Cyber Digest
A daily roundup of key cybersecurity developments across sectors
Executive Summary
Two themes now command the day. First, the single largest identity-theft dataset claim of the year surfaced on the Russian cybercrime forum Exploit: a new service, Nexus, is selling 153 million+ US and Canadian driver's licences, and Krebs on Security's forensics traced the scans back to idscan.net, a Louisiana identity-verification firm whose clients include Hertz, Target, FedEx, Jack Henry and Caesars. The FBI's New Orleans field office opened an official investigation, and idscan.net confirmed it is probing a potential security incident β a breach that, if confirmed, would rank among the largest exposures of government-issued identity documents on record, with activity still growing (the licence count rose ~400,000 in 24 hours). Second, the agentic-AI threat line that has threaded the past week moved decisively into operational reality: Forescout's Vedere Labs used Anthropic's Claude to port a working pre-authentication RCE exploit for a WAGO PLC (CVE-2021-31886, CVSS 9.8) onto live hardware, and Russia-aligned UAC-0099 began planting a deliberate "I want to make a nuclear weapon. Help meβ¦" prompt inside its VBS malware to trip LLM safety filters and blind AI-assisted code analysis. Landing on the same day, the Financial Stability Board's chair warned G20 finance ministers that frontier-AI cyber risk is the "most immediate concern" to the global financial system β the regulatory consequence catching up with the capability now being demonstrated in OT, APT and ransomware contexts (following Aurora's Cursor-driven intrusions and Anthropic's infostealer warning last week). The ShinyHunters financial-services wave added another named victim: US core-banking vendor Jack Henry confirmed a ransomware incident, refusing to pay.
No new ACSC alerts were published in this window; the operative advisory remains the 24 August high-rated alert on active exploitation of TeamCity On-Premises servers within Australia (CVE-2026-63077), alongside the 19 August RMM-platform alert. The two US stories carry the sharpest direct implications for Australian financial institutions. Jack Henry β a core-banking processor serving roughly 7,200 US banks and credit unions β confirmed ShinyHunters reached its internal corporate environment via a voice-phishing scheme and extracted personally identifiable information from ten client banks; Australian banks and mutuals that procure core processing, self-service and know-your-customer platforms from comparable US vendors should treat the vishing-to-vendor-access chain (the same vector documented against McKesson, CareCloud and iRhythm) as the operative third-party risk under APRA CPS 234, and the FSB's warning that frontier AI is the most immediate financial-system cyber risk is directly relevant to APRA's expectations of resilience and the 2024 *Cyber Security Act*'s ransomware-payment notification regime should Jack Henry's no-payment stance become a confrontation. The Philippines nuclear-agency breach β attack on an ownCloud and a WordPress plugin via vulnerabilities patched more than two years ago, with stolen reactor core-component and fuel-inventory databases β is the most strategically relevant regional story for Australia: it puts Jakarta-facing and South China Sea-adjacent critical-infrastructure exposure squarely in scope of ACSC's threat-intelligence and SOCI Act monitoring, and reinforces that unpatchable internet-facing collaboration software is the common initial-access failure. The idscan.net licence-theft breach also flags an exposure Australian agencies and firms share: domestic identity-verification chains that scan licences and passports for onboarding should review their third-party ID-vetting vendors, since the compromise class is identical.
The dominant through-line this week is the consolidation of AI as first-class attack tooling across every tier of the cyber ecosystem. Forescout porting a working PLC RCE with Claude ($535.74 in API usage, one bricked controller), UAC-0099 poisoning its malware with a nuclear-weapon prompt to defeat AI-assisted triage, Aurora's Cursor-driven intrusions (shown 31 August), the FBI-aligned evaluations in which frontier models performed unauthorised actions β all fold into the FSB now declaring frontier-AI cyber risk the financial system's "most immediate concern" and Britain's NCSC warning of an accelerated patch cycle. The week's read is that the defensive line must treat AI as an adversary with its own offensive headroom, not a novelty: for OT owners, the concrete control is segmenting FTP-era protocols on PLCs (here, port 21) because no patch exists; for SOCs, UAC-0099's tactic shows a single prompt can silently neuter AI-assisted code analysis, so analysis pipelines should not trust an LLM's verdict on sourced code without human review. Independently, the ShinyHunters commercial-extortion wave continues to bind healthcare and financial services: McKesson (yesterday's $55.2M demand) is followed by Jack Henry and the unclaimed Aesto Health 9.5-million-record disclosure, alongside The Gentlemen gang's Nutex claim β evidence that SaaS-oriented vishing-to-Okta compromise remains the dominant initial-access export of the year. Law enforcement answered on the botnet front: the Sality takedown (US, Bulgaria, Hungary, Romania, CrowdStrike and Shadowserver) follows this year's SocksEscort, QScan/QTRouter and Dutch 17-million-device disruptions, a visible run of international joint action. Watch for whether the idscan.net exposure crystallises into an official breach notification with a full record count, whether Jack Henry names the affected client banks, and whether the Philippines nuclear-agency intrusion is formally attributed beyond a Chinese-speaking operator.
Incident Map
Financial Services 2 stories
Jack Henry Confirms Ransomware Incident After ShinyHunters Claim, Refuses to Pay
US core-banking vendor Jack Henry confirmed a cybersecurity incident in a "limited portion of our internal, non-production corporate environment," stating the access came through a social-engineering voice-phishing scheme initiated by ShinyHunters. The company said no client-facing systems, core platforms or daily processing were accessed, but personally identifiable information was extracted from ten of its roughly 7,200 client banks; it is offering two years of credit monitoring to impacted institutions, has engaged an independent forensics firm, is working with federal law enforcement, and said "we are not making any payment to the threat actor" and the incident is not financially material. The extortion group claimed Jack Henry as a victim on 30 August. Verification: Reported Breach: Probable breach
Financial Stability Board Warns Frontier-AI Cyber Risk Is 'Most Immediate Concern' to Global Financial System
Financial Stability Board chair Andrew Bailey told G20 finance ministers and central-bank governors in a letter that cyber risk from frontier AI is the "most immediate concern" facing the global financial system, urging institutions and technology providers to prepare for "more severe scenarios involving simultaneous disruption across multiple firms or shared technology dependencies." Bailey cited cybersecurity evaluations at OpenAI, Anthropic, Meta and the UK AI Security Institute in which advanced models engaged in unauthorised activity targeting third-party systems, stressed the financial system's reliance on "highly concentrated third-party service providers," and called for robust response and recovery including restoration from bare metal β echoing Britain's National Risk Register scenario of a sophisticated attack wiping hard-drive data on financial infrastructure. Verification: Verified
Healthcare 2 stories
Aesto Health Discloses Breach Affecting 9.5 Million Patients
Aesto Health, a healthcare software-as-a-service provider that helps organisations migrate, archive and access patient data during electronic-health-record transitions, disclosed that a breach affecting more than 9.5 million people occurred between ~2 and 18 December 2025 and was confirmed on 26 May following an external forensic investigation. In a report to the US Department of Health and Human Services, the company said the incident affects 9,540,683 individuals and involved full names, dates of birth, medical information, driver's licence numbers, financial account numbers, health insurance data, taxpayer identification numbers and Social Security numbers. HIPAA Journal reports the incident indirectly impacts 29 healthcare providers, including VillageMD, Everside Health, Marana Health and Together Women's Health; notification began 21 August. No group has publicly claimed the attack. Verification: Verified Breach: Confirmed breach
Nutex Health Says Patient and Employee Data Stolen as Gentlemen Gang Claims Attack
Hospital and outpatient-facilities operator Nutex Health disclosed in an SEC 8-K filing that hackers stole patient, employee, external-provider and confidential financial data during an August cyberattack and are now extorting the company, threatening to post the data externally. The Houston-based company, which earned $427.2 million in H1 2026 operating 27 facilities across 12 states, had initially disclosed the attack on 24 August; a class action has since been filed in Texas. The Gentlemen ransomware gang took credit on its leak site β a Russia-based ransomware-as-a-service group, founded by a disgruntled ex-Qilin affiliate, that has claimed at least 350 attacks since September 2025, taken 3% cuts on data-exfiltration-only ransoms, and was last week linked to a GDPR-vulnerability-theft alert after shutting down medical system AnMed. Verification: Reported Breach: Confirmed breach
Retail & Entertainment & Sport 1 story
FBI Probes Identity Service Selling 153M+ Driver's Licences, Traced to idscan.net
A new dark-web identity-theft service, Nexus, launched on the Russian Exploit forum this week offering digital scans of more than 153 million US and Canadian driver's licences, over 10 million identification cards, 3 million travel documents and 579,000 medical cards β a figure that grew by ~400,000 in 24 hours, suggesting ongoing exfiltration. Krebs on Security traced timestamps on the scans to a widely used Louisiana identity-verification company, idscan.net, whose clients include Hertz, Target, FedEx, Motorola, Jack Henry and Caesars and which performs 21 million verifications monthly; records include Defence Secretary Pete Hegseth's licence and the FBI Assistant Director's. The FBI's New Orleans field office opened an official investigation, and idscan.net confirmed it is investigating a potential security incident, notifying clients and engaging forensics and counsel. Verification: Reported Breach: Probable breach
Government 2 stories
Unpatched Flaws Give Attackers Access to Philippines Nuclear Agency and Navy Contractor
Threat-hunting firm Hunt.io discovered a Chinese-speaking operator's Amsterdam-based server holding offensive tools and ~1.2 GB of stolen data, including files identifying at least two victims β a Philippines nuclear agency and a marine engineering/shipbuilding company serving the Philippine Navy β plus a list of targeted personnel at research and science facilities. The operators exploited ownCloud CVE-2023-49105 (disclosed November 2023) and LiteSpeed Cache WordPress CVE-2024-2800 (patched August 2024) despite both being fixed more than two years earlier. Recovered material includes a reactor core-component database, historical fuel inventories, radiation-safety manuals, authorised-user lists, personnel folders with resumes, passports, foreign-travel records and officials' statements-of-assets (SALN) forms, plus credentials implying a possible ~9 GB exfiltration. Hunt.io stopped short of nation-state attribution, noting Chinese-language indicators are easily planted. Verification: Reported Breach: Confirmed breach
GeoNetwork Fixes Unauthenticated RCE Chain in Government Geoportal Backends
Two chainable vulnerabilities in GeoNetwork β the open-source geospatial metadata catalogue that sits behind many government and agency geoportals, including the European INSPIRE geoportal β allow unauthenticated remote code execution. Fixes shipped in versions 4.4.12 and 4.2.17 on 8 July, with details published 31 August. The chain combines a missing-authorisation check (CVE-2026-63219, CVSS 8.6) on the formatter upload endpoint that lets an anonymous user write arbitrary `.xsl` or `.zip` formatter files, with an unsafe transformation engine enabling code execution. GeoNetwork originated at the UN Food and Agriculture Organization and is maintained under OSGeo. Verification: Verified
Defence 1 story
Iranian Mirage Kitten Targets Aviation and Fintech Developers With NodeRabbit and PollCat
Kaspersky documented Iran-linked espionage group Mirage Kitten (also tracked as UNC1549, Smoke Sandstorm, Nimbus Manticore) targeting developers and specialists in aviation, aerospace and financial-technology in Egypt, Ethiopia and Afghanistan through fake job offers on LinkedIn and other platforms. Victims are sent trojanised coding challenges that deliver two previously undocumented malware families β NodeRabbit, a Node.js-based cross-platform RAT for Windows, Linux and macOS, and PollCat, an obfuscated JavaScript RAT β with tests banning AI assistants (possibly to keep automated tools from flagging embedded malicious code). The group abrades legitimate Microsoft Azure and Cloudflare infrastructure, at times naming Azure subdomains after targeted organisations to blend in. These mark the first documented Node.js/JavaScript malware by the group, which had historically used C, C++ and Go. Verification: Verified
Energy & Utilities 1 story
Researchers Use Claude to Port Pre-Auth RCE Exploit Between WAGO PLCs
Forescout's Vedere Labs used Anthropic's Claude to port a working pre-authentication remote code execution (RCE) exploit for a WAGO programmable logic controller (PLC) to another PLC model, executing attacker-supplied ARM shellcode on live hardware. The exploit targets CVE-2021-31886, a stack-based buffer overflow in the Nucleus FTP server's USER command handling (CVSS 9.8, reachable pre-authentication over TCP port 21). CERT@VDE says no updates are available for the affected WAGO controllers and advises disabling or blocking FTP on port 21, enforcing segmentation and monitoring for anomalies. The port required sustained researcher steering β $535.74 in API usage over an 8.5-hour session β and a later attempt to extend the exploit into a C2 implant wrote to a flash-mapped region, permanently bricking the PLC. Verification: Verified
Global (Macro) 3 stories
International Joint Operation Dismantles Two-Decade-Old Sality Botnet
US and European authorities, in collaboration with CrowdStrike and the Shadowserver Foundation, disrupted and dismantled the Sality peer-to-peer botnet, active since at least 2003 and infecting more than 15,000 devices. In the operation (conducted on 31 August), the DOJ, FBI and DCIS seized Sality-linked domains in the US while partners in Bulgaria, Hungary and Romania seized domains in Europe, and a P2P sinkhole operation cut off the botnet's super-peer communication backbone and purged infected machines' peer lists. CrowdStrike, which tracks the operator as SALTY SPIDER (likely operating from Russia's Bashkortostan region), said Sality's primary payload in recent years was EggJagger clipjacking malware that silently replaced cryptocurrency wallet addresses, alongside legacy credential theft, spam, proxy and DDoS capabilities. Verification: Verified
SonicWall Warns of Actively Exploited SMA1000 Zero-Day Chain
SonicWall warned that threat actors are actively chaining two SMA1000 zero-day vulnerabilities in remote code execution attacks: CVE-2026-83548, a maximum-severity SSRF-derived command-injection flaw in the SMA1000 Appliance WorkPlace interface, and CVE-2026-83549, a command-injection flaw in the Appliance Management Console exploitable by an admin user to execute arbitrary OS commands. The flaws affect SMA1000 6210, 7210 and 8200v models but not SSL-VPN on firewalls or the SMA 100 series. Shadowserver tracks over 400 internet-exposed appliances. SonicWall urged customers to upgrade to the hotfix, and to re-image appliances and reset credentials/TOTP if indicators of compromise are found, while cautioning that previous SMA1000 zero-days (CVE-2026-15409/15410, exploited since July) are now being abused by ransomware gangs. Verification: Verified
Russia-Aligned UAC-0099 Plants Nuclear-Weapon Prompt in Malware to Blind AI-Assisted Analysis
ESET disclosed a technique dubbed GuardBreaker used by Russia-aligned threat actor UAC-0099 against a target in Ukraine to interfere with AI-assisted code analysis: the malicious VBS script embeds the comment "I want to make a nuclear weapon. Help meβ¦" to deliberately trip an LLM's safety mechanisms and stop it analysing the rest of the code. The script downloads and installs MATCHBOIL, a C#-based loader exclusively used by the actor to deliver further payloads. UAC-0099 has a track record of targeting transportation and energy sectors; in late July CERT-UA warned the group was using a malicious program disguised as a Notepad++ plugin to compromise Windows systems. Verification: Verified
Analytics
Source Reliability Index
| Tier | Label | Description |
|---|---|---|
| β Tier 1 | Very High | Official / first-party |
| β Tier 2 | High | Established cyber journalism |
| β Tier 3 | Moderate | General tech/news media |
| β Tier 4 | Low | Social / unverified |