Apple's MacOS has been found to have a gap that allows users to disable security tools without needing administrator privileges or kernel exploits. This vulnerability can be exploited by attackers to gain unauthorized access to the system. Meanwhile, Cisco Unified CM has been actively exploited by attackers, despite patches being released weeks ago. The flaw, tracked as CVE-2026-20230, carries a CVSS base score of 8.6 and could allow an unauthenticated, remote attacker to gain root access.
What Happened
In the case of Apple's MacOS, the vulnerability can be exploited by attackers to disable security and integrated browser tools. This could potentially allow malicious actors to access sensitive information or install malware on the system.
In the case of Cisco Unified CM, the flaw is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. Despite patches being released on June 3, the vulnerability is still being actively exploited.
LastPass, a password management platform, has also confirmed a data breach in the Klue supply chain attack. The breach allowed hackers to access support cases containing customer data from LastPass's Salesforce environment.
Why It Matters
These incidents highlight the importance of regularly updating and patching systems to prevent exploitation of known vulnerabilities. However, they also raise questions about the effectiveness of security tools in preventing breaches.
"The fact that a malicious AI agent skill was able to pass security checks and reach 26,000 users is a concerning development." — AIR, cybersecurity company
The use of AI-driven tools is becoming increasingly common, and the potential for malicious actors to exploit these tools is a growing concern.
What Experts Say
Researchers at Symantec have identified a new backdoor dubbed Mistic, which is believed to be linked to the KongTuke/Woodgnat initial access broker. This backdoor has been used in financially motivated attacks targeting organizations in the insurance, education, IT, and professional services sectors.
Key Facts
- Who: Apple, Cisco, LastPass
- What: Vulnerabilities in security tools and breaches
- When: Recent incidents
- Where: Global
- Impact: Potential for malicious actors to access sensitive information or install malware
What Comes Next
As the use of AI-driven tools becomes more widespread, it is essential to develop more effective security measures to prevent exploitation. This includes regularly updating and patching systems, as well as implementing robust security protocols to prevent breaches.