September 28, 2026 Emerging Threats Weekly
This week’s briefing covers:
00:00 – Intro
00:58 [SOCIAL ENGINEERING] Microsoft Disrupts the EvilTokens AI Enabled Phishing Service
On September 22, Microsoft announced that it had disrupted EvilTokens, a subscription service designed to steal Microsoft 365 authentication tokens and support business email compromise. Microsoft assessed that the service had facilitated access to about 12,000 inboxes across 10,000 organizations since February.
04:30 VULNERABILITY] Four Exploited Enterprise Edge Vulnerabilities Enter the CISA Catalogue
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added four enterprise-edge vulnerabilities to its Known Exploited Vulnerabilities catalogue on September 22. The entries covered two Check Point flaws, one F5 BIG-IP issue and one Arista VeloCloud Orchestrator issue.
07:00 [AI] Autonomous AI Agents Compromise Retailers and Steal 600,000 Payment Card Records
Security researchers reported an operation active since July that used autonomous AI agents to compromise online retailers. Over just five days in September, the operator created 105 attack projects and compromised at least 27 organizations to varying degrees.
11:55 [MALWARE] CLOSEDQUORUM Delegates Windows Malware Decisions to Multiple Language Models
Cisco Talos disclosed CLOSEDQUORUM, describing it as the first publicly documented Windows implant to delegate tactical command-and-control decisions to a panel of large language models. While Talos was not able to confirm operational deployment at the time of publication, artifacts from the binary were used to connect the developer to postings on criminal carding forums dating back to 2025.
16:03 [CAMPAIGN] Brevo CDN Compromise Distributes ClickFix Through More than 100,000 Websites
Reporting published during the review period detailed a September 14 compromise of Brevo's content-delivery environment. Brevo said an attacker obtained a hard-coded, long-lived Cloudflare API key with broad permissions and used it to create a malicious Worker.
18:43 [CAMPAIGN] TanStack Compromise Leads to Theft of CrowdSec Private Repositories
CrowdSec disclosed on September 17 that an OAuth token stolen during the May TanStack npm supply-chain attack had been used to clone about 170 private repositories. The cloning occurred on May 22, while an archive of the material appeared on a cybercrime forum on September 16. The four-month delay between theft and publication complicated the incident timeline and illustrates that data taken during a supply-chain compromise may be retained before extortion or public release
Dive deeper:
Kroll’s Monthly Threat Intelligence Spotlight Report: https://www.kroll.com/en/reports/cyber/threat-intelligence-reports/cti-spotlight-trends-report
Kroll’s Cyber Threat Intelligence: https://www.kroll.com/en/services/cyber/threat-intelligence-services
Kroll’s 2025 Cyber Threat Landscape Report: Cybercrime in the Crypto Era: https://www.kroll.com/Reports/Cyber/Threat-Intelligence-Reports/Threat-Landscape-Report-Lens-on-Crypto
Playlist of Kroll's Weekly Cyber Threat Intelligence Briefings: https://www.youtube.com/playlist
Kroll Cyber Blog: https://www.kroll.com/en/insights/cyber
Kroll Threat Intelligence Reports: https://www.kroll.com/en/reports/cyber/threat-intelligence-reports
Kroll Cyber and Data Resilience: https://www.kroll.com/en/services/cyber
#krollcyber #threatintelligence #cyberthreats