Welcome to Ping, a weekly signal for small and mid-sized businesses. Every week we read the security firehose so you don't have to, and boil it down to what a small shop should actually do: what to patch now, what scams are going around, what's aging out, and where AI is quietly changing the risk. One short read, every item sourced, no fear-mongering.

Here's the week.

AI Watch

The newest, least-familiar risk: attacks that target the AI tools your team has quietly started using.

  • Shared Claude Conversations Are Being Weaponized to Deliver Malware. Attackers are hosting malicious payloads inside Claude Artifacts, publishing poisoned shared conversation links, and buying sponsored search ads for fake AI tools. The trust employees place in AI vendor domains is the whole attack. (source: BleepingComputer: How Threat Actors Are Turning Trusted AI Platforms Into an Attack Surface)
  • Rolled Out Passkeys to Your Team? Attackers Are Now Sending Fake Passkey Setup Emails. Microsoft says extortion groups including ShinyHunters are running Microsoft 365 phishing campaigns themed around passkey enrollment and SSO prompts, tricking staff into handing over access during what looks like a routine security upgrade. (source: BleepingComputer: passkey-themed phishing hits M365)
  • Attackers Are Now Building Exploits With AI Agents. One Campaign Hit 395 Print Servers. A single threat actor used hundreds of AI agents to weaponize a PaperCut vulnerability and break into 395 organizations. The window between a patch being published and a working exploit hitting your network is shrinking from weeks to days. (source: BleepingComputer: AI-powered attack on PaperCut)
  • A Hidden Instruction Inside a ChatGPT Chat Can Quietly Send Your Gmail to Someone Else. Check Point Research showed that a single planted prompt can make ChatGPT read a user's connected Gmail and forward the contents to an attacker's account while still answering the visible question normally. Anyone who connected Gmail, Drive, or SharePoint to an AI assistant should treat those connectors as an outbound data path. (source: The Hacker News: ChatGPT Flaw Let a Planted Prompt Send a Victim's Gmail Data to Another Account)
  • Nearly One in Ten Public LiteLLM Gateways Still Accept the Example Admin Key From the Setup Guide. Wiz scanned internet-facing LiteLLM servers and found roughly 10% accept sk-1234, the sample credential printed in the vendor's own docs. Anyone holding that key can read every prompt, response, and API secret the gateway proxies. (source: The Hacker News: LiteLLM sk-1234)

Patch This Week

Known fixes worth applying now.

  • Microsoft Just Shipped Fixes for 966 Flaws in One Month. What That Pace Means for Your Patch Windows. Microsoft's September 2026 Patch Tuesday is the largest on record, with 966 security fixes and two already-exploited zero-days. That volume overwhelms same-day sweeps, so SMBs need a risk-ranked rollout order rather than trying to install everything at once. (source: Krebs on Security: Microsoft Plugs Nearly 1,000 Security Holes)
  • A Critical Flaw in N-central Is Being Exploited This Week. Ask Whoever Manages Your IT Which Version They're On. CISA added an N-central pre-auth remote code execution flaw (CVSS 10.0) to its Known Exploited catalog, and N-able has now issued four hotfixes in five weeks. N-central is the platform many IT providers use to reach into client laptops and servers, which makes an unpatched instance a direct route into your business. (source: The Hacker News: N-able N-central Pre-Auth RCE Flaw Exploited in the Wild)
  • Check Point Firewall Customers: Two Critical VPN Certificate Flaws Need Patching. Check Point disclosed two 9.8-severity flaws in its Security Gateways and Management Server that let an unauthenticated attacker run code through VPN certificate handling. Any office with a Check Point firewall should confirm its appliance is on the fixed build this week. (source: The Hacker News: Check Point 9.8 VPN flaws)
  • Cisco Just Confirmed a Perfect-10 Firewall Management Bypass Under Active Attack. CVE-2026-20079 in Cisco Secure Firewall Management Center lets attackers skip authentication entirely, and Cisco says it is already being used in the wild. Any organization with a Cisco-managed firewall needs the update applied now. (source: BleepingComputer: Cisco confirms CVE-2026-20079)
  • A New CrowdStrike Falcon Zero-Day Hands Local Attackers SYSTEM Privileges. A researcher has published a working exploit, dubbed FalconFlank, that abuses the CrowdStrike Falcon agent to escalate a normal Windows account to SYSTEM on fully updated machines. Every endpoint tool is still software, so any SMB relying on EDR alone should have a plan for the day the EDR itself is the bug. (source: BleepingComputer: New CrowdStrike FalconFlank zero-day grants SYSTEM privileges)
  • Citrix NetScaler Auth Bypass Is Being Exploited in the Wild This Week. CVE-2026-19490 lets an unauthenticated attacker slip past login on Citrix NetScaler gateways, and attacks are already underway. Any SMB using NetScaler to publish remote apps or a VPN portal should confirm the patched build is on every appliance and check the logs for suspicious sessions. (source: BleepingComputer: Critical Citrix NetScaler auth bypass now leveraged in attacks)
  • The Practical Lifespan of an Office Wi-Fi Router Is About Five Years. After roughly five years, most business-grade routers stop receiving firmware updates, and the newer Wi-Fi standards materially help crowded offices with lots of laptops, phones, and video calls. Budgeting a refresh on that cadence keeps both security patches and performance current. (source: Spiceworks: Why it's time to replace that old Wi-Fi router)

Scams & Signals

What's actually landing in inboxes and on networks: the social-engineering and breach news to warn your team about.

  • Account Recovery Is Where MFA Gets Bypassed. Tighten Help Desk Verification. Attackers are getting around multi-factor authentication by calling the help desk and asking for a password or authenticator reset. The weak point is identity verification at recovery time, not the login screen itself. (source: BleepingComputer: MFA's Weakest Link)
  • A Stolen Police Login Was Enough to Breach Florida's Driver Database. Florida's DMV confirmed attackers didn't crack the database; they signed in with valid credentials belonging to a police department employee. Any shared industry portal your business connects to is only as safe as the weakest account that can reach it. (source: BleepingComputer: Florida confirms DMV database breached via stolen police account)
  • Office 2021 Loses Security Updates on October 13. Plan the Move Now. Microsoft stops shipping security fixes for Office 2021 on October 13, 2026. Any Word, Excel, or Outlook install still on that version after that date will collect known, unpatched flaws. (source: Microsoft Lifecycle: Office 2021)
  • Your Email Marketing Vendor Has Your Customer List. A Breach at One Sent Phishing to 347,000 Addresses. When an email service provider is compromised, attackers walk away with a curated customer list and a believable sender identity. A recent breach at a major ESP led to phishing sent to 347,000 addresses of one hardware vendor's customers, with 2,500 clicking the malicious link. (source: BleepingComputer: Trezor phishing after Brevo breach)
  • September's Windows Server Update Is Breaking Remote Desktop. Here's the Safe Rollout Order. The September 2026 security update is causing Remote Desktop Services to fail on Windows Server 2019, 2022, and 2025, in some cases requiring a hard reset. Staging updates on a non-production server for 48 hours before rolling to the RDS host would have caught it. (source: BleepingComputer: September updates break RDS)
  • 119,000 Fake Storefronts Are Copying Real Brands to Steal Card Numbers. A fraud network called DoppelCart runs more than 119,000 lookalike e-commerce domains that mimic legitimate brands at checkout to harvest payment card data. Anyone shopping on a company card should be checking the URL before paying. (source: BleepingComputer: DoppelCart fraud network)
  • MikroTik Routers Are Being Hijacked Through Internet-Facing SSH With No Password Required. CERT Polska is warning that attackers are taking full administrative control of MikroTik routers whenever the SSH service is reachable from the public internet. Successful compromises date to at least early September, and the fix is to move SSH off the WAN interface or restrict it to known source IPs. (source: The Hacker News: Attackers Hijack MikroTik Routers Through Internet-Exposed SSH)
  • Cloud Misconfigurations Look Different in AWS, Azure, and Google Cloud. One Checklist Won't Cover All Three. An analysis of 3,000 organizations found the top risks in each of the big three clouds barely overlap. A control that matters in AWS may not exist in Azure, so a generic checklist leaves real gaps in whichever provider you actually use. (source: The Hacker News: Your Cloud Security Checklist Doesn't Work the Way You Think It Does)

End of the Road

Deadlines that reward planning ahead. A rushed migration is an expensive one.

EOL Runway: support cut-offs for common SMB software

See the runway above for what's coming; nothing new was flagged this week.

Trends & Signals

Because Ping runs every week, we can show the trajectory, not just this week's list. (These track the SMB-relevant items we flag each week: our editorial signal, not a full vulnerability census.)

Patch Load: action-now items per week

The AI Line: AI's share of the SMB security items we track

This week by category

How we help

Most of what's above is routine when someone owns it: patch on a schedule, watch the gear that gets forgotten, plan the upgrades before the deadline, warn the team about the live scams, and keep an eye on the newer AI risks. That's the boring, durable work we do for the businesses we manage, with a 24/7 team so the 3 a.m. items are handled before you wake up. If your patching and planning currently live in someone's head, let's talk about making it a system.

See you next Ping.

Ready to talk it through?

Reach Amoeba Networks whichever way is easiest:


All blog Ping
contact Contact