AI Analysis by The Wire
February 21, 2026
Focus: CYBERSECURITY
Impact: 9/10
Supply Chain Backdoor, Triple CVSS 9.9 Active Exploits, and Anthropic's AI Defense — Feb 21 Threat Roundup
The threat landscape this cycle is loud. Cline CLI 2.3.0 was hijacked via a compromised npm publish token on Feb 17, silently installing OpenClaw on developer machines worldwide — a clean supply chain hit with no malicious payload observed yet, but the foothold is there. Meanwhile BeyondTrust's CVE-2026-1731 (CVSS 9.9) is being actively weaponized across six sectors in five countries: financial services, legal, healthcare, higher ed, wholesale, and high-tech. Unit 42 confirmed web shell deployment, C2 installs, lateral movement, and data exfiltration all in one campaign. Roundcube's CVE-2025-49113 (also CVSS 9.9) was diffed and weaponized within 48 hours of public disclosure — CISA added both Roundcube flaws to KEV today.
Anthropic is fighting back with Claude Code Security, now in limited research preview for Enterprise and Team customers. It scans codebases for vulnerabilities and suggests patches — directly countering the same AI-assisted attack automation threat actors are deploying. The timing is deliberate. Elsewhere, a ClickFix campaign is pushing MIMICRAT, a custom C++ RAT with SOCKS5 tunneling, Windows token impersonation, and 22 post-exploitation commands delivered via multi-stage PowerShell chains that bypass ETW and AMSI. A Ukrainian national got 5 years for running North Korea's IT worker fraud scheme — 40 US companies infiltrated, salaries funneled to the regime's weapons program.
Key Stories
Cline CLI 2.3.0 Supply Chain Attack Installed OpenClaw on Developer Systems
The Hacker News
BeyondTrust CVE-2026-1731 (CVSS 9.9) Actively Exploited Across 6 Sectors
The Hacker News / Unit 42
CISA Adds Two Roundcube Flaws to KEV — CVE-2025-49113 (CVSS 9.9) Weaponized in 48h
The Hacker News / CISA
Anthropic Launches Claude Code Security — AI-Powered Vulnerability Scanning
The Hacker News / Anthropic
ClickFix Campaign Deploys MIMICRAT via Compromised Sites — ETW/AMSI Bypass
The Hacker News / Elastic Security Labs
Analyst Take
Three CVSS 9.9 vulnerabilities actively exploited simultaneously, a supply chain hit on a major AI dev tool, and a sophisticated RAT campaign bypassing Windows defenses — this is a high-tempo threat cycle. The Cline CLI attack is the most strategically significant: developer tooling is the new soft underbelly. Compromise the tool, own every codebase it touches. Anthropic's Claude Code Security launch reads as both a product move and a signal — AI is now a core layer in both offense and defense. The BeyondTrust campaign's sector breadth (healthcare + legal + finance) suggests a financially motivated actor with broad targeting mandates, not a surgical APT. Impact score 9 — this cycle is one coordinated 9.9 exploit away from hitting 10.