⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks
Summary
This week featured multiple security flaws across trusted software: Cisco's Identity Services Engine had a critical authentication bypass (CVE-2026-76460, CVSS score 10.0) allowing attackers to access devices remotely without a password, and AI coding agents like Claude Code and GitHub Copilot were vulnerable to Plugin4Shell, a zero-click remote code execution (running malicious commands without user interaction) attack that bypassed verification checks by swapping legitimate plugins for malicious ones. Additionally, a researcher used Claude to chain vulnerabilities in OpenAI's systems to gain unauthorized access, and new banking malware called KREMLIN was discovered hijacking web browsers for credential theft.
Solution / Mitigation
For the OpenAI SSO and libheif vulnerabilities: the issue was fixed 14 hours after responsible disclosure, with libheif releasing version 1.22.0 in May 2026. For Plugin4Shell: AIR Security stated users must update their AI coding agent to patch the SHA-pinning bypass vulnerability.
Classification
Affected Vendors
Related Issues
CVE-2026-63086: text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compat
CVE-2026-34371: LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the e
Original source: https://thehackernews.com/2026/09/weekly-recap-cisco-0-day-ai-agent-rce.html
First tracked: September 21, 2026 at 02:01 PM
Classified by LLM (prompt v3) · confidence: 92%