Criminals are breaking into Citrix NetScaler devices worldwide using two brand new flaws, one of which needs no password at all.
A critical bug in F5's BIG-IP APM software is already being used by attackers to run their own code on victims' systems.
Working attack code has been published for a Veeam backup flaw that lets a low-level user seize full control of a Windows machine.
Dyfed-Powys Police is investigating whether staff data was stolen after a cyberattack knocked some of its systems offline.
Fraudsters are tricking HR and payroll staff into installing a fake desktop app that secretly hands over full remote control of their computer.
Revolut customers have been hit by a second data breach this month, after a US brokerage handed over old customer records to social engineers.
An OpenAI AI agent quietly accessed non-public files on an Australian government health data website while carrying out research, without anyone approving it first.
Read on to find out more...
Attackers are actively exploiting two newly disclosed vulnerabilities in Citrix NetScaler ADC and Gateway devices. One of the flaws allows an attacker to bypass authentication entirely, meaning they do not need a username or password to get in. NetScaler devices sit at the edge of many organisations' networks, controlling access to internal systems, which makes them a high-value target. Citrix has released patches, but exploitation was already under way before and shortly after the fixes were published.
NetScaler devices are widely used by UK businesses, including in the NHS supply chain, to manage secure remote access. A successful attack can give criminals a foothold deep inside a network, bypassing perimeter defences entirely. Because one of the flaws needs no credentials, even well-managed password policies offer no protection here.
Recommendations:
A critical vulnerability in F5's BIG-IP Access Policy Manager (APM) is being actively exploited to run attacker-controlled code on affected systems. BIG-IP APM is used to manage secure remote access and single sign-on for many enterprise networks. F5 has released a patch, but attackers began exploiting the flaw before many organisations had the chance to apply it.
Like the Citrix flaw above, this affects a piece of infrastructure that sits at the boundary of a network and controls access into it. Successful exploitation can let an attacker run their own commands with high privileges, potentially giving them a direct route to sensitive systems and data.
Recommendations:
Proof-of-concept exploit code has been published for a vulnerability in Veeam Backup & Replication that allows a low-privileged local user to escalate their access to full administrator (SYSTEM) level on a Windows machine. With working exploit code now public, the barrier to attackers using this flaw has dropped significantly.
Backup systems are a prime ransomware target, since destroying or encrypting backups removes an organisation's safety net. A flaw that lets even a low-level user seize full control of a machine running backup software is particularly dangerous if that machine is compromised through any other means, such as phishing.
Recommendations:
Dyfed-Powys Police has confirmed it is investigating a cyberattack that disrupted some of its IT systems, and is working to establish whether staff data was accessed or stolen. The force has not yet confirmed the full scale or nature of the incident, but has engaged the National Crime Agency and the National Cyber Security Centre as part of its response.
Attacks on police forces and public sector bodies show that no organisation, regardless of its security remit, is immune. For UK businesses and NHS suppliers, this is a reminder that incident response plans need to be tested and ready, and that being open about an ongoing investigation, as this force has been, is part of handling a breach well.
Recommendations:
Security researchers have found a scam that tricks HR and payroll staff into installing a fake "desktop app" for software they already use every day. The real HR and payroll providers being copied do not actually offer a Windows app, but the fake one looks convincing. It shows what looks like a genuine Microsoft installer window and is even downloaded from GitHub, a trusted code-sharing website. Behind the scenes, it quietly installs a real, legitimate remote access tool, set up so the victim never sees a warning, an icon, or any sign that someone else can now control their computer. It restarts automatically and stays connected, giving the attacker long-term, hidden access.
HR and payroll staff routinely handle some of an organisation's most sensitive information, including salaries, bank details, home addresses and, in health and care settings, sometimes staff or patient records too. Because every part of this scam uses genuine, trusted tools rather than obvious malware, it is very hard to spot using normal antivirus checks. UK businesses, NHS suppliers and healthtechs should treat this as a reminder that a convincing "faster app" download is a growing route into an organisation, especially for staff who are not typically security-trained.
Recommendations:
Revolut customers have been affected by a data breach at DriveWealth, a US brokerage that used to handle Revolut customers' US stock trading before Revolut changed its arrangements. Criminals talked their way into DriveWealth's systems using a social engineering trick, convincing someone to hand over access rather than hacking in directly. They stole old customer records, including names, email addresses, phone numbers, postal addresses and partial account numbers. Passwords and card details were not taken. This is the second breach affecting Revolut customers in September; an earlier, separate incident saw criminals trick Revolut itself into handing over more sensitive data, including passport and driving licence details, by pretending to be a government agency.
This shows how customer data can remain at risk long after an organisation stops working with a particular supplier or partner, because that old data often stays on the supplier's systems. UK businesses and NHS suppliers that have changed suppliers, migrated systems, or ended a partnership should think about what historic data those former partners might still hold, and for how long. It is also a reminder that social engineering, tricking a real member of staff into helping, remains one of the most effective ways for criminals to get past technical security controls altogether.
Recommendations:
Australia's Prime Minister has revealed that an OpenAI AI agent accessed an Australian government website without permission while carrying out research, including some non-public files. The agent was looking up Medicare health statistics, Australia's national health insurance scheme, but ended up reaching further into the site than it should have, including internal file names and information that was not meant to be public. OpenAI said it found the incident while reviewing cases where its AI agents had behaved unexpectedly. The company took over two months to tell the Australian government what had happened, and initially only sent the news to a general, unmonitored email address rather than contacting officials directly. No personal information is believed to have been taken.
AI agents, tools that can browse the internet and take actions on their own to complete a task, are increasingly being used inside organisations to save time on research and admin. This incident shows they can end up accessing systems and files well beyond what anyone intended or approved, sometimes without the organisation even knowing until much later. UK businesses, NHS suppliers and healthtechs that use or are considering AI agents, whether bought in or built in-house, should think carefully about what those agents can reach, and make sure there is a clear, tested way to find out quickly if something goes wrong. For organisations handling health data, the fact that a government health statistics portal was the one affected here is a useful reminder to think about AI agent access as part of your own risk assessments.
Recommendations:
If you're worried about any of the threats covered in this week's report, get in touch with Periculo; we're here to help.