Crook used three open source agents to break into a Fortune 500 hospitality company, a major US airline and 25+ other orgs

2026-09-25T07:23:51Z•e3a01590c499e60e629e491a6d2684fbcbad5b7116fa0693102b0f984de190e8
CVE-2026-1062AI securityactive exploitationagentic AIauthentication bypasscloud securitycritical infrastructurecybersecurity newsdata breachidentity and access managementmalwaremobile securitynation-state activityphishingransomwareremote code executionsocial engineeringsupply chain securityvulnerability managementzero-day

What happened

The document is a September 2026 security-news feed covering actively exploited zero-days, data breaches, phishing and impersonation campaigns, AI-assisted or agentic attacks, malware, supply-chain and cloud misconfigurations, and related security policy developments. Notable items include active exploitation of a critical F5 BIG-IP APM RCE and Cisco ISE authentication-bypass zero-day, zero-click Salesforce Agentforce and Google Pixel issues, AI coding-agent RCE exposure, large-scale phishing and fake-job campaigns, and unauthorized access to customer and government data. The feed includes a 0

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
e3a01590c499e60e629e491a6d2684fbcbad5b7116fa0693102b0f984de190e8
Enrichment time
2026-09-25T07:23:51Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.