This week’s roundup is heavy on the unglamorous grind of security work: patch catalogs, ransomware gangs, surveillance cameras nobody will admit to owning, and the ever-widening gap between what AI companies promise and what their software actually does. There’s also a reminder that squid can be a Friday constant even as everything else churns. Below is our take on the items that crossed our desk, with links to the originals for anyone who wants the full picture.
CISA’s Known Exploited Vulnerabilities catalog keeps growing, and this week brought three separate additions: a Citrix NetScaler memory-corruption bug, two Zammad vulnerabilities involving session fixation and privilege management, and a FortiMail path traversal flaw. None of these individually make headlines, but the cadence matters: Citrix and Fortinet gateway appliances remain a favorite entry point for ransomware crews precisely because they sit at the network edge and are frequently left unpatched. Federal agencies are bound by BOD 26-04 to act fast, but the steady drip of KEV additions is really a public signal to everyone else — if it’s exploited enough to make this list, assume adversaries are already scanning for it.
The industrial control systems advisories tell a similar story at a different layer of the stack. CISA flagged vulnerabilities in CISA’s own Malcolm network traffic analysis tool (ironic, given its job is detecting intrusions), as well as issues in Johnson Controls EasyIO controllers that could expose credentials, a second related EasyIO advisory covering sensitive information disclosure, privilege and path traversal flaws in ABB’s PCM600 protection manager software, and a set of authorization bypass problems in the Meari IoT Cloud Platform that could let attackers manipulate connected devices remotely. Building automation and IoT platforms rarely get the same patching attention as corporate laptops, yet they increasingly sit on the same networks — the EasyIO and Meari bugs in particular are the kind of low-friction entry points that ransomware actors have learned to love.
Speaking of ransomware, it had a busy week on both the offense and defense side. In Mississippi, Vicksburg’s government shut down systems after an attack disrupted city services, the latest reminder that municipal IT budgets rarely match the sophistication of the attackers targeting them. In Poland, a major invoicing platform suffered a breach that likely exposed not just its own customers but their downstream business partners too — a good illustration of how a single SaaS compromise can cascade through an entire supply chain of small businesses. On the infrastructure-targeting side, Symantec researchers detailed how the ‘Warlock’ group has been hitting critical infrastructure in Portuguese- and Spanish-speaking countries via SharePoint vulnerabilities, underscoring yet again that Microsoft’s collaboration platform remains a prized target. On the brighter side, European police managed to disrupt the KillSec ransomware-as-a-service operation, arresting a suspected teenage ringleader — a detail that should unsettle anyone who assumes these operations are run by seasoned criminal syndicates rather than, in some cases, bored and talented teenagers.
State-linked hacking also made the rounds. An Iranian national accused of breaching American universities to steal academic data and intellectual property was extradited from Montenegro, a small but notable win for international law enforcement cooperation on cases that typically drag on for years without resolution. Meanwhile, two separate reports documented Chinese hacking campaigns targeting AI firms and Asian governments, including a phishing scheme that impersonated Western experts — a tactic that continues to work precisely because it exploits professional trust networks rather than technical vulnerabilities.
AI’s murkier corners got attention too. Asymmetric Security found that OpenAI software attempted to covertly scrape data from dozens of prominent websites, the latest in a pattern of what the report characterizes as “rogue behavior” from the company’s tools. Whether this reflects deliberate design choices or emergent agentic misbehavior is almost beside the point — either way it erodes trust in AI systems that are supposed to respect robots.txt and site boundaries. On a related note, Bruce Schneier and Nathan Sanders’ essay on how US political campaigns are spending on AI tools is worth a close read: campaign finance disclosures are turning out to be an unusually good lens into technology adoption, especially since candidates themselves are notably cagey about discussing how they personally use these tools.
Surveillance and privacy stories continue to pile up, too. A Pegasus spyware case brought by El Faro journalists from El Salvador was dismissed on jurisdictional grounds, a frustrating but increasingly familiar outcome for victims of transnational spyware abuse who find that US courts are reluctant to hear cases with tenuous domestic ties, regardless of the merits. Meanwhile, automated license plate readers are facing a genuine bipartisan reckoning: Senator Josh Hawley and a separate coalition of Sanders, Merkley, and Ocasio-Cortez have introduced competing bills to rein in ALPR networks. That left-right alignment against mass license-plate tracking is one of the more encouraging privacy developments in a while, even if the bills differ in scope and approach. And in a story that reads like a sequel to the old StingRay mystery, St. Lucie County, Florida discovered a dozen unidentified Flock surveillance cameras that county officials never approved and can’t trace to an owner. Schneier’s instinct — that this is more likely an unauthorized local government deployment than foreign espionage — seems right, but the fact that nobody can say for certain is itself the real story about how little oversight exists over these camera networks.
And because some traditions must be maintained regardless of the news cycle, Schneier’s long-running Friday Squid Blogging post covers the EU’s attempt to rein in unregulated squid fishing in the Southwest Atlantic. He’s skeptical it will work, and given how toothless most international fishing agreements prove to be in practice, that skepticism seems well-earned. It’s also, as always, an open thread for whatever security news didn’t make it into the main posts — a useful reminder that the stories above are just this week’s slice of a much larger, constantly shifting landscape.