Welcome to Ping — a weekly signal for small and mid-sized businesses. Every week we read the security firehose so you don't have to, and boil it down to what a small shop should actually do: what to patch now, what scams are going around, what's aging out, and where AI is quietly changing the risk. One short read, every item sourced, no fear-mongering.
Here's the week.
AI Watch
The newest, least-familiar risk lives here — attacks that target the AI tools your team has quietly started using.
- A single link could forge an AI agent inside your ChatGPT workspace. Researchers showed how one crafted link ("AgentForger") could silently build and authorize an autonomous agent inside a company's account — an attacker-controlled insider with a real employee's access. OpenAI has fixed it, but the lesson stands: treat "connect this app / open this agent" prompts like handing out admin rights. (The Hacker News)
- AI coding assistants got tricked into escaping their sandbox. Cursor, OpenAI's Codex, Google's Gemini CLI, and Antigravity were all shown breaking out — not by attacking the sandbox, but by writing a file a trusted tool later ran. If you build software, ask whoever owns the dev tooling what the assistant can reach. (BleepingComputer)
- A poisoned pull request can hijack an AI code reviewer — with instructions hidden in an image. The "Ghostcommit" technique buries a prompt inside a PNG that text scanners never read, but AI agents obey. An AI tool with access is a user with access; it needs the same guardrails. (BleepingComputer)
The bigger picture: Microsoft shipped a record 570 fixes this month and credits an AI-powered system that hunts its own code for bugs. More findings, faster — which is exactly why a steady patch routine beats heroics. (Krebs on Security)
Patch This Week
Known fixes worth applying now.
Software
- SharePoint (on-prem): actively exploited, and attackers steal "machine keys" to keep access after you patch — so patch and rotate keys. (BleepingComputer)
- Zoom for Windows: a critical, unauthenticated account-takeover flaw — update to 7.0.0 or later. (BleepingComputer)
- WordPress ("wp2shell"): a core flaw so serious WordPress force-pushed the fix; confirm your business site took 6.9.5 / 7.0.2. (BleepingComputer)
- 7-Zip & Zimbra: update 7-Zip before opening unexpected archives (BleepingComputer); if your mail runs on Zimbra's Classic Web Client, a single crafted email can run code — patch to 10.1.19. (BleepingComputer)
- Adobe Acrobat browser extension: a flaw let any website read WhatsApp Web chats. It auto-updates — verify you're past 26.5.2.3, or remove the extension. (BleepingComputer)
- Oracle E-Business Suite: an exploited flaw behind a wave of breaches (Estée Lauder and 100+ others). If you run EBS, treat it as urgent. (BleepingComputer)
Network gear
- UniFi / Ubiquiti: seven critical fixes, including a maximum-severity (10.0) one. Common in small offices and easy to forget — get it current. (BleepingComputer)
- SonicWall SMA VPN: zero-days were exploited before disclosure — if you run one, check logs back to late June and patch. (BleepingComputer)
- Your office router: a joint CISA/NSA/FBI advisory flagged the exact kind of gear many SMBs run. Worth a firmware + config check. (CISA AA26-194A)
Servers & hosting
- The web server behind your site (NGINX): a critical flaw (CVE-2026-42533) — ask your host whether it's patched. (The Hacker News)
- On-prem phone systems (Cisco Unified CM): confirmed actively exploited. If you run your own PBX, patch it like any server. (BleepingComputer)
Scams & Signals
What's actually landing in inboxes and on networks — the social-engineering and breach news to warn your team about.
- The "$2,000 — we have your password" email is back, now quoting a real breach. Scammers are seeding sextortion threats with data from old leaks to sound legitimate. It's a bluff; tell your team not to pay, and to change any password that shows up. (BleepingComputer)
- Hotel and conference Wi-Fi is being rigged to steal Microsoft 365 logins — no phishing email needed, just a poisoned network pointing you at a fake sign-in. Traveling staff should use a phone hotspot or VPN for anything sensitive. (BleepingComputer)
- Chick-fil-A got hit by credential stuffing — attackers replaying passwords stolen elsewhere. The fix is the same for your business: MFA on, and no reused passwords. (BleepingComputer)
- A "trusted app, untrusted plugin" trick hid malware in a fake Notepad++ add-on. A reminder that where software comes from matters as much as the software. (BleepingComputer)
- That smart TV in your lobby may be quietly reselling your internet. Over 40% of LG TV apps were found routing strangers' traffic through the set — put lobby/conference-room TVs on a guest network. (Krebs on Security)
End of the Road
Nothing to do today, but these deadlines reward planning ahead — a rushed migration is an expensive one.
- Exchange 2016 & 2019 stop getting security updates for good in October — no further extension. On-prem mail past that date is unpatched mail. (BleepingComputer)
- Windows 11 24H2 (Home/Pro) (BleepingComputer) and Windows Server 2022 mainstream support (BleepingComputer) both hit October cut-offs.
- Windows 10 just had its free Extended Security Updates stretched to October 2027 — breathing room, not a reprieve. Use it to plan the move. (BleepingComputer)
Trends & Signals
The part no one else does: because Ping runs every week, we can show the trajectory, not just this week's list. (These track the SMB-relevant items we flag each week — our editorial signal, not a full vulnerability census.)
Patch load is climbing. The number of "act on this now" items a small business faced has trended up over the past month.
AI is a big, steady slice — watch this line over time. AI-related issues have made up a meaningful share of what we flag every single week. Its share dipped recently as ordinary patch volume surged, but this is the number we'll be watching as the series builds.
This week, by category:
How we help
Most of what's above is routine when someone owns it: patch on a schedule, watch the gear that gets forgotten, plan the upgrades before the deadline, warn the team about the live scams, and keep an eye on the newer AI risks. That's the boring, durable work we do for the businesses we manage — with a 24/7 team so the 3 a.m. items are handled before you wake up. If your patching and planning currently live in someone's head, let's talk about making it a system.
See you next Ping.
Ready to talk it through?
Reach Amoeba Networks whichever way is easiest:
- Call (212) 444-9780
- Email info@amoebanetworks.com
- Use the contact form
- Or just click on Mike — the floating Contact button with his face in the corner of any page — to grab a time on his calendar.