Back to the blog
daily briefSeptember 30, 2026 3 min read

Security Brief — September 30, 2026

Today's landscape features a critical command injection vulnerability in IoT hardware and a significant data breach impacting a multidisciplinary firm.

By SecureIDsafe Threat Team · SecureIDsafe Threat Research#daily-brief

Breaches

  • Auren Data Breach — The multidisciplinary firm Auren was compromised by threat actor 'TheGentlemen' on September 30, 2026.

AI Attacks

  • No new AI-specific attacks reported in the last 24 hours.

Dark Web

  • Ziroom ZHOME Command Injection — A critical CVSS 9.1 vulnerability in Ziroom ZHOME A0101 1.0.1.0 allows remote attackers to execute arbitrary commands via the /api/ZRnetwork/ping endpoint.
daily briefbreachesai attacksdark web

Build your Fortress of Sovereignty.

Single users, business teams and enterprise perimeters — the same non-bypassable security, scaled to your vault.