FTP Banners: The New Dead Drop Resolver Delivering Novel RATs

Posted in Commentary with tags on August 21, 2026 by itnerd

The SOCRadar Threat Research Unit has unveiled a delivery technique that they haven’t seen documented before: threat actors are hiding staging commands inside FTP server banners, the greeting text a server sends when you connect to port 21.

Key details

  • Threat actors are hiding malware staging commands inside FTP server banners – the greeting text a server returns on port 21. A shortcut file connects, reads the banner, executes what’s in it. Nothing malicious in the file itself.
  • This is a dead drop resolver on a protocol nobody inspects for content. The technique has not been documented before.
  • Live since early July 2026 and still operational.

Full research can be read here: https://socradar.io/blog/ftp-banners-new-dead-drop-resolver-rats/ 

 AI data giant Alation confirms cyberattack

Posted in Commentary with tags on August 21, 2026 by itnerd

Days after reporting an incident affecting a number of its customers, enterprise data giant Alation today confirmed a cyberattack. Alation has not yet specified the nature of the cyberattack, mentioned the root cause of the incident, or said how many customers are affected. 

When reached by TechCrunch about the incident, the company said it was investigating.

“Alation recently identified an isolated incident involving unauthorized activity in one of its systems,” the company said in a statement provided to TechCrunch by an external representative, Stephen Russell. “We are conducting a thorough investigation of what occurred and we will provide additional information as appropriate.”

Alation did not specify the nature of the cyberattack, mention the root cause of the incident, or say how many customers are affected. The company did not say if it had alerted its customers to the incident or what defensive actions, if any, they should take following the intrusion.

On Tuesday, Alation reported an unspecified incident that resulted in “degraded availability” for some of its customers. The company said it had resolved the incident within an hour.

Much of the company’s systems are hosted on Amazon Web Services. It’s not immediately clear if any data was stolen or exfiltrated during the incident.

Commenting on this news is Dan Moore, Sr. Director, CIAM Strategy & Identity Standards at FusionAuth

“A data catalog breach gives attackers a guided tour of how your organization “thinks” and where the valuables are hidden. After a breach like this, the bad guys now know how you classify what’s sensitive, who can access it, and how it all connects. This stolen knowledge remains valuable for years because of data gravity. It’s difficult to remediate, because you can’t simply change passwords or rotate tokens.”

It sucks for Alation because it sounds like we’ll never find out who the threat actors were and how they were kicked out of the network. Assuming that they were kicked out of the network.

T-Mobile physically cuts network connection to eject Salt Typhoon hackers

Posted in Commentary with tags on August 21, 2026 by itnerd

New reporting by Bloomberg details how T-Mobile detected and removed China-backed Salt Typhoon hackers from its network during the group’s widespread 2024 campaign against telecommunications companies. T-Mobile security teams spent months searching for the attackers before identifying unusual activity reaching one of its systems through a router that was powered off but communicating with another T-Mobile machine. After locating the compromised equipment, T-Mobile cybersecurity chief Jeff Simon and three colleagues went to a data center near the company’s Bellevue, Washington headquarters and physically cut the cable connecting the system to the outside world. T-Mobile largely avoided the broader compromise experienced by other organizations targeted in the campaign, which affected hundreds of telecommunications companies, internet providers and data center operators and sought phone records and information on senior U.S. officials.
 

Larry Pesce, VP of Services, Finite State:

   “Credit first: T-Mobile’s team hunted down Salt Typhoon in days when peer carriers had them resident for months, and that’s genuinely impressive work. But this article is written for a general audience, and it shows. It reads like a movie script, complete with the team piling into the CSO’s Tesla, and for anyone who has actually run an incident it leaves a lot of important questions on the cutting room floor.

   “Start with the powered-off router in California. The likely explanation for the spoofing is mundane: the attackers were working from stale topology data and impersonated a device they didn’t know was dark. That mistake is probably what burned them. But flip it around and it’s less flattering: T-Mobile’s own telemetry was attributing live traffic to a device that its own asset inventory should have shown as powered off. The gap between what the network claimed and what the hardware was actually doing is the real story here. Accurate hardware inventory and device status is unglamorous work, and it’s exactly the kind of thing that determines how long an adversary gets to live in your network.

   “Then there’s the handling of that router. Per the article, the CSO told a staffer to “rip” a device suspected of nation-state compromise out of the rack, put it in his car, and drive it hundreds of miles to headquarters. Set aside the scissors for a moment. Where’s the chain of custody? Where’s the forensic imaging before the device gets bounced down I-5 in a trunk? For an artifact that might end up mattering to a federal investigation into Salt Typhoon, that’s a detail that made me wince.

   “As for the scissors: I’ve spent time in data centers of this caliber, and scissors are not part of the standard tech loadout. Every one of those links terminates somewhere you can unplug it, shut down at a patch panel, or kill via CLI. Simon concedes as much in the article, admitting they could have turned the device off virtually. Cutting the cable accomplished nothing that unseating a connector wouldn’t, except producing a frayed trophy now framed in the lobby. I don’t doubt the cable got cut. I just notice that the version that made a better artifact is the version that happened.

   “The substantive issue is what the fast, loud response cost them. Walk the IR lifecycle: containment, absolutely, they nailed it. But by their own account, powering the device back up in an isolated environment later yielded little. The attackers were long gone, and so was the volatile evidence. Abruptly severing the link also told the adversary, unambiguously, that they’d been made. A more patient play, instrumenting the device and the interconnect while quietly constraining what the attackers could reach, likely would have produced far more intelligence about tooling, tradecraft, and other footholds. That matters a great deal when the adversary is a state actor with confirmed presence across nine other carriers. Containment without eradication just means round two happens somewhere you aren’t watching.

   “To be clear, I’m confident T-Mobile’s IR capability is far more sophisticated than this telling suggests, and some of what looks like theater may just be what survives the corporate comms filter. But that’s exactly the problem. The sanitized, cinematic version is the one the industry got, and the useful version, the one about inventory hygiene, trusted carrier interconnects as an attack surface, evidence handling under pressure, and the real tradeoff between fast containment and thorough eradication, is the one we actually needed.”

Seemant Sehgal, Founder and CEO, BreachLock:

   “Cutting a cable makes for good storytelling, but the real headline is that a disciplined security team found an adversary that had worked hard to stay hidden. The significance of the Salt Typhoon campaign is the scale and persistence of the operation, targeting telecommunications infrastructure to gain access to highly valuable data. Based on public reporting, the attackers appear to have leveraged network infrastructure and maintained covert access paths, which highlights how difficult these intrusions can be to detect once established. Many organizations in that situation would still be writing incident reports while the attacker moved laterally. T-Mobile’s team located the threat, made a call, and physically removed it from the equation. That takes clarity of judgment under pressure, and that is genuinely rare.” 

Phil Wylie, Senior Consultant & Evangelist, Suzu Labs:

   “The dramatic part of this story is that T-Mobile physically cut a cable, but the bigger lesson is how difficult sophisticated nation-state actors can be to find and remove. Salt Typhoon demonstrates why organizations need visibility into what is actually communicating across their networks, not simply what their asset management tools say should be there. When you identify a compromised system, decisive containment matters more than elegant containment. Sometimes the right incident-response decision really is to pull the plug.”

John Strand, Owner, Black Hills Information Security:

   “There’s only one firewall in existence that is 100% effective, and this is it. Physically cutting the line.

   “I look at stories like this and think security teams need to be empowered to make that decision. For years, the idea of actually cutting network connections during an incident, potentially impacting operations, has been fraught with second-guessing. Hindsight is always 20/20, and security teams are often criticized afterward regardless of the decision they made.

   “But this needs to be normalized. With the rate of attacks we’re seeing, especially with AI dramatically increasing the speed at which attacks can unfold, security teams need to have disconnecting network connections on the table as a legitimate course of action. Organizations should establish that authority before an incident happens, and security teams shouldn’t be punished for using it when the situation calls for it.”

Hayden Covington, Associate Director of Security Operations, Black Hills Information Security:

   “What makes groups like Salt Typhoon dangerous is that they are difficult to detect; not just because they use living-off-the-land techniques, but also because they aren’t a smash and grab operation where eventually the threat actor runs ransomware and you know they’re there. Groups like this are focused on espionage, aiming for long dwell times while they quietly collect sensitive information. Catching an attacker like that often comes down to knowledge of your environment and the ability to dig into anomalies deep enough to know that something malicious is actually happening.”

I have to admit that this is crafty and full of old school thinking. But this needs to be normalized and not the exceptional because everyone everywhere needs to hunt down threat actors and kick them off of any network ASAP.

When AI agents become the attack vector 

Posted in Commentary with tags on August 21, 2026 by itnerd

An OpenClaw supply-chain attack exists in which attackers manipulated AI agents into recommending or facilitating malicious actions, including getting users to install malware. There’s Trellix research on the OpenClaw supply-chain attack along with Palo Alto Networks Unit 42 research on OpenClaw’s agent-skill supply chain that you can read at your leisure… Or maybe not so leisure given the gravity of the situation.

Seemant Sehgal, Founder & CEO, BreachLock (https://www.linkedin.com/in/s-sehgal)

“AI agents are quickly becoming a new trust layer in the attack chain, and attackers know that trust is often easier to exploit than technology. When a manipulated agent recommends software, a workflow, or a next step, users can inherit the attacker’s influence without realizing it. Organizations should treat AI agents like any other high value system, with adversarial testing, strict guardrails, and continuous validation of what the agent can see, recommend, and act on.”

John Strand, Owner, Black Hills Information Security (https://www.linkedin.com/in/john-strand-a1b4b62)

“This particular story is wild because it mixes social engineering with supply chain attacks, which is fascinating in and of itself. But I think the bigger issue is the sheer number of people now using AI tools for development who have little to no background in IT, software development, or security.

“AI and open tools like OpenClaw have made it incredibly easy for people to build things quickly and get much closer to that original promise of technology doing complicated work on their behalf. On one hand, that’s fantastic. It lowers the barrier to entry and lets people create things they never could have built before.

“But there’s a security problem hiding underneath all of that. People are downloading packages, installing tools, granting permissions, and running code without necessarily understanding what those actions mean. And frankly, some of these basic security principles are being missed even by seasoned IT professionals. As AI makes development easier and more accessible, we have to make security awareness just as accessible, because the population of people building and running software has suddenly become much larger than the population we’ve traditionally thought of as developers.”

Jacob Krell, Sr. Director: Secure AI Sollutions & Cybersecurity, Suzu Labs (https://www.linkedin.com/in/jacob-krell)

“ClickFix is a social engineering technique where a webpage convinces users to copy and paste a command into their own terminal. It bypasses endpoint defenses because the operating system treats it as a legitimate action from a trusted human. ClawHavoc grafted that technique onto an AI agent, upgrading the lure from a random website to a trusted assistant. Same attack, better packaging.

“OpenClaw lets AI agents read files, run terminal commands, and install third-party skills from its ClawHub marketplace. Researchers traced 1,184 malicious packages across that marketplace, tied to just 12 author accounts. The skills told the agent that users needed to install a fake prerequisite called AuthTool before a feature would work, and the agent relayed that as a normal setup step. Users who followed along got Atomic macOS Stealer, an infostealer targeting 60+ crypto wallets, browser data, SSH keys, and .env files.

“The agent is doing exactly what it was designed to do, reading documentation and relaying instructions to the user. Nobody built a layer between “read instructions” and “present them as trusted guidance.” That gap is the vulnerability, and it’s the same supply chain trust manipulation I’ve been tracking since the npm download pumping research earlier this year. Attackers game whatever trust signal AI tools rely on, whether that’s package popularity metrics or a skill marketplace listing with a plausible name.

“Organizations deploying AI agents need to treat every installed skill as third-party code execution, with approval gates before any agent-initiated system command. Run agents on isolated hosts with scoped credentials and restricted outbound network access. Monitor for node.exe spawning PowerShell or curl. The agent can suggest an action, but the OS and identity layers need to independently prevent that suggestion from becoming unreviewed execution.”

Kevin Surace, CEO, Token (https://www.linkedin.com/in/ksurace)

“AI agents create a new social engineering problem because the attacker is no longer impersonating someone the victim trusts. The attacker is manipulating the system the victim already trusts.

“The strongest control is dedicated, hardware bound fingerprint authorization at the agent gateway. When an agent wants to install software, connect a new tool, access credentials, send sensitive information, transfer money, change security settings, or execute an administrative command, the gateway must require a fingerprint from an authorized person on dedicated trusted hardware.

“The fingerprint must authorize the exact action. The trusted device should display what will be executed, where it came from, what permissions it requests, and which systems or data it will affect. The hardware should then cryptographically sign that specific transaction. Any change to the command, software, destination, permissions, or scope must require a new fingerprint authorization.

“This physical requirement is essential because a digital approval can be delegated, simulated, or automated. Without hardware bound biometrics, one compromised agent could ask another agent to approve the action, creating the appearance of human oversight when no human was ever in the loop. A software confirmation button, approval message, or agent generated authorization is not proof of human presence.

“The fingerprint sensor and approval display must therefore sit outside the control of every agent. No agent should be able to generate, relay, or satisfy the approval itself. The biometric template should remain within the dedicated hardware, and the gateway should accept only a signed authorization produced after a live fingerprint match.

“This does not make a malicious recommendation safe. It establishes a hard separation between an agent’s ability to propose an action and its authority to perform one. An AI agent may recommend, but consequential authority must come from the physical presence of a verified human.”

AI agents need guard rails. If you don’t have them, you are risking getting pwned. It’s that simple.

EORN Cell Gap Project Delivered With The Help Of Rogers

Posted in Commentary with tags on August 20, 2026 by itnerd

Eastern Ontario Regional Network (EORN) and Rogers Communications today announced the successful delivery of the EORN Cell Gap Project.

5G cellular services are now available across eastern Ontario, improving services for residents, businesses, first responders, municipalities, Indigenous communities and visitors in the region.

Federal, provincial, municipal and Indigenous partners marked the successful delivery of the project at an event in Rockland, Ontario.

The EORN Cell Gap Project is a $300 million public-private partnership. The Province of Ontario and the Government of Canada each contributed $71 million and the municipal members of the Eastern Ontario Wardens’ Caucus (EOWC) and participating members of the Eastern Ontario Mayors’ Caucus (EOMC) collectively contributed $10 million. Rogers contributed the remaining investment of $150 million. The company was selected through a competitive bidding process.

Rogers built 346 new wireless sites, a combination of new tower constructions and colocations. In addition, the company upgraded 311 existing sites with state-of-the-art 5G equipment delivering essential services to municipalities, Indigenous communities and visitors across eastern Ontario.

Quick Facts

  • The Cell Gap Project targets were 99% voice call coverage, 95% standard definition coverage, and 85% high-definition coverage in the demand areas where people live, work and travel on major roadways across the municipalities of the Eastern Ontario Wardens’ Caucus (EOWC) and the participating cities and towns of the Eastern Ontario Mayors’ Caucus (EOMC).
  • Participating Eastern Ontario Wardens’ Caucus (EOWC) counties are: County of Frontenac, County of Haliburton, County of Hastings, City of Kawartha Lakes, County of Lanark, United Counties of Leeds and Grenville, County of Lennox and Addington, County of Northumberland, County of Peterborough, United Counties of Prescott and Russell, Prince Edward County, County of Renfrew and United Counties of Stormont, Dundas and Glengarry. Participating cities of the Eastern Ontario Mayors’ Caucus (EOMC) are: Belleville, Cornwall, Gananoque, Kingston, Pembroke, Peterborough, Prescott, Quinte West and Smiths Falls.

Most Canadian small businesses have never heard of the banking law that is about to change how their financial data moves

Posted in Commentary with tags on August 20, 2026 by itnerd

New research commissioned by Xero and conducted by Angus Reid Group finds that 82% of Canadian small business owners had not heard of the Consumer-Driven Banking Act, the legislation that brings open banking to Canada, months after it became law. 61% say they had never heard of open banking at all.

The findings were released at Xerocon Denver on August 19, where Ashalee Mohamed, Country Manager for Xero Canada, and Jules Hawkins, co-founder of Hawkins & Co Accounting and a Xero Accounting Ambassador, discussed what the change means for accountants, bookkeepers and the businesses they serve. The panel was moderated by Sarah Bartnicka, founder and editor of Milk Bag.

The research also documents the workarounds Canadian businesses use to move financial data today, with 18% currently sharing their online banking username and password with an accountant, bookkeeper, employee or software tool, and 22% have done so at some point.

Key findings

  • 82% of Canadian small business owners had not heard of the Consumer-Driven Banking Act. Only 4% both know it exists and understand what it means for their business.
  • 61% say they had never heard of open banking before taking the survey.
  • 18% currently share their online banking credentials with an accountant, bookkeeper, employee or software tool. 22% have done so at some point.
  • 49% would trust their accountant or bookkeeper most to manage access to their financial data. 20% named their bank, and under 1% named a fintech company.
  • The benefits businesses want most are administrative: easier accounting and bookkeeping (39%), less time on financial administration (28%) and lower banking costs (27%).
  • 28% say they are likely to use open banking services in the first 12 months they are available. Among owners who already knew about the Act, that rises to about half.

About the research
These findings are from a survey conducted from July 29th to August 11th, 2026, among a representative sample of n=508 online adult Canadian small business owners who are members of the Angus Reid Forum. The survey was conducted in English and French. For comparison purposes only, a probability sample of this size would carry a margin of error of ±4.30 percentage points, 19 times out of 20.

OpenAI Says ChatGPT is down yesterday as logins and signups fail

Posted in Commentary with tags on August 20, 2026 by itnerd

It wasn’t just Claude AI that was down. ChatGPT experienced a major outage yesterday, and users are unable to sign in, create accounts, or load chats, including previous conversations.

You can read the story here: https://www.bleepingcomputer.com/news/artificial-intelligence/openai-confirms-chatgpt-is-down-as-logins-and-signups-fail/

Commenting on this story is Mayur Upadhyaya, CEO of APIContext:

“This outage is a useful reminder that we need to distinguish between the consumer-facing application and the infrastructure underneath it.

In this case, the impact appears to have been relatively contained because the APIs remained available. That still creates a meaningful productivity hit for people relying on ChatGPT directly, but it is very different from an outage affecting the API layer that increasingly sits behind business applications, automations and agentic workflows.

The wider ecosystem is becoming more aware of just how many critical services are now delivered over APIs. If the underlying APIs had failed, the blast radius could have been significantly larger because those dependencies are embedded inside other systems and processes.

That distinction will become increasingly important as AI adoption grows. A problem in the user interface is visible and disruptive. A problem in the underlying API layer can propagate much further, and potentially much faster, before anyone sees it.”

If you rely on AI for anything, have a backup plan or you might be stuck. Really stuck.

Nearly half say current infrastructure doesn’t support AI monitoring

Posted in Commentary with tags on August 20, 2026 by itnerd

Nexthink has launched new research. Conducted by Havard Business Review Analytic Services in association with Nexthink, the findings show that four in ten (42%) say their organization’s existing data/technology infrastructure doesn’t support AI monitoring, which could present a big barrier to understanding how AI is being used across the workforce.

The Bridging the AI Acceleration Gap report is based on a global study of 259 respondents, all involved in their organization’s AI decisions, and finds little will change over the next 12 months. Only 19% of respondents say their organization will be implementing or enhancing visibility software during that period. Instead, the most common planned actions are AI education/training for employees (75%) and AI governance policies (67%).

That mismatch is already showing inside businesses. Over half (58%) agree that employees’ uptake of AI is outpacing their IT’s ability to monitor and govern use, while 45% agree that IT is being asked to govern AI without clear visibility into how it is actually being used.

The blind spot is biggest around informal AI use, where employees use AI tools at their own discretion for tasks, instead of the tools their employer has defined for specific business purposes. While 46% say their organization has sufficient visibility into its formal AI use, only 27% say the same for informal AI use among employees. Nearly two-thirds (63%) say visibility into their organization’s informal AI activity should be improved. Security and/or data exposure is the leading concern about employees adopting AI at their own discretion, named by 79%.

Download the full reportBridging the AI Acceleration Gap, or to learn more about how DEX can help maximise AI investments, explore Nexthink’s cutting edge AI Drive solution.

Methodology

The Harvard Business Review Analytic Services survey was conducted online between February and March 2026. It surveyed 259 members of the Harvard Business Review audience, all of whom are involved in their organization’s decisions about AI and all of whom work at organizations already using AI to some degree. Respondents represented organizations with 500 or more employees across North America, Europe, Asia-Pacific, Latin America, the Middle East and Africa. Questions on barriers to AI monitoring and on planned governance actions allowed respondents to select all applicable answers.

40% Increase in “Chameleon” SEO Poisoning Attacks 

Posted in Commentary with tags on August 20, 2026 by itnerd

A new report from Fortra Intelligence and Research Experts (FIRE) documents a 40% increase in online attacks leveraging an SEO poisoning technique dubbed “Chameleon.” In these campaigns, threat actors use cloaked search results to deliver phishing pages only to users arriving from Google or Bing search engines. By concealing malicious content from traditional security scanners, Chameleon campaigns can remain active longer and increase their odds of a successful attack. The article explains how the technique works, why legacy detection methods often miss it, and practical takeaways for CISOs and SOC teams.

The full article can be read here: https://www.fortra.com/blog/the-chameleon-threat

Tumeryk and Carahsoft Partner to Bring AI Trust Scoring and Governance Capabilities to U.S. Government Agencies

Posted in Commentary with tags , on August 20, 2026 by itnerd

Tumeryk and Carahsoft Technology Corp. today announced a partnership. Under the agreement, Carahsoft will serve as Tumeryk’s Master Government Aggregator®, making the company’s AI Trust Score platform and AI security posture management capabilities available to the Public Sector through Carahsoft’s reseller partners and NASA Solutions for Enterprise-Wide Procurement (SEWP) V, The Interlocal Purchasing System (TIPS) and OMNIA Partners contracts.

The partnership comes at a pivotal moment for Federal agencies as the U.S. Government increases its focus on securing artificial intelligence (AI) systems and ensuring responsible AI deployment. Recent guidance and frameworks from the White House, NIST, MITRE and the National Security Agency (NSA) underscore the need for agencies to establish measurable approaches to AI risk management, transparency, governance, cybersecurity and operational oversight.

The White House has recently reinforced the importance of accelerating AI adoption while ensuring that AI systems deployed across Government are secure, trustworthy and aligned with national cybersecurity priorities. At the same time, NIST’s AI Risk Management Framework, MITRE’s AI security initiatives and the NSA’s guidance continue to emphasize the need for organizations to assess AI systems for vulnerabilities, governance gaps, compliance risks and operational resilience.

Tumeryk’s AI Trust Score platform enables organizations to continuously evaluate and monitor the trustworthiness of AI systems through automated assessments of security, governance, compliance, privacy, risk and operational integrity. As prompts often contain an organization’s valuable intellectual property, Tumeryk enables organizations to assess AI risk without sending prompts or sensitive information to external services. The platform provides private infrastructure for actionable insights that help agencies establish and maintain strong AI security and governance posture while supporting evolving Federal requirements. Tumeryk is the official partner for the Cloud Security Alliance Risk Rubrik V2 for assessing AI risks.

Tumeryk and Carahsoft are actively collaborating on multiple Public Sector opportunities and are pursuing Federal contract engagements that leverage Tumeryk’s AI Trust Score platform to strengthen AI governance, cybersecurity readiness and compliance monitoring. These initiatives are designed to help agencies assess, manage and mitigate AI risk while supporting the secure deployment of AI across mission-critical environments.

As Federal agencies continue to operationalize AI technologies, the partnership will help organizations move beyond policy frameworks and establish measurable, continuous oversight of AI systems throughout their lifecycle.

Tumeryk’s solutions are available through Carahsoft’s SEWP V contracts NNG15SC03B and NNG15SC27B, TIPS Contract #220105 and OMNIA Partners Contract #R240303. For more information, contact the Carahsoft Team at (703) 871-8548 or Tumeryk@carahsoft.com. Explore Tumeryk’s solutions here.