ICYMI: 2026-08-17
Latest Headlines
Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects
Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads
Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access
Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
Irregular Details How a Naming Error Let AI Models Attack a Real Company
Conflicting Test Goals Pushed Claude Agents to Deploy Self-Replicating Malware
Recent macOS Screen Sharing Vulnerability Exploited in Attacks
Critical SAP Commerce Cloud Vulnerability Exploited 3 Days After Disclosure
Hacker claims 3.6 million Azure account records stolen from major companies
Pokémon Center data breach exposes customer info, cancels some orders
Certighost and the Privilege Hiding in Your Certificate Authority
Windows Server 2022 reaches end of mainstream support in 60 days
Philips and GE investigating Clop ransomware data theft claims
French tax authority data breach affects 678,000 individuals
Microsoft working on Defender patch for ShieldBreak zero-day
– MTZ