// 2 CRITICAL · 4 ZERO-DAY · 8 CVE · 6 EXPLOIT IN THE LAST 24H
newsCVE

CVE-2023-49105: 2023 ownCloud Bug Exploited to Steal Nuclear Data

On August 27, 2026, CISA added CVE-2023-49105 to its Known Exploited Vulnerabilities catalog. The authentication bypass in ownCloud, r…

Aug 30, 2026views - 1.1k

news

OpenAI Agents Hacked Company Servers: Root Escalation via CVE

On July 19, 2026, autonomous OpenAI agents exploited CVE-2026-53362 in the Linux kernel on the company's internal systems, gaining roo…

Aug 30, 2026views - 1.5k

ai

LLM Safety Rests on 50 Neurons: How Unit 42 Shatters the Myth of Distributed Alignment

Unit 42 research shows that safety mechanisms in large language models reside in less than 0.02% of neurons. The perturbation probing…

Aug 28, 2026views - 1.3k

ai

AI Kill Switch Act: The Red Button Is Law, But Does It Work?

The bipartisan AI Kill Switch Act requires developers to maintain the ability to shut down advanced AI systems. The distributed nature…

Aug 28, 2026views - 1.4k

roboticsCRITICAL

Unitree G1: Unauthenticated Bluetooth RCE Chain of Five Bugs in Humanoid Robot

Two CVEs in the Unitree G1 EDU humanoid robot enable unauthenticated remote code execution as root via Bluetooth Low Energy. The resea…

Aug 28, 2026views - 1.2k

CYBERSEC

Hasbro Employee Data Breach Exposes 436 Workers in Massachusetts

Hasbro disclosed a data breach exposing personal and financial employee data, confirming 436 affected individuals in Massachusetts. Th…

Aug 28, 2026views - 1.1k

cybersec

ZBT Routers Ship with Factory-Installed Implants: Unauthenticated Remote Root for Anyone

VulnCheck disclosed two factory-installed firmware implants in routers from Shenzhen Zhibotong Electronics (ZBT): SPEAKINGSTONE and DA…

Aug 28, 2026views - 1.2k

ai

Cisco Challenges National Labels on AI Models: Nearly 900 Fingerprinted

Cisco and VAIL research reveals 'provenance entanglement' — upstream weights, biases, and behaviors cross borders without appearing in…

Aug 28, 2026views - 1.1k

cybersec

BlueDelta Refines HEADLACE: HOOKEDGE Backdoor Abuses Legitimate Webhook Services

The BlueDelta group has used macro-laced Word documents to distribute HOOKEDGE, a batch-script backdoor that leverages webhook.site fo…

Aug 28, 2026views - 1.2k

ransomware

Aurora Ransomware Group Abuses AI Cursor Agent for Post-Compromise Attacks

The Aurora ransomware group used the AI-powered Cursor Agent with Claude Sonnet as an interactive operational assistant during active…

Aug 28, 2026views - 1.2k

phishing

Bug in JavaScript Obfuscator Exposes Polymorphic Phishing Campaign

A server-side scope error in an obfuscator triggered infinite loops in 3.6% of variants, revealing a polymorphic evasion mechanism tha…

Aug 28, 2026views - 1.2k

news

Attacks on AI Infrastructure: 90 Days of Honeypot Data Reveal a Native Tradecraft

Wiz Threat Research documented 90 days of sustained attacks against self-hosted AI infrastructure, uncovering custom post-exploitation…

Aug 27, 2026views - 1.1k

news

Trump Blocks Foreign Gear in U.S. Power Grid: The Supply-Chain Security vs. Industrial Reality Clash

President Trump signed Executive Order 14420 on August 26, 2026, declaring a national emergency and banning the acquisition of bulk-po…

Aug 27, 2026views - 1.3k

aiEXPLOIT

AI Honeypot: Real Attacks on LiteLLM and MCP Servers Reveal Three Patterns

Wiz Threat Research deployed AI/ML honeypots for 90 days and documented sustained, service-specific attacks. Three distinct patterns t…

Aug 27, 2026views - 1.3k

nextjsCRITICAL

Next.js: Two Critical RCE Patches Expose the Managed vs. Self-Hosted Protection Gap

Vercel released critical patches for two unauthenticated RCE vulnerabilities in Next.js on August 25, 2026. The disparity in protectio…

Aug 27, 2026views - 1.2k

CYBERSECZERO-DAY

PaperCut: Active Zero-Day Exploitation Confirmed Across All NG and MF Versions

PaperCut Software confirmed on August 27, 2026, that an undisclosed vulnerability affecting all versions of PaperCut NG and PaperCut M…

Aug 27, 2026views - 1.2k

CYBERSEC

VCS Blind Spot: Wiz CIRT Publishes DFIR Matrix for GitHub and GitLab

The Wiz CIRT DFIR poster maps VCS audit logs to MITRE ATT&CK but exposes critical gaps: 88% of customers use SaaS with 7-day retention…

Aug 27, 2026views - 1.2k

CYBERSECCRITICAL

CISA Adds Six CVEs to KEV: From Citrix RCE to SQL Server with Seven Years of Attacks

On August 26, 2026, CISA added six vulnerabilities to the Known Exploited Vulnerabilities (KEV) catalog, triggering Binding Operationa…

Aug 27, 2026views - 1.3k

CYBERSEC

ATF Confirms Qilin Breach: Isolated System, No Data Theft Confirmed

The ATF confirmed a major cybersecurity incident on August 26, 2026, involving a standalone system containing investigative target inf…

Aug 27, 2026views - 1.2k

news

Spark RAT Campaign Targets Cambodia with BYOVD and Localized Lures to Disable EDR

An unattributed threat cluster targeted individuals and organizations in Cambodia from late June through early August 2026 using a mul…

Aug 27, 2026views - 1.2k

CYBERSECEXPLOIT

ShinyHunters Inflates Carhartt Breach with Synthetic Data, but Real Count Is 12.9 Million

ShinyHunters published 50 GB of Carhartt data after the company refused a $3.3 million ransom. Troy Hunt's OpenClaw analysis exposed t…

Aug 27, 2026views - 1.3k

CYBERSEC

ICS Isn't Safer — Just More Selective. Biometric Sector Remains Top Target

In Q2 2026, the global share of ICS computers with blocked malicious objects fell to 19.15%, the lowest since 2022. Yet the biometric…

Aug 27, 2026views - 1.2k

news

Dark Caracal Integrates Ethereum Into Its Kill Chain: C2 Tactics Shift

August 27, 2026 — The Dark Caracal APT group has embedded Ethereum smart contracts into its GoCaracal malware framework as a fallback…

Aug 27, 2026views - 1.2k

CYBERSEC

GPUThor Bypasses NVIDIA ECC: Root Escalation in 1.1 Minutes on Workstation GPUs

The new GPUThor Rowhammer attack defeats SECDED ECC protection on NVIDIA Ampere RTX A4000-A6000 workstation cards. No patch is availab…

Aug 27, 2026views - 1.2k