Cleartext – September 02, 2026
Wednesday, September 2, 2026·10:51
Enjoy the show? Subscribe to never miss an episode.
show notes
Cleartext – September 02, 2026
Daily cybersecurity briefing for CISOs and security leaders.
Episode Summary
Today's episode covers 10 stories across 6 topic areas, including: China's 'Fire Ant' campaign used compromised Cisco routers as platform for more attacks; OpenAI Is About to Release Its First AI Model With ‘Critical’ Cyber Abilities; Stronger Security Drives Ransomware Groups to Recruit From Within.
Stories Covered
🌍 Geopolitical
China's 'Fire Ant' campaign used compromised Cisco routers as platform for more attacks
The Record (Recorded Future) · Sep 01 · Relevance: █████████░ 9/10
Why it matters to CISOs: A Chinese state-linked campaign using compromised Cisco routers as a persistent pivot platform represents a fundamental trust-layer threat to enterprise network infrastructure and warrants urgent review of edge device integrity.
- Threat group Fire Ant compromised Cisco routers to use as a launchpad for further intrusions
- Researchers describe the campaign as compromising 'the trust layer those systems depend on,' not just individual devices
- Campaign attributed to a China-nexus actor with broad targeting implications for enterprises relying on Cisco network infrastructure
📡 Macro Trends
OpenAI Is About to Release Its First AI Model With ‘Critical’ Cyber Abilities
Wired Security · Sep 01 · Relevance: █████████░ 9/10
Why it matters to CISOs: The imminent release of an AI model with 'critical' offensive cyber capabilities reshapes the threat landscape for enterprise security programs, requiring CISOs to accelerate defensive AI adoption and threat modeling for AI-assisted attacks.
- OpenAI's Astra model is classified as having 'critical' cyber abilities, a first for the company's public releases
- Select partners are receiving early access specifically to allow time to shore up defenses before broader release
- The release marks a significant escalation in the accessibility of AI-assisted offensive cyber capabilities
Stronger Security Drives Ransomware Groups to Recruit From Within
Dark Reading · Sep 01 · Relevance: ███████░░░ 7/10
Why it matters to CISOs: As perimeter and endpoint defenses improve, ransomware operators are shifting to insider recruitment, requiring CISOs to revisit insider threat programs, behavioral analytics investments, and employee vetting processes as a strategic priority.
- Security researchers are observing an uptick in ransomware groups actively recruiting insiders at targeted organizations
- Improved external defenses are driving threat actors toward the human attack surface as the path of least resistance
- Insider-assisted ransomware attacks carry significantly higher financial and reputational damage than purely external intrusions
🔓 Data Breach
FBI Probes Service Selling 153M+ Drivers Licenses
Krebs on Security · Sep 01 · Relevance: █████████░ 9/10
Why it matters to CISOs: A breach of a widely-used identity verification vendor exposing 153 million driver's license images undermines KYC and identity proofing processes enterprises rely on, and signals critical third-party risk in the identity verification supply chain.
- Dark web service is selling digital scans of 153 million-plus U.S. and Canadian driver's licenses
- Images appear sourced from a Louisiana-based identity verification company used broadly across industries
- FBI's New Orleans field office has opened a formal investigation into the source of the leaked images
Aesto Health says data breach affects over 9.5 million patients
BleepingComputer · Sep 01 · Relevance: ████████░░ 8/10
Why it matters to CISOs: A healthcare breach affecting 9.5 million individuals reinforces the sector's continued status as a high-value ransomware and extortion target, with HIPAA notification obligations and downstream liability implications for CISOs in healthcare and adjacent industries.
- Aesto Health confirmed a breach affecting more than 9.5 million individuals
- Breach involves sensitive health-related personal data with mandatory federal notification requirements
- Incident adds to a growing wave of large-scale healthcare sector breaches in 2026
FulcrumSec Claims Responsibility for Manchester Airport Group Breach
Infosecurity Magazine · Sep 02 · Relevance: ███████░░░ 7/10
Why it matters to CISOs: A claimed 550GB data exfiltration from a major international airport group highlights persistent ransomware and extortion risk to critical transportation infrastructure, with cross-sector implications for CISOs in logistics and travel-dependent industries.
- Threat group FulcrumSec claims responsibility for breaching Manchester Airport Group (MAG)
- 550GB of data has reportedly been leaked online following the breach
- MAG operates multiple UK airports, raising national critical infrastructure and regulatory notification concerns
⚖️ Governance & Policy
CISA scraps 6 free cybersecurity assessments for critical infrastructure operators
Cybersecurity Dive · Sep 01 · Relevance: ████████░░ 8/10
Why it matters to CISOs: The elimination of six CISA free assessment services removes a meaningful risk-identification resource for critical infrastructure operators, forcing CISOs in those sectors to fund and source equivalent capabilities independently or accept coverage gaps.
- CISA is discontinuing six free cybersecurity assessment programs previously available to critical infrastructure organizations
- The decision is attributed to internal workload constraints at the agency
- Organizations that relied on these assessments to identify vulnerabilities will need to procure alternatives at their own cost
🚀 Startup Ecosystem
HiddenLayer nabs $100M as enterprises rush to secure their AI deployments
TechCrunch Security · Sep 02 · Relevance: ████████░░ 8/10
Why it matters to CISOs: A $100M Series B for AI security—backed by Microsoft M12, Morgan Stanley, and Booz Allen—signals maturing enterprise demand for purpose-built AI model protection and reflects board-level pressure on CISOs to address AI-specific attack surfaces.
- HiddenLayer raised $100M Series B from investors including Microsoft's M12, Morgan Stanley, Ten Eleven Ventures, and Booz Allen Hamilton
- The raise reflects accelerating enterprise urgency to secure AI model deployments against adversarial attacks and data poisoning
- Breadth of strategic investors signals AI security is becoming a board-level procurement priority
🚨 Critical Vulnerability
Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain
The Hacker News · Sep 02 · Relevance: ██████████ 10/10
Why it matters to CISOs: SonicWall SMA 1000 appliances are widely deployed SSL VPN gateways in enterprise and government environments; a chained zero-day with a CVSS 10.0 pre-auth SSRF enabling RCE demands immediate emergency patching and compromise assessment.
- CVE-2026-83548 is a pre-authentication SSRF with CVSS score 10.0 in the SMA 1000 Appliance Work Place interface
- Two vulnerabilities can be chained for remote code execution; both are confirmed as actively exploited zero-days
- SonicWall SMA 1000 series is used by medium-to-large enterprises, government agencies, and MSSPs
Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure
The Hacker News · Sep 01 · Relevance: █████████░ 9/10
Why it matters to CISOs: JFrog Artifactory is a cornerstone of enterprise software supply chains; an actively exploited authentication bypass granting admin access within days of disclosure threatens build pipelines and artifact integrity at scale.
- CVE-2026-82329 carries a CVSS score of 9.8 and allows authentication bypass leading to full administrative access
- Active exploitation confirmed by watchTowr mere days after public disclosure
- Default configuration is vulnerable, broadening the attack surface across the enterprise install base
Further Reading
- 🌍 China's 'Fire Ant' campaign used compromised Cisco routers as platform for more attacks — The Record (Recorded Future)
- 📡 OpenAI Is About to Release Its First AI Model With ‘Critical’ Cyber Abilities — Wired Security
- 📡 Stronger Security Drives Ransomware Groups to Recruit From Within — Dark Reading
- 🔓 FBI Probes Service Selling 153M+ Drivers Licenses — Krebs on Security
- 🔓 Aesto Health says data breach affects over 9.5 million patients — BleepingComputer
- 🔓 FulcrumSec Claims Responsibility for Manchester Airport Group Breach — Infosecurity Magazine
- ⚖️ CISA scraps 6 free cybersecurity assessments for critical infrastructure operators — Cybersecurity Dive
- 🚀 HiddenLayer nabs $100M as enterprises rush to secure their AI deployments — TechCrunch Security
- 🚨 Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain — The Hacker News
- 🚨 Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens Days After Disclosure — The Hacker News
Full Transcript
Click to expand full episode transcript
Alex: Welcome to Cleartext for Wednesday, September 2nd, 2026. I'm Alex Chen.
Jordan: And I'm Jordan Reeves. Alex, I want to start with something that should have every CISO checking their edge infrastructure this morning. SonicWall disclosed two zero-days in their SMA 1000 series, one of them a perfect ten CVSS pre-auth SSRF, and they chain together for remote code execution. Both actively exploited in the wild. If you're running SMA 1000 appliances, stop what you're doing and patch. We'll come back to that, but I wanted it said up front.
Alex: Absolutely, and we've got a packed show today. We're going to dig into China's Fire Ant campaign turning Cisco routers into persistent attack platforms, OpenAI releasing a model they themselves classify as having critical offensive cyber capabilities, a massive identity verification breach that could undermine KYC processes across entire industries, CISA pulling back free assessment services, and the growing trend of ransomware groups recruiting insiders. A lot to cover, so let's get into it.
Jordan: Let's start with Fire Ant because this one is architecturally significant. This is a China-nexus campaign that compromised Cisco routers, not as endpoints, but as pivot platforms, persistent infrastructure for launching further intrusions. The researchers were very deliberate in their language. They said this didn't just compromise systems, it compromised the trust layer those systems depend on. And that framing matters.
Alex: It matters enormously because think about how most enterprises treat their routing infrastructure. These devices sit in the most trusted positions in the network. They're making forwarding decisions, they're handling BGP sessions, they're the backbone. And yet they often get less security scrutiny than a user's laptop. How many organizations have integrity monitoring on their router firmware? How many are doing regular validation that the IOS image running is the one they deployed?
Jordan: Very few. And that's exactly what makes this class of attack so effective. You're not tripping EDR. You're not touching an endpoint. You're living in the infrastructure layer that everything else trusts implicitly. The attribution to a China-nexus actor is consistent with what we've been tracking for years, going back to Volt Typhoon, Flax Typhoon, and now Fire Ant. The pattern is prepositioning in network infrastructure for persistence and future access.
Alex: The board-level conversation here is about trust assumptions. If your routing infrastructure is compromised, your segmentation is illusory, your logging may be incomplete, and your incident response playbooks probably don't account for it. CISOs need to be asking their network teams hard questions about edge device integrity verification, firmware signing validation, and whether they have any ability to detect unauthorized modifications to router configurations or images.
Jordan: And I'd add, if you're running end-of-life Cisco gear that's no longer receiving security updates, this is your wake-up call to accelerate that refresh. You cannot defend what you cannot patch.
Alex: Let's pivot to what I think is the most consequential macro story of the week, possibly the quarter. OpenAI is about to release its Astra model, and they've classified it internally as having critical offensive cyber capabilities. That's their own assessment, not a researcher's, not a journalist's framing. OpenAI is telling select partners, get your defenses ready before we release this publicly.
Jordan: I've been watching the AI capabilities curve for years, and this is the inflection point a lot of us predicted. When the model developer itself acknowledges critical offensive capability and gives partners a head start on defense, that tells you the asymmetry is about to shift. The question isn't whether threat actors will use AI-assisted attack tooling. They already are. The question is what happens when a model this capable becomes broadly accessible.
Alex: And for CISOs, this changes the threat modeling conversation fundamentally. Your red team exercises, your assumed attacker capability profiles, your detection engineering, all of that needs to be recalibrated. If a model can autonomously identify vulnerabilities, craft exploits, and iterate on evasion techniques, the velocity of attacks changes, not just the sophistication.
Jordan: Which makes the HiddenLayer funding story worth a quick mention here. They just raised a hundred million Series B with Microsoft M12, Morgan Stanley, and Booz Allen on the cap table. That investor list tells you everything. When defense contractors and the hyperscaler that runs Azure are backing AI model security, this isn't a niche play anymore. It's becoming a board-level procurement category. CISOs who don't have an AI security strategy are going to be answering uncomfortable questions very soon.
Alex: Agreed. And the timing is not coincidental. The market is responding to exactly the kind of capability escalation that Astra represents. Let's move to the breach stories because they're connected in ways that matter strategically.
Jordan: The big one is this FBI investigation into a dark web service selling over 153 million U.S. and Canadian driver's license scans. Krebs traced it back to what appears to be a Louisiana-based identity verification company. This isn't a breach of a government database. This is a breach of the private sector intermediary that governments and enterprises trust to verify identity.
Alex: And that's what makes it structurally damaging. Think about how many processes depend on driver's license verification. KYC for financial services, patient identity in healthcare, employee onboarding, age verification. If the images in this dataset are high-fidelity, and early reporting suggests they are, you've just undermined a foundational identity proofing mechanism across multiple industries.
Jordan: The third-party risk angle is critical. How many CISOs even know which identity verification vendor their organization uses, let alone whether that vendor has been compromised? This is a supply chain attack on the identity layer, and the blast radius is enormous.
Alex: CISOs should be reaching out to their fraud teams, their identity and access management leads, and asking a very simple question. Do any of our identity proofing workflows depend on vendor-held biometric or document images, and do we have contractual visibility into how those images are stored and protected?
Jordan: Meanwhile, Aesto Health disclosed a breach affecting 9.5 million patients. Another massive healthcare breach in what's becoming a relentless 2026 for the sector. And FulcrumSec is claiming a 550-gigabyte exfiltration from Manchester Airport Group. Critical transportation infrastructure, multiple UK airports.
Alex: The healthcare breach reinforces something we've been saying on this show. The healthcare sector's combination of sensitive data, regulatory pressure, and often underfunded security programs makes it a permanent target. And the Manchester Airport breach raises questions about operational technology exposure in transportation. 550 gigabytes is not a smash-and-grab. That's sustained access and systematic exfiltration.
Jordan: Let's talk about the ransomware insider recruitment trend because it connects to the breach conversation. Dark Reading is reporting a meaningful uptick in ransomware groups actively recruiting employees at target organizations. And the logic is straightforward. As perimeter defenses improve, the human becomes the path of least resistance.
Alex: This is the insider threat program conversation that a lot of CISOs have been deferring. It's uncomfortable. It requires behavioral analytics, it touches HR and legal, and it can feel like surveillance of your own people. But the threat actors have done the math. An insider who can disable a security control or provide credentials is worth more than a zero-day. And insider-assisted attacks carry significantly higher financial and reputational damage.
Jordan: The recruitment is happening on dark web forums, encrypted messaging, sometimes even LinkedIn. It's remarkably brazen. And the pitch is simple: we'll pay you six figures to install this USB drive or provide VPN credentials. For a disgruntled employee or someone in financial distress, that's a compelling offer.
Alex: CISOs need to be working with HR on employee risk indicators, investing in user behavior analytics that can detect anomalous access patterns, and ensuring that privileged access is monitored with the same rigor we apply to external threats. This is no longer a theoretical risk.
Jordan: Let's hit the vulnerability stories quickly because both demand action. We mentioned the SonicWall SMA 1000 zero-days at the top. CVE-2026-83548 is the pre-auth SSRF with the CVSS 10. Chain it with the second vulnerability and you get remote code execution. Both are confirmed actively exploited. SonicWall has patches available. Deploy them today, and run a compromise assessment on any exposed appliances.
Alex: The second one is JFrog Artifactory, CVE-2026-82329, CVSS 9.8, authentication bypass to full admin access. WatchTowr confirmed active exploitation within days of disclosure. And critically, the default configuration is vulnerable. If you're running Artifactory in your build pipeline, and a lot of enterprises are, this is a software supply chain risk. An attacker with admin access to your artifact repository can poison your entire build process.
Jordan: Patch immediately. Audit your Artifactory access logs for any anomalous admin token creation. And if you can't patch immediately, restrict network access to the management interface.
Alex: One more governance item before we wrap. CISA is discontinuing six free cybersecurity assessment programs for critical infrastructure operators. They're citing workload constraints, which is a polite way of saying budget and staffing cuts are forcing prioritization.
Jordan: This is the quiet erosion of public sector cyber support that doesn't make headlines but has real consequences. A lot of small and mid-sized critical infrastructure operators, water utilities, regional hospitals, transit authorities, relied on these assessments as their primary means of identifying vulnerabilities. They don't have the budget to hire a Big Four firm to come in and do the equivalent.
Alex: It creates a coverage gap that adversaries will exploit. CISOs in critical infrastructure sectors need to be aware that this safety net is disappearing and plan accordingly. Whether that's sector-specific ISACs, peer networks, or reallocating budget to third-party assessments, the gap needs to be filled.
Jordan: Looking at the emerging theme this week, Alex, I see a convergence around trust layer attacks. Fire Ant is attacking trust in network infrastructure. The driver's license breach is attacking trust in identity verification. The JFrog vulnerability is attacking trust in the software supply chain. And insider recruitment is attacking trust in your own workforce.
Alex: That's exactly right. The sophisticated adversaries have moved past trying to break through your defenses. They're undermining the foundations those defenses are built on. The CISO's job in 2026 is increasingly about validating assumptions, verifying the integrity of systems and processes that we've historically taken for granted. Routers route correctly. Identity vendors protect their data. Build systems produce clean artifacts. Employees are loyal. Each of those assumptions is under direct attack.
Jordan: And the AI capability escalation with Astra is about to compress the timeline on all of it. When offensive capability becomes more accessible, the attackers who are already targeting trust layers will move faster and with more sophistication. This is the quarter to get your house in order.
Alex: Well said. That's our show for today. Show notes and links to every story we covered are at cleartext.fm. I'm Alex Chen.
Jordan: I'm Jordan Reeves. Patch your SonicWall, audit your Artifactory, and verify your router firmware. We'll see you tomorrow.
Cleartext is an automated daily podcast for CISOs and security leaders. Generated 2026-09-02.
Sources are pulled from: CyberScoop, The Record, SecurityWeek, Krebs on Security, Dark Reading, Cybersecurity Dive, BleepingComputer, Wired, Ars Technica, TechCrunch, Help Net Security, VentureBeat, Risky Business News, The Hacker News, CISA, and BankInfoSecurity.