CVE-2026-59208 | n8n Enterprise Authentication Flaw Could Allow Cross-Issuer Account Takeover

CVE-2026-59208

A token exchange vulnerability in n8n Enterprise lets valid JWTs from one trusted identity provider authenticate as users from another issuer when subject identifiers collide. Imagine typing no password at all. None. Zero keystrokes. Yet suddenly, you’re inside someone else’s account. Their workflows. Their data. Their entire digital workspace, laid bare before you. That is … Read more

JadePuffer: The First AI-Driven Ransomware Attack Explained

AI-driven ransomware

What if the hacker attacking your systems never slept, never paused, and fixed its own mistakes in 31 seconds flat? Meet JadePuffer. The Sysdig Threat Research Team just documented something terrifying: the first ransomware operation run entirely by a large language model. No human at the keyboard. No coffee breaks. Just an AI agent methodically … Read more