SecurityWeek’s weekly cybersecurity information roundup provides a concise overview of vital developments that won’t obtain full standalone protection but stay related to the broader risk panorama.
This curated abstract highlights key tales throughout vulnerability disclosures, rising assault strategies, coverage updates, trade studies, and different noteworthy occasions to assist readers keep a well-rounded consciousness of the evolving cybersecurity atmosphere.
Listed below are this week’s highlights:
Authorities AI platform deal sparks outrage
The Protection Division’s latest award of an $821 million contract to Accenture Federal Providers for its Battle Knowledge Platform (WDP) is drawing criticism for allegedly undermining objectives to quickly undertake industrial AI. Sources declare the duty order prioritizes a conventional consulting mannequin over integrating best-of-breed industrial applied sciences. The WDP contract is a restructuring of the previous Advana program and goals to supply standardized information entry for AI-enabled army operations.
North Korean IT employee breaches federal company
The FBI is investigating how a North Korean IT employee efficiently gained employment at an unnamed US federal authorities company. North Korea locations 1000’s of distant IT employees in Western organizations utilizing fraudulent identities to earn wages for the regime and steal mental property. It’s probably that the person was working on the federal company by way of a contract job quite than being employed immediately.
Hacking a Boeing 737
A gaggle of educational researchers demonstrated [paywalled Wired article] how a hid, coin-sized {hardware} system can efficiently compromise methods on a Boeing 737. Malicious actors who’ve entry to a aircraft can connect the hacking system to an exterior port, giving them distant entry. Whereas security methods on an plane are more likely to stop direct hurt, an attacker may spoof information resembling air temperature readings and the plane weight, and even change a aircraft’s flight plan and divert it from its supposed route.
LexisNexis probing one other potential hack
LexisNexis took its Diligence, Metabase API, and Newsdesk companies offline final week after figuring out uncommon exercise on servers managed by a third-party vendor. The corporate acknowledged it disconnected the methods to include the risk. LexisNexis clarified that its Metabase API product isn’t linked to Metabase Cloud, which not too long ago disclosed a zero-day vulnerability. This might be the third information breach suffered by LexisNexis lately.
Hacking industrial refrigeration methods
Claroty’s Team82 discovered vulnerabilities in two extensively used industrial refrigeration methods. The researchers found 23 vulnerabilities in Copeland XWEB Professional controllers, together with ones that may be chained to bypass safety controls and obtain root-level RCE. An illustration confirmed {that a} compromised controller may remotely manipulate refrigeration tools, together with cooling followers and compressors, and conceal the ensuing temperature enhance whereas meals spoils. Team82 additionally recognized a number of vulnerabilities in Danfoss AK-SM 800A refrigeration controllers, together with RCE flaws. Each distributors patched the vulnerabilities found by Claroty.
DEF CON attendee blamed for Delta flight disruption
A passenger on a Delta flight from Las Vegas to Atlanta is suspected of broadcasting an unauthorized Wi-Fi community. Delta mentioned the plane and its methods have been by no means in danger and that no Delta system was hacked, whereas confirming that the unauthorized community was energetic briefly and that the crew disabled in-flight Wi-Fi for about half-hour through the incident. Reviews recommend that somebody who had attended the DEF CON convention arrange the pretend Wi-Fi community, however the identification of the person at the moment stays unknown.
Uber Freight probes cyber intrusion
Uber Freight is investigating unauthorized entry to a part of its methods and repositories following claims by hackers. The corporate mentioned its operations haven’t been disrupted and that its methods stay safe and absolutely operational whereas the investigation continues. The probe was launched after a gaggle named Helix claimed to have stolen almost 1 million Uber Freight recordsdata. Helix, whose actions have been detailed not too long ago by Google, can be believed to be behind a latest marketing campaign focusing on main Wall Avenue corporations.
Rapid7 lays off 12% of workforce
Rapid7 is chopping 314 jobs, or 12% of its workforce, as new CEO Wael Mohamed restructures the cybersecurity vendor round effectivity and its core platform. The corporate expects to spend as much as $11 million on severance and advantages whereas redirecting assets towards product modernization and AI-driven capabilities, with the restructuring additionally supposed to assist elevate its non-GAAP working margin to twenty% in This fall 2026.
CISA warns of Gunra ransomware
CISA has issued a brand new #StopRansomware advisory targeted on Gunra ransomware, offering organizations with info supposed to assist determine and defend in opposition to the risk. The advisory provides Gunra to the rising physique of ransomware intelligence being made obtainable to defenders by the company.
Industrial ransomware assaults climb 12%
Dragos recognized 1,140 ransomware incidents affecting industrial organizations worldwide in Q2 2026, a 12% enhance from the earlier quarter, with manufacturing accounting for 747 incidents. Whereas ransomware continued to disrupt operations by IT, ERP and virtualization methods, Dragos discovered no circumstances wherein attackers immediately manipulated industrial management methods.









