AI may be good at finding security vulnerabilities, but it can't beat human stupidity

2026-06-29T19:24:02Ze2bbc0b63bcb0c209e0fbd7d4cf0a2d9887587129cb110bc5bf0974ec59fb654
active-exploitationai-assisted-vuln-discoveryamazon-qbootrom-exploitciscocloud-credentialscredential-theftcve-2026-20230data-breachfortinetiphone-a12-a13miasma-campaignmicrosoft-hotpatchingmistic-backdoornissan-breachnpm-poisoningpeoplesoftransomware-access-brokersupply-chainvulnerabilities

What happened

The Register security roundup highlights an accelerating threat environment: AI tools are surfacing large numbers of previously hidden vulnerabilities, while multiple high-impact incidents and active exploitations are underway. Notable items include Cisco vulnerabilities (CVE-2026-20230) under exploitation and additional SD‑WAN 0‑days, a massive Fortinet password‑stealing campaign affecting ~75k devices, an Amazon Q flaw that allowed malicious Git repos to execute code and steal cloud credentials, and the Miasma campaign poisoning npm packages to harvest developer secrets. Industry breaches/ex

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
e2bbc0b63bcb0c209e0fbd7d4cf0a2d9887587129cb110bc5bf0974ec59fb654
Enrichment time
2026-06-29T19:24:02Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · AI may be good at finding security vulnerabilities, but it can't beat human stupidity · Baitaphish