{"error":null,"fallback":false,"headlines":[{"link":"https://www.securityweek.com/linux-foundation-to-govern-trace-an-open-standard-for-ai-runtime-attestation/","links":["https://www.securityweek.com/linux-foundation-to-govern-trace-an-open-standard-for-ai-runtime-attestation/"],"published":"2026-08-25T16:23:45+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"TRACE was developed by AMD, Intel, Microsoft, OPAQUE, and TII and contributed to the Linux Foundation. The post Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation appeared first on SecurityWeek .","title":"Linux Foundation to Govern TRACE, an Open Standard for AI Runtime Attestation"},{"link":"https://www.theregister.com/security/2026/08/25/you-couldve-applied-all-1449-oracle-patches-and-still-been-hit-by-this-attack/5292335","links":["https://www.theregister.com/security/2026/08/25/you-couldve-applied-all-1449-oracle-patches-and-still-been-hit-by-this-attack/5292335"],"published":"2026-08-25T16:09:00+00:00","source":"The Register: Security","sources":["The Register: Security"],"summary_plain":"Attackers now ready to exploit how things work, rather than just break them, says Oracle support expert","title":"You could've applied all 1,449 Oracle patches and still been hit by this attack"},{"link":"https://www.bleepingcomputer.com/news/security/massive-ddos-attack-disrupts-norways-government-digital-services/","links":["https://www.bleepingcomputer.com/news/security/massive-ddos-attack-disrupts-norways-government-digital-services/","https://thehackernews.com/2026/08/e4del-and-pinhole-rats-turn-ftp-banners.html"],"published":"2026-08-25T15:52:36+00:00","source":"BleepingComputer","sources":["BleepingComputer","The Hacker News"],"summary_plain":"A large distributed denial-of-service (DDoS) attack has disrupted Norway's shared government digital infrastructure since Monday, affecting services used by the public sector. [...]","title":"E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands"},{"link":"https://www.darkreading.com/cybersecurity-operations/is-cyber-facing-an-affordability-crisis-","links":["https://www.darkreading.com/cybersecurity-operations/is-cyber-facing-an-affordability-crisis-"],"published":"2026-08-25T14:53:13+00:00","source":"Dark Reading","sources":["Dark Reading"],"summary_plain":"As breach costs reach record highs and defense spending nears $240 billion, small businesses are dangerously exposed, threatening supply chain security.","title":"Is Cyber Facing an Affordability Crisis?"},{"link":"https://www.bleepingcomputer.com/news/security/hospital-operator-nutex-health-says-data-stolen-in-cyberattack/","links":["https://www.bleepingcomputer.com/news/security/hospital-operator-nutex-health-says-data-stolen-in-cyberattack/"],"published":"2026-08-25T14:44:16+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Healthcare and services provider Nutex is investigating a data breach incident where an unauthorized third party exfiltrated information from company servers. [...]","title":"Hospital operator Nutex Health says data stolen in cyberattack"},{"link":"https://www.securityweek.com/alice-raises-140m-to-expand-ai-model-defenses-and-enterprise-guardrails/","links":["https://www.securityweek.com/alice-raises-140m-to-expand-ai-model-defenses-and-enterprise-guardrails/"],"published":"2026-08-25T14:11:59+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"The company, previously known as ActiveFence, has raised a total of $280 million from investors. The post Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails appeared first on SecurityWeek .","title":"Alice Raises $140M to Expand AI Model Defenses and Enterprise Guardrails"},{"link":"https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html","links":["https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html"],"published":"2026-08-25T14:07:37+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself. The findings were shared with The Hacker News ahead of publication, and the report says Oasis Security reported them to NVIDIA's Product Security Incident","title":"A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw"},{"link":"https://www.bleepingcomputer.com/news/security/from-fake-workers-to-account-recovery-the-growing-identity-verification-risk/","links":["https://www.bleepingcomputer.com/news/security/from-fake-workers-to-account-recovery-the-growing-identity-verification-risk/","https://www.schneier.com/blog/archives/2026/08/black-hat-state-of-security-vendors.html"],"published":"2026-08-25T14:01:11+00:00","source":"BleepingComputer","sources":["BleepingComputer","Schneier on Security"],"summary_plain":"Attackers are increasingly targeting the processes used to establish or recover identity rather than attacking the login itself. Specops explains how stronger identity verification can help organizations prevent fake workers and social engineering attacks from gaining legitimate access. [...]","title":"From Fake Workers to Account Recovery: The Growing Identity Verification Risk"},{"link":"https://www.bleepingcomputer.com/news/microsoft/microsoft-powertoys-adds-alt-plustab-style-switching-for-an-apps-windows/","links":["https://www.bleepingcomputer.com/news/microsoft/microsoft-powertoys-adds-alt-plustab-style-switching-for-an-apps-windows/"],"published":"2026-08-25T13:51:58+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Microsoft updated its Windows PowerToys toolset with a new utility dubbed \"Window Hopper\" that lets users switch between an app's windows more quickly. [...]","title":"Microsoft PowerToys adds Alt+Tab-style switching for an app's windows"},{"link":"https://www.securityweek.com/wordpress-websites-targeted-via-miniorange-plugin-vulnerabilities/","links":["https://www.securityweek.com/wordpress-websites-targeted-via-miniorange-plugin-vulnerabilities/","https://thehackernews.com/2026/08/attackers-target-miniorange-saml-flaws.html"],"published":"2026-08-25T13:33:12+00:00","source":"SecurityWeek","sources":["SecurityWeek","The Hacker News"],"summary_plain":"CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin. The post WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities appeared first on SecurityWeek .","title":"Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access"},{"link":"https://thehackernews.com/2026/08/whatsapp-adds-multiple-passkeys-for.html","links":["https://thehackernews.com/2026/08/whatsapp-adds-multiple-passkeys-for.html","https://www.bleepingcomputer.com/news/security/whatsapp-adds-stronger-two-step-verification-multiple-passkeys/","https://www.securityweek.com/whatsapp-adds-multiple-passkeys-and-stronger-2sv-in-account-security-update/"],"published":"2026-08-25T13:19:41+00:00","source":"The Hacker News","sources":["The Hacker News","BleepingComputer","SecurityWeek"],"summary_plain":"Meta on Tuesday announced a set of WhatsApp account security features, including support for multiple passkeys to a single account to help users with both iOS and Android devices sign into their accounts using the phishing-resistant method. The tech giant said more than 1 billion people use a passkey to log into WhatsApp. Support for passkeys was first introduced in Android in October 2023,","title":"WhatsApp Adds Multiple Passkeys for Phishing-Resistant Sign-Ins Across iOS and Android"},{"link":"https://www.securityweek.com/hands-on-cyber-physical-systems-training-returns-to-ics-cybersecurity-conference/","links":["https://www.securityweek.com/hands-on-cyber-physical-systems-training-returns-to-ics-cybersecurity-conference/"],"published":"2026-08-25T12:57:59+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"Hands-on Cyber Attack Methods course returns to SecurityWeek\u2019s ICS Cybersecurity Conference, October 6\u20138 at the W Nashville. The post Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference appeared first on SecurityWeek .","title":"Hands-On Cyber-Physical Systems Training Returns to ICS Cybersecurity Conference"},{"link":"https://thehackernews.com/2026/08/marimo-notebook-flaw-could-run-mcp.html","links":["https://thehackernews.com/2026/08/marimo-notebook-flaw-could-run-mcp.html"],"published":"2026-08-25T12:43:51+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Marimo has addressed a high-severity security flaw in its notebook software that allowed an attacker to execute an attacker-supplied Model Context Protocol (MCP) command in a specially crafted notebook, according to VulnCheck's CVE Numbering Authority (CNA) record. The CNA record says the command can run as a local subprocess when the notebook is opened in edit mode. The vulnerability, tracked","title":"Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode"},{"link":"https://www.bleepingcomputer.com/news/security/hackers-breached-over-270-zimbra-servers-in-ongoing-attacks/","links":["https://www.bleepingcomputer.com/news/security/hackers-breached-over-270-zimbra-servers-in-ongoing-attacks/"],"published":"2026-08-25T12:04:02+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vulnerability. [...]","title":"Hackers breached over 270 Zimbra servers in ongoing attacks"},{"link":"https://thehackernews.com/2026/08/mirage2fa-surge-hits-4500-us-and-eu.html","links":["https://thehackernews.com/2026/08/mirage2fa-surge-hits-4500-us-and-eu.html"],"published":"2026-08-25T11:56:15+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Thousands of companies have been affected by the Mirage2FA campaign from 2024 to 2026. The commercial phishing-as-a-service toolkit targets Microsoft 365 accounts by abusing legitimate login flows and bypassing two-factor authentication. According to ANY.RUN research, 48% of targeted email addresses were potentially compromised. Most of the affected companies are US-based. Mirage2FA Campaign","title":"Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows"},{"link":"https://thehackernews.com/2026/08/24-npm-packages-abuse-unpkg-mirrors-to.html","links":["https://thehackernews.com/2026/08/24-npm-packages-abuse-unpkg-mirrors-to.html","https://www.theregister.com/security/2026/08/25/crooks-push-mac-malware-through-fake-openai-codex-ads/5291899","https://www.bleepingcomputer.com/news/security/cisa-orders-urgent-patching-of-actively-exploited-zimbra-flaw/"],"published":"2026-08-25T11:52:43+00:00","source":"The Hacker News","sources":["The Hacker News","The Register: Security","BleepingComputer"],"summary_plain":"Cybersecurity researchers have disclosed details of a new campaign that uses a cluster of 24 npm packages as free phishing infrastructure for redirecting to ClickFix-style fake CAPTCHA pages. \"While the malware is simply a single HTML page inside the npm package, and while downloading it wouldn't do harm, the threat actor\u2019s use of npm isn't to infect developers who install it, but to use the","title":"24 npm Packages Abuse unpkg Mirrors to Host Fake Cloudflare CAPTCHA Pages"},{"link":"https://www.securityweek.com/first-malware-built-specifically-for-car-head-units-fuels-botnet/","links":["https://www.securityweek.com/first-malware-built-specifically-for-car-head-units-fuels-botnet/"],"published":"2026-08-25T11:18:22+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"Kaspersky researchers have linked the malware to the BadBox botnet, which has ensnared millions of devices. The post First Malware Built Specifically for Car Head Units Fuels Botnet appeared first on SecurityWeek .","title":"First Malware Built Specifically for Car Head Units Fuels Botnet"},{"link":"https://thehackernews.com/2026/08/frontier-ai-vulnerability-managements.html","links":["https://thehackernews.com/2026/08/frontier-ai-vulnerability-managements.html"],"published":"2026-08-25T11:14:07+00:00","source":"The Hacker News","sources":["The Hacker News"],"summary_plain":"Vulnerability management has been a staple of security programs since the dawn of the cybersecurity discipline. The symbiotic relationship between vulnerability and patch management teams has also existed for that time and has gone through waves of contention and thankfulness. While this relationship required thoughtful care and feeding from both sides, both sides were aiming to work toward a","title":"Frontier AI: Vulnerability Management's Systemic Revolution"},{"link":"https://www.bleepingcomputer.com/news/security/police-arrests-dozens-of-suspects-in-global-cybercrime-crackdown/","links":["https://www.bleepingcomputer.com/news/security/police-arrests-dozens-of-suspects-in-global-cybercrime-crackdown/"],"published":"2026-08-25T10:53:20+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Law enforcement agencies from 22 countries helped identify 263 suspects and arrested 58 individuals linked to cybercrime networks coordinated by African crime groups. [...]","title":"Police arrests dozens of suspects in global cybercrime crackdown"},{"link":"https://www.theregister.com/security/2026/08/25/cisa-slaps-its-tightest-three-day-patching-deadline-on-perfect-10-oracle-flaw/5292107","links":["https://www.theregister.com/security/2026/08/25/cisa-slaps-its-tightest-three-day-patching-deadline-on-perfect-10-oracle-flaw/5292107"],"published":"2026-08-25T10:43:00+00:00","source":"The Register: Security","sources":["The Register: Security"],"summary_plain":"Disclosed in January and honeypots buzzed soon after, CISA says it\u2019s finally time for the USG to plug the gap","title":"CISA slaps its tightest three-day patching deadline on perfect-10 Oracle flaw"},{"link":"https://www.securityweek.com/silent-patches-dont-stop-attackers-they-blind-defenders/","links":["https://www.securityweek.com/silent-patches-dont-stop-attackers-they-blind-defenders/"],"published":"2026-08-25T10:00:00+00:00","source":"SecurityWeek","sources":["SecurityWeek"],"summary_plain":"Silent patches can become exploit intelligence for attackers while leaving defenders without the context needed to prioritize risk. The post Silent Patches Don\u2019t Stop Attackers \u2013 They Blind Defenders appeared first on SecurityWeek .","title":"Silent Patches Don\u2019t Stop Attackers \u2013 They Blind Defenders"},{"link":"https://www.securityweek.com/taiwan-charges-9-over-illegal-ai-server-exports-to-china-including-nvidia-and-super-micro-staff/","links":["https://www.securityweek.com/taiwan-charges-9-over-illegal-ai-server-exports-to-china-including-nvidia-and-super-micro-staff/","https://www.schneier.com/blog/archives/2026/08/criminal-deception-in-silicon-valley.html"],"published":"2026-08-25T08:30:00+00:00","source":"SecurityWeek","sources":["SecurityWeek","Schneier on Security"],"summary_plain":"AI infrastructure, including advanced semiconductors mostly made in Taiwan, has become a key point of competition between the U.S. and China. The post Taiwan Charges 9 Over Illegal AI Server Exports to China, Including Nvidia and Super Micro Staff appeared first on SecurityWeek .","title":"Taiwan Charges 9 Over Illegal AI Server Exports to China, Including Nvidia and Super Micro Staff"},{"link":"https://www.securityweek.com/cisa-warns-of-exploited-oracle-weblogic-vulnerability/","links":["https://www.securityweek.com/cisa-warns-of-exploited-oracle-weblogic-vulnerability/","https://thehackernews.com/2026/08/actively-exploited-oracle-weblogic-flaw.html"],"published":"2026-08-25T07:46:34+00:00","source":"SecurityWeek","sources":["SecurityWeek","The Hacker News"],"summary_plain":"The vulnerability is tracked as CVE-2026-21962 and it has been widely exploited by threat actors against WebLogic servers. The post CISA Warns of Exploited Oracle WebLogic Vulnerability appeared first on SecurityWeek .","title":"Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data"},{"link":"https://www.ncsc.gov.ie/pdfs/2608250239_CVE-2026-74480.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250239_CVE-2026-74480.pdf"],"published":"2026-08-25T00:00:00+00:00","source":"NCSC Ireland","sources":["NCSC Ireland"],"summary_plain":null,"title":"Critical Linux Kernel Network Bridge Vulnerability (CVE-2026-74480)"},{"link":"https://www.ncsc.gov.ie/pdfs/2608250242_CVE-2026-18963.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250242_CVE-2026-18963.pdf","https://thehackernews.com/2026/08/critical-keycloak-password-reset-flaw.html"],"published":"2026-08-25T00:00:00+00:00","source":"NCSC Ireland","sources":["NCSC Ireland","The Hacker News"],"summary_plain":"Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management server that could allow an unauthenticated remote attacker to take over any user account by forcing a password reset. The vulnerability, assigned the CVE identifier CVE-2026-18963, is rated 9.1 on the CVSS scoring system by Red Hat, which acts as","title":"Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account"},{"link":"https://www.ncsc.gov.ie/pdfs/2608250237_CVE-2026-19478.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250237_CVE-2026-19478.pdf"],"published":"2026-08-25T00:00:00+00:00","source":"NCSC Ireland","sources":["NCSC Ireland"],"summary_plain":null,"title":"Critical Vulnerability in GitLab CE/EE (CVE-2026-19478)"},{"link":"https://www.ncsc.gov.ie/pdfs/2608250238_CVE-2026-19598.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250238_CVE-2026-19598.pdf"],"published":"2026-08-25T00:00:00+00:00","source":"NCSC Ireland","sources":["NCSC Ireland"],"summary_plain":null,"title":"Critical Vulnerability exists in Wordpress Plugin: Pods \u2013 Custom Content Types and Fields (CVE-2026-19598)"},{"link":"https://www.darkreading.com/vulnerabilities-threats/zimbra-flaw-exploitation-shrinking-window-patch","links":["https://www.darkreading.com/vulnerabilities-threats/zimbra-flaw-exploitation-shrinking-window-patch"],"published":"2026-08-24T21:46:55+00:00","source":"Dark Reading","sources":["Dark Reading"],"summary_plain":"CISA issued a three-day deadline for agencies to patch a Zimbra security vulnerability, CVE-2026-73570, which allows full takeover of a user's communications.","title":"Exploited Zimbra Flaw Highlights Shrinking Window to Patch"},{"link":"https://www.theregister.com/security/2026/08/24/you-dont-want-this-sleepwalker-backdoor-on-your-windows-machine/5292021","links":["https://www.theregister.com/security/2026/08/24/you-dont-want-this-sleepwalker-backdoor-on-your-windows-machine/5292021","https://thehackernews.com/2026/08/operation-quicsilver-targets-myanmar.html"],"published":"2026-08-24T21:39:39+00:00","source":"The Register: Security","sources":["The Register: Security","The Hacker News"],"summary_plain":"Its own command language, 23 instructions - signs point to 'well-resourced operation rather than an opportunistic one'","title":"Operation QUICSILVER Targets Myanmar Government and IT with QUICAgent Backdoor"},{"link":"https://www.bleepingcomputer.com/news/security/unpatched-calix-flaw-lets-hackers-bypass-nat-to-expose-internal-devices/","links":["https://www.bleepingcomputer.com/news/security/unpatched-calix-flaw-lets-hackers-bypass-nat-to-expose-internal-devices/"],"published":"2026-08-24T21:14:30+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"An unpatched vulnerability in Calix GS7 XGS (GS5239XG) residential routers used by multiple U.S. broadband providers allows remote, unauthenticated attackers to create port-forwarding rules that can expose local network devices to the public internet. [...]","title":"Unpatched Calix flaw lets hackers bypass NAT to expose internal devices"},{"link":"https://www.theregister.com/security/2026/08/24/browser-fingerprint-tool-shows-how-easy-you-are-to-track-using-the-latest-sneaky-tricks/5292015","links":["https://www.theregister.com/security/2026/08/24/browser-fingerprint-tool-shows-how-easy-you-are-to-track-using-the-latest-sneaky-tricks/5292015"],"published":"2026-08-24T21:07:10+00:00","source":"The Register: Security","sources":["The Register: Security"],"summary_plain":"Glassbox dev admits he had some help from Claude to build locally running tool","title":"Browser fingerprint tool shows how easy you are to track using the latest sneaky tricks"},{"link":"https://www.darkreading.com/data-privacy/wordlistloader-disguises-malware-ordinary-text","links":["https://www.darkreading.com/data-privacy/wordlistloader-disguises-malware-ordinary-text","https://thehackernews.com/2026/08/wordlistloader-delivers-amatera-via.html"],"published":"2026-08-24T20:51:27+00:00","source":"Dark Reading","sources":["Dark Reading","The Hacker News"],"summary_plain":"ClickFix-style threat campaigns are using a new trick to evade detection and deliver Amatera, an increasingly prevalent infostealer.","title":"WordlistLoader Delivers Amatera via ClickFix, SynkLoader Phishes Windows Passwords"},{"link":"https://www.bleepingcomputer.com/news/security/hackers-target-wordpress-sites-in-miniorange-auth-bypass-attacks/","links":["https://www.bleepingcomputer.com/news/security/hackers-target-wordpress-sites-in-miniorange-auth-bypass-attacks/"],"published":"2026-08-24T19:26:32+00:00","source":"BleepingComputer","sources":["BleepingComputer"],"summary_plain":"Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML responses and log in as administrators. [...]","title":"Hackers target WordPress sites in miniOrange auth bypass attacks"}],"overview":{"by_source":[{"count":12,"name":"The Hacker News"},{"count":10,"name":"BleepingComputer"},{"count":9,"name":"SecurityWeek"},{"count":5,"name":"The Register: Security"},{"count":4,"name":"NCSC Ireland"},{"count":3,"name":"Dark Reading"},{"count":2,"name":"Schneier on Security"}],"earliest_local":"19:26","fallback":false,"feeds_configured":8,"latest_local":"16:23","sources_in_view":7,"total":33,"tz_label":"UTC","window_hours":24,"window_label":"Last 24 hours","window_since_local":"Mon Aug 24 \u00b7 18:05"},"patching_brief":{"empty":false,"entries":[{"cves":["CVE-2026-15981","CVE-2026-61979"],"link":"https://www.securityweek.com/wordpress-websites-targeted-via-miniorange-plugin-vulnerabilities/","links":["https://www.securityweek.com/wordpress-websites-targeted-via-miniorange-plugin-vulnerabilities/","https://thehackernews.com/2026/08/attackers-target-miniorange-saml-flaws.html"],"outline":"CVE-2026-61979 and CVE-2026-15981 are authentication bypass vulnerabilities affecting the MiniOrange SAML 2.0 SSO plugin. The post WordPress Websites Targeted via MiniOrange Plugin Vulnerabilities appeared first on SecurityWeek .","priority_score":28,"source":"SecurityWeek, The Hacker News","time_local":"13:33","title":"Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access"},{"cves":["CVE-2026-18963"],"link":"https://www.ncsc.gov.ie/pdfs/2608250242_CVE-2026-18963.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250242_CVE-2026-18963.pdf","https://thehackernews.com/2026/08/critical-keycloak-password-reset-flaw.html"],"outline":"Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management server that could allow an unauthenticated remote attacker to take over any user account by forcing a password reset.","priority_score":22,"source":"NCSC Ireland, The Hacker News","time_local":"00:00","title":"Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account"},{"cves":["CVE-2026-21962"],"link":"https://www.securityweek.com/cisa-warns-of-exploited-oracle-weblogic-vulnerability/","links":["https://www.securityweek.com/cisa-warns-of-exploited-oracle-weblogic-vulnerability/","https://thehackernews.com/2026/08/actively-exploited-oracle-weblogic-flaw.html"],"outline":"The vulnerability is tracked as CVE-2026-21962 and it has been widely exploited by threat actors against WebLogic servers. The post CISA Warns of Exploited Oracle WebLogic Vulnerability appeared first on SecurityWeek .","priority_score":18,"source":"SecurityWeek, The Hacker News","time_local":"07:46","title":"Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical Data"},{"cves":["CVE-2026-19478"],"link":"https://www.ncsc.gov.ie/pdfs/2608250237_CVE-2026-19478.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250237_CVE-2026-19478.pdf"],"outline":"No feed summary available \u2014 open the article for context.","priority_score":17,"source":"NCSC Ireland","time_local":"00:00","title":"Critical Vulnerability in GitLab CE/EE (CVE-2026-19478)"},{"cves":["CVE-2026-19598"],"link":"https://www.ncsc.gov.ie/pdfs/2608250238_CVE-2026-19598.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250238_CVE-2026-19598.pdf"],"outline":"Custom Content Types and Fields (CVE-2026-19598)","priority_score":17,"source":"NCSC Ireland","time_local":"00:00","title":"Critical Vulnerability exists in Wordpress Plugin: Pods \u2013 Custom Content Types and Fields (CVE-2026-19598)"},{"cves":["CVE-2026-74480"],"link":"https://www.ncsc.gov.ie/pdfs/2608250239_CVE-2026-74480.pdf","links":["https://www.ncsc.gov.ie/pdfs/2608250239_CVE-2026-74480.pdf"],"outline":"No feed summary available \u2014 open the article for context.","priority_score":12,"source":"NCSC Ireland","time_local":"00:00","title":"Critical Linux Kernel Network Bridge Vulnerability (CVE-2026-74480)"},{"cves":["CVE-2026-73570"],"link":"https://www.darkreading.com/vulnerabilities-threats/zimbra-flaw-exploitation-shrinking-window-patch","links":["https://www.darkreading.com/vulnerabilities-threats/zimbra-flaw-exploitation-shrinking-window-patch"],"outline":"CISA issued a three-day deadline for agencies to patch a Zimbra security vulnerability, CVE-2026-73570, which allows full takeover of a user's communications.","priority_score":12,"source":"Dark Reading","time_local":"21:46","title":"Exploited Zimbra Flaw Highlights Shrinking Window to Patch"},{"cves":[],"link":"https://www.bleepingcomputer.com/news/security/hackers-breached-over-270-zimbra-servers-in-ongoing-attacks/","links":["https://www.bleepingcomputer.com/news/security/hackers-breached-over-270-zimbra-servers-in-ongoing-attacks/"],"outline":"Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vulnerability. [...]","priority_score":5,"source":"BleepingComputer","time_local":"12:04","title":"Hackers breached over 270 Zimbra servers in ongoing attacks"}],"intro":"CVEs, advisories, and patch-focused items from your current feed view \u2014 use for patch planning and change windows.","note":"Heuristic filter on headline + RSS summary (CVE patterns, vuln/patch language). Verify severity and applicability in your environment."},"soc_brief":{"empty":false,"intro":"High-signal items \u2014 worth prioritizing for SOC triage and manager awareness.","note":"Ranked using headline + RSS summary text (CVEs, incidents, vulns, ransomware, phishing, and related terms). Not a replacement for analyst judgment.","spotlight":[{"link":"https://www.bleepingcomputer.com/news/security/hospital-operator-nutex-health-says-data-stolen-in-cyberattack/","links":["https://www.bleepingcomputer.com/news/security/hospital-operator-nutex-health-says-data-stolen-in-cyberattack/"],"outline":"Healthcare and services provider Nutex is investigating a data breach incident where an unauthorized third party exfiltrated information from company servers. [...]","priority_score":10,"source":"BleepingComputer","themes":["Breach / leak"],"time_local":"14:44","title":"Hospital operator Nutex Health says data stolen in cyberattack"},{"link":"https://www.bleepingcomputer.com/news/security/massive-ddos-attack-disrupts-norways-government-digital-services/","links":["https://www.bleepingcomputer.com/news/security/massive-ddos-attack-disrupts-norways-government-digital-services/","https://thehackernews.com/2026/08/e4del-and-pinhole-rats-turn-ftp-banners.html"],"outline":"A large distributed denial-of-service (DDoS) attack has disrupted Norway's shared government digital infrastructure since Monday, affecting services used by the public sector. [...]","priority_score":6,"source":"BleepingComputer, The Hacker News","themes":["Malware / botnet","Availability / DDoS"],"time_local":"15:52","title":"E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands"},{"link":"https://www.securityweek.com/first-malware-built-specifically-for-car-head-units-fuels-botnet/","links":["https://www.securityweek.com/first-malware-built-specifically-for-car-head-units-fuels-botnet/"],"outline":"Kaspersky researchers have linked the malware to the BadBox botnet, which has ensnared millions of devices. The post First Malware Built Specifically for Car Head Units Fuels Botnet appeared first on SecurityWeek .","priority_score":6,"source":"SecurityWeek","themes":["Malware / botnet"],"time_local":"11:18","title":"First Malware Built Specifically for Car Head Units Fuels Botnet"},{"link":"https://www.darkreading.com/cybersecurity-operations/is-cyber-facing-an-affordability-crisis-","links":["https://www.darkreading.com/cybersecurity-operations/is-cyber-facing-an-affordability-crisis-"],"outline":"As breach costs reach record highs and defense spending nears $240 billion, small businesses are dangerously exposed, threatening supply chain security.","priority_score":5,"source":"Dark Reading","themes":["Breach / leak","Supply chain"],"time_local":"14:53","title":"Is Cyber Facing an Affordability Crisis?"},{"link":"https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html","links":["https://thehackernews.com/2026/08/a-malicious-webpage-could-poison-your.html"],"outline":"Oasis Security has disclosed a weakness in NVIDIA NemoClaw that could let an attacker-controlled webpage take unauthenticated control of the local Ollama instance serving an AI agent and plant hidden instructions inside the model itself.","priority_score":4,"source":"The Hacker News","themes":["Incident / IR"],"time_local":"14:07","title":"A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClaw"},{"link":"https://www.bleepingcomputer.com/news/security/hackers-target-wordpress-sites-in-miniorange-auth-bypass-attacks/","links":["https://www.bleepingcomputer.com/news/security/hackers-target-wordpress-sites-in-miniorange-auth-bypass-attacks/"],"outline":"Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML responses and log in as administrators. [...]","priority_score":4,"source":"BleepingComputer","themes":[],"time_local":"19:26","title":"Hackers target WordPress sites in miniOrange auth bypass attacks"}]}}
