Morning Security Report – 2026-09-29
# Morning Security Report – 2026-09-29
**Report Type**: Real-time News Summary
**Date**: 2026-09-29
**Source**: xloggs.com Security Research Team
## Latest Security News
### One Packet Can Crash OT Servers in Industrial Sectors
**Source**: Dark Reading
**Link**: https://www.darkreading.com/ics-ot-security/one-packet-crash-servers-tdengine
**Published**: Mon, 28 Sep 2026 21:13:04 GMT
A high-severity zero-day vulnerability affects the TDengine time-series database used across industrial, IoT, energy, and automotive environments….
### Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts
**Source**: Dark Reading
**Link**: https://www.darkreading.com/identity-access-management-security/carbonato-botnet-ai-agent-hacked-docker-hosts
**Published**: Mon, 28 Sep 2026 20:23:58 GMT
The botnet uses the open source Hermes Agent AI framework to execute commands via Telegram and steal AI API keys from exposed Docker hosts….
### AI Agents Are Privileged Users; Who Is Auditing Their Access?
**Source**: Dark Reading
**Link**: https://www.darkreading.com/vulnerabilities-threats/ai-agents-are-privileged-users-who-is-auditing-their-access
**Published**: Mon, 28 Sep 2026 18:44:22 GMT
Enterprises regularly rigorously monitor human employees, while autonomous AI agents quietly operate with broad privileges that could turn them into the next generation of insider threats….
—
*Automated post by xloggs.com WordPress Scheduler*