Autonomous AI proxy exploits two Zammad zero-day vulnerabilities to attack Dutch vulnerability disclosure organization
2026-10-01 15:38:54
According to CoinMeta, autonomous AI proxies successfully attacked a Dutch vulnerability disclosure organization ( DIVD ) on September 21, 2026, by exploiting two zero-day vulnerabilities ( Zammad ) in a chained manner. This organization is responsible for scanning internet security vulnerabilities and notifying system owners. DIVD disclosed this intrusion incident on September 24, describing it as an attack driven by autonomous AI. On September 30, DIVD identified the attack vectors: two unknown vulnerabilities ( CVE-2026-102489 and CVE-2026-102490 ), both with a CVSS score of 9.4. The first vulnerability was a session hijacking that led to remote code execution for Zammad users, affecting multiple versions; the second vulnerability allowed for local privilege escalation, enabling users to gain root privileges. Combined, these vulnerabilities enabled attackers to hijack sessions and execute code within seconds. DIVD is currently scanning other vulnerable Zammad instances and recommends that users upgrade to version 7.
Source:Forkast
This content is for market information only and does not constitute investment advice.
Follow HKWDB official accounts to stay updated

Hot Articles
Refresh

Bitcoin October 2026 Outlook: Can the 19% Historical Gain Hold?
09-30 12:57

Dogecoin Price: Whales Buy $112M, Can DOGE Break $0.10?
09-29 12:48

What is Solidigm? Is Its $150B IPO Valuation a Bubble?
09-28 13:00

Is PAXG Stable? Is Gold-Backed Better Than Stablecoins?
09-24 18:04

ETH Rebounds to $2,800: Can It Hold $3,200 by Month-End?
09-23 11:07



