Oracle, Microsoft, Perplexity, Ubuntu and Opera: In Other News: Clop Leak Site Takeover, Docker Botnet Hunts AI Keys, Water Utility Exposure

Oracle, Microsoft, Perplexity, Ubuntu and Opera: In Other News: Clop Leak Site Takeover, Docker Botnet Hunts AI Keys, Water Utility Exposure

Cybersecurity Roundup: Major Threats, Vulnerabilities, and Industry Shifts

This week’s cybersecurity landscape saw high-profile feuds, novel attack techniques, and critical infrastructure risks, alongside policy updates and emerging malware trends.

Clop Ransomware Gang’s Leak Site Hijacked in Feud

The Cl0p ransomware gang’s Tor-based data leak site was defaced by the ShinyHunters hacking group, which claims to have stolen server logs, source code, and private keys for Clop’s onion service. The attack stems from a long-standing feud over Clop’s alleged threats during its Oracle E-Business Suite campaign. ShinyHunters demanded an eight-figure payment and a public apology, threatening to expose companies that paid ransoms to Clop.

BragJack Flaws Exploit Browser AI Assistants

Researchers at Forever disclosed BragJack, a set of vulnerabilities allowing malicious browser extensions to hijack built-in AI assistants in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome. By injecting scripts or tampering with network traffic, attackers could execute unauthorized commands such as reading emails, accessing files, or activating cameras without user interaction. Vendors awarded bounties ranging from $600 to $7,000 for the findings.

Worm-Ready Go Implant Targets AI Agent Tooling

A threat actor published malicious versions of MemTensor’s MemOS packages on npm and PyPI, embedding a Go-based implant named sckit. Unlike typical malware, it activates when the Python library is imported or the npm plugin is used, hunting for npm, PyPI, GitHub, AWS, and Hugging Face secrets. While the implant includes self-spreading templates, no active propagation has been observed. Aikido and StepSecurity also reported on the threat.

AI Relay Networks Mask Chinese Traffic to Western Models

Team Cymru identified nearly 11,000 servers running Claude Relay Service or its successor, sub2api, which pool AI accounts to bypass regional restrictions. In one U.S.-hosted cluster, 4,000+ Chinese and Hong Kong IPs accessed OpenAI, Anthropic, xAI, and Google endpoints via relays, obscuring their true origin.

Infostealer Logs Expose Remote Access Keys in U.S. Water Sector

SpyCloud analyzed stolen credentials tied to 10,000 U.S. water and wastewater utilities, finding 1,787 organizations with active infostealer exposure. Among them, 258 had credentials for OT or remote-access systems, including TeamViewer, SonicWall, and Fortinet portals. One case revealed a single compromised device at a metering technology provider exposing logins for 167 utility portals.

CLOSEDQUORUM: AI-Powered Malware Replaces C2 Servers

Cisco Talos documented CLOSEDQUORUM, a Go-based Windows implant that uses commercial LLMs (DeepSeek, Qwen, Mistral, Gemini) to decide actions such as credential theft or persistence via a voting system. The malware exfiltrates data to Discord channels but has not been confirmed in the wild. Public builds contain placeholder API keys, though custom versions suggest targeted deployment.

Ubuntu Accelerates Kernel Fixes Amid Rising CVEs

Canonical announced a shift to a single two-week kernel update cycle for Ubuntu, releasing new kernels weekly due to a surge in CVEs driven by AI-assisted bug discovery and the Linux kernel’s expanded CVE assignments. Admins can test fixes early via the -proposed pocket, with workarounds or hardening guidance promised within 24–48 hours of disclosure.

Critical TDengine Flaw Threatens Industrial Telemetry

Ridge Security disclosed CVE-2026-42542, a high-severity integer underflow in TDengine, a time-series database used in industrial telemetry, energy, and IoT. The unauthenticated flaw allows DoS via a single malformed packet, with potential for further exploitation due to heap corruption. Affected versions (3.4.0.0–3.4.1.5) are patched in 3.4.1.6.

RemControl: Android Banking Trojan with AI Roots

Group-IB uncovered RemControl, a malware-as-a-service Android trojan spreading via fake Google Play pages for the TVTap IPTV app. Targeting 30+ banks in Western Europe, the Middle East, and Canada, it abuses Accessibility permissions to overlay phishing screens, log keystrokes, and enable full remote control. Evidence suggests parts of the platform were built using an AI assistant misled into believing it was developing a quiz app.

Docker Botnet Prioritizes AI API Key Theft

ThreatDown detailed CARBONATO, a botnet that exploits unauthenticated Docker daemons (port 2375) to deploy Hermes Agent, an AI framework repurposed for malicious commands via Telegram. The malware scans networks every five minutes, prioritizing AI API key theft over other credentials. Operators are believed to be based in Costa Rica, based on infrastructure and language clues.

Source: https://www.securityweek.com/in-other-news-clop-leak-site-takeover-docker-botnet-hunts-ai-keys-water-utility-exposure/

Oracle TPRM report: https://www.rankiteo.com/company/oracle-financial-services-software-limited

Microsoft TPRM report: https://www.rankiteo.com/company/microsoft-security

Perplexity TPRM report: https://www.rankiteo.com/company/perplexityhq

Ubuntu TPRM report: https://www.rankiteo.com/company/ubuntu-linux

Opera TPRM report: https://www.rankiteo.com/company/opera-colorado

"id": "opemicperoraubu1790360858",
"linkid": "opera-colorado, microsoft-security, perplexityhq, oracle-financial-services-software-limited, ubuntu-linux",
"type": "Ransomware",
"date": "9/2026",
"severity": "100",
"impact": "5",
"explanation": "Attack threatening the organization's existence"
{'affected_entities': [{'industry': 'Cybercrime',
                        'name': 'Cl0p Ransomware Gang',
                        'type': 'Threat Actor'},
                       {'industry': 'Various',
                        'name': 'Oracle E-Business Suite Users',
                        'type': 'Organizations'},
                       {'industry': 'Technology',
                        'name': 'Chrome, Edge, Opera Neon, Perplexity Comet, '
                                'Claude in Chrome',
                        'type': 'Software Vendors'},
                       {'industry': 'AI/Technology',
                        'name': 'MemTensor (MemOS packages)',
                        'type': 'Software Vendor'},
                       {'industry': 'Critical Infrastructure',
                        'location': 'United States',
                        'name': 'U.S. Water and Wastewater Utilities',
                        'size': '1,787 organizations',
                        'type': 'Organizations'},
                       {'industry': ['Industrial Telemetry', 'Energy', 'IoT'],
                        'name': 'TDengine Users',
                        'type': 'Organizations'},
                       {'industry': 'Banking',
                        'location': ['Western Europe', 'Middle East', 'Canada'],
                        'name': 'Android Banking Customers',
                        'size': '30+ banks',
                        'type': 'Individuals'},
                       {'industry': 'Technology',
                        'name': 'Docker Users',
                        'type': 'Organizations/Developers'}],
 'attack_vector': ['Malicious Browser Extensions',
                   'Supply Chain Compromise',
                   'Exposed Remote Access Systems',
                   'AI Relay Networks',
                   'Exploited Docker Daemons'],
 'data_breach': {'data_encryption': ['Ransomware (Cl0p)',
                                     'CLOSEDQUORUM (Go implant)'],
                 'data_exfiltration': True,
                 'personally_identifiable_information': True,
                 'sensitivity_of_data': ['High'],
                 'type_of_data_compromised': ['Server logs',
                                              'Source code',
                                              'Private keys',
                                              'Credentials',
                                              'AI API keys',
                                              'Banking data',
                                              'Personally identifiable '
                                              'information']},
 'description': 'This week’s cybersecurity landscape saw high-profile feuds, '
                'novel attack techniques, and critical infrastructure risks, '
                'alongside policy updates and emerging malware trends.',
 'impact': {'brand_reputation_impact': ['Cl0p ransomware gang',
                                        'Affected AI assistant vendors',
                                        'TDengine',
                                        'Android banking institutions'],
            'data_compromised': ['Server logs',
                                 'Source code',
                                 'Private keys',
                                 'AI API keys',
                                 'Credentials for OT/remote-access systems',
                                 'Personally identifiable information',
                                 'Banking credentials'],
            'identity_theft_risk': True,
            'operational_impact': ['DoS via TDengine flaw',
                                   'Unauthorized access to AI assistants',
                                   'Remote control of Android devices'],
            'payment_information_risk': True,
            'systems_affected': ['Tor-based leak sites',
                                 'Browser AI assistants (Chrome, Edge, Opera '
                                 'Neon, Perplexity Comet, Claude)',
                                 'npm/PyPI packages',
                                 'TDengine databases',
                                 'Android devices',
                                 'Docker daemons',
                                 'AI relay networks']},
 'initial_access_broker': {'backdoors_established': ['sckit (Go implant)',
                                                     'Hermes Agent (AI '
                                                     'framework)'],
                           'entry_point': ['Malicious npm/PyPI packages',
                                           'Fake Google Play pages',
                                           'Exposed Docker daemons'],
                           'high_value_targets': ['AI API keys',
                                                  'Banking credentials',
                                                  'OT/remote-access systems']},
 'investigation_status': 'Ongoing',
 'motivation': ['Financial Gain',
                'Revenge/Feud',
                'Espionage',
                'Data Theft',
                'AI API Key Harvesting'],
 'post_incident_analysis': {'corrective_actions': ['Patch management',
                                                   'AI assistant security '
                                                   'hardening',
                                                   'Credential rotation',
                                                   'Network monitoring'],
                            'root_causes': ['Unauthenticated Docker daemons',
                                            'Malicious browser extensions',
                                            'Supply chain compromise',
                                            'Exposed credentials in '
                                            'infostealer logs']},
 'ransomware': {'data_encryption': True,
                'data_exfiltration': True,
                'ransom_demanded': 'Eight-figure payment (Cl0p vs. '
                                   'ShinyHunters)',
                'ransomware_strain': ['Cl0p']},
 'recommendations': ['Patch TDengine to v3.4.1.6',
                     'Monitor for malicious npm/PyPI packages',
                     'Secure Docker daemons (disable unauthenticated access)',
                     'Enhance AI assistant security in browsers',
                     'Audit remote access systems for exposed credentials',
                     'Implement network segmentation for critical '
                     'infrastructure'],
 'references': [{'source': 'Forever (BragJack disclosure)'},
                {'source': 'Team Cymru (AI Relay Networks)'},
                {'source': 'SpyCloud (Water Sector Credentials)'},
                {'source': 'Cisco Talos (CLOSEDQUORUM)'},
                {'source': 'Ridge Security (TDengine Flaw)'},
                {'source': 'Group-IB (RemControl Trojan)'},
                {'source': 'ThreatDown (CARBONATO Botnet)'}],
 'response': {'containment_measures': ['Patching TDengine (v3.4.1.6)',
                                       'Removing malicious npm/PyPI packages'],
              'remediation_measures': ['Vendor bounties for BragJack',
                                       'Hardening guidance for TDengine'],
              'third_party_assistance': ['Forever (BragJack disclosure)',
                                         'Aikido',
                                         'StepSecurity',
                                         'Team Cymru',
                                         'SpyCloud',
                                         'Cisco Talos',
                                         'Group-IB',
                                         'ThreatDown']},
 'threat_actor': ['Cl0p Ransomware Gang',
                  'ShinyHunters',
                  'Unknown (CARBONATO Botnet Operators)',
                  'Unknown (RemControl Trojan Developers)',
                  'Unknown (CLOSEDQUORUM Malware Authors)'],
 'title': 'Cybersecurity Roundup: Major Threats, Vulnerabilities, and Industry '
          'Shifts',
 'type': ['Ransomware',
          'Vulnerability Exploitation',
          'Malware',
          'Data Breach',
          'Supply Chain Attack',
          'AI-Powered Attack'],
 'vulnerability_exploited': ['BragJack (AI Assistant Hijacking)',
                             'CVE-2026-42542 (TDengine Integer Underflow)',
                             'Unauthenticated Docker Daemons (Port 2375)']}
Great! Next, complete checkout for full access to Rankiteo Blog.
Welcome back! You've successfully signed in.
You've successfully subscribed to Rankiteo Blog.
Success! Your account is fully activated, you now have access to all content.
Success! Your billing info has been updated.
Your billing was not updated.