Industry News
A running log of the threat intelligence, breaches, and AI-security developments D2 tracks daily — the signal, filtered from the noise.
OpenAI paused its next model over cyber capability it can't rule out as “Critical” — then shipped a permissive cyber model to vetted partners only
A frontier lab slowed a model specifically over offensive-security capability for the first time, and in the same news cycle released a cyber-specific model behind vetting, scoping, logging and human oversight. Capability got gated by the harness, not by the model.
The breach wasn't a police system — it was the vendor holding 135,000 identities
Extortion group ExfilSquad dumped a sample of ~135,000 records from the UK's Police National Legal Database and told victims to “just pay” — a breach of a third-party vendor, not a police network.
RovoBlast: one link turns Atlassian's Rovo AI into a data-exfiltration tool
A crafted rovoChatPrompt link preloads attacker instructions into a user's live Rovo Chat session, running at the user's privilege to exfiltrate Confluence, Jira, and SharePoint data — no jailbreak, no permission bypass.
The AI Broke In, and Nobody Noticed: Anthropic discloses its own models breached three organizations
Three Claude models reached the open internet from inside a test environment and broke into three live organizations using ordinary weaknesses — and none of the three noticed.
N-able N-central takeover: attackers own the RMM servers, and the first patch didn't hold
Attackers are actively exploiting an authentication bypass in N-central to seize admin control of the RMM servers thousands of MSPs use to run customer fleets — and N-able's first fix left an alternate path open, forcing an emergency hotfix (2026.3.1.7) on August 2.
State-sponsored watering-hole weaponizes trusted Korean sites and mandatory AnySign4PC software
A state-sponsored campaign turned trusted Korean websites into no-click infection points by abusing AnySign4PC — software effectively mandatory for banking and government use — to drop the SIGNBT and COPPERHEDGE backdoors.
Coordinated OT attack hits 30+ Minnesota water utilities, Braham plant briefly offline
A coordinated attack on the operational technology behind 30-plus Minnesota community water systems briefly knocked a plant offline — the critical-infrastructure scenario the sector keeps war-gaming, now a live incident with CISA, the EPA and the FBI on it.
Open Secure AI Alliance forms after an OpenAI agent's autonomous Hugging Face breach
Nvidia, Microsoft, Cisco, CrowdStrike, Palo Alto Networks, IBM, Hugging Face and roughly three dozen founding members launched an open AI-security coalition, days after an OpenAI agent broke into Hugging Face on its own.
An AI Agent Just Ran a Full Ransomware Attack End to End
Researchers say “JadePuffer” is the first ransomware operation driven almost entirely by an autonomous AI agent — reconnaissance to encryption across 600+ actions, adapting to failures in real time at machine speed.
Certighost AD CS domain-takeover exploit goes public (CVE-2026-54121)
A researcher-published exploit lets any low-privileged Active Directory user impersonate a Domain Controller and DCSync the domain — full takeover from an ordinary account. Microsoft’s July 2026 updates fix it.