Release Date: 13/09/2026 | Issue: 355
Know someone who'd find this useful? Forward this email
CloudSecList is a newsletter for busy professionals who want to keep up to date with the cloud security industry. Hand-curated by Marco Lancini.
Sponsor

FusionAuth β€” Inside the CISO Stack: What's Changing in 2026

Attackers aren't breaking in anymore, they're logging in. 82% of threat detections in 2026 involved no malware at all, just stolen credentials and valid sessions. 88% of orgs say AI deployment is outpacing their identity controls, and machine identities now outnumber human ones 109:1. New research from TechnologyAdvice, sponsored by FusionAuth, examines what CISOs are changing in response.

Read the report

This week's articles


Frontier Models’ Vulnerability Patches are Often F.L.A.W.E.D.
1Password's Off-by-1 Labs tested Claude Code (Opus 4.8) and ChatGPT (5.5) patching six real-world high-severity CVEs across varied prompting styles and found both models produced successful, clean patches at low rates. The issue is that frequently they were fixing only a subset of vulnerable code paths, adding fragile guard code, or subtly altering application behaviour, and occasionally introducing new vulnerabilities.


Security Incident Affecting JetBrains Cadence
JetBrains disclosed a security incident affecting Cadence, its PyCharm-integrated cloud compute service, after confirming exploitation of critical TeamCity vulnerability CVE-2026-63077. Affected users' email addresses, project source code, and credentials were potentially exposed.


Agentic SOC alert triage: 60% to 92% AI accuracy
Elastic's InfoSec team describes how enriching a three-agent SOC triage pipeline with per-rule investigation guides, user risk data, and 30 days of historical case verdicts lifted AI alert accuracy from 60% to 92%, enabling analysts to close most alerts with a single Slack button click.


A scenario to evaluate your Agentic SOC
A downloadable multi-source log dataset built around a 7-phase GitHub Actions cache poisoning β†’ Kubernetes β†’ AWS attack chain, used to benchmark agentic SOC harnesses.


I'm in your logs now: deceiving analysts and blinding EDRs
How ETW's trust model and event-capping behavior can be exploited from unelevated user mode to inject fake telemetry into EDR pipelines (including Microsoft Defender for Endpoint) or flood providers to create detection blind spots, with MSRC only partially addressing the reported issues.


Kimsuky Uses the AI Agent 'opencode' to Create Decoys as Its GitHub PAT-Based LNK Attacks Evolve
Post which details an evolved Kimsuky (Operation GitPower) campaign using 13 malicious LNK files that deliver obfuscated PowerShell via GitHub PAT-based C2 and Pastebin, with decoy documents mass-produced using the AI agent opencode.


GTIG AI Threat Tracker: From Prompting to Autonomy
This AI threat update provides GTIG's findings on adversarial misuse of AI including Gemini and other non-Google tools.


ASCII smuggling crosses over from AI prompt injection to phishing evasion
Microsoft researchers discovered a high-volume phishing campaign that repurposed ASCII smuggling to split financial keywords like "funding" and evade email filters, generating over 2.3 million messages daily at its February 2026 peak.


Firecracker, io_uring and validating layers of defense
A TOCTOU bug in Firecracker's jailer process (aarch64-only, now patched) prompted exploration of post-exploitation defenses: Firecracker's seccomp policy is undermined by its own allowance of io_uring, which lets attackers bypass filtered syscalls entirely.

Sponsor

Different cloud providers, different priorities

If juggling multiple cloud providers wasn't complicated enough, it turns out they don't fail in the same places. Intruder's new report found surprisingly little overlap in the issues affecting AWS, Azure, and Google Cloud, meaning each provider requires a different focus. The report helps you understand where those priorities differ, breaking down the most common issues for each provider, comparisons across key risk categories, and how those risks shift as organizations grow.

Get the report (no email needed)

Tools


TATS
Track OAuth 2.0, OIDC, and Microsoft Entra ID tokens across captured network traffic. You can also check out the companion blog post.


litecli
CLI for SQLite Databases with auto-completion and syntax highlighting.


criticality_score
Gives criticality score for an open source project.


redai
AI-driven vulnerability discovery and live validation.

From the cloud providers


#AWS   Incident response guide for AWS CloudTrail investigations
AWS's Security Incident Response Team (SIRT) walks through two real-world CloudTrail investigation scenarios, cross-account S3 data deletion with ransomware implications and cryptocurrency mining via stolen console credentials, teaching investigators how to read key log fields, recognize attacker patterns, and apply practical response checklists. You can also check out Part 2.

Thanks for reading!

If you found this newsletter helpful, I'd really appreciate if you could forward it to your friends and colleagues! πŸ‘Œ

If you have questions, comments, or feedback, let me know on Twitter (@lancinimarco / @CloudSecList), or at feedback.cloudseclist.com!

Thanks,
Marco
Forward Forward
Twitter Tweet
Share Share

How did you like this issue of CloudSecList?

1       2       3       4       5

Archives View in browser Sponsorship
Β© 2019-present CloudSecList Β· Marco Lancini