Here are the key points from the Security Affairs newsletter:
- News and articles:
- Over 14,000 F5 BIG-IP APM instances still exposed to RCE attacks
- Fortinet patches actively exploited CVE-2026-35616 in FortiClient EMS
- GPUBreach: Privilege escalation attacks on GPUs using Rowhammer
- Critical Flowise vulnerability targeted by attackers
- Intelligence and information warfare:
- Iranian-affiliated cyber actors exploiting PLCs across US critical infrastructure
- APT28 targeting government/critical infrastructure with PRISMEX malware
- Russian hackers targeting UK internet routers for espionage
- New Lua-based malware "LucidRook" observed in attacks against Taiwanese orgs
- Cybersecurity:
- Quantum computing breakthroughs pose imminent risks to cybersecurity
- Project Glasswing: AI model claimed to be a cybersecurity "reckoning"
- 179 ICS devices exposed online, putting critical infrastructure at risk
- Hacking and vulnerabilities:
- Sophisticated zero-day fingerprinting attack targeting Adobe Reader users
- Supply chain compromise in Smart Slider 3 Pro plugin
- CPUID hacked to deliver malware via CPU-Z/HWMonitor
Read the full article at Security Affairs
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.

![[AINews] The Unreasonable Effectiveness of Closing the Loop](/_next/image?url=https%3A%2F%2Fmedia.nemati.ai%2Fmedia%2Fblog%2Fimages%2Farticles%2F600e22851bc7453b.webp&w=3840&q=75)



