On-Prem Red Team AI — engineering notes from the front line
Deep dives, comparisons and field reports on autonomous red team AI, generative pentesting, deep-packet traffic intelligence, NIS2/DORA, and how to operate them air-gapped.
- Windows Zero-DayCVE-2026-85880Privilege Escalation
Windows Zero-Days CVE-2026-85880 & CVE-2026-81963: Two SYSTEM Escalations Rated 'Important'
Microsoft's two actively exploited September 2026 zero-days, CVE-2026-85880 and CVE-2026-81963, are both local privilege escalations to SYSTEM — and both scored only 7.8.
8 min read - SAP OVERPASSCVE-2026-44756Pre-Auth RCE
SAP OVERPASS CVE-2026-44756: a CVSS 10 RCE Before SAP Checks Who You Are
CVE-2026-44756 (OVERPASS) is a CVSS 10 memory-corruption RCE in the SAP kernel, reachable pre-auth over HTTP, SAP GUI and RFC. Patch it, hunt it, catch it on the wire.
10 min read - Agentic AICredential HarvestingAutonomous Attack Framework
AI Agents Harvested Thousands of Credentials in Under Six Hours
Google's GTIG watched a financially motivated actor use a multi-agent AI framework to build and run a mass credential-harvesting campaign in under six hours — no human in the loop. What it changes for defenders.
8 min read - Magento Zero-DayAdobe CommerceCVE-2026-75650
StyleSmuggler: the Magento zero-day (CVE-2026-75650) backdooring stores
CVE-2026-75650 is a CVSS 10.0 unauthenticated RCE in Magento and Adobe Commerce, exploited in the wild since 4 September to plant a Rust backdoor that beacons as NTP. Here is how it works and how to catch it.
9 min read - GPT-6 AstraAI Exploit GenerationChrome Zero-Day
GPT-6 Astra Writes Working Exploits — and CVE-2026-85046 Is the Live Test
OpenAI's GPT-6 Astra crossed the 'Critical' cyber threshold, scoring 100% on ExploitBench. AI exploit generation just collapsed the patch window — CVE-2026-85046 shows why.
8 min read - Kestra RCECVE-2026-49869Authentication Bypass
Kestra CVE-2026-49869: One Path Ending in /configs Is Root Without a Password
Kestra CVE-2026-49869 is a CVSS 10.0 unauthenticated RCE: a suffix check in the auth filter turns any /configs-ending path into root. KEV-listed, exploited for cryptomining. Fix + hunt runbook.
9 min read - AI-Generated ExploitsOT SecurityPLC Security
AI Ported a Pre-Auth PLC Exploit for $535: Reading Forescout's WAGO Experiment
Forescout used Claude to port a pre-auth RCE exploit (CVE-2021-31886) between WAGO PLC models for $535 in under a day. What AI-lowered exploit cost means for OT defenders who can't patch.
10 min read - Starlette BadHostCVE-2026-48710FastAPI Security
BadHost (CVE-2026-48710): the FastAPI Auth Bypass Now Chained to Ransomware
'BadHost' (CVE-2026-48710) is a one-character Host-header auth bypass in Starlette, the framework under FastAPI, vLLM and LiteLLM — CVSS 6.5, now KEV-listed and chained to ransomware.
9 min read - AI Coding AgentsGitSpawnSupply Chain
GitSpawn: A Malicious Git Config Makes AI Coding Agents Run Attacker Code
GitSpawn: a repo's own .git/config can make Claude Code, Codex, Cursor and other AI coding agents run attacker code outside the sandbox, with no prompt. What to check now.
10 min read