SecurityWeek’s weekly roundup covers major cybersecurity developments, including new AI agent risks, active exploitation of software flaws, and law enforcement actions against cybercrime networks. It also highlights urgent fixes for SAP, WordPress, TP-Link, and AI coding tools, along with research on cloud token theft and plugin takeover techniques. #Raindrop #Mandiant #PhantomRaven #BlackAxe #Lockergoga #MegaCortex #Nefilim #SAP #OVERPASS #WooCommerceWholesaleLeadCapture #TapoC200 #Plugin4Shell #ClaudeCode #OpenAICodex #GitHubCopilot #GeminiCLI
Keypoints
- Raindrop raised $35 million to monitor failures in autonomous AI agents.
- Mandiant warned that attackers are using AI agents to escalate intrusions and drive costs.
- CrowdStrike linked the PhantomRaven npm stealer to a bug bounty hunter.
- A Zurich court sentenced a ransomware developer tied to Lockergoga, MegaCortex, and Nefilim.
- Critical flaws were disclosed in SAP, WooCommerce Wholesale Lead Capture, TP-Link Tapo C200, and AI coding plugins.