
Zammad
Computer programWikipedia
10
MENTIONS
4
EPISODES
4
PODCASTS
Search complete. 10 mentions across 4 episodes found for "Zammad".
Oct 8, 2026
Daily Cyber & AI Briefing — 2026-10-08
M
6:41Michael HouschHOST
Patch management, vulnerability scanning, and continuous monitoring are essential components of an effective defense.
M
6:48Michael HouschHOST
A similar story is unfolding with Zammad, an open-source help desk platform.
M
6:53Michael HouschHOST
A proof-of-concept exploit has been released for a critical vulnerability that enables session hijacking and remote code execution.
M
7:01Michael HouschHOST
For organizations relying on Zammad for customer support, this poses a high risk, not just to the integrity of the help desk system, but to the broader environment if attackers can use compromised sessions to pivot further into the network.
M
7:16Michael HouschHOST
Prompt patching and a review of session management practices are strongly advised.
M
7:21Michael HouschHOST
But it's not just software vulnerabilities that are being exploited.
This Week in AI Security - 8th October 2026
J
7:01Jeremy SnyderHOST
Um, so there's a lot of interesting stuff going on on this side, and I think we're gonna have to monitor and continue to monitor this space of, you know, agent sandbox escape, what's it doing, et cetera, et cetera, as we go over time.
J
7:12Jeremy SnyderHOST
All right, on the, uh, theme of AI agents moving into networks, the Dutch Institute for Vulnerability Disclosure, or DIVD, uh, does now say that the breach of its network was the chaining of two zero-day vulnerabilities in the open source Zammad ticketing system, which they're using on that platform, and that it was loud and, quote, "loud and very, very messy," end quote, and it was driven by an AI agent that moved autonomously and decided its next steps through navigating the DIVD network on its own.
J
7:42Jeremy SnyderHOST
And they are reporting this based on log data from their side, and so they've seen, uh, actually clear explanations of the decisions allowing them to reconstruct the incident, and some of those decisions are left in plain text, and so that's kind of interesting.
J
7:55Jeremy SnyderHOST
It started with a hijack session, moved to m-remote code execution, uh, and then moved to root access in a matter of seconds.
Authorities dismantle KillSec group
C
8:12Claire AirdHOST
A successful exploit grants attackers admin level access to the device's API management component.
C
8:20Claire AirdHOST
Hackers exploited two zero days in the Zammad help desk and issue tracking platform to breach Dutch cybersecurity nonprofit DIVD.
C
8:30Claire AirdHOST
The vulnerabilities allow attackers to hijack sessions, elevate privileges, and run remote code on Zammad servers.
C
8:36Claire AirdHOST
DIVD has reported the issues to the vendor, who's now working on patches.
C
8:42Claire AirdHOST
DIVD disclosed the hack over the weekend and said it suspects the attacker used AI tooling due to the speed at which the attack took place.
A Zammad zero-day chain let an AI agent breach the people who find zero-days
S
0:00speaker_0HOST
[upbeat music] This is Decrypted, Thursday the first of October.
S
0:07speaker_0HOST
A Zammad zero-day chain let an AI agent breach the people who find zero-days.
S
0:14speaker_0HOST
The organization that finds other people's security holes has been breached through two of them.
S
0:20speaker_0HOST
The Dutch Institute for Vulnerability Disclosure, DIVD, said this week that attackers got into its network through two previously unknown flaws in Zammad, an open-source help desk system.
S
0:34speaker_0HOST
And the way the intruder worked points to an agentic AI at the controls.
S
0:39speaker_0HOST
For UK organizations, the lesson isn't the AI, it's how much a help desk server was trusted.
S
0:57speaker_0HOST
DIVD spotted it the next day.
S
1:00speaker_0HOST
It disconnected its data center systems and brought in Merlin Security for forensics.