ZeroFox Daily Intelligence Brief - September 11, 2026
|by Alpha Team

ZeroFox Daily Intelligence Brief - September 11, 2026
ZeroFox Intelligence collects, curates, and analyzes information derived from open and proprietary sources. Here is today’s daily roundup to give you and your clients an advantage over the adversary.
Brief Highlights
- AI Agents Enable Rapid Exploitation of Global PaperCut Vulnerabilities
- Anthropic Disrupts Russian, Chinese AI Campaigns Targeting Its Claude Models
- Geopolitical Flashpoint: Bab al-Mandab Strait Likely to be Iran’s Second Strategic Chokepoint
AI Agents Enable Rapid Exploitation of Global PaperCut Vulnerabilities
What we know: A suspected Russia-linked threat actor has reportedly used hundreds of AI agents to automate a global campaign exploiting CVE-2026-81578 and CVE-2026-82078 in PaperCut NG/MF Application Servers.
Context: The campaign compromised at least 440 instances across 395 organizations in 48 countries, including 11 organizations in 26 seconds and a U.S. high school reaching domain-admin in seven minutes. The campaign rapidly escalated from initial access to credential theft and domain-admin compromise, with education organizations and the United States most affected, followed by other countries.
Analyst note: Explicit targeting restrictions given by threat actors were reportedly not consistently enforced, likely presenting actors with unintended operational consequences.
Anthropic Disrupts Russian, Chinese AI Campaigns Targeting Its Claude Models
What we know: Anthropic has disrupted operations involving Russian- and Chinese-linked actors, including state-backed hackers and cybercriminals, that misused Claude for cyberattacks, espionage, and malicious activity that could support biological and conventional weapons development.
Context: A Russian-linked operation attributed to Midnight Blizzard used Claude for phishing, malware development and evasion, and intelligence collection targeting Ukrainian government, military, and diplomatic organizations. Separately, seven Chinese AI labs reportedly attempted to extract Claude's capabilities through large-scale illicit distillation. Other actors used the model for weapons design, procurement, and biological research with potential weapons applications. Anthropic also identified ShinyHunters among cybercrime actors misusing Claude.
Analyst note: The presence of ShinyHunters alongside state-linked actors demonstrates that frontier AI is likely to be increasingly adopted by both cybercriminals and state-sponsored groups. The attempts by Chinese AI firms to replicate Claude also indicate that AI models themselves are becoming targets for intelligence gathering and technology acquisition.
Geopolitical Flashpoint: Bab al-Mandab Strait Likely to be Iran’s Second Strategic Chokepoint
Status and Analysis: The Bab al-Mandab Strait and wider Red Sea are almost certainly becoming the second strategic chokepoint, after the Strait of Hormuz (SoH), in a widening Iran-linked maritime crisis. Iran-aligned Houthi forces have captured the Red Sea port of Al-Makha (Mokha) and advanced toward the Hanish Islands along Yemen's western coast.
- Geography: The Houthis’ position is very likely to enable artillery-range disruption of shipping, not just missile and drone attacks. The Houthis are also likely to threaten, harass, or tax shipping without imposing a formal blockade or even using artillery. Bab al-Mandab is about 28 km wide near Mokha and narrows to about 7.5 km near the Hanish Islands.
- Traffic: Since Bab al-Mandab has absorbed traffic diverted from the SoH, the Houthi advance toward the strait is strategically significant. On September 10, 26 commodity vessels transited Bab al-Mandab, against only seven through the SoH the same day, versus a 10-day SoH average of 15.
- Insurance risk: Transit costs through the Red Sea for even non-Saudi-linked vessels are likely to rise toward SoH levels, where cargo insurance now represents a considerable percentage of shipped-cargo value, on top of the per-transit war-risk premium.
- Saudi-linked shipping companies were already being asked to pay more for war-risk insurance as underwriters grew increasingly concerned about the danger to vessels operating in and around the Red Sea. In response, on September 10 Saudi Arabia announced a national Marine War Risk Insurance Pool, led by Saudi Re, to cover ships and cargo operating in the Red Sea and Arabian Gulf.
- Humanitarian risk: Beyond the economic and maritime consequences, the Houthi expansion across Yemen could further increase humanitarian pressures and the risk of renewed civil-war dynamics in an already fragile region.
Saudi Arabia and U.S. posture: Saudi Crown Prince Mohammed bin Salman (MBS) reportedly called U.S. President Donald Trump twice on September 10 to urge U.S. strikes against the Houthis; that request was reportedly declined in favor of increased support for Saudi Arabia instead. Saudi Arabia has leaned on Red Sea alternatives, routing crude through Yanbu via the Saudi East-West Oil Pipeline, while the SoH remained fragile. With the Houthis reportedly striking that pipeline and seizing Al-Makha, this route is now threatened as well.
- Only one U.S. guided-missile destroyer, the USS Gonzalez, is currently operating in the Red Sea, while U.S. carrier assets are positioned farther east in the Arabian Sea in support of the Iran campaign.
- The United States is likely to favor a low-commitment, multinational surveillance and intelligence-sharing arrangement for the Red Sea over a standing combat coalition.
THREAT ACTOR WATCH: ZaWoo Ransomware Group
- Target: Small and mid-sized enterprises, majority of which are concentrated in German-speaking nations. Technology is the most targeted industry followed by manufacturing. The victims span across financial services, education, real estate, professional services, and non-profit.
- Method: Data theft and encryption for double extortion.
- Aim: Financial gain through the high-volume publication of low-profile victims.
- Victim Confirmation: Healthcare technology provider Zenith Technology (ZenTech).
- Analyst Note: ZaWoo is likely pursuing rapid reputational gain and is likely to continue targeting mid-sized enterprises with weak security controls to drive up its claim volume.
DEEP AND DARK WEB INTELLIGENCE
Exploit user betway: Well-regarded threat actor “betway” has advertised a dataset allegedly containing 3.5 million records of France-based customers “interested” in luxury goods and services on dark web forum Exploit. The dataset allegedly includes names, phone numbers, email addresses, and country. The actor is asking USD 4,000. The actor claims that they collected the data through advertising campaigns.
VULNERABILITY AND EXPLOIT INTELLIGENCE
Windows defender zero-day patch bypass: Security researcher “Nightmare Eclipse” has released an alleged proof-of-concept exploit dubbed “ShieldCrash”, claiming to bypass Microsoft's patch for CVE-2026-69414 (ShieldBreak), a local privilege escalation vulnerability in the Microsoft Malware Protection Engine. The researcher claims that ShieldCrash can enable arbitrary file reads under the SYSTEM security context on fully patched Windows systems. If legitimate, successful exploitation is very likely to result in credential theft, persistence, and privilege escalation.
Cisco FMC flaws exploited by threat actors: Two recently patched Cisco Secure Firewall Management Center (FMC) vulnerabilities have been actively exploited by three distinct threat clusters. CVE-2026-20079 is an authentication bypass enabling unauthenticated remote attackers to execute scripts as root, and CVE-2026-20316 is a static credential flaw enabling low-privileged access. Cisco has released hotfixes for both vulnerabilities.
- Qilin ransomware affiliates reportedly exploited the static credential flaw to harvest Active Directory and MySQL credentials, deploy proxy and tunneling tools, and encrypt victim endpoints.
- The Russian Sandworm APT group affiliates reportedly exploited both vulnerabilities to deploy a variant of the Cyclops Blink backdoor, enabling persistent access, credential theft, and network traffic interception.
- A third cluster reportedly exploited the authentication bypass to deploy a web shell and steal user authentication data from internal databases.
Affected products: Cisco Secure FMC Software and Cisco Security Cloud Control (SCC) Firewall Management, regardless of device configuration
Tags: DIB, tlp:green