24h | 7d | 30d

Overview

  • Microsoft
  • Windows 10 Version 1607

11 Aug 2026
Published
12 Aug 2026
Updated

CVSS v3.1
HIGH (7.0)
EPSS
Pending

Description

Use after free in Windows Ancillary Function Driver for WinSock allows an authorized attacker to elevate privileges locally.

Statistics

  • 19 Posts
  • 11 Interactions

Last activity: Last hour

Fediverse

Profile picture fallback

「Microsoft 製品の脆弱性対策について(2026年8月)」: #IPA

「 2026年8月12日(日本時間)に Microsoft 製品に関するセキュリティ更新プログラム(月例)が公表されています。
これらの脆弱性を悪用された場合、アプリケーションプログラムが異常終了する、攻撃者によってパソコンを制御される、といった様々な被害が発生するおそれがあります。

この内 CVE-2026-68820 の脆弱性について、Microsoft 社では悪用の事実を確認済みと公表しており、今後被害が拡大するおそれがあるため、至急、セキュリティ更新プログラムを適用してください。 」

ipa.go.jp/security/security-al

#prattohome

  • 2
  • 1
  • 0
  • 3h ago
Profile picture fallback

「マイクロソフトは、現在攻撃を受けているWindowsドライバーのゼロデイ脆弱性を含む398件の脆弱性を修正した。 」: #TheHackerNews

「マイクロソフトは火曜日に月例のセキュリティアップデートを公開したが、修正された脆弱性の1つが既に攻撃に悪用されている。

このバグは、ネットワークソケット操作を処理するWindowsカーネルの中核ドライバに存在します。既にマシン上でコードを実行している攻撃者は、このバグを利用してSYSTEM権限に昇格できます。このパッチが最初にリリースされます。

この脆弱性は CVE-2026-68820 (CVSSスコア:7.0)として追跡されており、今月のリリースでマイクロソフトが現在悪用されていると警告している唯一の脆弱性です。悪用は、ドライバーの競合状態をトリガーすることによって行われます。マイクロソフトは、この悪用を行った組織を公表していません。」

thehackernews.com/2026/08/micr

#prattohome

  • 1
  • 0
  • 0
  • 5h ago
Profile picture fallback

🚨 THREAT ALERT: CISA adds CVE-2026-68820 (Windows WinSock AFD Use-After-Free) to the KEV catalog due to active exploitation. Local attackers can elevate privileges to system level. Access our TSUITE brief with CrowdStrike CQL telemetry queries: thecybermind.co/jily

  • 0
  • 1
  • 0
  • 1h ago
Profile picture fallback

📰 Lazarus Group Exploits Windows Zero-Day in Espionage Campaign

Microsoft patches actively exploited Windows zero-day (CVE-2026-68820) used by Lazarus Group. The bug allows SYSTEM-level access and was used in the 'Operation Dream Job' campaign to deploy rootkits against the defense sector. #CVE202668820 #Lazarus ...

🔗 cyber.netsecops.io/articles/la

  • 0
  • 0
  • 0
  • 10h ago
Profile picture fallback

Microsoft August 2026 Patch Tuesday fixes 421 flaws, including CVE-2026-68820, a WinSock zero-day exploited in the wild, plus two disclosed bugs.

securityonline.info/microsoft-

  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback

Lazarus exploited a Windows zero-day (CVE-2026-68820) in Operation Dream Job to hit defense firms with fake job offers and a new backdoor.

securityonline.info/lazarus-ze

  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback

CVE-2026-68820: CRITICAL Windows afd.sys zero-day exploited by Lazarus Group for SYSTEM access in defense/aerospace. Patch released 2026-08-11. Prioritize updates & check for ForestTiger/Troy backdoors. radar.offseq.com/threat/fresh-

  • 0
  • 0
  • 0
  • 1h ago

Bluesky

Profile picture fallback
Check Point researchers look into the latest variant of the Operation Dream Job campaign where the threat actor exploited CVE-2026-68820, a 0-day vulnerability in the Microsoft AFD.sys driver, to deploy a new version of Lazarus’s kernel-mode rootkit FudModule. research.checkpoint.com/2026/shatter...
  • 1
  • 1
  • 0
  • 1h ago
Profile picture fallback
Microsoft patches 398 flaws, including exploited CVE-2026-68820 that lets local attackers reach SYSTEM, plus four unauthenticated 9.8 RCEs.
  • 0
  • 1
  • 0
  • 10h ago
Profile picture fallback
Lazarus-linked Operation Dream Job hit defense firms in Europe and India with trojanized PDF viewers, spear-phishing, and new FudModule exploits, including CVE-2026-68820 and Roundcube abuse. #Lazarus #India #Europe
  • 0
  • 1
  • 0
  • 7h ago
Profile picture fallback
~Checkpoint~ Lazarus deploys Troy backdoor and FudModule rootkit exploiting CVE-2026-68820 zero-day in Windows AFD.sys via trojanized PDF viewers. - IOCs: 135[.]181[.]67[.]203, 135[.]181[.]185[.]158, enveil[.]online - #Lazarus #ThreatIntel #ZeroDay
  • 0
  • 0
  • 0
  • 13h ago
Profile picture fallback
CVE-2026-68820 in afd.sys is actively exploited to escalate privileges to SYSTEM, and Microsoft’s monthly updates also patch four unauthenticated RCE flaws.
  • 0
  • 0
  • 0
  • 13h ago
Profile picture fallback
Microsoft’s August 2026 Patch Tuesday fixes an actively exploited zero-day (CVE-2026-68820) in the Windows kernel driver, used by Lazarus Group […]
  • 0
  • 0
  • 0
  • 10h ago
Profile picture fallback
"Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack" published by Checkpoint. #DreamJob, #Troy, #FudModule, #Lazarus, #MISTPEN, #CVE202668820, #ForestTiger https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack/
  • 0
  • 0
  • 0
  • 9h ago
Profile picture fallback
「この内 CVE-2026-68820 の脆弱性について、Microsoft 社では悪用の事実を確認済みと公表しており、今後被害が拡大するおそれがあるため、至急、セキュリティ更新プログラムを適用してください。」
  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback
Microsoft patches 400+ vulnerabilities, one zero-day under attack (CVE-2026-68820) 🔗 Read more: www.helpnetsecurity.com/2026/08/12/a... #patchtuesday #patching #windows #0day #sharepointserver #cybersecurity #cybersecuritynews #ITsec @microsoft.com @dustinchilds.bsky.social @thezdi.bsky.social
  • 0
  • 0
  • 0
  • Last hour
Profile picture fallback
Microsoft released patches for 421 CVEs, including exploited zero-days CVE-2026-68820 and CVE-2026-62832 enabling local privilege escalation without user interaction.
  • 1
  • 0
  • 0
  • 14h ago
Profile picture fallback
~Cisa~ CISA added three actively exploited vulnerabilities (Cisco ASA/FTD, Windows WinSock, Metabase) to the KEV Catalog. - IOCs: CVE-2026-20349, CVE-2026-68820, CVE-2026-72898 - #CISA #CVE #ThreatIntel
  • 0
  • 1
  • 0
  • 13h ago
Profile picture fallback
@talosintelligence.com Microsoft's August 2026 update patches 421 vulnerabilities, including 62 critical and one actively exploited EoP flaw (CVE-2026-68820). - IOCs: CVE-2026-68820, CVE-2026-62893, CVE-2026-62878 - #CVE #PatchTuesday #ThreatIntel
  • 0
  • 0
  • 0
  • 5h ago

Overview

  • Microsoft
  • Microsoft Malware Protection Engine

16 Jun 2026
Published
28 Jul 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
10.75%

KEV

Description

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ".

Statistics

  • 7 Posts
  • 7 Interactions

Last activity: 2 hours ago

Fediverse

Profile picture fallback

🚨Nightmare Eclipse has released a new zero-day PoC called ShieldBreak

Per the security researcher: "Microsoft has failed to properly patch the RoguePlanet vulnerability CVE-2026-50656, this PoC demonstrates a full patch bypass."

GitHub: github.com/MSNightmare/ShieldB

  • 3
  • 2
  • 0
  • 14h ago
Profile picture fallback

On another news NightmareEclipse (the goat?) returned with a new PoC, after Microsoft failed to fully patch RoguePlanet (CVE-2026-50656), the current PoC only made for latest Windows 11 release, but they said that Windows 10 also still vulnerable. And yeah, it works even after the latest update

github.com/MSNightmare/ShieldB

  • 1
  • 1
  • 0
  • 12h ago
Profile picture fallback

A public PoC named ShieldBreak bypasses Microsoft's CVE-2026-50656 patch, enabling Windows Defender privilege escalation to SYSTEM.

securityonline.info/shieldbrea

  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback

„Microsoft hat mit dem August 2026-Patchday zwar einige Sicherheitskorrekturen ausgeliefert. Aber die RoguePlanet genannte Schwachstelle (CVE-2026-50656) soll nicht ausreichend abgeschwächt worden sein. Der als Nightmare Eclipse agierende Sicherheitsforscher hat einen ShieldBreak genannten Proof of Concept (PoC) veröffentlicht.“

borncity.com/blog/2026/08/12/s

  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback

August 2026 Patchday: Updates gerade freigegeben, da veröffentlicht Nightmare Eclipse #Shieldbreak als Proof of Concept (PoC). Der PoC umgeht die ungenügend gepatchte #Defender Schwachstelle CVE-2026-50656 (#RoguePlanet).
borncity.com/blog/2026/08/12/s

  • 0
  • 0
  • 1
  • 2h ago

Bluesky

Profile picture fallback
CVE-2026-50656, this PoC demonstrates a full patch bypass.
  • 0
  • 0
  • 0
  • 11h ago

Overview

  • Cisco
  • Cisco Secure Firewall Adaptive Security Appliance (ASA) Software

11 Aug 2026
Published
12 Aug 2026
Updated

CVSS v3.1
HIGH (8.6)
EPSS
Pending

Description

A vulnerability in the Remote Access SSL VPN service for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.  This vulnerability is due to insufficient error checking when processing HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to the Remote Access SSL VPN service on an affected device. A successful exploit could allow the attacker to cause the affected device to reload, resulting in a DoS condition.

Statistics

  • 8 Posts
  • 2 Interactions

Last activity: 2 hours ago

Fediverse

Profile picture fallback
  • 0
  • 1
  • 0
  • 13h ago
Profile picture fallback

Cisco confirms CVE-2026-20349, a Cisco ASA and FTD VPN vulnerability (CVSS 8.6), is exploited in the wild to crash firewalls. Patch now.

securityonline.info/cisco-asa-

  • 0
  • 0
  • 0
  • 9h ago
Profile picture fallback

「Ciscoは、ASAおよびFTD VPNの脆弱性が悪用され、デバイスがクラッシュする可能性があると警告している。 」: #BLEEPINGCOMPUTER

「シスコは、Secure Firewall ASAおよびThreat Defense(FTD)ソフトウェアに存在する深刻なサービス拒否攻撃の脆弱性が、影響を受けるデバイスをリモートからクラッシュさせる攻撃で積極的に悪用されていると警告している。

CVE-2026-20349として追跡されているこの脆弱性は、深刻度スコアが8.6であり、特定のリモートアクセスサービスが有効になっているCisco Secure Firewall Adaptive Security Appliance(ASA)またはSecure Firewall Threat Defense(FTD)ソフトウェアを実行しているデバイスに影響を与えます。

シスコは本日公開したセキュリティ勧告の中で、この脆弱性はHTTPリクエスト処理時のエラーチェックが不十分なことに起因すると述べた。 」

bleepingcomputer.com/news/secu

#prattohome

  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback

🚨 THREAT ALERT: CISA adds CVE-2026-20349 (Cisco ASA/FTD Heap Inspection DoS) to the KEV catalog due to active exploitation. Unauthenticated remote actors can crash perimeter firewalls. Read our full TSUITE brief with SPL, KQL, AQL & Chronicle queries: thecybermind.co/jily

  • 0
  • 0
  • 0
  • 2h ago

Bluesky

Profile picture fallback
Cisco warns that CVE-2026-20349, an 8.6 DoS flaw in Secure Firewall ASA and FTD VPN services, is being actively exploited to crash devices. Fixed releases and hot fixes are available. #Cisco #CVE202620349 #VPN
  • 0
  • 0
  • 0
  • 13h ago
Profile picture fallback
CVE-2026-20349 enables unauthenticated attackers to trigger reloads and denial-of-service on Cisco ASA/FTD firewalls via crafted HTTP requests to SSL VPN.
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
Cisco patched CVE-2026-20349 in Secure Firewall ASA and FTD, a zero-day that could let remote attackers trigger DoS via crafted HTTP requests to the Remote Access SSL VPN service. #Cisco #CVE202620349 #CISA
  • 0
  • 0
  • 0
  • 3h ago
Profile picture fallback
~Cisa~ CISA added three actively exploited vulnerabilities (Cisco ASA/FTD, Windows WinSock, Metabase) to the KEV Catalog. - IOCs: CVE-2026-20349, CVE-2026-68820, CVE-2026-72898 - #CISA #CVE #ThreatIntel
  • 0
  • 1
  • 0
  • 13h ago

Overview

  • Microsoft
  • Microsoft SharePoint Enterprise Server 2016

14 Jul 2026
Published
10 Aug 2026
Updated

CVSS v3.1
CRITICAL (9.1)
EPSS
1.63%

KEV

Description

Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.

Statistics

  • 4 Posts
  • 4 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

Rapid7 published full details and a PoC for CVE-2026-55040, a critical SharePoint authentication bypass that forges JWT tokens. Patch now.

securityonline.info/sharepoint

  • 2
  • 1
  • 0
  • 3h ago
Profile picture fallback
Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040)

https://www.rapid7.com/blog/post/ra-microsoft-sharepoint-jwt-token-authentication-bypass-cve-2026-55040/
  • 0
  • 1
  • 0
  • 3h ago
Profile picture fallback

「研究者らが、認証不要のリモートコード実行(RCE)を実現するAI支援型SharePointエクスプロイトチェーンを公開 」: #TheHackerNews

「セキュリティ研究者らは、有効なアカウントを持たずに、管理者を含むあらゆるユーザーとしてMicrosoft SharePointサーバーに侵入する方法を発見した。この発見に大きく貢献したのが、AIエージェントを用いた作業だった。

CVE-2026-55040 (CVSS 9.1)として追跡されているこの脆弱性は 、SharePoint Server Subscription Edition、SharePoint Server 2019、およびSharePoint Server 2016に影響します。マイクロソフトの影響を受ける製品リストには、これら3つのオンプレミス版のみが含まれており、SharePoint Onlineは含まれていません。

この攻撃手法は、認証されていないリモート攻撃者が、選択したユーザーの身元を偽装することを可能にします。 」

thehackernews.com/2026/08/rese

#prattohome

  • 0
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
Rapid7 Analysis: Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040) www.rapid7.com -> Original->
  • 0
  • 0
  • 0
  • 3h ago

Overview

  • Pending

Pending
Published
Pending
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available.

Statistics

  • 4 Posts
  • 4 Interactions

Last activity: 1 hour ago

Fediverse

Profile picture fallback

CVE-2026-17106: Docker docker cp Container-to-Host Arbitrary File Write

CopyEscape (CVE-2026-17106) lets a malicious Docker container abuse docker cp to overwrite host files through a filesystem race and symlink extraction flaw

thecybersecguru.com/news/copye

  • 0
  • 0
  • 0
  • 17h ago

Bluesky

Profile picture fallback
CVE-2026-17106, a container-to-host arbitrary file-write vulnerability in Docker’s docker cp command
  • 1
  • 2
  • 0
  • 17h ago
Profile picture fallback
CopyEscape: Container-to-host arbitrary file write via docker cp (CVE-2026-17106)
  • 0
  • 1
  • 0
  • 18h ago
Profile picture fallback
Kritická zranitelnost v Dockeru, sledovaná jako CVE-2026-17106 a označovaná jako „CopyEscape“, umožňuje škodlivým kontejnerům přepisovat soubory na hostitelském systému
  • 0
  • 0
  • 0
  • 1h ago

Overview

  • IBM
  • Langflow OSS

17 Jul 2026
Published
05 Aug 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
17.35%

Description

IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api/v1/validate/code (executes user code via exec()) to achieve full RCE on default Langflow deployments

Statistics

  • 2 Posts
  • 8 Interactions

Last activity: 1 hour ago

Fediverse

Profile picture fallback

CVE-2026-9198: Langflow sotto attacco attivo, ecco perché aggiornare subito
#tech
spcnet.it/cve-2026-9198-langfl
@informatica

  • 8
  • 0
  • 0
  • 21h ago

Bluesky

Profile picture fallback
✨ CVE-2026-9198: Langflow sotto attacco attivo, ecco perché aggiornare subito Leggi il blog: spcnet.it/cve-2026-919...
  • 0
  • 0
  • 0
  • 1h ago

Overview

  • Microsoft
  • Windows Server 2012

14 Apr 2026
Published
19 Jun 2026
Updated

CVSS v3.1
HIGH (8.0)
EPSS
0.24%

KEV

Description

Improper authorization in Windows Kerberos allows an authorized attacker to elevate privileges over an adjacent network.

Statistics

  • 3 Posts
  • 2 Interactions

Last activity: 20 hours ago

Fediverse

Profile picture fallback

Details and PoC for CVE-2026-27912 (ResetNightmare) are public. This Kerberos flaw lets attackers reset AD passwords and gain SYSTEM.

securityonline.info/cve-2026-2

  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback
[RSS] Exploiting AD ResetNightmare (CVE-2026-27912) and KerberLoss (CVE-2026-25177) from Linux

https://cravaterouge.com/articles/resetnightmare/
  • 1
  • 1
  • 0
  • 20h ago

Bluesky

Profile picture fallback
[RSS] Exploiting AD ResetNightmare (CVE-2026-27912) and KerberLoss (CVE-2026-25177) from Linux cravaterouge.com -> Original->
  • 0
  • 0
  • 0
  • 20h ago

Overview

  • Zoom Communications
  • Zoom Clients

11 Aug 2026
Published
12 Aug 2026
Updated

CVSS v3.1
HIGH (8.3)
EPSS
Pending

KEV

Description

Missing bounds check in the annotator function of Zoom Clients allows buffer over-write, which may allow a meeting participant to achieve remote code execution of another participant via network access.

Statistics

  • 2 Posts

Last activity: 14 hours ago

Bluesky

Profile picture fallback
Zoom patched four flaws, including CVE-2026-53413, a zero-click RCE in Zoom's annotator that could let an attacker take over another participant's machine. #Zoom #CVE-2026-53413 #RCE
  • 0
  • 0
  • 0
  • 14h ago
Profile picture fallback
Zoomsday: Zero-click RCE in Zoom, from any meeting participant to any other (CVE-2026-53413)
  • 0
  • 0
  • 0
  • 14h ago

Overview

  • N-able
  • N-central

02 Aug 2026
Published
04 Aug 2026
Updated

CVSS v4.0
HIGH (8.2)
EPSS
4.10%

Description

An incomplete patch for CVE-2026-18556 allows for authentication bypass and account takeover in N-central Versions through 2026.3.1

Statistics

  • 3 Posts
  • 1 Interaction

Last activity: 21 hours ago

Fediverse

Profile picture fallback

StormEncryptor: come l’ex affiliato Medusa Storm-1175 ha trasformato N-central in un launchpad ransomware

Microsoft attribuisce a Storm-1175, gruppo legato alla Cina e già affiliato Medusa, lo sfruttamento della falla CVE-2026-18577 in N-able N-central per distribuire il nuovo ransomware StormEncryptor a cascata su decine di MSP e relativi clienti.

insicurezzadigitale.com/storme

  • 1
  • 0
  • 1
  • 21h ago
Profile picture fallback

La innovadora botnet Aeternum usa blockchain para evadir detección, mientras cámaras IP ucranianas y drones militares sufren infiltraciones que exponen datos sensibles; una vulnerabilidad crítica en KVM permite escalada de privilegios y ataques a plugins de WordPress generan accesos administrativos falsos; además, ransomware de origen chino amenaza sistemas empresariales. Descubre estos y más detalles en el siguiente listado de noticias sobre seguridad informática:

🗞️ ÚLTIMAS NOTICIAS EN SEGURIDAD INFORMÁTICA 🔒
====| 🔥 LO QUE DEBES SABER HOY 11/08/26 📆 |====

🔐 ANÁLISIS DE LA AMENAZA PERMANENTE: BOTNET AETERNUM USANDO BLOCKCHAIN

La botnet Aeternum representa un riesgo avanzado al utilizar contratos inteligentes en la blockchain Polygon para establecer una infraestructura descentralizada de comando y control (C2). Esta arquitectura evita la detección tradicional y facilita la ejecución de cargas maliciosas. Conocer esta técnica innovadora es esencial para reforzar las defensas contra amenazas persistentes modernas. Descubre el análisis completo y cómo proteger tus sistemas aquí 👉 djar.co/tLv9vV

🎥 EXPLOITACIÓN DE CÁMARAS IP UCRANIANAS POR OPERADOR DE HABLA RUSA

Se ha revelado un directorio abierto que expone las herramientas usadas para comprometer cámaras IP en Ucrania, además de intentos de acceso a sitios gubernamentales y militares. Este caso destaca los riesgos reales en dispositivos IoT y la importancia crítica de proteger infraestructuras sensibles ante actores sofisticados. Infórmate sobre las tácticas y medidas preventivas recomendadas aquí 👉 djar.co/Qd0A

⚠️ CVE-2026-64561: ESCAPE DE INVITADOS KVM CON PRIVILEGIOS ROOT EN LINUX

Una vulnerabilidad crítica permite a usuarios invitados de máquinas virtuales KVM escapar al host Linux con privilegios root, comprometiendo la seguridad del sistema completo. Este fallo subraya la urgencia de aplicar parches y fortalecer configuraciones en entornos virtualizados para evitar accesos no autorizados de alto nivel. Lee el análisis técnico y recomendaciones aquí 👉 djar.co/v9txO

🛠️ ATAQUE A LA CADENA DE SUMINISTRO EN PLUGINS DE WORDPRESS BdThemes

Se ha detectado la explotación de paquetes JSON maliciosos en plugins de WordPress, permitiendo a atacantes crear usuarios administradores falsos y desplegar shells web PHP sin necesidad de actualizar los plugins. Esta vulnerabilidad de tipo XSS evidencia el peligro que representa no validar adecuadamente componentes de terceros y la necesidad de mantener actualizaciones constantes. Entiende cómo mitigar este riesgo hoy mismo aquí 👉 djar.co/3ib0TB

🚁 VULNERABILIDADES EN DRONES MILITARES DE LA MARINA REAL: FILTRACIÓN DE DATOS HACIA CHINA

Un informe revela que drones de la Marina Real presentan fallas de seguridad que permiten la transmisión no autorizada de información sensible hacia China. Este incidente resalta la importancia de implementar controles robustos en sistemas militares y tecnológicos para proteger datos estratégicos. Accede al reporte completo y medidas recomendadas aquí 👉 djar.co/DLBej8

🦠 RANSOMWARE STORMENCRYPTOR DESPLEGADO POR HACKERS VINCULADOS A CHINA

Microsoft alerta que el grupo Storm-1175 utiliza el ransomware StormEncryptor, aprovechando la vulnerabilidad CVE-2026-18577 en N-able N-central para comprometer sistemas empresariales. Se recomienda la aplicación inmediata de parches y monitoreo activo para evitar daños severos por este ataque sofisticado. Profundiza en la investigación y pautas de defensa aquí 👉 djar.co/tV8x

  • 0
  • 0
  • 0
  • 23h ago

Overview

  • Cisco
  • Cisco Secure Endpoint

07 Aug 2026
Published
07 Aug 2026
Updated

CVSS v3.1
HIGH (7.5)
EPSS
0.36%

KEV

Description

A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper boundary checks for content in zip files during scanning, which may result in an out-of-bounds write condition. An attacker could exploit this vulnerability by submitting a crafted zip file for scanning. A successful exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.

Statistics

  • 4 Posts
  • 2 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

「Cisco社、ClamAVの深刻な脆弱性と公開されているエクスプロイトについて警告 」: #BLEEPINGCOMPUTER

「Ciscoは、Secure Endpoint Connectorに影響を与える2つの深刻な脆弱性について警告を発した。これらの脆弱性により、攻撃者はサービス拒否(DoS)攻撃においてClamAVのスキャンプロセスをクラッシュさせることができる。

これらのセキュリティ上の欠陥( CVE-2026-20337 および CVE-2026-20338 として追跡)は、マルウェアのファイルスキャンに使用されるオープンソースかつクロスプラットフォームのエンジンであるClamAV(Clam AntiVirus)のZIPアーカイブパーサーで発見されました。

シスコが金曜日に発表した勧告によると、これら2つの脆弱性はそれぞれ不適切な境界チェックとメモリ処理に起因するものであり、認証されていないリモート攻撃者によって悪用される可能性がある。 」

bleepingcomputer.com/news/secu

#prattohome

  • 1
  • 1
  • 0
  • 4h ago
Profile picture fallback

The security flaws (tracked as CVE-2026-20337 and CVE-2026-20338) were found in the ZIP archive parser of ClamAV (Clam AntiVirus), the open-source and cross-platform engine used to scan files for malware. bleepingcomputer.com/news/secu

  • 0
  • 0
  • 1
  • 20h ago

Bluesky

Profile picture fallback
Cisco alerta para duas falhas graves no ClamAV que ameaçam sistemas Windows, permitindo ataques remotos de negação de serviço (DoS) sem autenticação prévia. As vulnerabilidades, CVE-2026-20337 e CVE-2026-20338, afetam o analisador de ficheiros ZIP do sistema de código aberto. 🚨 #alerta #graves #win
  • 0
  • 0
  • 0
  • 21h ago
Showing 1 to 10 of 75 CVEs