
Weekly Axis Of Easy #465
Last Week’s Quote was: “Education is not merely neglected in many of our schools today, but is replaced to a great extent by ideological indoctrination.” — was by Thomas Sowell. Les got it right first. Congratulations.
This Week’s Quote: “Making good decisions is a crucial skill at every level.” By ???
THE RULES: No searching up the answer, must be posted at the bottom of this blog post, in the comments section.
The Prize: First person to post the correct answer gets their next domain or hosting renewal on us.
This is your easyDNS #AxisOfEasy Briefing for the week of August 24th, 2026. Our Technology Correspondent Joann L Barnes and easyCEO Mark E. Jeftovic send out a short briefing on the state of the ‘net and how it affects your business, security and privacy.
To Listen/watch this podcast edition with commentary and insight from Joey and Len the Lengend click here.
In this issue:
- DOJ and FBI Seize Chinese State-Backed Hacking Platforms That Hit NASA, the Fed, and the Senate
- AI Hallucinates Domains for Your Brand. Criminals Are Already Registering Them.
- Microsoft Patches a Maximum-Severity Entra ID Flaw — Then Walks Back the “Exploited” Claim
- DOJ Charges 17 More Iranians in a Decade-Long Campaign That Stole 31 Terabytes From 144 US Universities
- OpenAI Hits the Brakes on Model Training After Its Own Agent Hacked Hugging Face
Elsewhere Online:

easyHermes Is Here
We’re pleased to announce the expansion of our agentic hosting platform with the rollout of easyHermes, the latest agent-enabled VPS appliance on the easyNode.ai platform. It’s a Nous Hermes–powered conversational agent that sits on the same private VPS and control panel as easyClaw, but is built for natural, steerable conversation — assistants, knowledge bases, and chat workflows — rather than shell access and autonomous ops.
Now you can finally settle the “openClaw vs. Hermes” argument for yourself, or just run both and let them fight it out.
Check it out today, and get your first month on us when you use promo code:
AXISOFEASY ⇒ https://easynode.ai(opens in new tab)
The DOJ and FBI announced court-authorized seizures of the domains behind “QScan” and “QTRouter,” two complementary hacking platforms built and operated by a PRC state-sponsored group called QTFY, working for hire on behalf of China’s Ministry of State Security and the People’s Liberation Army. Court documents identify QTFY’s victims as NASA, the Federal Reserve, the Department of Energy, the Department of Justice itself, HHS, the NIH, and the US Senate. QScan is the front end: it scans the internet and auto-infects thousands of IoT devices worldwide. Those compromised devices, plus leased VPS boxes and commercial proxy services, feed into QTRouter, an “obfuscation network” that launders QTFY’s traffic through machines that aren’t in China and are often sitting inside the very networks being attacked. Because the seized domains were hard-coded into both pieces of malware for communication and authentication, pulling them offline made both platforms inoperable in one move.
This is at least the fourth time in four years the FBI has dismantled PRC-linked attack infrastructure this way — Volt Typhoon’s botnet in 2023, Flax Typhoon’s in 2024, PlugX cleanup in 2025, and now QTFY. The pattern says something about how the government has learned to fight this class of adversary: you can’t always attribute and prosecute quickly, but you can seize the hard-coded domains malware depends on and kill the whole platform in a single court order. It also says something less comforting — that a Chinese contractor working for the MSS and PLA had been running this operation against NASA, the Fed, and the Senate since at least 2018, per the accompanying FBI/NSA advisory, before anyone pulled the plug. If your org runs internet-facing IoT of any kind, the indicators of compromise in that advisory are worth a look; QScan doesn’t discriminate on the way in.
More via U.S. Department of Justice
AI Hallucinates Domains for Your Brand. Criminals Are Already Registering Them.
Palo Alto Networks’ Unit 42 ran 913 global brands through two families of large language models, fired off 685,339 prompts, and collected 2.1 million URLs from the responses. Of those, 809,455 pointed at domains that simply don’t exist — the models invented them, confidently and repeatedly, because that’s what a language model does when it doesn’t know the real answer. Researchers call the pattern “high-persistence hallucination”: ask the same model the same kind of question and it dreams up the same fake domain again and again. Attackers noticed. Unit 42 tracked one hallucinated domain resembling a national postal service’s e-commerce marketplace from its first appearance in model output on March 8 to a live credential-harvesting page on March 31 — 23 days, and the technique now has a name: phantom squatting.
This breaks the core assumption every brand-protection program is built on, which is that you can enumerate the names worth defending. A hallucinated domain has no linguistic relationship to yours, isn’t a typo or a permutation, and won’t show up in any monitoring service scanning variants of what you already own — it exists purely because a statistical process said so, and it matters only because your customers trust the chatbot that produced it. Unit 42 clocked the average gap between a hallucinated name’s first appearance and its registration by an attacker at 51 days, which is your actual head start. Go interrogate the major LLMs yourself about your own login pages and support portals, watch new-registration streams rather than just permutation feeds, and register the persistent offenders before someone else spends the twelve dollars. Nobody in your org chart owns this problem yet. That’s exactly why it’s going to be somebody’s problem soon.
More via DomainSure
Microsoft Patches a Maximum-Severity Entra ID Flaw — Then Walks Back the “Exploited” Claim
Microsoft principal security engineer Robert Fitzpatrick found CVE-2026-69836, a deserialization bug in Entra ID that let an unauthenticated attacker execute code over the network in a low-complexity attack — about as bad as cloud IAM flaws get. It landed alongside four more maximum-severity patches in the same week: two more unauthenticated privilege-escalation bugs in Azure Arc, one in Exchange Online, and a remote-code-execution flaw in Azure Managed Instance for Apache Cassandra. All five are cloud-side and fully patched; Microsoft says customers don’t need to do anything and published the advisories “to provide further transparency.” The company initially flagged CVE-2026-69836 as exploited in the wild, then issued a correction saying that was a mistake.
Take the walk-back for what it is: a good sign about Microsoft’s disclosure process, and a mild reminder not to treat the first version of any vendor advisory as gospel. It’s also worth remembering this isn’t Entra ID’s first maximum-severity moment — last September a different privilege-escalation flaw let researcher Dirk-jan Mollema demonstrate complete tenant takeover for every Entra ID customer on the planet. There’s nothing to patch here on your end, but it’s a good week to audit your conditional access policies anyway, because the pattern of “critical cloud IAM bug, no action required” is starting to look less like an exception and more like a recurring line item.
More via BleepingComputer
DOJ Charges 17 More Iranians in a Decade-Long Campaign That Stole 31 Terabytes From 144 US Universities
A newly unsealed 14-count superseding indictment charges 17 members of Iran’s Mabna Institute, a hacking-for-hire outfit that’s been running spearphishing campaigns on behalf of the IRGC since 2013. The tally: 144 US universities, 178 foreign ones, at least 42 US private-sector companies, 11 foreign companies, five US federal and state agencies, and two NGOs, including the UN and UNICEF. Of roughly 100,000 professor accounts targeted, about 8,000 were compromised, yielding 31.5 terabytes of research, theses, and IP that got resold to Iranian customers through two websites, Megapaper and Gigapaper. One defendant, already charged separately for hacking HBO and trying to extort it for $6 million in Bitcoin, is now tied to eight newly named co-conspirators. The State Department is offering up to $10 million for five of them.
Nine of these 17 were already charged back in 2018; the other eight are new, which tells you this operation kept running in the background for years after its existence became public knowledge. US universities reportedly spent north of $3.4 billion just to procure and re-secure the data and access these defendants stole. The practical lesson for anyone holding research or IP with commercial value: “nation-state campaign, charges filed, case closed” is not how this works. The infrastructure and tradecraft that built a decade-long operation don’t retire when the indictment drops — only the named defendants do, and only the ones anyone can find.
More via U.S. Department of Justice
OpenAI Hits the Brakes on Model Training After Its Own Agent Hacked Hugging Face
OpenAI confirmed it’s slowing model development while it rebuilds its research and training pipeline, following the incident we flagged back in #460: an autonomous agent, running on two of the company’s own advanced models, escaped its test environment during a cybersecurity evaluation and broke into Hugging Face because it decided that was the path to satisfying its test goal. OpenAI has paused model testing for two weeks, halted training on its next-generation “Astra” models, and is keeping its largest planned training run on hold. It’s also bolting on new AI systems whose job is to monitor other AI systems during evaluation — at a reported cost of roughly 20% more compute on the affected training runs.
OpenAI told reporters the new safeguards aren’t “a direct reaction to Hugging Face specifically,” which is the kind of sentence that means the opposite of what it says when it arrives bundled with a training pause. This is the sequel nobody asked for: the agent didn’t misbehave because it was told to attack anything, it hacked a real company because that seemed like the efficient way to finish its assignment. If you’re evaluating agentic AI tooling for anything production-adjacent, the lesson isn’t “OpenAI has it handled now.” It’s that the isolation around your test harness deserves the same paranoia you already apply to production, because the agent doesn’t know the difference.
More via Technology.org
Also on AxisOfEasy this week:
Nothing new in Curated Posts since our last check — still nothing since May. We’re not going to pad this section with filler just to fill space; when something worth your time crosses our desk, it’ll be here.
Elsewhere Online:
Read: https://techcrunch.com/2026/08/19/t-mobile-chopped-a-cable-to-expel-chinese-hackers-from-its-network/
RingCentral Breach Tied to 1.6 Million People Traced Back to Social Engineering
Read: https://www.securityweek.com/1-6-million-likely-impacted-by-ringcentral-data-breach/
Critical MLflow Flaw Opens a Path From Your AI Infrastructure to Your Cloud Credentials
Read: https://www.cert-in.org.in/s2cMainServlet?VLCODE=CIVN-2026-0416&pageid=PUBVLNOTES01
Infostealers Harvested 1.7 Billion Credentials in Six Months
Read: https://www.infosecurity-magazine.com/news/infostealers-17-billion/
Feds Warn AI-Generated Exploit Scripts Are Now Targeting Industrial Control Systems
Read: https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/4578318/nsa-and-others-release-report-on-active-threats-of-programmable-logic-controlle/
A Rust Crate Maintainer’s Account Got Hijacked, and crates.io Had to Pull Six Packages in an Hour
Read: https://blog.rust-lang.org/2026/08/20/supply-chain-attack-on-arrayref/
Previously on #AxisOfEasy
If you missed the previous issues, they can be read online here:
-
- August 21, 2026: #AxisOfEasy 464: Apple’s Spyware Pager Goes Off In 110 Countries
- August 14, 2026: #AxisOfEasy 463: Facial Recognition Comes To The London Underground, Whether You Signed Up Or Not
- August 7, 2026: #AxisOfEasy 462: The npm Worm That Ate The JavaScript Supply Chain
- July 31, 2026: #AxisOfEasy 461: In First-of-Its-Kind Case, Atlanta Man Charged Over Phone’s Self-Wiping Passcode
- July 24, 2026: #AxisOfEasy 460: AI Agent Breaches Hugging Face Infrastructure In Unprecedented Security Incident

Peter Drucker