TL;DR CISA added two TrueConf Server flaws to its Known Exploited Vulnerabilities catalog. Tracked as CVE-2026-72529 and...
News
At a Glance Actor Unattributed; infrastructure overlaps with DPRK-linked activity (Wiz) Activity Software supply chain attack via...
TL;DR Google shipped a Chrome Stable channel update with seven security fixes. The most severe, CVE-2026-76017, is...
Two high-severity Spring Integration vulnerabilities threaten application security. Specifically, CVE-2026-59307 allows remote code execution via a deserialization...
TL;DR Frauscher patched eight flaws in its FDS102 railway diagnostic system on August 20, 2026. The most...
TL;DR Apache InLong patched three flaws in version 2.4.0. The most notable is an Apache InLong SQL...
TL;DR Dell patched three flaws in its PowerStore T storage family. The most severe, CVE-2026-67271, scores a...
TL;DR The maintainers of vm2 patched three critical flaws on August 17, 2026. The most severe, CVE-2026-47686,...
TL;DR Microsoft patched CVE-2026-47301, an elevation of privilege flaw in Configuration Manager (SCCM). A researcher published proof-of-concept...
TL;DR Red Hat disclosed three critical flaws across its cloud and identity products. The most severe, CVE-2026-66780,...
At a glance Actor or group: Jewelbug (suspected China-based threat group) Activity type: Cyber espionage and cryptocurrency...
At a glance Actor or group: Suspected Chinese-speaking cybercriminals. Activity type: Phishing-as-a-Service (PhaaS). Targets or victims: Shoppers...
At a glance Malware family: Evooo1Bot Threat actor: Unknown Target or victims: Internet-facing devices, routers, firewalls, and...
TL;DR Splunk fixed 17 vulnerabilities across its apps and add-ons on August 19, 2026. The worst, CVE-2026-76404,...
Google announced today that it is giving all eligible college students in the United States a full...
This week, numerous users discovered that executing quick or full scans with Microsoft Defender resulted in inexplicable...
TL;DR Splunk fixed 60 vulnerabilities in Splunk Enterprise on August 19, 2026. Three critical flaws share a...
TL;DR Red Hat disclosed three high-severity flaws in its Advanced Cluster Management and Multicluster Engine for Kubernetes....
TL;DR CERT Polska reports active exploitation of a Zimbra unauthenticated remote code execution flaw, tracked as CVE-2026-73570....
TL;DR Cisco fixed a critical SQL injection flaw in Crosswork, tracked as CVE-2026-20030 at CVSS 10.0. The...
TL;DR Splunk patched a critical OS command injection flaw in its AI Toolkit, tracked as CVE-2026-20266. The...
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
TL;DR Cisco released hardening updates for Secure Workload on August 19, 2026. The Cisco Secure Workload authentication...