Thehackernews iconThehackernewsSep 24, 2026 ~7 min source read

ThreatsDay roundup: AI search poisoning, coding tools leaking repos, banking trojan RemControl, and surveillance in a Russian super-app

This week’s ThreatsDay highlights threats that look ordinary: search results, coding assistants, app updates, and third-party access. Attackers are contaminating trusted paths and AI tools, and agencies warn critical infrastructure operators to limit access.

ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories

Share this story

Send the public story page.

Useful takeaways from this story.

RemControl Android banking trojan abuses Android Accessibility to overlay phishing UIs, stream screens, log keystrokes, and uses an encrypted Telegram dead-drop for C2 resolution.

U.S. CISA and FBI warn critical infrastructure operators to apply least privilege when granting ICS integrators access to avoid providing pathways attackers can exploit.

For users and orgs, ordinary interfaces—search results, app mini‑apps, login prompts, and developer tools—are recurring vectors and should be treated as potential attack surfaces.

# Overview

# Major incidents

AI-assisted banking trojan: RemControl

Researchers observed a previously undocumented Android banking trojan called RemControl targeting retail banking customers in Western Europe, the Middle East, and Canada. Distribution used fake Google Play pages that impersonated a legitimate IPTV app and were promoted via Meta ads. The malware:

  • Abuses Android Accessibility Service to inject phishing overlays over real banking apps.
  • Streams the device screen in real time, logs keystrokes, and gives full remote operator control.
  • Resolves command-and-control addresses via an encrypted Telegram dead-drop, enabling easy infrastructure rotation without recompiling.
  • Contains AI-assisted development artifacts embedded in phishing overlays and operator documentation.
  • Includes Russian-language code comments in overlay HTML files, suggesting involvement of a Russian speaker and links to known affiliate botnet conventions.

AI coding tools leaking repositories

Chinese company Z.ai disabled several ZCode features after a default setting was found to upload local code repositories to Alibaba Cloud servers in China without user consent. This incident follows a recent finding that SpaceXAI's Grok Build CLI uploaded entire Git repositories to Google Cloud Storage. Z.ai has disabled the affected workflow and opened its codebase for review. These incidents raise practical concerns for organizations that use third-party AI coding assistants with local-repository access.

U.S. agencies warn critical infrastructure operators

The FBI and CISA published a factsheet for critical infrastructure operators on working with third-party industrial control system (ICS) integrators. The agencies urged organizations to limit privileges and apply the principle of least privilege (PoLP). They warned that granting broad access to ICS integrators can create pathways attackers could exploit to cause disruptive or destructive effects to equipment and critical functions.

Surveillance capabilities in Russia's MAX super-app

# Why these stories matter

# Practical next steps

  • Restrict Android Accessibility permissions to only verified, necessary apps and monitor for apps requesting overlay capabilities.
  • For ICS and critical infrastructure, apply the principle of least privilege for integrators and third parties, and document access paths.

# Short summary This week's incidents reinforce a simple rule: ordinary interfaces and defaults frequently become attack surfaces. Tighten defaults, limit third-party access, and audit tools that handle source code or device controls.

More context around this story.

AI Tools for Security Vulnerability Detection: 2026 Guide
Dev iconDevSep 9, 2026

AI Tools for Security Vulnerability Detection: 2026 Guide

Originally published at nlocoding.com 81%of critical vulnerabilities exploited in 2025 had known fixes available for over 60 days. (CISA, 2026) Software doesn’t get hacked because attackers are clever. It gets hacked because maintainers move slow. That’s the ugly truth. AI is changing the speed equation—sometimes for b

Loading more related stories...

Keep reading in the app

Open the app view to save this story, compare related coverage, and continue from the same source.

Open in app