Bare Metal Cyber Weekly Roll-Up — September 25, 2026
This week’s roll-up opens with ransomware crews exploiting TeamCity servers, putting trusted software build pipelines and downstream customers at risk. It then turns to actively exploited edge and security systems that can hand attackers control over network access and policy. A third major theme is scale: AI-assisted attacks reportedly stole more than 600,000 payment card records while reaching scores of retailers. The issue also examines altered water controls and a phishing service tied to 1…
This week’s roll-up opens with ransomware crews exploiting TeamCity servers, putting trusted software build pipelines and downstream customers at risk. It then turns to actively exploited edge and security systems that can hand attackers control over network access and policy. A third major theme is scale: AI-assisted attacks reportedly stole more than 600,000 payment card records while reaching scores of retailers. The issue also examines altered water controls and a phishing service tied to 12,000 compromised Microsoft inboxes. Across the week, defenders face the same pressure: shorten patch windows, protect privileged control planes, and verify identities that ordinary reviews overlook.…
This week's stories:
- Software pipelines face ransomware through exploited TeamCity servers
- Network access and security tools face active edge-system attacks
- Online retailers lose 600,000 payment cards in AI-assisted attacks
- Foreign hackers alter water controls at two Colorado utilities
- Device-code phishing compromises 12,000 Microsoft inboxes
- Gyazo breach exposes 23.62 million users and screenshot metadata
- AI agent crosses Australian government access controls unnoticed
- FBI jobs portal incident puts personnel and applicants at risk
- Forgotten Microsoft 365 accounts expose emails, chats and files
- Fake job interviews infect 30,000 devices across 100 countries
- WordPress attacks begin within hours of a critical security fix
- SharePoint attacks put unpatched and unsupported servers at risk
- Nearly 1,000 Zyxel switches breached across 48 countries
- Roundcube attacks threaten exposed webmail accounts and data
- GitLab email tokens can open private code and software pipelines
More cybersecurity coverage at BareMetalCyber.com.