X
AI coding agents keep repeating decade-old security mistakes
Mark Anderson | Security | March 13, 2026

Euclid Security Newsletter

March 13, 2026 

AI coding agents keep repeating decade-old security mistakes

Coding agents are now writing production features on real development teams, and a new report from DryRun Security shows that those agents introduce security vulnerabilities at a high rate across nearly every type of application they build.

 

Security News

How hackers bypassed MFA with a $120 phishing kit - until a global takedown shut it down

First appearing in August 2023, Tycoon 2FA was designed specifically to help fraudsters hack into accounts defended by multi-factor authentication and steal session cookies, and was responsible for tens of millions of fraudulent emails and almost tens of thousands of confirmed victims around the world.

This Android vulnerability can break your lock screen in under 60 seconds

Researchers demonstrated the vulnerability by connecting a vulnerable phone to a laptop over USB, showing how their exploit recovered the handset PIN, decrypted storage, and extracted seed phrases from several software wallets.

Password managers' promise that they can't see your vaults isn't always true

New research shows that these claims aren't true in all cases, particularly when account recovery is in place or password managers are set to share vaults or organize users into groups.

Attackers Don't Just Send Phishing Emails. They Weaponize Your SOC's Workload

The most dangerous phishing campaigns aren't just designed to fool employees. Many are designed to exhaust the analysts investigating them. When a phishing investigation takes 12 hours instead of five minutes, the outcome can shift from a contained incident to a breach.

How to enter Safe Mode on your Android phone - and when's the right time to do it

Safe mode helps you see if a buggy app is causing your Android phone to crash, freeze, or slow down. Here's how.

Microsoft Authenticator could leak login codes-update your app now

A vulnerability in Microsoft Authenticator for both iOS and Android (CVE-2026-26123) could leak your one-time sign-in codes or authentication deep links to a malicious app on the same device.

 

Important Updates & Patches

Microsoft Releases March Security Updates

Microsoft has released their March security updates to resolve 83 security issues. There are no pressing "zero-day" flaws this month.

Google Releases Security Updates for Chrome

Chrome 146 update patches two exploited zero-days. The flaws can be exploited to manipulate data and bypass security restrictions, potentially leading to code execution.

Apple Releases Security Updates

Apple has released security updates for older versions of iOS and iPad OS to fix security issues associated with the Coruna exploit. This update brings that fix to devices that cannot update to the latest iOS versions.

 

Dan's Corner

Meta is rolling out stronger anti-scam tools - here's how they protect you

Meta is introducing new tools to help keep users safe from scams. Expect to see more alerts about suspicious activities across Facebook, WhatsApp, and Messenger.

 

An archive of Euclid Security Newsletters can be found on the support website.

Euclid Technology Solutions, LLC
540 Devall Drive, Suite 301
Auburn, AL 36832

P: 301-657-8089
E: support@euclidtechnology.com

Email sent to [EMAIL]

New Comment ...

Sort by: