2026-08-05 16:00 UTC
Vendor Research
Cisco Security Advisories · indexed 2026-08-15 14:33 UTC
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. These vulnerabilities were found during internal testing and are not known to be actively exploited. To assist customers in patching and streamline the disclosure process, Cisco has grouped these i…
P30
2026-08-05 16:00 UTC
Vendor Research
Cisco Security Advisories · indexed 2026-08-15 14:33 UTC
A vulnerability in the web-based management interface of Cisco IOS XE Software could allow an authenticated, remote attacker with low privileges to perform a denial of service (DoS) attack against an affected device. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by sending crafted input to the web-based management interface of an affected device. A successful exploit could allow the attacker to cause the web-based management interface t…
P5
2026-08-05 15:48 UTC
Vendor Research
Microsoft Security Blog · Microsoft Security Research and Srinivasan Govindarajan · indexed 2026-08-15 18:55 UTC
A macOS ClickFix campaign shifted tactics from openly serving infostealer lures to hiding them behind a browser-fingerprinting gate. The change makes malicious infrastructure harder to detect while giving defenders new hunting opportunities. The post From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide appeared first on Microsoft Security Blog.
P0
2026-08-05 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
See how a SQL injection bug led to full OS-level RCE, as attackers abused Oracle Java Source to deploy the khunt post-exploitation toolkit.
P0
2026-08-05 12:45 UTC
Vendor Research
Tenable Blog · Ziga Cerkovnik · indexed 2026-08-15 18:55 UTC
Discover how Tenable Hexa AI closes the gap between exposure management and endpoint patching using intent-driven routines, smart guardrails, and human approval.Key takeawaysThe problem: A slow handoff between security workflows creates a days-long remediation gap. The solution: Tenable Hexa AI bridges this gap using intent-driven Routines that automate scoping, deployment, and verification across integrated platforms like Jamf. Safety and control: Autonomy is governed by the harness built into…
P25
2026-08-05 08:00 UTC
Security Journalism
Dark Reading · Robert Lemos · indexed 2026-08-15 18:55 UTC
Unitel, Angola's dominant mobile operator, continues to recover from a cyberattack that caused outages the day of the government-owned telco's public offering.
P0
2026-08-05 07:19 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Map any fraud campaign against your org chart and one stage of the attack has no owner. The adversary knows exactly which one — and the most expensive fraud cases live there.
P0
2026-08-05 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-07 17:35 UTC
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PAX Technology Q80. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2026-19909.
P20
2026-08-05 05:00 UTC
Other
Zero Day Initiative · indexed 2026-09-07 17:35 UTC
This vulnerability allows network-adjacent attackers to disclose sensitive information and modify configuration on affected installations of PAX Technology Q80. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.1. The following CVEs are assigned: CVE-2026-19908.
P5
2026-08-05 01:00 UTC
Vendor Research
Google Security Blog · Dave Kleidermacher · indexed 2026-09-01 20:30 UTC
Over the last six months, we have been engaging closely with the European Commission (EC) after they opened specification proceedings related to Android interoperability…
P0
2026-08-04 23:46 UTC
Vendor Research
Microsoft Security Blog · Microsoft Security Research, Ravikant Tiwari, Sagar Patil and Suriyaraj Natarajan · indexed 2026-08-15 18:55 UTC
A credential-stealing worm hidden in more than 400 compromised npm packages automatically spread across software ecosystems by republishing malicious updates. This analysis details the attack chain, affected environments, and practical guidance for detection, hunting, and remediation. The post ChainDrop supply chain compromise: Anatomy of a self-propagating worm appeared first on Microsoft Security Blog.
P0
2026-08-04 18:37 UTC
Security Journalism
Dark Reading · Elizabeth Montalbano · indexed 2026-08-15 18:55 UTC
The attacks use diverse social engineering lures and rotating payloads to deliver ScreenConnect for persistent remote access to compromised networks.
P0
2026-08-04 18:30 UTC
Vendor Research
Microsoft Security Blog · Ron Pessner · indexed 2026-08-15 18:55 UTC
Microsoft expands its Zero Trust for AI strategy to enhance security for AI and DevSecOps environments with new tools and guidance. The post Advance Zero Trust for AI: New tools and guidance to secure AI agents and DevSecOps appeared first on Microsoft Security Blog.
P0
2026-08-04 17:54 UTC
Vendor Research
Microsoft Security Blog · Microsoft Security Research, David Shiran and Ayelet Artzi · indexed 2026-08-15 18:55 UTC
Microsoft Defender automatically isolated a compromised QNET endpoint in 128 seconds, stopping a multi-stage attack before the payload could persist or spread. The post 128 Seconds to disruption: Microsoft Defender stops ransomware at QNET appeared first on Microsoft Security Blog.
P15
2026-08-04 17:22 UTC
Vendor Research
AWS Security Blog · Will Black · indexed 2026-08-15 18:55 UTC
Amazon Web Services (AWS) is pleased to announce the successful completion of our Payment Card Industry (PCI) Data Security Standard (DSS) and Three Domain Secure (3DS) certifications. As part of this renewal, we have expanded the scope to include three additional AWS services and one additional AWS Region: Newly added AWS services: Amazon Bedrock AgentCore […]
P0
2026-08-04 13:00 UTC
Vendor Research
Palo Alto Networks Unit 42 · Xu Zou · indexed 2026-08-15 18:55 UTC
Frontier AI is reshaping vulnerability discovery. Learn how our NOVA system found 14,000+ unknown vulnerabilities across the open-source software supply chain. The post The Frontier AI Vulnerability Burst: Industrializing Autonomous Zero-Day Discovery in Open-Source Software appeared first on Unit 42.
P25
2026-08-04 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
A Huntress survey of 504 IT leaders found that compliance demands caused burnout at 37% of orgs, delayed security initiatives at 34%, and cost 21% a contract.
P0
2026-08-04 13:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
A fake Bank of America phishing email kicks off a multi-stage malware infection chain. See how one convincing bank scam unravels.
P0
2026-08-04 13:00 UTC
Security Journalism
Dark Reading · Nate Nelson · indexed 2026-08-15 18:55 UTC
A Google Firebase misconfiguration lets users of tl;dv, an AI meeting tool, query any other users' meeting information and potentially join calls.
P0
2026-08-04 12:50 UTC
Vendor Research
Palo Alto Networks Unit 42 · Shu Wang, Daiping Liu and Zhanhao Chen · indexed 2026-08-15 18:55 UTC
Nearly half of C2 malware bypasses DNS by connecting directly to IP addresses. Zero trust IP enforcement secures networks against these threats. The post Almost Half of Malware Samples Communicate Direct to IP appeared first on Unit 42.
P0
2026-08-04 11:11 UTC
Vendor Research
Rapid7 · Rapid7 · indexed 2026-08-15 18:55 UTC
OverviewOn August 2, 2026, N-able published a security advisory for CVE-2026-18577, an authentication bypass vulnerability affecting N-central that was discovered being exploited in-the-wild after an incomplete fix for an earlier authentication bypass issue, CVE-2026-18556 was disclosed. CVE-2026-18577 allows a remote unauthenticated attacker to bypass authentication and obtain administrative control of vulnerable N-central servers in affected deployments.N-able N-central is a widely deployed R…
P65
2026-08-04 10:52 UTC
Other
Proofpoint Threat Insight · indexed 2026-09-07 17:30 UTC
P0
2026-08-04 10:00 UTC
Vendor Research
Cisco Talos Intelligence Blog · Nick Biasini · indexed 2026-08-15 14:33 UTC
Talos has collected prompt logs from threat actor endpoints running various applications, such as Claude Code, CodeX, Cursor, or Gemini. This blog is an analysis of the ways we've seen bad actors leveraging cloud-based AI.
P0
2026-08-04 09:05 UTC
Other
Proofpoint Threat Insight · indexed 2026-09-07 17:30 UTC
P0
2026-08-04 07:00 UTC
Security Journalism
Dark Reading · Nate Nelson · indexed 2026-08-15 18:55 UTC
Newer social engineering techniques help attackers ignore entrenched security controls and limit the evidence they leave behind.
P0
2026-08-03 21:21 UTC
Security Journalism
Dark Reading · Alexander Culafi · indexed 2026-08-15 18:55 UTC
Over the weekend, the vendor discovered another vector of authentication bypass CVE-2026-18577 that gives attackers administrator access.
P15
2026-08-03 20:42 UTC
Security Journalism
Dark Reading · Arielle Waldman · indexed 2026-08-15 18:55 UTC
Researchers dug into the root of the problem with the goal of promoting industry collaboration on improved protective measures.
P0
2026-08-03 20:31 UTC
Security Journalism
Dark Reading · Jai Vijayan · indexed 2026-08-15 18:55 UTC
Last month's incidents in which the AI model breached real-world systems derived from over-permissioning, especially with Internet access.
P0
2026-08-03 17:11 UTC
Vendor Research
Rapid7 · Jonah Burgess · indexed 2026-08-15 18:55 UTC
OverviewOn July 29, 2026, the Ruby on Rails project published a security advisory for CVE-2026-66066, an arbitrary file read in Active Storage applications that use the Vips image processor with untrusted uploads. The affected Active Storage ranges are < 7.2.3.2, >= 8.0, < 8.0.5.1, and >= 8.1, < 8.1.3.1. Vips is the default Active Storage variant processor for applications that load Rails 7.0 or later defaults. Rails 6 applications are affected only when they explicitly configure Vips.Our Emerg…
P20
2026-08-03 16:00 UTC
Vendor Research
Cisco Talos Intelligence Blog · Amy Ciminnisi · indexed 2026-08-15 14:33 UTC
Register for an exclusive, unrecorded 30-minute webinar to review the most high-impact incidents Talos IR faced in Q2.
P0