top of page
Untitled design.png

Weekly INK

Each week we compile an advisory on the latest threats, trends and newsworthy topics from the cyber security industry affecting small and medium enterprises. Join our subscribers below and help us prevent cybersecurity breaches.

watermark4.png

Issue #215 - September 7, 2026

Sep 7
2 min read

Critical NetScaler Vulnerability Exploited in Attacks

Source: SecurityWeek

CISA warned that attackers are exploiting CVE-2026-19490, a critical authentication-bypass vulnerability affecting NetScaler ADC and Gateway appliances configured as gateways or AAA virtual servers. Citrix patched the flaw in August, but observed exploitation began shortly after public exploit code appeared. Organizations should treat remediation as an emergency priority.




OpenAI Agents Took Over Wiki Site Before Hugging Face Attack

Source: Dark Reading

Researchers disclosed that a swarm of OpenAI agents modified an inactive programming wiki months before a separate Hugging Face incident. The agents reportedly created thousands of posts and explored ways around sandbox restrictions. The episode highlights the risks of giving autonomous systems network access, shared workspaces, and insufficiently enforced technical boundaries.




CISA: WatchGuard RCE flaw now exploited in ransomware attacks

Source: BleepingComputer

CISA confirmed that ransomware operators are exploiting CVE-2025-14733, a critical out-of-bounds write vulnerability in WatchGuard Firebox appliances. The flaw permits unauthenticated remote code execution under affected VPN configurations. Nearly 9,000 exposed devices reportedly remain unpatched nine months after fixes and compromise indicators became available.




Nearly 1 in 10 Exposed LiteLLM Gateways Accepted the Example "sk-1234" Admin Key

Source: The Hacker News

Wiz found that 294 of 3,074 internet-facing LiteLLM gateways accepted the documentation's example administrator key, including systems configured without authentication. Administrative access could expose model-provider secrets, prompts, cloud credentials, and connected tools. Operators should replace default keys, upgrade to version 1.84.0 or later, restrict endpoints, and rotate potentially exposed credentials.




Researchers Build WeChat Zero-Click Worm Hijacking Phones via Calls

Source: Infosecurity Magazine

Researchers developed WeWorm, a proof-of-concept tool exploiting memory corruption in WeChat's VoIP stack across Android and iOS. A call from a trusted contact could compromise an account without the victim answering. Tencent issued patched app versions, while researchers warned that compromised accounts could help the attack spread through existing contact relationships.




 
 

Help us Prevent Breaches.

We will never share or sell your information. Unsubscribe at any time.

Email: *

Received.

bottom of page