Microsoft on Tuesday announced patches for 421 CVEs, including a high-severity vulnerability that has been exploited in the wild as a zero-day. The exploited flaw, tracked as CVE-2026-68820, is described as a use-after-free issue in Ancillary Function Driver for WinSock… Read More "August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day"
Cloud Incident Response for Detecting Containing Recovering
They record who accessed what, when, and from where across admin activity, data access, and system events, which is usually the fastest way to reconstruct what a compromised identity did. The same role is filled by AWS CloudTrail and Azure’s… Read More "Cloud Incident Response for Detecting Containing Recovering"
Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands
Ravie LakshmananAug 11, 2026Social Engineering / Malware The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of a new social engineering campaign orchestrated by Russian nation-state threat actors targeting IT workers in the country by masquerading as recruiters… Read More "Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands"
OpenAI Launches Two-Tier Access Program Alongside GPT 5.6 Cyber
OpenAI is launching GPT‑5.6‑Cyber, its newest large langue model (LLM) purpose-trained for cybersecurity tasks, based on its latest frontier AI model, GPT‑5.6 Sol. The AI company also tweaked its Daybreak program to introduce two new tiers, Daybreak Blue – for… Read More "OpenAI Launches Two-Tier Access Program Alongside GPT 5.6 Cyber"
Top 10 Attack Surface Management Software Solutions in 2026
As concluded in the 2026 Verizon Data Breach Investigations Report. Vulnerability exploitation has overtaken credential abuse as the #1 initial access vector — 31%, up 55% year-over-year, versus 13% for credentials. That shift highlights an operational problem for every security… Read More "Top 10 Attack Surface Management Software Solutions in 2026"
Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws
Adobe on Tuesday rolled out patches for over 50 vulnerabilities across its products, including critical-severity bugs in ColdFusion, Campaign Classic, and Commerce. With a priority 1 rating, the ColdFusion update fixes 15 security defects, including three flagged as critical that… Read More "Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws"
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
Swati KhandelwalAug 11, 2026Cryptography / Software Supply Chain Mozilla has scrapped the cryptographic key behind Firefox and Thunderbird downloads for Linux after an unencrypted copy of it was committed by mistake to one of the company’s own private code repositories.… Read More "Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo"
Six npm Packages Read C2 Addresses From Ethereum Wallet
Six npm packages have been found querying an attacker-controlled Ethereum wallet to work out where to fetch their next stage of malware, reading command-and-control (C2) addresses out of a blockchain transaction. Sonatype Research Labs identified the packages on August 10… Read More "Six npm Packages Read C2 Addresses From Ethereum Wallet"
The Ultimate Ransomware Defense Guide (2026)
Ransomware is the fasted-growing category of cybercrime. It’s estimated that over 4,000 ransomware attacks occur daily. Given the sheer volume of these attacks and the deep attack surface connections between organizations and their vendors, there’s a high likelihood that some… Read More "The Ultimate Ransomware Defense Guide (2026)"
Zoom Patches Zero-Click Code Execution Vulnerability
Zoom on Tuesday announced rolling out patches for four vulnerabilities in its products, including a severe flaw that allowed zero-click remote code execution (RCE). Impacting Zoom’s clients on all supported platforms, three of the security defects were discovered in the… Read More "Zoom Patches Zero-Click Code Execution Vulnerability"