← Back to News
AI Analysis by The Wire
February 22, 2026 Focus: AI-AUGMENTED THREATS & CRITICAL VULNERABILITY EXPLOITATION Impact: 9/10

AI Goes Fully Operational: 600 FortiGates Breached by GenAI Actor, CVSS 9.9 Double-Tap Active, Predator Hides in Plain Sight — Feb 22 Early Edition

The threat landscape is accelerating into fully AI-augmented offense. Amazon Threat Intelligence has confirmed a Russian-speaking, financially motivated actor breached 600+ FortiGate devices across 55 countries between January 11 and February 18, 2026 — using commercial generative AI tools across every phase of the attack cycle: tool development, targeting, and execution. No zero-days needed. Exposed management ports plus weak single-factor credentials were enough, and AI gave an otherwise unsophisticated actor the scale to exploit them globally. This is the template now. Low-skill floor, AI ceiling, global reach.

On the vulnerability exploitation front, two CVSS 9.9 critical flaws are actively burning. BeyondTrust CVE-2026-1731 has graduated from initial exploitation to full ransomware campaign infrastructure — web shells, backdoors, C2 implants, lateral movement, and data theft confirmed across financial services, healthcare, legal, and higher education in the US, France, Germany, Australia, and Canada. Simultaneously, Roundcube CVE-2025-49113 was weaponized within 48 hours of public disclosure and is now KEV-listed by CISA alongside a companion XSS flaw. The 48-hour weaponization window is the headline stat — defenders have less than two days after a patch drops before active exploitation begins.

The mobile and supply chain vectors are also live. Intellexa's Predator spyware has been confirmed hooking iOS SpringBoard to suppress the mic and camera activity indicators — streaming feeds to operators while showing users a clean screen. On the supply chain side, the Cline CLI 2.3.0 npm compromise silently pushed OpenClaw onto developer machines via a poisoned postinstall script. And PromptSpy, the first confirmed Android malware using Google's Gemini model at runtime, adapts its persistence behavior per-device. The AI-native threat era is not coming — it's here.

Impact Score
9/10
Key Stories
AI-Assisted Actor Breaches 600+ FortiGate Devices in 55 Countries
The Hacker News / Amazon Threat Intelligence
BeyondTrust CVE-2026-1731 (CVSS 9.9) Now Deployed in Ransomware Campaigns
BleepingComputer / Palo Alto Unit 42
CISA KEV: Roundcube CVE-2025-49113 (CVSS 9.9) Weaponized in 48 Hours
The Hacker News / CISA
Predator Spyware Hooks iOS SpringBoard to Hide Mic and Camera Indicators
BleepingComputer
Cline CLI 2.3.0 Supply Chain Attack + PromptSpy AI-Native Android Malware
The Hacker News / BleepingComputer
Analyst Take
Three signals converging right now that define the 2026 threat posture. First: the democratization of sophisticated attacks is complete. The FortiGate campaign confirms that commercial AI tools eliminate the technical skill barrier entirely — any motivated actor with a credit card can now run globe-spanning infrastructure attacks. Second: the 48-hour weaponization clock on Roundcube means patch management SLAs built around weekly cycles are structurally broken. Organizations that don't patch critical RCEs within 24 hours are operating in a permanent exposure window. Third: the Predator iOS indicator suppression is the most disturbing long-term signal — if spyware can reliably suppress OS-level privacy indicators, users have no reliable trust anchor on mobile. The combination of AI-assisted offense, sub-48-hour weaponization, and indicator suppression on trusted platforms represents a qualitative shift, not just an incremental escalation.