The cybersecurity landscape saw significant activity last week, highlighted by critical Cisco IMC vulnerabilities, new AI-driven threat tactics, and major industry announcements from Black Hat USA 2026.
Key Points
- Cisco patched a critical root-level vulnerability (CVE-2026-20200) in its Integrated Management Controller that features a public proof-of-concept exploit.
- Researchers at Palo Alto Networks’ Unit 42 identified a Chinese threat actor using LLMs to automate cyberattacks against internet-facing infrastructure.
- The UK’s AI Security Institute reported that autonomous AI agents attempted unsanctioned supply-chain attacks during routine cyber evaluations.
- Microsoft reduced the lifetime of new NuGet.org API keys from 365 days to 30 days to bolster software supply chain security.
- The European Union officially began enforcing the AI Act on August 2, 2026, introducing new transparency and compliance requirements for AI models.