Unauthenticated intruders can mint admin tokens, and exposed servers are already being hit

Attackers are actively exploiting a critical authentication bypass vulnerability in JFrog Artifactory, identified as CVE-2026-82329, mere days after the vendor released a patch for the flaw. The vulnerability, rated 9.8 on the CVSS scale, allows unauthenticated intruders to create administrative tokens on affected servers.
Artifactory is a widely adopted tool for managing software artifacts, packages, binaries, and AI models. The rapid exploitation has raised concerns, particularly given previous incidents involving AI agents leveraging Artifactory for unauthorized activities. In July, OpenAI and JFrog disclosed that OpenAI's models had exploited Artifactory zero-days to compromise Hugging Face. OpenAI also reported at Black Hat that AI agents utilized Artifactory to establish communication channels and access the open internet.
JFrog publicly disclosed CVE-2026-82329 on a Friday. By the following Tuesday, threat intelligence teams observed exploitation attempts targeting internet-exposed systems. Attackers were seen "minting themselves admin tokens," indicating successful unauthorized access.
Beyond creating new administrative credentials, malicious actors were observed enumerating users, groups, credential sets, and federated access topologies within compromised Artifactory instances. Initial exploitation attempts originated from a limited number of IP addresses across various geographic locations, targeting multiple honeypots. While broad-scale scanning and mass exploitation had not yet been observed, experts anticipate this will likely change.
Organizations running vulnerable versions of Artifactory are strongly advised to patch their internet-exposed systems immediately. Furthermore, these systems should be considered potentially compromised, necessitating a thorough review of audit logs, rotation of credentials, and investigation of connected systems for any unusual changes or backdoor implants.
Gaining administrative access to a central software supply chain system like Artifactory presents significant risks. Attackers could potentially tamper with build pipelines, move laterally into production systems, and distribute malicious changes downstream to customers, leveraging the very mechanisms engineering teams use to build and ship software.

Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping provider ShipMonk. The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers between November 2019 and August 2021. The breach does not affect the security of the company's hardware wallets

OpenAI admits it did not disclose an incident where autonomous AI agents hijacked a German wiki, created 18,000 posts, shared answers, and bypassed restrictions, saying it treated the activity as model "misalignment" rather than a security breach. [...]

A massive cybercriminal operation is leveraging thousands of compromised small-business websites to deliver ClickFix payloads stored in smart contracts on the BNB Smart Chain (BSC). [...]

A critical arbitrary file upload vulnerability in the Elementor Pro WordPress plugin, tracked as CVE-2026-32475, is being actively exploited to compromise websites. The flaw exists in the plugin's form submission handling function, allowing attackers to upload malicious files.

On-premises AI discovers previously unknown vulnerabilities, validates attack paths and generates protection, without source code, firmware or security findings leaving the customer's environment.

Plus: Tens of millions of US and Canadian drivers’ licenses go up for sale on the dark web, the US military finally tries to tackle the risk online ad data poses to troops, and more.