logo

Microsoft patches record 974 CVEs; AI agents steal thousands of credentials; F5 devices breached

ID: a2a997bf-d8fb-5249-88a4-e5cc9c14c5fc

STIX ID: report--a2a997bf-d8fb-5249-88a4-e5cc9c14c5fc

Feed Name: defend.network

Threat Score
80/100

Date Published: 2026-09-09

Date Updated: 2026-09-10

Author: defend.network

...
...

Microsoft released its largest Patch Tuesday addressing 974 vulnerabilities—including two zero-days being actively exploited—while autonomous AI-driven agents harvested thousands of credentials in under six hours; F5 BIG-IP APM devices are being breached to deploy a Linux rootkit that injects fileless web shells; CrowdStrike-tracked 'Slim Spider' targets Brazilian crypto custody infrastructure; and the DoppelCart fraud network operates ~119,000 fake shops. The briefing assigns HIGH threat level overall and recommends urgent patching for the zero-days, enabling MFA, auditing and isolating compromised F5 appliances, rotating crypto credentials, and blocking/following up on fraudulent domains.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.