Daily Briefing

Cybersecurity & Geopolitics Briefing — Sunday, September 27, 2026

Geopolitical cyber intelligence in 5 minutes
Sunday, September 27, 2026 · 15 stories

This briefing covers 15 cybersecurity and geopolitics stories published around Sunday, September 27, 2026, and 12 disclosed vulnerabilities (CVE-2026-100833, CVE-2026-100835, CVE-2026-100840, CVE-2026-100843 and others). Each entry links to the original reporting.

Share this digest:

US and China Open AI Safety Communication Channel Amid Trade Talks (1 minute read)

Washington and Beijing agreed to establish a bilateral mechanism for managing AI-related incidents, alongside continuing trade and military dialogue. The channel marks the first formal US-China AI risk coordination structure, setting a precedent for great-power AI crisis management.

SecurityWeek · 18h ago · Read full article →

Lunex MaaS Stealer Abuses AMD Driver to Blind Security Tools Targeting Ukrainians (1 minute read)

The Lunex malware-as-a-service platform deploys a four-stage stealer against Ukrainian-speaking users via ClickFix-style fake Cloudflare CAPTCHAs, using a legitimate AMD driver to disable security monitoring before harvesting browser credentials.

The Hacker News · 18h ago · Read full article →

CVE-2026-100833: Contrast Kata Containers Bug Allows Image Substitution (3 minute read)

Contrast versions 1.14.0โ€“1.23.0 contain CVE-2026-100833, where a bad rebase introduced an unverified `image_guest_pull` storage rule, enabling image substitution via Kata agent API access. Attackers with API access can silently swap container images, undermining confidential-computing supply-chain integrity.

CVE Feed (High Severity) · 10h ago · Read full article →

CISA Adds Exploited Microsoft SharePoint CVE-2026-65660 to KEV Catalog (1 minute read)

CISA added CVE-2026-65660, an actively exploited Microsoft SharePoint flaw, to its Known Exploited Vulnerabilities catalog with a federal patching deadline of September 28. Active exploitation of SharePoint continues a persistent pattern of attackers targeting enterprise collaboration infrastructure for initial access.

SecurityWeek · 3h ago · Read full article →

CVE-2026-100864: heym Expression Engine Sandbox Escape Enables RCE (2 minute read)

heym before 0.0.91 carries CVE-2026-100864 (CVSS 8.8), allowing authenticated users to escape the expression sandbox via dunder attribute access and execute arbitrary Python commands as the backend process.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100857: AzuraCast Liquidsoap Injection Grants Authenticated RCE (2 minute read)

AzuraCast before 0.23.4 fails to sanitize Liquidsoap string interpolation in ConfigWriter, letting authenticated users with Media or Profile permissions inject and execute arbitrary code via CVE-2026-100857.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100856: AzuraCast Relay Password Field Leaks API Keys via Code Injection (2 minute read)

AzuraCast before 0.23.6 improperly migrated from a vulnerable string sanitizer, exposing the remote relay password field to nested Liquidsoap injection via CVE-2026-100856, enabling RCE and internal API key disclosure.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100852: AzuraCast Unquoted Streamer Username Enables Command Injection (2 minute read)

AzuraCast through 0.23.x fails to quote streamer usernames in Liquidsoap process.run calls, allowing authenticated station users to inject shell metacharacters and execute commands via CVE-2026-100852.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100847: AzuraCast sortOrder Parameter Exposes DQL Injection (2 minute read)

AzuraCast before 0.23.8 allows arbitrary DQL injection via the sortOrder API parameter in CVE-2026-100847 (CVSS 8.7), exposing user credentials and station configuration. Combined with three concurrent RCE vulnerabilities, the full AzuraCast attack surface now spans database exfiltration to OS-level code execution.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100846: MONAI Medical AI Framework Executes Arbitrary Code via Pickle (2 minute read)

MONAI before 1.5.2 passes attacker-supplied .pkl files directly to pickle.loads in algo_from_pickle, enabling RCE via CVE-2026-100846 wherever the function processes untrusted input.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100845: MONAI NumpyReader Loads Pickle Payloads from Malicious .npy Files (2 minute read)

MONAI before 1.6.0 unconditionally sets allow_pickle=True in NumpyReader, letting attackers embed pickle payloads in .npy files for RCE via CVE-2026-100845 (CVSS 8.5).

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100843: MONAI Pickle Deserialization Enables Remote Code Execution (2 minute read)

MONAI versions before 1.6.0 contain a CVSS 8.5 RCE flaw in algo_from_pickle() via unsafe pickle.loads() deserialization, allowing arbitrary command execution via crafted files. Medical AI infrastructure running unpatched MONAI is directly exposed to supply-chain-style exploitation.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100840: MONAI Bundle Engine Executes Arbitrary Code via eval() (2 minute read)

MONAI through 1.6.0 passes bundle _target_ values to arbitrary callables and $-expressions to Python eval() with no allow list, enabling RCE when victims load malicious bundles. Attackers can poison public model repositories to silently compromise medical AI pipelines at scale.

CVE Feed (High Severity) · 10h ago · Read full article →

CVE-2026-100835: Contrast TEE Attestation Bypass Enables Hardware Trust Spoofing (3 minute read)

Contrast before 1.16.0 accepted valid TEE attestation reports regardless of originating hardware, allowing relay attackers to impersonate trusted enclaves across machines. The flaw undermines the foundational hardware-root-of-trust guarantee confidential computing deployments rely on.

CVE Feed (High Severity) · 10h ago · Read full article →

Unpatched Citrix NetScaler Zero-Days Exploited in Wild, No Fix Available (1 minute read)

Two unpatched RCE zero-days in Citrix NetScaler ADC and Gateway are under active exploitation as of September 26, with Citrix yet to confirm or patch either flaw. Administrators are pulling appliances offline, signaling attacker awareness outpaces vendor response on widely deployed network perimeter gear.

The Hacker News · 5h ago · Read full article →

Get this in your inbox

Free daily briefing. No spam. Unsubscribe anytime.

Subscribe Now