✨ The Containment Era is here. Secure AI workloads before they breach. →The Containment Era is here. →The Containment Era is here. →Explore ✨
Health Care / Life Sciences
Breach intelligence, attack campaigns, and threat reports targeting the Health Care / Life Sciences sector.
Explore Other Sectors
Health Care / Life Sciences Threat Reports
Beware: Malicious 'Perplexity AI' Chrome Extension Intercepts User Searches
In June 2026, a malicious Chrome extension named "Search for perplexity ai" was discovered impersonating the legitimate Perplexity AI search engine. This extension altered users' default search settings, intercepting all address-bar queries and routing them through attacker-controlled infrastructure before redirecting to legitimate search services. While no credential theft was confirmed, the extension's permissions allowed for extensive data collection, posing significant privacy risks. ([bleepingcomputer.com](https://www.bleepingcomputer.com/news/security/fake-perplexity-extension-on-chrome-web-store-tracked-searches/amp/?utm_source=openai)) This incident underscores the growing trend of cybercriminals exploiting trusted AI brands to distribute malicious software. It highlights the need for enhanced vigilance in verifying browser extensions and the importance of robust security measures to prevent unauthorized data interception.
3 weeks ago
Kill Chain
Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints
In March 2026, threat actors exploited a critical vulnerability in Langflow (CVE-2026-33017), an open-source AI workflow tool, to deploy Monero cryptocurrency miners on exposed AI application endpoints. This unauthenticated remote code execution flaw allowed attackers to execute arbitrary Python code via the public flow build API endpoint, leading to unauthorized system access and resource hijacking. The attacks were observed between March 27 and April 15, 2026, with malicious scripts terminating competing miners, disabling security controls, and establishing persistence mechanisms. ([thehackernews.com](https://thehackernews.com/2026/06/langflow-rce-exploited-to-deploy-monero.html?utm_source=openai)) The rapid exploitation of this vulnerability underscores the increasing targeting of AI infrastructure by cybercriminals. Organizations utilizing Langflow versions prior to 1.9.0 are urged to upgrade immediately and review their systems for signs of compromise. ([thehackernews.com](https://thehackernews.com/2026/06/langflow-rce-exploited-to-deploy-monero.html?utm_source=openai))
3 weeks ago
Kill Chain
Microsoft Identifies Critical AI Agent Vulnerability in MCP Tool Descriptions
In June 2026, Microsoft researchers identified a critical vulnerability in AI agents utilizing the Model Context Protocol (MCP). Attackers can exploit this by embedding malicious instructions within tool descriptions, causing AI agents to inadvertently exfiltrate sensitive company data without triggering security alerts. This method leverages the trust AI agents place in tool descriptions, leading to unauthorized data disclosures. This incident underscores the evolving threat landscape as AI agents become more integrated into business operations. Organizations must reassess their AI security protocols to address these sophisticated attack vectors, emphasizing the need for stringent validation of third-party tools and continuous monitoring of AI agent activities.
3 weeks ago
Kill Chain
The Rise of AI-Powered Phishing Attacks in 2025
In 2025, the cybersecurity landscape witnessed a significant surge in AI-powered phishing attacks. Cybercriminals increasingly leveraged artificial intelligence to craft highly convincing phishing emails, leading to a 140% increase in browser-based phishing attacks and a 130% rise in zero-hour phishing incidents compared to the previous year. This escalation resulted in substantial financial losses, with an estimated $17 billion worth of Bitcoin stolen through AI-enhanced scams. The integration of AI into phishing tactics has not only increased the volume of attacks but also their sophistication, making detection and prevention more challenging for organizations. ([pcworld.com](https://www.pcworld.com/article/2645617/ai-driven-phishing-scams-exploded-last-year-the-trend-continues-in-2025.html?utm_source=openai)) The current relevance of this trend is underscored by the continuous evolution of AI technologies, which are being exploited by cybercriminals to automate and personalize phishing campaigns at an unprecedented scale. This development necessitates a proactive approach from organizations to enhance their cybersecurity measures and adapt to the rapidly changing threat landscape.
3 weeks ago
Kill Chain
Djinn Stealer Exploits SimpleHelp Vulnerability CVE-2026-48558
In June 2026, attackers exploited CVE-2026-48558, a critical authentication bypass vulnerability in SimpleHelp's OpenID Connect (OIDC) authentication flow, to gain unauthorized access to remote monitoring and management (RMM) systems. By submitting forged identity tokens, they obtained technician-level access without valid credentials, enabling them to deploy the Djinn Stealer malware across Windows, macOS, and Linux systems. Djinn Stealer targeted a wide range of sensitive information, including cloud service credentials, source control data, package registry credentials, AI development tools, and cryptocurrency wallets, posing significant risks to enterprise environments. This incident underscores the increasing focus of threat actors on exploiting vulnerabilities in trusted administrative tools to gain broad access to enterprise networks. The rapid exploitation of CVE-2026-48558 highlights the urgency for organizations to promptly apply security patches and implement robust monitoring to detect unauthorized access, especially in systems that manage critical infrastructure and sensitive data.
3 weeks ago
Kill Chain
Oracle E-Business Suite Flaw CVE-2026-46817 Under Active Attack
In late June 2026, security researchers identified active exploitation of a critical vulnerability (CVE-2026-46817) in Oracle E-Business Suite's Payments module. This flaw, present in versions 12.2.3 through 12.2.15, allows unauthenticated attackers to remotely compromise the system via HTTP, potentially leading to full control over the affected instances. The vulnerability was initially disclosed in May 2026, with a CVSS score of 9.8, indicating severe risks to confidentiality, integrity, and availability. ([thehackernews.com](https://thehackernews.com/2026/06/oracle-e-business-suite-flaw-cve-2026.html?utm_source=openai)) The exploitation of CVE-2026-46817 underscores the persistent threat posed by unpatched vulnerabilities in critical business applications. Organizations relying on Oracle E-Business Suite are urged to apply the latest security patches promptly to mitigate potential breaches and safeguard sensitive financial data. ([helpnetsecurity.com](https://www.helpnetsecurity.com/2026/06/30/oracle-payments-cve-2026-46817-exploitation/?utm_source=openai))
3 weeks ago
Kill Chain
Apple's June 2026 Security Updates: Addressing AI-Discovered WebKit Vulnerabilities
In June 2026, Apple released security updates for iOS, macOS, and Safari to address over 30 vulnerabilities, including four critical WebKit flaws discovered using AI tools like Anthropic Claude and OpenAI Codex. These vulnerabilities, such as CVE-2026-43707, involved memory corruption issues that could lead to unexpected crashes when processing malicious web content. Apple promptly addressed these issues with improved memory handling. ([thehackernews.com](https://thehackernews.com/2026/06/apple-patches-30-ios-macos-safari-flaws.html?utm_source=openai)) This incident underscores the growing role of AI in both identifying and potentially exploiting software vulnerabilities, highlighting the need for accelerated patch management and proactive security measures to mitigate emerging threats.
3 weeks ago
Kill Chain
Critical Vulnerabilities in AirDrop and Quick Share Impact Billions
In June 2026, security researchers identified six vulnerabilities in Apple's AirDrop and Android's Quick Share, affecting over five billion devices. These flaws allow attackers within wireless range to crash file-sharing services or bypass security checks without user interaction. Specifically, three vulnerabilities in AirDrop can disable services like AirPlay and Handoff, while Quick Share flaws enable unauthorized session initiation and potential remote code execution. ([thehackernews.com](https://thehackernews.com/2026/06/airdrop-and-quick-share-flaws-let.html?utm_source=openai)) This discovery underscores the risks associated with proximity-based file-sharing protocols, highlighting the need for robust security measures in such widely used features. The incident has prompted vendors to expedite patches and reinforces the importance of regular software updates to mitigate emerging threats. ([helpnetsecurity.com](https://www.helpnetsecurity.com/2026/06/30/apple-airdrop-google-samsung-quick-share-vulnerabilities/?utm_source=openai))
3 weeks ago
Kill Chain
Critical Vulnerability in Progress Kemp LoadMaster: CVE-2026-8037
In June 2026, a critical vulnerability (CVE-2026-8037) was identified in Progress Kemp LoadMaster, an application delivery controller and load balancer. This flaw allows unauthenticated attackers to execute arbitrary commands as root by sending crafted requests to the API, due to improper input sanitization in the escape_quotes() function. The vulnerability affects LoadMaster GA v7.2.63.1 and earlier, and LTSF v7.2.54.17 and earlier. Progress released patches (GA v7.2.63.2 and LTSF v7.2.54.18) to address this issue. ([thehackernews.com](https://thehackernews.com/2026/06/progress-kemp-loadmaster-flaw-could-let.html?utm_source=openai)) The discovery of this vulnerability underscores the ongoing risks associated with API security and input validation flaws. Organizations are urged to promptly apply the provided patches and review their API security measures to prevent potential exploitation. ([thehackernews.com](https://thehackernews.com/2026/06/progress-kemp-loadmaster-flaw-could-let.html?utm_source=openai))
3 weeks ago
Kill Chain
BioShocking Attack: A Wake-Up Call for AI Browser Security
In June 2026, security firm LayerX unveiled a novel attack technique named 'BioShocking,' which exploits AI-powered browsers and assistants to extract user credentials. By presenting a malicious webpage designed as a puzzle game, attackers manipulated AI agents into disregarding their safety protocols. The agents, including OpenAI's ChatGPT Atlas, Perplexity's Comet, and Anthropic's Claude browser extension, were deceived into accessing and transmitting sensitive information, such as SSH login credentials from users' GitHub repositories, to unauthorized parties. This method leverages indirect prompt injection, where malicious commands are embedded within seemingly benign content, leading AI agents to execute unauthorized actions without detection. ([thehackernews.com](https://thehackernews.com/2026/06/new-bioshocking-attack-tricks-ai.html?utm_source=openai)) The BioShocking attack underscores the pressing need for enhanced security measures in AI-driven applications. As AI browsers become more integrated into daily workflows, their potential to access and manipulate sensitive data grows, making them attractive targets for cybercriminals. This incident highlights the importance of implementing robust safeguards, such as explicit user confirmations before accessing logged-in accounts and setting strict boundaries on AI agent capabilities, to prevent similar exploits in the future. ([layerxsecurity.com](https://layerxsecurity.com/blog/bioshocking-ai-gaming-the-ai-browser-and-escaping-its-guardrails/?utm_source=openai))
3 weeks ago
Kill Chain
Critical SimpleHelp Vulnerability (CVE-2026-48558) Exposes Systems to Unauthorized Access
In June 2026, a critical authentication bypass vulnerability, CVE-2026-48558, was identified in SimpleHelp versions 5.5.15 and earlier, as well as 6.0 pre-release versions. This flaw resides in the OpenID Connect (OIDC) authentication flow, where identity tokens are accepted without verifying their cryptographic signatures. Exploiting this vulnerability, remote unauthenticated attackers can forge tokens to gain full technician access, potentially bypassing multi-factor authentication and compromising managed endpoints. ([helpnetsecurity.com](https://www.helpnetsecurity.com/2026/06/16/simplehelp-rmm-cve-2026-48558/?utm_source=openai)) The exploitation of CVE-2026-48558 underscores the escalating risks associated with remote monitoring and management (RMM) tools, which are increasingly targeted by cybercriminals. Organizations must prioritize the timely application of security patches and enhance monitoring of authentication mechanisms to mitigate such threats.
3 weeks ago
Kill Chain
Critical SimpleHelp Vulnerability Exploited to Deploy TaskWeaver and Djinn Stealer
In June 2026, attackers exploited a critical authentication bypass vulnerability (CVE-2026-48558) in SimpleHelp's remote monitoring and management software. This flaw allowed unauthenticated attackers to create privileged technician sessions by submitting forged identity tokens. Leveraging this access, they deployed two new malware families: TaskWeaver, a heavily obfuscated Node.js loader, and Djinn Stealer, an information stealer targeting Windows, macOS, and Linux systems. Djinn Stealer harvested credentials from cloud platforms, source control systems, package registries, AI development tools, browsers, SSH, and cryptocurrency wallets. ([helpnetsecurity.com](https://www.helpnetsecurity.com/2026/06/30/simplehelp-vulnerability-exploited-cve-2026-48558/?utm_source=openai)) The exploitation of CVE-2026-48558 underscores the increasing targeting of remote management tools by threat actors. This incident highlights the critical need for organizations to promptly apply security patches, especially for tools that provide extensive access to IT environments. The deployment of cross-platform malware like Djinn Stealer also reflects a trend towards more versatile and widespread credential theft campaigns.
3 weeks ago
Kill Chain
Stop Active Cloud Data Exfiltration
Aviatrix Breach Lock helps teams instantly identify what data is leaving the environment, from which workload, and where it’s going — during an active breach.
Looking for threats in a different sector?
Browse All Threat Reports