SecurityWeek’s weekly cybersecurity information roundup provides a concise overview of necessary developments that will not obtain full standalone protection but stay related to the broader menace panorama.
This curated abstract highlights key tales throughout vulnerability disclosures, rising assault strategies, coverage updates, trade experiences, and different noteworthy occasions to assist readers preserve a well-rounded consciousness of the evolving cybersecurity setting.
Listed below are this week’s highlights:
Authorities AI platform deal sparks outrage
The Protection Division’s current award of an $821 million contract to Accenture Federal Companies for its Battle Information Platform (WDP) is drawing criticism for allegedly undermining targets to quickly undertake business AI. Sources declare the duty order prioritizes a standard consulting mannequin over integrating best-of-breed business applied sciences. The WDP contract is a restructuring of the previous Advana program and goals to supply standardized knowledge entry for AI-enabled army operations.
North Korean IT employee breaches federal company
The FBI is investigating how a North Korean IT employee efficiently gained employment at an unnamed US federal authorities company. North Korea locations 1000’s of distant IT staff in Western organizations utilizing fraudulent identities to earn wages for the regime and steal mental property. It’s doubtless that the person was working on the federal company by way of a contract job fairly than being employed immediately.
Hacking a Boeing 737
A bunch of educational researchers demonstrated [paywalled Wired article] how a hid, coin-sized {hardware} machine can efficiently compromise programs on a Boeing 737. Malicious actors who’ve entry to a aircraft can connect the hacking machine to an exterior port, giving them distant entry. Whereas security programs on an plane are more likely to stop direct hurt, an attacker might spoof knowledge akin to air temperature readings and the plane weight, and even change a aircraft’s flight plan and divert it from its meant route.
LexisNexis probing one other potential hack
LexisNexis took its Diligence, Metabase API, and Newsdesk providers offline final week after figuring out uncommon exercise on servers managed by a third-party vendor. The corporate acknowledged it disconnected the programs to comprise the menace. LexisNexis clarified that its Metabase API product shouldn’t be linked to Metabase Cloud, which just lately disclosed a zero-day vulnerability. This might be the third knowledge breach suffered by LexisNexis in recent times.
Hacking business refrigeration programs
Claroty’s Team82 discovered vulnerabilities in two broadly used business refrigeration programs. The researchers found 23 vulnerabilities in Copeland XWEB Professional controllers, together with ones that may be chained to bypass safety controls and obtain root-level RCE. An illustration confirmed {that a} compromised controller might remotely manipulate refrigeration tools, together with cooling followers and compressors, and conceal the ensuing temperature improve whereas meals spoils. Team82 additionally recognized a number of vulnerabilities in Danfoss AK-SM 800A refrigeration controllers, together with RCE flaws. Each distributors patched the vulnerabilities found by Claroty.
DEF CON attendee blamed for Delta flight disruption
A passenger on a Delta flight from Las Vegas to Atlanta is suspected of broadcasting an unauthorized Wi-Fi community. Delta stated the plane and its programs had been by no means in danger and that no Delta system was hacked, whereas confirming that the unauthorized community was lively briefly and that the crew disabled in-flight Wi-Fi for about half-hour through the incident. Reviews counsel that somebody who had attended the DEF CON convention arrange the pretend Wi-Fi community, however the id of the person at present stays unknown.
Uber Freight probes cyber intrusion
Uber Freight is investigating unauthorized entry to a part of its programs and repositories following claims by hackers. The corporate stated its operations haven’t been disrupted and that its programs stay safe and absolutely operational whereas the investigation continues. The probe was launched after a bunch named Helix claimed to have stolen almost 1 million Uber Freight recordsdata. Helix, whose actions had been detailed just lately by Google, can be believed to be behind a current marketing campaign focusing on main Wall Avenue firms.
Rapid7 lays off 12% of workforce
Rapid7 is reducing 314 jobs, or 12% of its workforce, as new CEO Wael Mohamed restructures the cybersecurity vendor round effectivity and its core platform. The corporate expects to spend as much as $11 million on severance and advantages whereas redirecting assets towards product modernization and AI-driven capabilities, with the restructuring additionally meant to assist elevate its non-GAAP working margin to twenty% in This autumn 2026.
CISA warns of Gunra ransomware
CISA has issued a brand new #StopRansomware advisory targeted on Gunra ransomware, offering organizations with data meant to assist establish and defend in opposition to the menace. The advisory provides Gunra to the rising physique of ransomware intelligence being made obtainable to defenders by the company.
Industrial ransomware assaults climb 12%
Dragos recognized 1,140 ransomware incidents affecting industrial organizations worldwide in Q2 2026, a 12% improve from the earlier quarter, with manufacturing accounting for 747 incidents. Whereas ransomware continued to disrupt operations by means of IT, ERP and virtualization programs, Dragos discovered no circumstances through which attackers immediately manipulated industrial management programs.







