In this week's newsletter, new author Mick Baccio introduces himself and explores the operational and security implications of the new White House memorandum regarding private sector participation in government-authorized offensive cyber operations.

The White House has issued a presidential memorandum titled “Expanding Capabilities to Combat Transnational Cyber-Enabled Crime,” which directs the Department of Justice (DOJ) and Department of Homeland Security (DHS) to establish a program enabling private companies to conduct cyber operations against transnational criminal organizations outside the United States. This initiative goes beyond traditional intelligence sharing or investigative assistance, explicitly envisioning private sector involvement in cyber surveillance and "cyber effects operations" under the direction and delegated authority of the U.S. government.
The memorandum represents a significant shift in U.S. policy, creating a formal mechanism for private companies to participate directly in government-authorized offensive cyber operations abroad. While distinct from "hack back" policies, the framework raises numerous operational questions, including how attribution will be established for authorizing operations, how to handle overlaps between criminal and state infrastructure, the ownership of access discovered during operations, and the management of intelligence collected by private entities. A key concern is the potential international implications if employees of an American cybersecurity company are discovered conducting offensive operations within another country's borders.
The DOJ and DHS have been given 60 days to establish the operating procedures for this program, and no operations can be approved until these procedures are in place. This timeline suggests that more concrete details about the program's implementation will emerge within the next two months. The new framework is expected to significantly alter the threat model for private cybersecurity companies and their employees who choose to participate.
In related cybersecurity news, researchers have identified a Chinese-speaking cybercrime group, UAT-10147, which is leveraging agentic AI to orchestrate sophisticated post-compromise operations on global web servers. This group utilizes AI to generate operational playbooks, automate exploits, and develop custom malware. Among their tools is the newly discovered SPECTRE implant, a cross-platform backdoor that includes a custom Linux kernel rootkit and employs Bring Your Own Vulnerable Driver (BYOVD) techniques to evade endpoint detection and response (EDR) solutions.
UAT-10147's integration of agentic AI allows them to scale complex attacks efficiently, dynamically troubleshoot, validate exploit paths, and generate custom rootkits that neutralize security stacks at the kernel level. This significantly reduces the window for detection as adversaries can automate reconnaissance and blind EDR systems. Defenders are advised to prioritize patching known one-day vulnerabilities in internet-facing applications such as Zimbra, Nacos, and Telerik UI. Additionally, securing ASP.NET MachineKeys to prevent ViewState deserialization attacks, blocking known vulnerable drivers, and tuning network monitoring to detect anomalous HTTP 500 errors used for exploit validation are critical mitigation steps.
Other notable cybersecurity developments include a critical zero-click flaw in GitLab that requires immediate upgrades for self-managed versions, an "unprecedented" wave of Apple spyware alerts sent to users in 110 countries, and the U.S. Cybersecurity and Infrastructure Security Agency (CISA) adding critical vulnerabilities in macOS, SharePoint, vCenter, and Microsoft IKE to its Known Exploited Vulnerabilities (KEV) catalog due to active exploitation. A recent survey also indicates that AI adoption in cybersecurity, particularly for red team activities, is outpacing the establishment of formal governance and audit frameworks.
A weakness has been identified in Tenda CP3 27.5.57.101. This issue affects some unknown processing of the file Net/NetCheckPing.cpp. This manipulation of the argument interface_name/host causes os command injection. The attack can be initiated remotely.
A security flaw has been discovered in Tenda CP3 27.5.57.101. This vulnerability affects the function SystemAsh of the file Apis/system.c of the component Kylin. The manipulation of the argument AlarmVoiceURL results in os command injection. It is possible to launch the attack remotely.

OpenAI has announced a $1 billion commitment to provide subsidized access to its Daybreak AI cybersecurity tools for under-resourced critical infrastructure defenders. The initiative, named Daybreak for Frontline Defenders, will offer AI models, training, and technical support over the next six months, prioritizing water and wastewater utilities, electric grid operators, and local government entities. This move aims to equip organizations with limited budgets and staff against increasingly sophisticated cyber threats.

Attackers are exploiting a new unpatched vulnerability in Magento Open Source and Adobe Commerce that lets them run malicious code on an online store's server without logging in, Dutch e-commerce security company Sansec said in an advisory published on September 5. Sansec, which discovered the flaw and named it StyleSmuggler, said attacks started on September 4. "Sansec is publishing early
In BPF instructions that load/store a value from/to a scratch memory register the register index is an unsigned 32-bit integer and must not exceed 15, but libpcap BPF interpreter does not validate the value. In particular uncommon use cases a crafted filter program can cause the interpreter to try reading and writing the OS process memory in the 16GiB starting at the current stack frame on 64-bit architectures and in the entire address space on 32-bit architectures.

Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-2026-82078, in attacks targeting schools and other education organizations in the U.S. and Europe, as reported by TheHackerNews. Arctic Wolf researchers observed