploitation, a purported 0-click RCE affecting AI coding agents, North Korean fake-job campaigns infecting tens of thousands of devices, and attacks targeting software repositories and enterprise systems.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 5ef854c39c4449af2cb24719d95779528c189c076d58bc539b1e7cfcbaa1cc29
- Enrichment time
- 2026-09-22T07:23:53Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.