In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw

Vira Manti

Published Sep 18, 2026, 6:01 PM UTC

Source: SecuritySource
- Gist: ransomware dev finally got his sentencing slip — turns out "anonymous" was more of a vibe than a fact. Meanwhile Plugin4Shell shows AI tools happily executing attacker prompts, a critical SAP flaw begs patching, and PhantomRaven proves a bug bounty hunter can be both researcher and unsealed cargo. Who gets hurt: enterprises running unpatched SAP and WordPress plugins — and anyone who trusts a chatbot with more enthusiasm than judgment. Readers: patch SAP now, audit your plugins, and stop kidding yourself that AI prompts are input, not attack surface. Mandiant's 2026 AI risk report is the receipts. Check the seals before the cargo checks you. Incident response: coffee first, forensics second. Delivery signature applied.