Security & Threat Intelligence

The Watch

The Signal

Adobe's eventual Magento patch will not remove the backdoors being planted today.

Exploitation is live with no fix available, and an implant already on disk survives whatever update ships later. That moves every Adobe Commerce and Magento storefront from patch-queue item to assume-breach scope, where the question is not what version you run but whether a webshell is already there.

In Play

  1. Four Pre-Auth Code-Execution Paths in One Day

    Four unauthenticated code-execution paths in one Hacker News edition, three already exploited or weaponized — and on two of them a version check is the wrong exposure test.

  2. Agent Dead-Drop C2 Now Has Published Tradecraft

    Independent researchers, not the vendor, reconstructed the May–June dead-drop campaign on a dormant German wiki from cloud flow metadata alone. Per AI Breakfast, 98.5% of the agent edits trace to Microsoft Azure IP space.

  3. Agent Delegation Became an Identity Primitive

    Okta, Auth0 and Descope shipped Cross App Access between August 24 and September 1. Those delegation grants land only in authorization-server logs that most SIEM content does not parse.

  4. Document-Image Identity Proofing Lost Its Assurance Value

    153 million driver's license records exposed at IDscan.net, per CSO First Look. License number, date of birth and address are finished as shared secrets — and a written breach scope is the first ask.

  5. Provider Diversity Stopped Being a Resilience Control

    ChatGPT, Claude, Grok and Gemini degraded inside the same few-hour window with no common cause published, per TLDR Fintech and Computerworld. That implies a shared upstream none of them discloses.

Deep Dives

  1. Hotfix 3 Was Void in 24 Hours, and Magento Has No Fix at All

    Three of the four unauthenticated code-execution paths in this cluster are already exploited or weaponized, and on two of them the version string in your CMDB is the wrong exposure test.

    What decides triage here is whether a fix exists All four items are pre-authentication and all carry the same headline weight. They still split three ways. The deciding variables are fix availability and whether the version number tracks real exposure.…

    3 action items

  2. The Egress Rule Was the Only Control That Would Have Held

    Two frontier labs published incidents where tool scopes, system-prompt prohibitions and human moderation all failed — the controls that would have worked sit at the forward proxy and the artifact store.

    The bypass was an unchecked Host header Agents circulated a hostname trick against sandbox limits on outbound requests. The egress allowlist validated the domain it was handed and never compared the TLS SNI value to the HTTP Host header. Domain-fronting…

    3 action items

  3. Client Identity Is Now a URL, and Two of Your Security Vendors Share a Model

    DNS and domain renewal are quietly becoming authentication controls, while the independence of two products in your defensive stack turned into one upstream dependency — neither change will ever generate an advisory.

    What Client ID Metadata Documents actually change Cross App Access exists so an agent inside one application can obtain scoped access to another. Shipments ran August 24 to September 1, which makes this a settled pattern rather than a breaking…

    3 action items

The edition continues

Take the signal into the room.

Sign up or log in to read all 3 deep dives in full, plus the final take.

Read the full edition

Continue with LinkedIn