
🛡️ **DEVELOPING — Zammad Zero-Days Exploited in AI-Driven Breach; DIVD Investigating**
Published Wednesday, September 30, 2026 at 05:45 PM PT BLUF: DIVD (Dutch Institute for Vulnerability Disclosure) has disclosed unpatched zero-days in Zammad helpdesk software that were actively exploited to conduct AI-driven network attacks. Organizations running Zammad should inventory instances immediately and monitor for unauthorized access. Details remain sparse; coordinated disclosure underway. DETAILS DIVD identified zero-day vulnerabilities in Zammad (helpdesk/ticketing platform) actively exploited in network breaches. Attack vector involved automated AI agent(s) coordinating initial access and reconnaissance—same methodology used in parallel breach of DIVD’s own infrastructure. Exploitation enabled network-level compromise; AI automation suggests broad targeting potential. Patch/advisory status unknown; vendors/disclosure timeline not yet public in available material. Related threat activity: concurrent AI-augmented attack frameworks observed across financial and security sectors (credential theft, lateral movement). IMPACT ...