{"data":{"id":"ca265986-dc34-4877-b6f4-e924010d867d","title":"⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks","summary":"This week featured multiple security flaws across trusted software: Cisco's Identity Services Engine had a critical authentication bypass (CVE-2026-76460, CVSS score 10.0) allowing attackers to access devices remotely without a password, and AI coding agents like Claude Code and GitHub Copilot were vulnerable to Plugin4Shell, a zero-click remote code execution (running malicious commands without user interaction) attack that bypassed verification checks by swapping legitimate plugins for malicious ones. Additionally, a researcher used Claude to chain vulnerabilities in OpenAI's systems to gain unauthorized access, and new banking malware called KREMLIN was discovered hijacking web browsers for credential theft.","solution":"For the OpenAI SSO and libheif vulnerabilities: the issue was fixed 14 hours after responsible disclosure, with libheif releasing version 1.22.0 in May 2026. For Plugin4Shell: AIR Security stated users must update their AI coding agent to patch the SHA-pinning bypass vulnerability.","labels":["security"],"sourceUrl":"https://thehackernews.com/2026/09/weekly-recap-cisco-0-day-ai-agent-rce.html","publishedAt":"2026-09-21T14:24:13.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection","supply_chain","model_theft"],"issueType":"news","affectedPackages":null,"affectedVendors":["OpenAI","Anthropic","Google","Microsoft"],"affectedVendorsRaw":["OpenAI","ChatGPT","Anthropic","Claude","Claude Opus 5","GitHub Copilot","Google Gemini","Discourse"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-09-21T14:24:13.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["confidentiality","integrity"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}