Threat Intelligence

Cybercriminals Get Smarter: AI, Trusted Tools and Old Vulnerabilities Fuel New Wave of Attacks

The Hacker News · 25 Aug 2026
Key Takeaway Regularly audit and patch the third-party tools, plugins, and API keys your business relies on, since attackers are increasingly targeting trusted software rather than inventing new threats.

This week's cybersecurity roundup paints a concerning picture: trusted tools are being turned against users, old vulnerabilities are getting renewed attention, and artificial intelligence is making it cheaper and easier for attackers to build effective exploits. Researchers have also found that many attacks being exploited in the wild are simpler to pull off than businesses might expect.

Key incidents flagged this week include attacks targeting industrial control systems (PLCs) enhanced by AI, security issues affecting GitLab, and the exposure of Stripe API keys that could allow unauthorised access to payment systems. These incidents underline a common theme: attackers are increasingly targeting the software and platforms that businesses rely on daily, rather than relying solely on brand-new techniques.

For small and medium businesses, the message is clear — even trusted, everyday tools and services can become attack vectors if left unpatched or misconfigured. As AI lowers the barrier to entry for cybercriminals, businesses of all sizes should assume they could be targeted, not just large enterprises.

Summarised by CISO AI from The Hacker News. We link back to every original so you can read it yourself.