TL;DRStorm-1175, a financially motivated ransomware actor tracked by Microsoft, has introduced a custom ransomware payload dubbed StormEncryptor, marking a notable evolution from its previous reliance ... Read more
Published Date: Aug 11, 2026 (1 day, 7 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18577 CVE-2026-18556Microsoft has disclosed that Storm-1175, a financially motivated threat actor linked to China, has deployed a previously undocumented ransomware strain called StormEncryptor. The use of StormEncryptor ... Read more
Published Date: Aug 10, 2026 (1 day, 16 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18577 CVE-2026-18556 CVE-2025-10035 CVE-2023-48788 CVE-2024-27199 CVE-2024-27198 CVE-2024-1709 CVE-2024-1708 CVE-2023-43208 CVE-2023-37679A lot of security problems still begin with someone doing a completely normal thing. Cloning a repo. Answering a call. Leaving a box exposed. Trusting the default. That pretty much covers the mood thi ... Read more
Published Date: Aug 10, 2026 (1 day, 18 hours ago)Vulnerabilities has been mentioned in this article.
Criminelen gebruiken vermoedelijk een beveiligingslek in N-Central van N-Able om organisaties met ransomware te infecteren, zo stelt Microsoft op X. Het gaat om een beveiligingslek aangeduid als CVE-2 ... Read more
Published Date: Aug 10, 2026 (1 day, 19 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18577 CVE-2026-18556Vulnerability in Magnolia CMS software CVE ID CVE-2026-18478 Publication date 10 August 2026 Vendor Magnolia DXP Product Magnolia CMS Vulnerable versions From 6.3.0 to 6.3.10 Vulnerability type (CWE) ... Read more
Published Date: Aug 10, 2026 (1 day, 15 hours ago)Vulnerabilities has been mentioned in this article.
Three separate research efforts last week demonstrated ways to defeat passkey protections without breaking the cryptography they rest on. Passkeys are designed to replace reusable passwords and resist ... Read more
Published Date: Aug 10, 2026 (1 day, 16 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-34348Vulnerability in entr software CVE ID CVE-2026-18370 Publication date 10 August 2026 Vendor eradman Product entr Vulnerable versions All through 5.8 Vulnerability type (CWE) Heap-based buffer overflow ... Read more
Published Date: Aug 10, 2026 (1 day, 17 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18370The threat actor known as Head Mare has been observed weaponizing security flaws in unpatched TrueConf servers once again in attacks targeting Russian companies spanning instrumentation, electronics, ... Read more
Published Date: Aug 10, 2026 (1 day, 17 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-3502Vulnerabilities in GNU cpio software CVE ID CVE-2026-66484 Publication date 10 August 2026 Vendor GNU Product cpio Vulnerable versions All through 2.15 Vulnerability type (CWE) Improper Limitation of ... Read more
Published Date: Aug 10, 2026 (1 day, 18 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-66486 CVE-2026-66485 CVE-2026-66484Vulnerabilities in GNU Emacs software CVE ID CVE-2026-71391 Publication date 10 August 2026 Vendor GNU Product Emacs Vulnerable versions All through 30.2 Vulnerability type (CWE) Off-by-one Error (CWE ... Read more
Published Date: Aug 10, 2026 (1 day, 19 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-71394 CVE-2026-71393 CVE-2026-71392 CVE-2026-71391Aanvallers maken actief misbruik van een kritieke kwetsbaarheid in Progress Kemp LoadMaster-loadbalancers, zo waarschuwt het Amerikaanse cyberagentschap CISA. Updates voor het misbruikte beveiligingsl ... Read more
Published Date: Aug 10, 2026 (1 day, 18 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-8037 CVE-2026-33691 CVE-2024-1212Cisco has issued its August 2026 IOS XE Security Hardening Release, addressing seven newly assigned CVEs identified through Cisco’s internal security testing.The release is notable not simply becaus ... Read more
Published Date: Aug 09, 2026 (2 days, 18 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-20273 CVE-2026-20272 CVE-2026-20271 CVE-2026-20270 CVE-2026-20269 CVE-2026-20268 CVE-2026-20267Metabase has warned that a maximum-severity security flaw impacting its business intelligence and data visualization software package has been exploited in the wild as a zero-day. The vulnerability (C ... Read more
Published Date: Aug 08, 2026 (3 days, 12 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2023-38646N-able has released a fresh round of hotfixes for N‑central as part of its investigation into ongoing exploitation of a recently disclosed security flaw in the Remote Monitoring and Management (RMM) p ... Read more
Published Date: Aug 08, 2026 (3 days, 12 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18577 CVE-2026-18556 CVE-2026-50522The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical-severity security flaw impacting Progress Kemp LoadMaster to its Known Exploited Vulnerabilities (KEV) catal ... Read more
Published Date: Aug 08, 2026 (3 days, 10 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2026-8037N-able is na aanvallen op N-central RMM-servers met een tweede hotfix gekomen die klanten moeten installeren. Ook wordt aangeraden om te controleren of er geen verkeer naar CloudflareTunnel is. N-cent ... Read more
Published Date: Aug 07, 2026 (4 days, 1 hour ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18577 CVE-2026-18556WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content management system. pwn.ai demonstrated how the flaw can ... Read more
Published Date: Aug 07, 2026 (3 days, 22 hours ago)Vulnerabilities has been mentioned in this article.
A use-after-free bug in Linux's SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine underneath. The flaw h ... Read more
Published Date: Aug 07, 2026 (4 days ago)Vulnerabilities has been mentioned in this article.
CVE-2026-64564 CVE-2026-50522PortSwigger says HTTP Terminator, an artificial intelligence (AI)-assisted research system built by James Kettle, generated and proved new HTTP desynchronization techniques after exploring 30,000 cand ... Read more
Published Date: Aug 07, 2026 (4 days, 1 hour ago)Vulnerabilities has been mentioned in this article.
Security researcher Malcolm Stagg has disclosed a new attack class called NatJack that manipulates network address translation (NAT) connection state to hijack active TCP sessions, spoof DNS responses ... Read more
Published Date: Aug 07, 2026 (4 days, 1 hour ago)Vulnerabilities has been mentioned in this article.
CVE-2026-63913 CVE-2026-56181 CVE-2026-50522A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic's and Google's own coding-agent repositories. On OpenAI's, it was enough ... Read more
Published Date: Aug 07, 2026 (4 days, 2 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2026-12537 CVE-2026-54316Een bekende kwetsbaarheid in het populaire archiveringsprogramma WinRAR wordt gebruikt bij ransomware-aanvallen, zo meldt het Amerikaanse cyberagentschap CISA. Het beveiligingslek, aangeduid als CVE-2 ... Read more
Published Date: Aug 07, 2026 (4 days, 1 hour ago)Vulnerabilities has been mentioned in this article.
CVE-2025-8088Apple heeft een beveiligingsupdate voor macOS uitgebracht die een kwetsbaarheid verhelpt waardoor ongeauthenticeerde aanvallers toegang tot Macs kunnen krijgen. Het beveiligingslek (CVE-2026-65400) is ... Read more
Published Date: Aug 07, 2026 (4 days, 2 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-65400Apple has released security updates for MacOS Tahoe 26.6.1, MacOS Sequoia 15.7.9, and MacOS Sonoma 14.8.9, each addressing the same security flaw relating to the Screen Sharing service where an attack ... Read more
Published Date: Aug 06, 2026 (4 days, 9 hours ago)Vulnerabilities has been mentioned in this article.
Zapscape, a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM isolation and execute code on the host. The risk applie ... Read more
Published Date: Aug 06, 2026 (4 days, 11 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-64561 CVE-2026-50522 CVE-2026-53359 CVE-2026-46316Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of a comprehensive internal security review. The security issue ... Read more
Published Date: Aug 06, 2026 (4 days, 2 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-20313 CVE-2026-20312 CVE-2026-20310 CVE-2026-20304 CVE-2026-20303 CVE-2026-20288 CVE-2026-20273 CVE-2026-20272 CVE-2026-20271 CVE-2026-20270 CVE-2026-20269 CVE-2026-20268 CVE-2026-20267 CVE-2026-20200 CVE-2026-20316 CVE-2026-50522An unprivileged Linux program can time a hardware interrupt to land in the gap between a processor sanitizing its branch predictor and the kernel using it, re-poisoning the predictor after the defense ... Read more
Published Date: Aug 06, 2026 (3 days, 22 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2023-20569Apparently, opening the thing is now enough. A repo can run before the first prompt, a package can hide among hundreds, and a harmless-looking PDF can finish the job.This week runs on cheap leverage: ... Read more
Published Date: Aug 06, 2026 (3 days, 23 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2026-27912 CVE-2026-25177 CVE-2026-20131 CVE-2025-58486 CVE-2025-21079 CVE-2025-7851 CVE-2025-7850De Chinese routerfabrikant Zbtlink ontkent dat allerlei routermodellen een backdoor bevatten, zoals cybersecuritybedrijf VulnCheck beweert. Wel heeft de fabrikant besloten om de verkoop van de betreff ... Read more
Published Date: Aug 06, 2026 (3 days, 23 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-66747Forescout found 22 internet-facing Rockwell Automation programmable logic controllers (PLCs) in cities hit by recent cyberattacks on US water utilities. Nineteen used the same mobile carrier network. ... Read more
Published Date: Aug 06, 2026 (4 days ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2017-16740Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized the ... Read more
Published Date: Aug 06, 2026 (4 days, 4 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18830 CVE-2026-18236 CVE-2026-64651 CVE-2026-64650 CVE-2026-50522Cisco heeft belangrijke beveiligingsupdates voor Catalyst SD-WAN en IOS XE uitgebracht, die meerdere kritieke kwetsbaarheden verhelpen. Het netwerkbedrijf spreekt van speciale 'hardening releases' en ... Read more
Published Date: Aug 06, 2026 (4 days, 2 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-20272Aanvallers maken actief misbruik van een kritieke kwetsbaarheid in Jetbrains TeamCity-servers waardoor systemen op afstand zijn over te nemen, zo melden de Amerikaanse en Italiaanse cyberagentschappen ... Read more
Published Date: Aug 06, 2026 (4 days, 3 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-63077A newly patched security flaw impacting on-premise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency ... Read more
Published Date: Aug 06, 2026 (3 days ago)Vulnerabilities has been mentioned in this article.
CVE-2026-63077 CVE-2026-50522Four Newly Added KEV Entries Reinforce the Growing Focus on Enterprise Management, AI, Middleware, and DevSecOps PlatformsThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) has expanded ... Read more
Published Date: Aug 06, 2026 (3 days ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18556 CVE-2026-63077 CVE-2026-9198 CVE-2026-34486OUT OF BAND; OUT OF MIND Baseboard management controllers from the world’s biggest manufacturers are a security mess. A data center corridor lined with rows of locked glass server racks filled with bl ... Read more
Published Date: Aug 05, 2026 (3 days, 8 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2013-4786Two security flaws in Paperclip could let attackers execute commands on a network server or a developer's computer. Paperclip is an open-source control plane for teams of artificial intelligence (AI) ... Read more
Published Date: Aug 05, 2026 (2 days, 17 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2026-41679HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and Django. The three most serious: An unauthenticated ... Read more
Published Date: Aug 05, 2026 (2 days ago)Vulnerabilities has been mentioned in this article.
CVE-2026-58073 CVE-2026-58072 CVE-2026-58071 CVE-2026-58067 CVE-2026-15920 CVE-2026-15830 CVE-2026-15337 CVE-2026-15307 CVE-2026-16498 CVE-2026-16496 CVE-2026-14869 CVE-2026-50522 CVE-2026-32998 CVE-2026-1207A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default-configured distributions, and a public exploit ships with pre-b ... Read more
Published Date: Aug 05, 2026 (2 days, 2 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-64531 CVE-2026-50522An unauthenticated attacker can read any file the service account can access on Gitea, the self-hosted Git platform, in versions 1.22.1 through 1.27.0. No login, no repository write access. A public r ... Read more
Published Date: Aug 05, 2026 (2 days, 3 hours ago)Vulnerabilities has been mentioned in this article.
GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers could use them to access sensitive data and downstream creden ... Read more
Published Date: Aug 05, 2026 (2 days, 1 hour ago)Vulnerabilities has been mentioned in this article.
CVE-2026-50522 CVE-2025-68613Een beveiligingslek in Apache Tomcat dat remote code execution mogelijk maakt wordt actief misbruikt bij aanvallen, zo meldt het Amerikaanse cyberagentschap CISA. Misbruik doet zich alleen bij bepaald ... Read more
Published Date: Aug 05, 2026 (2 days, 4 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-34486 CVE-2026-29146The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in t ... Read more
Published Date: Aug 05, 2026 (2 days, 4 hours ago)Vulnerabilities has been mentioned in this article.
CVE-2026-18577 CVE-2026-18556 CVE-2026-9198 CVE-2026-50522 CVE-2026-33824 CVE-2026-34486 CVE-2026-39987 CVE-2026-3055 CVE-2026-33017