ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit, and More
New threats in the cybersecurity landscape this week include a Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M reward for Mabna Institute cyber theft campaign, and AI-assisted exploit research.
Intelligence analysis by Qwen 2.5 (3B)

This week's ThreatsDay bulletin covers various security issues including a new RCE vulnerability in Gogs version 10.0, the U.S. DoJ charging 17 Iranians for a massive cyber theft campaign, and an AI-assisted exploit research update.
This week's ThreatsDay bulletin covers new security issues like a driver that can be tricked into doing bad things, a big group of people who stole lots of data from universities, and an AI that helps make attacks more sneaky.
Analysis
{"#Signed Driver Abuse":"Check Point researchers have discovered that Microsoft Defender's BTR.sys driver can be repurposed as a universal kernel operation engine, allowing attackers to bypass endpoint security solutions. This is possible because BTR.sys is a legitimate signed component and signature-based blocking is ineffective.","#U.S. DoJ Cyber Theft Campaign":"The U.S. Department of Justice has charged 17 members of the Mabna Institute for their cyber theft campaign targeting universities, private sector companies, government agencies, and NGOs. The defendants have stolen over 31 TB of academic data and intellectual property.","#AI-Assisted Exploit Research":"GLM-5.3 AI-assisted exploit research has been used to deliver various malware payloads such as Cruciferra, Remus Stealer, Vidar Stealer, Okobot, LegionLoader, and BabaDedaLoader. This highlights the increasing use of AI in cyberattacks."}
Key points
- New RCE vulnerability in Gogs version 10.0
- U.S. DoJ charges 17 Iranians for cyber theft campaign targeting universities and private sector companies
- AI-assisted exploit research used to deliver various malware payloads
As cybersecurity measures improve, the number of successful attacks will likely decrease. This means fewer stolen data and less damage to systems.
Even with better security, new threats like AI-assisted attacks will continue to emerge. It's important for everyone to stay vigilant against these types of risks.



