TCSR Weekly Roundup: Critical RCE Patches, AI Sandbox Escapes, and Supply Chain Risks
This week's roundup covers critical RCE patches, emerging AI sandbox escapes, supply chain threats, and major data breaches.
Welcome to this week's Talivio Cyber Security Report (TCSR) roundup. This week, the security landscape highlights a fascinating intersection of emerging artificial intelligence vulnerabilities and critical infrastructure exploits. As organizations rapidly adopt AI tools, researchers and threat actors alike are finding novel ways to bypass sandboxes and compromise accounts, while traditional software vulnerabilities continue to demand immediate patching attention.
AI Security: Sandboxes, Agents, and Account Takeovers
Artificial intelligence systems are facing intensive scrutiny as researchers expose significant security gaps. Notably, security researchers successfully escaped the OpenAI Codex sandbox to execute commands on the host system. In another demonstration of advanced AI risks, researchers utilized Claude Opus 5 to chain multiple vulnerabilities and take over OpenAI staff accounts. Meanwhile, Google confirmed that its Gemini AI was involved in breaches targeting three separate firms.
On the client side, a new attack vector named "BragJack" is targeting AI browser agents through malicious browser extensions. These developments highlight the urgent need for robust sandboxing and strict access controls around AI deployments. To help organizations defend against these emerging vectors, security firms are stepping up, with Vectra AI launching its new "Ascent" platform specifically designed to counter AI-driven attacks.
Critical Flaws: Unauthenticated RCEs and API Zero-Days
Several high-profile software platforms have issued urgent patches for severe vulnerabilities this week. SolarWinds resolved a critical hard-coded key vulnerability in its ARM platform that could allow unauthenticated attackers to achieve Remote Code Execution (RCE). Additionally, a critical pre-authentication RCE vulnerability in the Orkes Conductor workflow platform is reportedly being exploited in the wild, requiring immediate mitigation.
API security also made headlines as a new Cisco zero-day vulnerability brought attention to API endpoint authentication failures.
How TCSR helps: Regularly scanning your external attack surface for unpatched CVEs, exposed administrative interfaces, and misconfigured API endpoints is vital to preventing attackers from exploiting these pre-auth entry points.
Supply Chain and Developer Ecosystem Threats
Software supply chains remain a primary target for sophisticated adversaries. Researchers discovered malicious npm packages that successfully evade standard runtime install-script defenses, allowing malicious code to execute undetected during package installation.
In targeted state-sponsored activity, the threat group Jade Sleet has been linked to a breach at an Indian IT provider. The attackers deployed custom backdoors known as FLATROOF and ROOFDECK to maintain persistence. On the defensive side of the industry, startup TigerByte Cyber emerged from stealth with $3 million in funding to address modern enterprise security challenges.
Global Breaches and Ransomware Reversals
Large-scale data exposure and cyber espionage continue to impact organizations worldwide. Healthcare services provider McKesson suffered a cyberattack resulting in the theft of data that includes 6.4 million unique email addresses. On a global scale, the North Korean threat group known as WaterPlum has successfully infected an estimated 30,000 devices worldwide.
In an unusual turn of events within the cybercrime ecosystem, the ShinyHunters hacking group breached the leak site of the Clop ransomware gang, subsequently threatening to extort the ransomware operators themselves.
Protocol Nuances and Identity Visibility
As we look toward identity security trends, industry experts emphasize that comprehensive identity visibility serves as the fundamental foundation for modern enterprise protection.
On the network protocol front, security analysts analyzed the HTTP QUERY method, describing it as a "grey zone" between standard GET and POST requests. Understanding how your web servers handle non-standard or lesser-used HTTP methods is crucial for maintaining a tight security posture.
How TCSR helps: Our automated scans evaluate your web servers' HTTP headers, TLS configurations, and allowed HTTP methods to ensure your public-facing infrastructure does not inadvertently expose weak spots to attackers.
What This Means for You
This week's news underscores that security is a moving target spanning both legacy infrastructure and cutting-edge AI integrations. To safeguard your business, prioritize patching critical RCE vulnerabilities in workflow and management tools like SolarWinds and Orkes Conductor. Ensure your development teams are vetting third-party packages carefully, and maintain comprehensive visibility over your external APIs and identity directories to block unauthorized access before it starts.
Sources
- Google Confirms Gemini AI Breached Three Firms — SecurityWeek
- Jade Sleet Linked to Indian IT Provider Breach With FLATROOF and ROOFDECK Backdoors — The Hacker News
- ISC Stormcast For Monday, September 21st, 2026 https://isc.sans.edu/podcastdetail/10102, (Mon, Sep 21st) — SANS Internet Storm Center
- Malicious npm packages evade install-script defenses at runtime — BleepingComputer
- Researchers escape OpenAI Codex sandbox to run commands on host — BleepingComputer
- Claude Opus 5 Helped Researchers Take Over OpenAI Staff Accounts via Chained Flaws — The Hacker News
- BragJack attacks hijack AI browser agents through malicious extensions — BleepingComputer
- TigerByte Cyber Emerges From Stealth With $3 Million in Funding — SecurityWeek
- North Korean WaterPlum hackers infected 30,000 devices worldwide — BleepingComputer
- ShinyHunters hacks Clop leak site, threatens to extort ransomware gang — BleepingComputer