A Wave of Cyber Threats Hits Global Targets, from AI-Generated Scams to Data Center Security Concerns
In a stark reminder of the ever-evolving threat landscape, multiple high-profile cyber incidents have come to light in recent days. From artificial intelligence (AI)-generated scams to data center security concerns, these attacks highlight the need for vigilance and proactive measures to safeguard against emerging threats.
OpenAI’s ChatGPT model has been used by scammers operating out of Cambodia to run a sophisticated network of investment, romance, gambling, and law enforcement impersonation scams. The AI-powered platform was leveraged to generate fake personas, translate messages, create promotional images, and forge documents. OpenAI has since banned the coordinated set of ChatGPT accounts linked to this operation, but not before they managed to deceive numerous individuals.
Meanwhile, pharmaceutical giant Amgen has confirmed that unauthorized access occurred in its third-party cloud environments in July 2026. The company detected that proprietary information and patient protected health information had been exfiltrated, although an investigation is ongoing to determine the full scope of accessed data. Amgen assures that no impact on products, manufacturing, financial systems, or patient care has been observed.
Apple’s bug bounty program has also become a victim of its own success, with a surge in low-quality AI-generated reports burying real findings. The company has introduced limits on the number of vulnerability submissions researchers can have, citing concerns over the influx of “AI-hallucinated” reports that are difficult to verify. This move comes as some cybersecurity firms, such as Bynario, have used ChatGPT to surface more than 50 macOS issues, including a privilege-escalation exploit.
The US government is also taking steps to enhance data center security by drafting rules aimed at blocking imports of new Chinese optical transceivers used inside these facilities. The move is designed to reduce the risks of data theft, malware, or service disruption in AI infrastructure and is expected to be finalized this year. This development has led to a surge in US transceiver makers’ shares, although cloud operators may face higher costs as they shift suppliers.
In other developments, a long-running supply chain compromise of the QuickFox VPN and game-accelerator app delivered a trojanized Electron installer that executed a JavaScript loader and ultimately installed the FDMTP implant on Windows systems. The loader used process-based guardrails to avoid Steam users and prefer endpoints running development, database, or crypto tools before downloading the next stage.
Lastly, multiple models of Zbtlink cellular routers come pre-loaded with an implant based on the obscure Rctl tool that phones home at boot and accepts unauthenticated root commands. This backdoor, dubbed EndlessDoors, requires no inbound access and can be controlled remotely by parties holding the C2 endpoints. Users are advised to treat affected devices as untrusted.
As these incidents demonstrate, the cybersecurity landscape is increasingly complex and dynamic. It’s essential for individuals and organizations alike to remain vigilant and take proactive measures to safeguard against emerging threats. By doing so, we can mitigate the risks of data breaches, system compromises, and other cyber-related incidents that can have far-reaching consequences.
Source: SecurityWeek — 2026-08-07