// 2 CRITICAL · 4 ZERO-DAY · 8 CVE · 6 EXPLOIT IN THE LAST 24H
news

SharePoint Authentication Bypass Under Active Exploitation Days After PoC Release

A critical vulnerability in Microsoft SharePoint's server-to-server authentication system, tracked as CVE-2026-55040 with a CVSS score…

Aug 15, 2026views - 1.2k

CYBERSECCVE

CVE-2026-17583: Three Decades of DNA Evidence at Risk of Digital Tampering

A vulnerability in Thermo Fisher software allows undetected alteration of forensic DNA files. The patch does not validate 30 years of…

Aug 15, 2026views - 1.2k

CYBERSECEXPLOIT

Lazarus Exploits Microsoft Zero-Day: Job Offers Turn Into Kernel Spyware

Check Point Research uncovers a new wave of Operation Dream Job featuring SecurityPDF and Troy. Lazarus leverages CVE-2026-68820 to de…

Aug 15, 2026views - 1.1k

newsZERO-DAY

Lazarus Weaponizes Windows Zero-Day with Post-Quantum Encryption: Inside the C2 Traffic

The Lazarus Group has integrated the ML-KEM (Kyber) algorithm into the command-and-control channel of its MISTPEN infrastructure to de…

Aug 15, 2026views - 1.1k

CYBERSECZERO-DAY

Metabase Zero-Day CVE-2026-72898: Active Exploitation, CVSS 10.0, Wide Blast Radius

A maximum-severity CVSS 10.0 zero-day struck Metabase on August 2, 2026. The attack, confirmed against the vendor's cloud infrastructu…

Aug 15, 2026views - 1.7k

zeroZERO-DAY

GeoServer Zero-Day Under Attack: The Regression Exposing Cracks in the Secure Development Lifecycle

Threat actors began probing a SQL injection zero-day in GeoServer within hours of its public disclosure on August 12, 2026. The vulner…

Aug 15, 2026views - 1.2k

CYBERSECZERO-DAY

SonicWall Email Security: Local Privilege Escalation from CLI to Root via Command Injection

CVE-2026-66149 enables local privilege escalation in SonicWall Email Security. A patch is available, but the security perimeter remain…

Aug 15, 2026views - 1.2k

CYBERSECEXPLOIT

ShinyHunters Exploited Oracle PeopleSoft Zero-Day for Two Weeks

CVE-2026-35273 hit over 100 notified organizations, 68% universities, via an SSRF-to-unauthenticated-RCE chain. CISA added it to the K…

Aug 15, 2026views - 1.2k

CYBERSECCRITICAL

Galaxy S25: A TIFF File Can Trigger Remote Code Execution

CVE-2026-21045 strikes the Galaxy S25's Quram library. Heap overflow in TIFF parsing carries a CVSS 8.4 score, with a three-month gap…

Aug 15, 2026views - 1.2k

VULNCRITICAL

Flowise Removes Airtable and CSV Agents After Critical RCE (CVSS 9.4)

The low-code AI orchestration platform Flowise has entirely removed its AirtableAgent and CSVAgent components to address an unauthenti…

Aug 15, 2026views - 1.2k

CYBERSEC

Passkey Bypass: Three Studies Shatter FIDO2's 'Anti-Phishing' Promise

On August 3, 2026, researchers from SpecterOps, Palo Alto Networks Unit 42, and independent researcher Dirk-jan Mollema published dist…

Aug 15, 2026views - 1.2k

CYBERSEC

fTPM 2.0 Compromised: AMD and Intel Forced to Patch the Root of Trust

Two critical vulnerabilities in the shared fTPM 2.0 firmware used by AMD and Intel expose cryptographic secrets and enable key forgery…

Aug 15, 2026views - 1.2k

ransomware

Ransomware Q2: 1,140 Industrial Attacks, the New Perimeter Lies in IT Systems

Dragos' Q2 2026 report records 1,140 ransomware incidents against industrial organizations. The key finding: production halts without…

Aug 15, 2026views - 1.2k

ransomwareCRITICAL

Gunra Hits Critical Infrastructure with Dual Fortinet Exploit

CISA, FBI, NSA, and South Korean police issued joint advisory AA26-222A on Gunra: 51 confirmed victims, MFA bypass, and persistence th…

Aug 15, 2026views - 1.1k

CYBERSECZERO-DAY

PAX Q80: Unpatchable Zero-Day RCE Exposes Payment POS Terminals

The PAX Technology Q80 payment terminal contains a zero-day RCE vulnerability exploitable via local network. The vendor declared the f…

Aug 14, 2026views - 1.2k

VULN

TONTOU: The Attack That Nullifies Spectre v2 Mitigations and Leaks Linux Passwords

MIT CSAIL researchers demonstrated a bypass of Spectre v2 mitigations on Linux at Black Hat USA 2026. TONTOU extracts password hashes…

Aug 14, 2026views - 1.2k

news

DeepSeek Ran Autonomous Cyberattacks: They Failed, But the Pipeline Worked

A Chinese-speaking threat actor integrated DeepSeek with the open-source Hermes Agent framework to orchestrate a fully autonomous hack…

Aug 14, 2026views - 1.1k

CYBERSEC

Wesco Confirms Cloud CRM Incident: ExfilSquad Claims Theft of 2.6 Million Records

Fortune 500 industrial distributor Wesco confirmed on August 11, 2026, that it is investigating a security incident in its cloud CRM e…

Aug 14, 2026views - 1.2k

CYBERSECZERO-DAY

Apple Patches Decade-Old Zero-Day in iOS Core: dyld Exposed for 10+ Years

CVE-2026-20700 affects the dyld dynamic linker, a fundamental component present for over a decade. Apple confirms targeted exploitatio…

Aug 14, 2026views - 1.2k

CYBERSEC

TeamPCP Compromises LiteLLM: 434,000 Pipelines Exposed in 40 Minutes

TeamPCP injected malicious LiteLLM packages onto PyPI for 40 minutes. CloudSEK estimates 2,500+ organizations exposed. Stolen credenti…

Aug 14, 2026views - 1.3k

blockchain

Trezor: ShipMonk Exposes 13,689 Customers — Where Physical and Digital Security Collide

Logistics provider ShipMonk notified Trezor of unauthorized access exposing personal data for 13,689 customers. The incident lays bare…

Aug 14, 2026views - 1.2k

cveCRITICAL

Citrix NetScaler in the Crosshairs: Pre-Auth RCE via SAML Heap Overflow, Likely CVE-2026-8452

WatchTowr Labs has reverse-engineered a critical pre-authentication remote code execution flaw in Citrix NetScaler ADC/Gateway. The vu…

Aug 14, 2026views - 1.2k

CYBERSEC

Cursor IDE Executes Code from Poisoned Repositories: 7 Months of Silence, No Patch

Mindgard disclosed a vulnerability in the popular Cursor IDE that allows automatic execution of malicious code via a poisoned git.exe…

Aug 14, 2026views - 1.1k

CYBERSEC

ChainDrop: The npm Worm That Broke Cryptographic Trust in Four Hours

The ChainDrop worm infected 444 npm packages using valid SLSA provenance. The failure of automated trust in modern software.

Aug 14, 2026views - 1.2k