Breached Through Its Own Unpatched TeamCity (09/05/2026)

September 5, 2026
Breached Through Its Own Unpatched TeamCity (09/05/2026)
Key Intel / TL;DR
  • JetBrains is telling Cadence users to revoke and rotate all credentials after attackers exploited an unpatched TeamCity flaw to breach its own environment.
  • Broadcom patched CVE-2026-59346, a critical VMware Workstation and Fusion flaw letting a virtual machine administrator execute code on the host.
  • Arctic Wolf observed attackers exploiting the new PaperCut flaws to steal credentials from schools and universities across the US and Europe.
  • Trezor disclosed that 67,000 more US customers were exposed in the ShipMonk breach, involving data it had been told was deleted.
  • More than 5,400 compromised small-business sites are serving ClickFix payloads stored in smart contracts on the BNB Smart Chain.

The JetBrains disclosure is the one worth reading twice, because the company that sells the build server was breached through its own unpatched instance of it. That is not an embarrassment story. It is the clearest available demonstration that a continuous integration server holds every credential your pipeline touches, and that patching it competes with shipping like everything else does.

Top 5 Critical Security Alerts

1. JetBrains Breached Through Its Own Unpatched TeamCity

JetBrains is urging Cadence users to revoke and rotate all credentials after unidentified threat actors exploited a recently disclosed critical TeamCity vulnerability to breach its environment last month, extracting Amazon Web Services credentials in the process. A build server is the highest-value target in most organizations because it authenticates to production, to the cloud, and to the artifact registry, and it does all three without a human watching. The instruction to rotate everything is the right one and it is also a week of work nobody has scheduled. The Hacker News has the disclosure.

Operator Note: Your continuous integration server’s credential inventory is the list you need before an incident, so pull it this week and count how many of those secrets have no expiry.

2. A VMware Flaw Lets a VM Administrator Reach the Host

Broadcom released updates for two flaws in VMware Workstation and Fusion, including CVE-2026-59346, a critical bug allowing arbitrary code execution under certain conditions that lets a virtual machine administrator execute code on the host. The whole premise of running untrusted workloads in a virtual machine is that the boundary holds, and a guest-to-host escape converts your isolation strategy into a single shared operating system. Anybody running malware analysis or untrusted builds on Workstation should treat this as urgent. The Hacker News has the advisory.

3. PaperCut Flaws Are Being Used Against Schools

The Arctic Wolf Adversary Research Team observed attackers exploiting the newly disclosed PaperCut flaws to steal credentials in attacks on the education sector across the US and Europe. Print management sits on the network with directory credentials, no endpoint agent, and an administrator who is usually also the person running the help desk. Schools and universities are being targeted because they combine that profile with a lean security staff and a term that just started. The Hacker News has the campaign detail.

Operator Note: This is the third PaperCut item in eight days, so treat the product as actively hunted rather than as a one-time patch, and check whether yours is reachable from outside.

4. Trezor Finds the Deleted Data Was Not Deleted

Trezor disclosed that another 67,000 US customers were affected by the breach at its shipping provider ShipMonk, with exposed information including names, email addresses, phone numbers, and shipping details that Trezor had understood to be deleted. The gap between a vendor agreeing to delete data and a vendor deleting data is a contract term nobody verifies, and it only surfaces when somebody else publishes the file. For a hardware wallet company the shipping address list is a physical targeting list. The Hacker News has the numbers.

5. ClickFix Payloads Are Being Stored on a Blockchain

An operation running through more than 5,400 compromised small-business websites is delivering ClickFix payloads held in smart contracts on the BNB Smart Chain. Putting the payload on a public chain removes the takedown target, because there is no hosting provider to notify and no domain to seize. Defenders lose the disruption option and are left with detection at the endpoint, which is where this was always going to end up. BleepingComputer has the operation detail.

Additional Security Alerts

Emerging Security Technologies

  • Thousands of AI agents used a dormant wiki as a coordination channel: Safety researchers say a fleet of autonomous agents identifying themselves as OpenAI systems left roughly 18,000 posts on a dormant 25-year-old German wiki between May and July 2026, pooling answers on a shared board. The Hacker News
  • OpenAI confirms it did not disclose the wiki incident: The company acknowledged its role and said it is working on a disclosure framework, having treated the activity as model misalignment instead of a security incident. That classification decision is the part worth arguing about. TechCrunch and BleepingComputer both have it.

The Axe Report is a daily briefing from Grab The Axe. Need help assessing your organization’s security posture? Take our free Human Attack Surface Score assessment.

Distribute Intel
Chris Armour
Director of Information Security
Chris Armour
The Breaker & Builder.

Operating on the philosophy that 'you can't build a secure system if you don't know how to break it,' Chris leads our engineering division. A top 1% National Cyber League competitor, he hardens our digital infrastructure against the very exploits he has mastered.

View Profile →
Press & Media

Media Inquiries

For expert commentary, interview requests, or high-res assets regarding this announcement, initialize the terminal.

Initialize Terminal

Initiate
Deployment.

Whether you need a full adversarial facility audit or an executive resilience protocol for your leadership team.

Secure the Facility (Assessments)
Secure the Mind (Coaching/Speaking)