Claude sessions hijacked, AI jolts global finance, agents get too many keys

Claude sessions hijacked, AI jolts global finance, agents get too many keys

Author: CISO Series September 1, 2026 Duration: 6:06

Claude sessions get hijacked

Anthropic is warning that common infostealer malware is stealing active Claude browser sessions, letting attackers get into accounts and burn through paid usage without needing a password or two-factor code. The company is signing affected users out, removing stored payment methods and refunding unauthorized charges. But revoking the session doesn't remove the malware, so victims still need to clean the device, change credentials and revoke other active sessions. (BleepingComputer)

AI could jolt global finance

Bank of England governor Andrew Bailey is warning G20 officials that frontier AI could destabilize the global financial system by making cyberattacks faster, cheaper and easier to scale across borders. Bailey says many countries still lack protocols for how advanced models are developed and released. He also warned that a successful attack on a small number of heavily used technology providers could undermine confidence across the entire system. (The Guardian)

AI agents get too many keys

New research from Cequence Security and Enterprise Management Associates found a sizable confidence gap around AI agent permissions. 94% of surveyed organizations believe their agents don't have more access than necessary, but only 33% actually enforce least privilege. 65% have seen an agent act outside its intended role, and 29% say that caused measurable business impact. (Security Magazine)

Get the full show notes here:
https://cisoseries.com/claude-sessions-hijacked-ai-jolts-global-finance-agents-get-too-many-keys/

Huge thanks to our episode sponsor, KnowBe4

Your employees have always been the target, but the threats they face are evolving. AI empowers cybercriminals to clone a coworker's voice, fake a video call with your CEO, or personalize a phishing email using details scraped from your own website.

KnowBe4's AI-native Security Awareness Training (SAT) fights back with 12 autonomous defense agents that allow you to deliver personalized, relevant, and engaging training that adapts as fast as the threats your people face every day. More than 70,000 organizations trust KnowBe4 worldwide. Find out why at KnowBe4.com.


Keeping up with the constant flow of threats, breaches, and innovations in digital defense can feel like a full-time job. That’s where Cybersecurity Headlines comes in. Produced by the team at CISO Series, this daily audio briefing cuts through the noise to deliver the essential stories from the information security landscape. Each episode focuses on clarity and context, transforming complex technical developments and urgent news into digestible updates you can absorb during your morning routine or commute. You’ll hear a straightforward rundown of the day’s most significant events-whether it’s a newly discovered software vulnerability, a major regulatory shift, or analysis of a trending attack method. This podcast serves as your efficient, reliable starting point, ensuring you’re informed on the critical issues that impact professionals and organizations. For those wanting to explore a topic in greater depth, the conversation continues beyond the audio, with extended analysis and resources available from the creators. Tune in for a concise, no-frills update that helps you stay ahead in a field where yesterday’s news is already ancient history.
Author: Language: English Episodes: 50

Cybersecurity Headlines
Podcast Episodes
OpenAI slows Astra, Irregular won't talk, Senate confirms Cassady [not-audio_url] [/not-audio_url]

Duration: 7:44
OpenAI slows release of Astra model citing cyber capabilities Irregular won't say if there were more rogue incidents U.S. cyber ambassador nominee Cassady confirmed in Senate Episode shownotes: https://cisoseries.com/cyb…
Faked bug reports, Meta's rogue AI, China investigates Palo Alto [not-audio_url] [/not-audio_url]

Duration: 8:28
Apple's bug bounty program overwhelmed by fake AI generated reports China launches cybersecurity review into Palo Alto Networks products Meta AI hacks external systems during cybersecurity testing Get the show notes here…
Analog Devices breach, Copilot AI worm, Teams ransomware vishing [not-audio_url] [/not-audio_url]

Duration: 9:03
Semiconductor firm Analog Devices discloses data breach Copilot for Word POC copies hidden prompts into new documents Microsoft Teams vishing attacks lead to Chaos ransomware attacks Get the show notes here: https://ciso…