Cybersecurity News Roundup
SecurityWeek’s weekly cybersecurity news roundup offers a concise overview of important developments that may not receive full standalone coverage yet remain relevant to the broader threat landscape.
Government AI Platform Deal Sparks Outrage
The Defense Department’s recent award of an $821 million contract to Accenture Federal Services for its War Data Platform (WDP) is drawing criticism for allegedly undermining goals to rapidly adopt commercial AI. Sources claim the task order prioritizes a traditional consulting model over integrating best-of-breed commercial technologies.
North Korean IT Worker Breaches Federal Agency
The FBI is investigating how a North Korean IT worker successfully gained employment at an unnamed US federal government agency. North Korea places thousands of remote IT workers in Western organizations using fraudulent identities to earn wages for the regime and steal intellectual property.
Hacking a Boeing 737
A group of academic researchers demonstrated how a concealed, coin-sized hardware device can successfully compromise systems on a Boeing 737. Malicious actors who have access to a plane can attach the hacking device to an external port, giving them remote access. While safety systems on an aircraft are likely to prevent direct harm, an attacker could spoof data such as air temperature readings and the aircraft weight, and even change a plane’s flight plan and divert it from its intended route.
LexisNexis Probing Another Potential Hack
LexisNexis took its Diligence, Metabase API, and Newsdesk services offline last week after identifying unusual activity on servers managed by a third-party vendor. The company stated it disconnected the systems to contain the threat.
Hacking Commercial Refrigeration Systems
Claroty’s Team82 found vulnerabilities in two widely used commercial refrigeration systems. The researchers discovered 23 vulnerabilities in Copeland XWEB Pro controllers, including ones that can be chained to bypass security controls and achieve root-level RCE. A demonstration showed that a compromised controller could remotely manipulate refrigeration equipment, including cooling fans and compressors, and conceal the resulting temperature increase while food spoils.
DEF CON Attendee Blamed for Delta Flight Disruption
A passenger on a Delta flight from Las Vegas to Atlanta is suspected of broadcasting an unauthorized Wi-Fi network. Delta said the aircraft and its systems were never at risk and that no Delta system was hacked, while confirming that the unauthorized network was active briefly and that the crew disabled in-flight Wi-Fi for about 30 minutes during the incident.
Uber Freight Probes Cyber Intrusion
Uber Freight is investigating unauthorized access to part of its systems and repositories following claims by hackers. The company said its operations have not been disrupted and that its systems remain secure and fully operational while the investigation continues.
Rapid7 Lays Off 12% of Workforce
Rapid7 is cutting 314 jobs, or 12% of its workforce, as new CEO Wael Mohamed restructures the cybersecurity vendor around efficiency and its core platform. The company expects to spend up to $11 million on severance and benefits while redirecting resources toward product modernization and AI-driven capabilities.
CISA Warns of Gunra Ransomware
CISA has issued a new #StopRansomware advisory focused on Gunra ransomware, providing organizations with information intended to help identify and defend against the threat.
Industrial Ransomware Attacks Climb 12%
Dragos identified 1,140 ransomware incidents affecting industrial organizations worldwide in Q2 2026, a 12% increase from the previous quarter, with manufacturing accounting for 747 incidents.
Source: SecurityWeek