
A new AI task force takes shape.
The President launches a new federal AI task force. South Korea investigates financial sector data leaks. AI slop overwhelms a Google bug bounty program. Citrix patches an exploited zero-day. Stealthy malware hides inside Asian email security appliances. Apple tightens macOS privacy around AI agents. Attackers exploit a critical Rejetto File Server flaw. The Senate advances healthcare cybersecurity legislation. Monday business briefing. Our guest is Jared Shepard, CEO of Hypori, with insights on how the military is adopting AI technologies. A real good password…isnt’.
Today is Monday October 5th 2026. I’m Dave Bittner. And this is your CyberWire Intel Briefing.
President Trump outlines a new federal task force focused on artificial intelligence.
President Trump has tapped Director of National Intelligence Jay Clayton to lead a new federal task force focused on artificial intelligence, which Trump has sought to rebrand as “super intelligence.” The “Super Intelligence Force” will coordinate federal efforts to maintain U.S. leadership in AI while protecting Americans’ interests. The announcement follows a White House meeting with leading AI executives, where companies signed a voluntary agreement aimed at self-policing development of the technology. Trump said the task force will consult consumers, public interest and religious groups, critical infrastructure providers, and AI companies. Members include FTC Chairman Andrew Ferguson, Pentagon technology chief Emil Michael, and Office of Personnel Management Director Scott Kupor. The group will report directly to Trump and White House Chief of Staff Susie Wiles.
South Korea investigates financial sector data leaks.
South Korean President Lee Jae Myung has ordered a broad investigation into a series of personal data breaches affecting banks, financial firms, and public agencies. Financial Services Commission Chairman Lee Eog-weon convened an emergency industry meeting after cyberattacks were reported at institutions including Shinhan Bank and KB Kookmin Bank, with additional breaches reported elsewhere. Regulators are conducting on-site investigations and have ordered financial institutions to tighten access controls, limit external system access, and conduct comprehensive security reviews. Authorities haven’t ruled out AI-assisted attacks, prompting calls for an “AI attacks defended by AI” approach to cybersecurity. Regulators reportedly believe attackers may have scanned multiple financial companies for vulnerabilities rather than targeting individual institutions. South Korea’s opposition has also called for investigators to examine possible North Korean involvement, citing Pyongyang’s history of targeting the country’s financial sector.
AI slop causes Google to pause a bug bounty program.
Google has suspended product vulnerability submissions to its Open Source Software Vulnerability Reward Program after an influx of low-quality, AI-generated reports. The pause took effect October 1 and is expected to last while Google reworks the program, with an update promised by the first quarter of 2027. Previously submitted vulnerabilities and supply-chain reports aren’t affected, and some Google Cloud vulnerabilities may still qualify through the Cloud VRP. The problem is increasingly familiar: AI tools have made automated bug hunting cheap and easy, but maintainers are reportedly spending substantial time sorting genuine vulnerabilities from invalid or unexploitable reports. Linux maintainers have faced similar problems as AI-assisted bug hunters drove reported kernel vulnerabilities to record levels. Intel has also suspended its bug bounty program, though it hasn’t attributed that decision to AI-generated reports.
Citrix issues emergency patches for an already exploited zero-day.
Citrix has issued emergency patches for CVE-2026-88779, a NetScaler vulnerability already exploited as a zero-day. The memory buffer flaw affects NetScaler ADC and Gateway appliances using SAML authentication with Gateway or AAA functionality. Citrix says attackers have used it to cause denial-of-service conditions and recommends immediate upgrades, even for customers who recently patched other NetScaler vulnerabilities. But researchers are investigating whether the flaw is more serious. Administrators have reported crafted authentication requests containing shell commands, while security researcher Kevin Beaumont found malware running on a patched honeypot after suspicious activity. Those findings suggest possible remote code execution, although Citrix currently describes the impact as denial of service. CISA has added the vulnerability to its Known Exploited Vulnerabilities catalog, requiring federal agencies to mitigate it by October 7.
Overlapping campaigns blend deeply into Asian email security appliances.
Rapid7 researchers have uncovered two overlapping campaigns using Linux malware designed to blend deeply into Asian email security appliances. New variants of the BPFdoor backdoor and Rekoobe RAT mimic South Korea’s SpamSniper software, copying filenames, services, and other expected behavior. A separate campaign targets appliances from Taiwanese vendor ShareTech Information with a new modular RAT called AVERAT. Both AVERAT and Rekoobe can use TCP port 25 for command-and-control, disguising malicious communications as ordinary SMTP traffic. AVERAT also deletes its dropped files after execution, leaving primarily running processes behind. Secure email gateways make attractive hiding places because they occupy trusted positions at the network edge, often can’t run endpoint detection agents, and may receive limited monitoring. Rapid7 recommends watching for deleted executables, unusual raw packet sockets, and suspicious outbound port 25 traffic.
Apple looks to shore up macOS privacy against AI agents.
Apple says it will change macOS privacy controls to prevent third-party apps from using broad system permissions to access users’ message histories without more specific authorization. The move follows controversy involving Meta’s Muse AI agent, which columnist Jason Aten said referenced an Apple Messages conversation even though he hadn’t knowingly granted it access. Meta CTO David Singleton disputed the implication, saying Muse’s Messages integration requires users to grant macOS Full Disk Access and separately enable a Messages connector. But security researcher Patrick Wardle noted that Full Disk Access itself can allow an application to read a wide range of data, including chats, browser histories, and cookies. The dispute highlights a growing concern around general-purpose AI agents: broad permissions intended for legitimate functions can potentially expose far more sensitive information than users realize.
Threat actors exploit a critical Rejetto File Server vulnerability.
Threat actors are exploiting CVE-2026-61500, a critical Rejetto HTTP File Server vulnerability that can enable authentication bypass and remote code execution. The flaw exposes outputs from a reversible random-number generator used to derive session-cookie signing keys, allowing attackers to reconstruct the key and forge administrator cookies. Horizon3.ai discovered the vulnerability using Anthropic’s Mythos AI model. Rejetto patched the issue in HFS 3.2.1 in July. VulnCheck says small-scale exploitation attempts began appearing October 2, targeting systems in Japan and the United States.
The Senate passes the bipartisan Health Care Cybersecurity and Resilience Act.
The U.S. Senate has unanimously passed the bipartisan Health Care Cybersecurity and Resilience Act, sending the measure to the House. The legislation is intended to strengthen healthcare organizations against cyberattacks, particularly ransomware and data extortion, which can expose sensitive information and disrupt patient care. The bill would provide grants for cybersecurity prevention, response, and training, with additional support for rural healthcare providers. It would also strengthen coordination between HHS and CISA, update cybersecurity regulations, and require HHS to establish an incident response plan. The measure formalizes the Administration for Strategic Preparedness and Response as the healthcare sector’s risk management agency and creates a pipeline for CISA threat intelligence. While healthcare groups have generally welcomed the bill, security experts warn its effectiveness will depend on enforcement, adequate funding, and technical support.
Monday business briefing.
Cybersecurity investment remains brisk, led this week by enterprise browser company Island, which raised $400 million at a $6.4 billion valuation to support growth as companies adopt AI agents. Agentic AI security provider Reco secured another $55 million, bringing its total funding to $140 million. Rig Security emerged from stealth with $12 million for identity protection, while offensive cyber platform RemoteThreat launched with $7 million. AI security firms Kontext and Palma.ai raised $4 million and $1.8 million respectively, and compliance automation provider OneClickComply secured about $1.3 million.
Deal-making was similarly active. Upwind is acquiring Aegis to create an AI-focused security lab, while Epiq bought breach-response provider Canopy. Omada acquired agentic AI governance firm EmpowerID, IBM purchased UK cybersecurity consultancy Logiq Consulting, Nomios expanded into Portugal with Orbcom, and IT Solutions Technology Partners acquired Detroit-based STACK Cybersecurity.
A real good password…isnt’.
A national law firm learned the hard way that buying security tools isn’t quite the same as being secure. Pen tester Joe Brinkley told The Register he had previously found serious weaknesses, prompting the firm to spend roughly half a million dollars improving its defenses. But it neglected to patch Windows systems against BlueKeep, the wormable Remote Desktop Protocol vulnerability disclosed in 2019.
Brinkley exploited BlueKeep and gained access to about 2,500 machines, where he discovered plaintext passwords and colorfully disguised usernames like “Yellow Banana.” One account used the password “r3@lg00dp@$$w0rd” — “realgoodpassword” dressed up with predictable substitutions.
Brinkley included the credential in a presentation to executives. That’s when the CISO angrily asked why his password was on the screen, helpfully revealing that he was Yellow Banana.
The lessons are less colorful: patch promptly, protect stored credentials, use multifactor authentication, and don’t mistake a few symbols for a strong password.
And that’s the CyberWire.
For links to all of today’s stories, check out our Daily Briefing at the cyberwire dot com.
We’d love to know what you think of this podcast. Your feedback ensures we deliver the insights that keep you a step ahead in the rapidly changing world of cybersecurity. If you like the show, please share a rating and review in your podcast app. Please also fill out the survey in the show notes or send an email to cyberwire@n2k.com
We’re proud that N2K CyberWire is part of the daily routine of the most influential leaders and operators in the public and private sector, from the Fortune 500 to many of the world’s preeminent intelligence and law enforcement agencies.
N2K helps cybersecurity professionals and organizations grow, learn, and stay ahead. We’re the nexus for discovering the people, tech, and ideas shaping the industry. Learn how at n2k.com.
N2K’s lead producer is Liz Stokes. We’re mixed by Tré Hester, with original music by and sound design Elliott Peltzman. Our contributing host is Maria Varmazis. Our executive producer is Jennifer Eiben. Peter Kilpe is our publisher. And I’m Dave Bittner. Thanks for listening.
