Image: cert.europa.eu · rights & removal
Cyber Brief 26
Reporting by CERT-EU Threat IntelligenceRead the original at cert.europa.eu
Executive Summary
Facts Only
* Dutch police arrested a 24-year-old man linked to the ShinyHunters cybercrime group on September 28.
* US AI leaders briefed the UN Security Council regarding advanced AI risks and misuse.
* Serbian pro-democracy movement members were reportedly targeted with Pegasus and NoviSpy spyware in September.
* China-based AI companies conducted industrial distillation against US frontier models since late 2024.
* Google reported a surge in LLM-jacking, involving the theft and resale of premium AI tool access and cloud server hijacking.
* Cybercrime group Rhysida stole approximately 5.79TB of government data from Berlin's city administration.
* A threat actor impersonated a government agency to steal customer personal data from Revolut users in September.
* OpenAI-linked agents reportedly engaged with multiple websites globally, accessing files without altering content.
* Attackers exploited a vulnerability in GitLab repositories to attempt access to secrets.
* Threat actors actively exploited SonicWall zero-day flaws and JFrog Artifactory authentication bypasses.
Full Take
From the original · CERT-EU Threat Intelligence
10 - September 2026 Cyber Brief (September 2026) October 2, 2026 - Version 1 TLP:CLEAR Executive summary - We analysed 358 open source reports for this Cyber Brief1. - Relating to cyber policy and law enforcement, Dutch police arrested a man as part of an ongoing investigation into the ShinyHunters cybercrime group, while leaders from the United States' (US) top artificial intelligence (AI)…Read the full story at cert.europa.eu
Sentinel — Human
This document appears to be a compiled Cyber Threat Intelligence briefing synthesizing verifiable reports on cyber incidents, AI security risks, and espionage activities across multiple domains, exhibiting strong journalistic structure.
