InfoNews
In Other News: $15K iCloud Spoofing Bugs, AI Policy Experts Phished, Adblocker Spies on AI Chats
- Published
- Record updated
Summary
Microsoft's 2026 Digital Defense Report says AI has pushed the median time from vulnerability discovery to weaponization below 24 hours, and phishing rose from 7% to 23% of initial access vectors in its incident response cases. Researchers at SEC Consult disclosed two iCloud flaws that let attackers send emails from arbitrary icloud.com addresses that passed SPF, DKIM and DMARC checks, and Apple paid a $15,000 bug bounty.
Related items
- LowGHSA-3gh4-cghq-f8v4: Pydantic AI OpenTelemetry instrumentation: retry prompt content is not redacted when `include_content=False`Similar attack · GitHub Advisory Database
- LowGHSA-4x9p-g9wm-8q7f: Pydantic AI OpenTelemetry instrumentation: exception events on tool and agent run spans include content when `include_content=False`Similar attack · GitHub Advisory Database
- LowSeptember 2026 Cyber Threat Landscape: Global Attacks Jump 48% as Phishing and GenAI Data Exposure RiseSimilar attack · Check Point Research
- MediumOpenAI's AI agents accidentally uploaded user-provided images to third-party sitesSimilar attack · BleepingComputer
- HighCVE-2026-89032: BerriAI LiteLLM before 1.101.0-rc.1 contains a tenant isolation bypass vulnerability in the semantic cache layer that…Similar attack · NVD/CVE Database