{"date_iso":"2026-08-06","date_human":"Thursday, August 6, 2026","generated_utc":"2026-08-06 15:21 UTC","read_minutes":6,"patch_tuesday":false,"top_stories":[{"title":"Flaws in Google APK for Python Unlock Agent-to-Agent Attack","link":"https://www.darkreading.com/vulnerabilities-threats/flaws-google-apk-python-agent-to-agent-attack","reason":"Google","category":"News","sources":["Bleeping Computer","Cyber Security News","Dark Reading","Malwarebytes Labs","Proofpoint Threat Insight","SecurityWeek","The Hacker News","The Register Security"],"coverage":8,"cve_ids":[],"summary":"Google has fixed the issues, which exploited a trust boundary between two AI agents with different privilege levels to trigger automation that could compromise the supply chain.","source":"Dark Reading","date_rel":"16h ago","thumbnail":"https://eu-images.contentstack.com/v3/assets/blt6d90778a997de1cd/blt9abdeefc15f542ea/6a7355e3a1a11b1319173fcc/AI_agent_concept_Brain_light_Alamy.png?width=720&quality=80&disable=upscale","description":"","related":[{"title":"Google Blogger Locked Legitimate Websites After Mistaking Them for Malware","link":"https://cybersecuritynews.com/google-blogger-locked-legitimate-websites/","source":"Cyber Security News","date_rel":"16h ago"},{"title":"Google Blogger locks hundreds of blogs in malware false positive","link":"https://www.bleepingcomputer.com/news/google/google-blogger-locks-hundreds-of-blogs-in-malware-false-positive/","source":"Bleeping Computer","date_rel":"19h ago"},{"title":"New Attack Methods Enable Malware to Hijack Passkey-Protected Accounts","link":"https://www.securityweek.com/new-attack-methods-enable-malware-to-hijack-passkey-protected-accounts/","source":"SecurityWeek","date_rel":"21h ago"},{"title":"Google\u2019s synchronized passkeys can be stolen in \u2018Pass\u2011ta\u2011key\u2019 attacks","link":"https://www.malwarebytes.com/blog/news/2026/08/googles-synchronized-passkeys-can-be-stolen-in-pass-ta-key-attacks","source":"Malwarebytes Labs","date_rel":"23h ago"},{"title":"AI Notetaker Lets Hackers Spy on Government, Corporate Video Calls","link":"https://www.darkreading.com/application-security/ai-notetaker-spy-government-corporate-video-calls","source":"Dark Reading","date_rel":"4 Aug"},{"title":"Online backlash ends in Google rolling back Google Earth AI tool after a day","link":"https://www.malwarebytes.com/blog/news/2026/08/online-backlash-ends-in-google-rolling-back-google-earth-ai-tool-after-a-day","source":"Malwarebytes Labs","date_rel":"4 Aug"}]},{"title":"Anthropic\u2019s AI used fake identities, malware in rogue attack on GitHub project","link":"https://arstechnica.com/security/2026/08/anthropics-ai-used-fake-identities-malware-in-rogue-attack-on-github-project/","reason":"Github","category":"Media","sources":["Ars Technica Security","Bleeping Computer","CyberScoop","SANS Internet Storm Center","The Hacker News"],"coverage":5,"cve_ids":[],"summary":"Routine cybersecurity testing of frontier AI models sparked a series of unexpected security incidents\u2014the most serious case arising when Anthropic\u2019s Mythos 5 model attempted to insert malicious code into an open source\u2026","source":"Ars Technica Security","date_rel":"13h ago","thumbnail":"https://cdn.arstechnica.net/wp-content/uploads/2026/08/GettyImages-2285051730-500x500.jpg","description":"Routine cybersecurity testing of frontier AI models sparked a series of unexpected security incidents\u2014the most serious case arising when Anthropic\u2019s Mythos 5 model attempted to insert malicious code into an open source software application and created fake identities to deceive the human developers maintaining the project. The security incidents occurred during a cyber evaluation of seven leading AI models\u2019 capabilities by the AI Security Institute (AISI), a research organization within the UK government, in late July. The researchers discovered 19 instances in which \u201cAI agents took\u2026","related":[{"title":"Don't Revoke That Token Yet: Inside the keyv/cacheable npm Worm, (Wed, Aug 5th)","link":"https://isc.sans.edu/diary/rss/33218","source":"SANS Internet Storm Center","date_rel":"16h ago"},{"title":"Leaked n8n API Tokens Exposed Live Instances to Credential Theft","link":"https://thehackernews.com/2026/08/leaked-n8n-api-tokens-exposed-live.html","source":"The Hacker News","date_rel":"23h ago"},{"title":"Massive supply-chain attack compromises 440 packages under four hours","link":"https://cyberscoop.com/supply-chain-attack-malware-mini-shai-hulud-teampcp/","source":"CyberScoop","date_rel":"4 Aug"},{"title":"New XCSSET variant targets macOS devs via compromised Xcode projects","link":"https://www.bleepingcomputer.com/news/security/new-xcsset-variant-targets-macos-devs-via-compromised-xcode-projects/","source":"Bleeping Computer","date_rel":"4 Aug"},{"title":"Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent","link":"https://thehackernews.com/2026/08/google-deletes-3-adk-ai-workflows-after.html","source":"The Hacker News","date_rel":"4 Aug"}]},{"title":"Hackers Turned Microsoft Logins, Zoom Events, and Government Websites Into Attack Tools","link":"https://cybersecuritynews.com/hackers-turned-microsoft-logins-into-attack-tools/","reason":"Microsoft","category":"News","sources":["404 Media","Bleeping Computer","Cyber Security News","Malwarebytes Labs","The Hacker News","The Register Security"],"coverage":6,"cve_ids":[],"summary":"Cybercriminals spent July 2026 proving that trusted business utilities including Microsoft authentication pages, Zoom event invitations, and official government portals can be weaponized against enterprise targets\u2026","source":"Cyber Security News","date_rel":"17h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/08/Hackers-Turned-Microsoft-Logins-Into-Attack-Tools.webp","description":"Cybercriminals spent July 2026 proving that trusted business utilities including Microsoft authentication pages, Zoom event invitations, and official government portals can be weaponized against enterprise targets. Threat intelligence research from ANY.RUN reveals that attackers across the United States, Europe, and Brazil systematically exploited routine corporate workflows to bypass perimeter security controls, harvest credentials, and maintain long-term access to systems. Hackers Turn Trusted Sites Into Attack Tools The defining trend across July\u2019s threat landscape was the exploitation of\u2026","related":[{"title":"Kali365 Weaponizes Microsoft Authentication Against US Companies: New Enterprise Risk","link":"https://thehackernews.com/2026/08/kali365-weaponizes-microsoft.html","source":"The Hacker News","date_rel":"22h ago"},{"title":"Phishing service spoofs RingCentral to steal Microsoft 365 accounts","link":"https://www.bleepingcomputer.com/news/security/phishing-service-spoofs-ringcentral-to-steal-microsoft-365-accounts/","source":"Bleeping Computer","date_rel":"4 Aug"},{"title":"Microsoft Tells Engineers \u2018Tokenmaxxing Is Not What We Are Optimizing For\u2019","link":"https://www.404media.co/microsoft-tells-engineers-tokenmaxxing-is-not-what-we-are-optimizing-for/","source":"404 Media","date_rel":"4 Aug"},{"title":"AI helps Microsoft bug hunters chase a record $20M payday","link":"https://www.theregister.com/security/2026/08/04/ai-helps-microsoft-bug-hunters-chase-a-record-20m-payday/5282821","source":"The Register Security","date_rel":"4 Aug"},{"title":"Travelers targeted when logging into hotel Wi-Fi networks","link":"https://www.malwarebytes.com/blog/news/2026/08/travelers-targeted-when-logging-into-hotel-wi-fi-networks","source":"Malwarebytes Labs","date_rel":"4 Aug"},{"title":"Hotel Wi-Fi attacks use custom malware to breach Microsoft 365 accounts","link":"https://www.bleepingcomputer.com/news/security/hotel-wi-fi-attacks-use-custom-malware-to-breach-microsoft-365-accounts/","source":"Bleeping Computer","date_rel":"4 Aug"}]},{"title":"CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild","link":"https://thehackernews.com/2026/08/cisa-flags-teamcity-cve-2026-63077-rce.html","reason":"CVE-2026-63077","category":"News","sources":["CISA Alerts & Advisories","Cyber Security News","SecurityWeek","The Hacker News"],"coverage":4,"cve_ids":["CVE-2026-63077"],"summary":"A newly patched security flaw impacting on-premise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). The\u2026","source":"The Hacker News","date_rel":"3h ago","thumbnail":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEiaatZ2xKx3CMoWOXqKbIp1Sd-rMbET1_QE2Lh10XAVc_g_Z18UUlW_RyR8BR0Nj-gqy9SZhnEq0ZBv_z63FfCBu-XGfH5yEzUsKBLicrlfXK2-iMsgZYkDDTW-HiEPV29TEjFSFF1PYXyDkZcyfe6LuUKkgu2nRe4E_XFNPOcxSrBmUZwi3tX_GgHafeZ9/s1600/cisa-teamcity.jpg","description":"A newly patched security flaw impacting on-premise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA). The vulnerability in question is CVE-2026-63077 (CVSS score: 9.8), a case of deserialization of untrusted data that could allow an unauthenticated attacker with access to a TeamCity server","related":[{"title":"CISA Warns of TeamCity RCE Vulnerability Actively Exploited in Attacks","link":"https://cybersecuritynews.com/teamcity-rce-vulnerability-actively-exploited/","source":"Cyber Security News","date_rel":"3h ago"},{"title":"Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability","link":"https://www.securityweek.com/hackers-start-exploiting-recent-jetbrains-teamcity-vulnerability/","source":"SecurityWeek","date_rel":"3h ago"},{"title":"CISA Adds One Known Exploited Vulnerability to Catalog","link":"https://www.cisa.gov/news-events/alerts/2026/08/05/cisa-adds-one-known-exploited-vulnerability-catalog","source":"CISA Alerts & Advisories","date_rel":"22h ago"}]},{"title":"Apple iCloud Private Relay WebKit Flaws Leak Users\u2019 Real IP Addresses","link":"https://cybersecuritynews.com/apple-icloud-private-relay/","reason":"Apple","category":"News","sources":["404 Media","Cyber Security News","Malwarebytes Labs","The Hacker News"],"coverage":4,"cve_ids":[],"summary":"Apple users who rely on iCloud Private Relay to conceal their online location may not be getting the protection they expect. Newly disclosed flaws in WebKit, the browser engine used across iOS, can allow a website to\u2026","source":"Cyber Security News","date_rel":"5h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/08/Apple-iCloud-Private-Relay-WebKit-Flaws-Leak-Users-Real-IP-Addresses.webp","description":"Apple users who rely on iCloud Private Relay to conceal their online location may not be getting the protection they expect. Newly disclosed flaws in WebKit, the browser engine used across iOS, can allow a website to see a visitor\u2019s real IP address. The exposure weakens a privacy safeguard. The issue can be triggered when a site supports, or merely claims to support, passkeys. A device may make a separate network request during sign-in, outside the protected browser route. That creates an opening for a malicious site to collect the address. Researchers Tommy Mysk and Talal Haj Bakry\u2026","related":[{"title":"Apple's \u2018Private Relay\u2019 Is Exposing Users\u2019 Real IP Addresses","link":"https://www.404media.co/apples-private-relay-is-exposing-users-real-ip-addresses/","source":"404 Media","date_rel":"20h ago"},{"title":"Apple battles it out again with the UK over encrypted iCloud access","link":"https://www.malwarebytes.com/blog/news/2026/08/apple-battles-it-out-again-with-uk-over-encrypted-icloud-access","source":"Malwarebytes Labs","date_rel":"4 Aug"},{"title":"Chinese Threat Actor Uses Leaked DarkSword Kit to Deploy GHOSTBLADE on iOS","link":"https://thehackernews.com/2026/08/chinese-threat-actor-uses-leaked.html","source":"The Hacker News","date_rel":"3 Aug"}]},{"title":"IBM's agentic AI platform is under active attack - patch now","link":"https://www.theregister.com/security/2026/08/05/ibms-agentic-ai-platform-is-under-active-attack-patch-now/5283535","reason":"Ibm","category":"News","sources":["Bleeping Computer","CCCS Alerts & Advisories","CISA Alerts & Advisories","The Register Security"],"coverage":4,"cve_ids":["CVE-2026-18556","CVE-2026-9198"],"summary":"A critical vulnerability in IBM-owned, low-code AI builder Langflow lets unauthenticated attackers execute code remotely on vulnerable default deployments, potentially putting organizations running those instances at\u2026","source":"The Register Security","date_rel":"17h ago","thumbnail":"https://image.theregister.com/?imageId=5283555&width=800","description":"A critical vulnerability in IBM-owned, low-code AI builder Langflow lets unauthenticated attackers execute code remotely on vulnerable default deployments, potentially putting organizations running those instances at immediate risk. The Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added CVE-2026-9198 to its Known Exploited Vulnerabilities catalog after identifying evidence of active exploitation and urged organizations to apply the vendor's mitigation guidance as soon as possible. IBM says the flaw affects Langflow OSS versions 1.0.0 through 1.10.0 and recommends\u2026","related":[{"title":"CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws","link":"https://www.bleepingcomputer.com/news/security/cisa-warns-of-hackers-exploiting-langflow-n-central-apache-tomcat-flaws/","source":"Bleeping Computer","date_rel":"18h ago"},{"title":"IBM security advisory (AV26-770)","link":"https://cyber.gc.ca/en/alerts-advisories/ibm-security-advisory-av26-770","source":"CCCS Alerts & Advisories","date_rel":"4 Aug"},{"title":"CISA Adds Three Known Exploited Vulnerabilities to Catalog","link":"https://www.cisa.gov/news-events/alerts/2026/08/04/cisa-adds-three-known-exploited-vulnerabilities-catalog","source":"CISA Alerts & Advisories","date_rel":"4 Aug"}]},{"title":"250+ macOS ClickFix Domains Use Browser Fingerprinting to Hide Atomic Stealer Attacks","link":"https://cybersecuritynews.com/158536-2250-macos-clickfix-domains/","reason":"Macos","category":"News","sources":["Cyber Security News","Microsoft Security Blog","The Hacker News"],"coverage":3,"cve_ids":[],"summary":"Atomic Stealer is being pushed at Mac users through websites that look harmless. A large ClickFix operation uses more than 250 look-alike domains to steer selected visitors toward a fake download page and a malicious\u2026","source":"Cyber Security News","date_rel":"4h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/08/250-macOS-ClickFix-Domains-Use-Browser-Fingerprinting-to-Hide-Atomic-Stealer-Attacks.webp","description":"Atomic Stealer is being pushed at Mac users through websites that look harmless. A large ClickFix operation uses more than 250 look-alike domains to steer selected visitors toward a fake download page and a malicious Terminal command. ClickFix is built on persuasion, not a software flaw. The pages pose as download checks, updates, or CAPTCHA-style verifications, then urge people to paste a command into Terminal to begin the attack. Microsoft analysts identified this shift. They found that the infrastructure moved from openly displaying malicious instructions to testing each visitor before\u2026","related":[{"title":"Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures","link":"https://thehackernews.com/2026/08/over-250-clickfix-domains-use-browser.html","source":"The Hacker News","date_rel":"15h ago"},{"title":"From open lures to cloaked gates: How a macOS ClickFix campaign learned to hide","link":"https://www.microsoft.com/en-us/security/blog/2026/08/05/macos-clickfix-campaign-learned-hide/","source":"Microsoft Security Blog","date_rel":"18h ago"}]},{"title":"Ransom Cartel Creator Gets 16 Years in Prison for Operating Ransomware-as-a-Service","link":"https://thehackernews.com/2026/08/ransom-cartel-creator-gets-16-years-in.html","reason":"Cartel Prison Ransom","category":"News","sources":["Bleeping Computer","SecurityWeek","The Hacker News"],"coverage":3,"cve_ids":[],"summary":"A federal judge in Alexandria, Virginia, sentenced Maksim Silnikau to 16 years in prison on August 5 for creating and running Ransom Cartel, the ransomware-as-a-service operation he stood up in 2021. Between 2021 and\u2026","source":"The Hacker News","date_rel":"3h ago","thumbnail":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgsIRDdzzjtJRcq3kiouQy7I8wwCFvWIKA5VHAKEVdGC2OJL3WCGnKPZUvAHUi-Jrz9yLN5pfTtS0QI8MRUuSbGOlbg_3jNktHGZSb4wsOKvjcwehZYqL671hB0UgjVjUPnKju5QFDO4BXhjePhJuvGDw_mJs1scXXI_veItNxCej7uEwjKfTHzc9Nkm90/s1600/Ransom-Cartel.jpg","description":"A federal judge in Alexandria, Virginia, sentenced Maksim Silnikau to 16 years in prison on August 5 for creating and running Ransom Cartel, the ransomware-as-a-service operation he stood up in 2021. Between 2021 and 2023, Ransom Cartel conspirators attacked at least 18 companies, including firms in California, New York and Nebraska, and others abroad, according to the Justice Department.","related":[{"title":"Belarusian Ransom Cartel Mastermind Gets 16 Years in Prison","link":"https://www.securityweek.com/belarusian-ransom-cartel-mastermind-gets-16-years-in-prison/","source":"SecurityWeek","date_rel":"58m ago"},{"title":"Ransom Cartel ransomware creator sentenced to 16 years in prison","link":"https://www.bleepingcomputer.com/news/security/ransom-cartel-ransomware-creator-sentenced-to-16-years-in-prison/","source":"Bleeping Computer","date_rel":"11h ago"}]},{"title":"Cisco Patches Multiple Critical Cisco IOS XE Software Vulnerabilities \u2013 Patch Now!","link":"https://cybersecuritynews.com/cisco-patches-ios-xe-software-vulnerabilities/","reason":"Cisco","category":"News","sources":["Cyber Security News","SecurityWeek","The Register Security"],"coverage":3,"cve_ids":[],"summary":"Cisco has released a critical security hardening update for Cisco IOS XE Software, fixing several serious vulnerabilities that could expose enterprise network devices to remote attacks. The advisory covers\u2026","source":"Cyber Security News","date_rel":"2h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/08/Cisco-Patches-Multiple-Critical-Cisco-IOS-XE-Software-Vulnerabilities-_-Ptach-Now-1.webp","description":"Cisco has released a critical security hardening update for Cisco IOS XE Software, fixing several serious vulnerabilities that could expose enterprise network devices to remote attacks. The advisory covers vulnerabilities identified during Cisco\u2019s internal security testing, including testing supported by frontier AI models. Cisco said it is not aware of public exploitation or malicious activity linked to these flaws. However, the severity of the issues, combined with the lack of available workarounds, makes prompt patching essential. The vulnerabilities affect Cisco IOS XE Software running in\u2026","related":[{"title":"Cisco Patches Critical SD-WAN, IOS XE, FMC Vulnerabilities","link":"https://www.securityweek.com/cisco-patches-critical-sd-wan-ios-xe-fmc-vulnerabilities/","source":"SecurityWeek","date_rel":"3h ago"},{"title":"Cisco Patched Multiple Critical Vulnerabilities in Catalyst SD-WAN \u2013 Update Now","link":"https://cybersecuritynews.com/cisco-catalyst-sd-wan-vulnerabilities-2/","source":"Cyber Security News","date_rel":"6h ago"},{"title":"Bypassing AI guardrails is so easy a script kiddie can do it","link":"https://www.theregister.com/security/2026/08/04/bypassing-ai-guardrails-is-so-easy-a-script-kiddie-can-do-it/5282973","source":"The Register Security","date_rel":"4 Aug"}]},{"title":"AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model","link":"https://thehackernews.com/2026/08/aws-google-and-vercel-patch-agent-flaws.html","reason":"Amazon","category":"News","sources":["The Hacker News","Wired Security"],"coverage":2,"cve_ids":[],"summary":"Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized them. In several of\u2026","source":"The Hacker News","date_rel":"1h ago","thumbnail":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEhNMtOKfZBxSDQ1928IVtFay3f8_6go4rnTY6yFaQYCzAdGt3e6uBkZfZkoFtHbS_cEbTCri3ZNVVO7BbuvoVpjGCLSpdphneotNbiXRT3vciQT6dzPa0K81_ee8Al2rxx7GlT5qTS3_B2MKjCCUcHut1pdIeqaLBRjoD5ZqttMcHxZ5AwKea3eL-wruta7/s1600/agent-sdk.jpg","description":"Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized them. In several of the attack paths, the model never ran at all, so system prompts, content filters, and model-level guardrails never got a chance to intervene. The affected products include Amazon","related":[{"title":"OpenAI\u2019s Browser Could Be Hijacked to Spam Your WhatsApp Contacts","link":"https://www.wired.com/story/openais-browser-could-be-hijacked-to-spam-your-whatsapp-contacts/","source":"Wired Security","date_rel":"10h ago"}]}],"worth_reading":[{"title":"CVE-2026-18577: N-able N-central Authentication Bypass Exploited in the Wild","link":"https://www.rapid7.com/blog/post/etr-cve-2026-18577-n-able-n-central-authentication-bypass-exploited-in-the-wild","reason":"CVE-2026-18577","category":"Research","sources":["CISA Alerts & Advisories","Dark Reading","Rapid7 Blog","Sophos Threat Research"],"coverage":4,"cve_ids":["CVE-2026-18577"],"summary":"Overview On August 2, 2026, N-able published a security advisory for CVE-2026-18577 , an authentication bypass vulnerability affecting N-central that was discovered being exploited in-the-wild after an incomplete fix\u2026","source":"Rapid7 Blog","date_rel":"4 Aug","thumbnail":"https://images.contentstack.io/v3/assets/blte4f029e766e6b253/blt65a432ba319f4043/6846abddaf18306debe6cf4d/ETR.webp","description":"Overview On August 2, 2026, N-able published a security advisory for CVE-2026-18577 , an authentication bypass vulnerability affecting N-central that was discovered being exploited in-the-wild after an incomplete fix for an earlier authentication bypass issue, CVE-2026-18556 was disclosed. CVE-2026-18577 allows a remote unauthenticated attacker to bypass authentication and obtain administrative control of vulnerable N-central servers in affected deployments. N-able N-central is a widely deployed Remote Monitoring and Management (RMM) platform used by managed service providers (MSPs) and\u2026","related":[{"title":"N-able N-central exploitation results in RMM tool deployment","link":"https://www.sophos.com/en-us/blog/nable-ncentral-exploitation-results-in-rmm-tool-deployment","source":"Sophos Threat Research","date_rel":"4 Aug"},{"title":"Attackers Exploit N-able Patch Bypass Flaw on RMM Servers","link":"https://www.darkreading.com/vulnerabilities-threats/attackers-exploit-n-able-patch-bypass-flaw","source":"Dark Reading","date_rel":"3 Aug"},{"title":"CISA Adds One Known Exploited Vulnerability to Catalog","link":"https://www.cisa.gov/news-events/alerts/2026/08/03/cisa-adds-one-known-exploited-vulnerability-catalog","source":"CISA Alerts & Advisories","date_rel":"3 Aug"}]},{"title":"Shai-Hulud strikes again: CHAINDROP worm hits 400+ npm packages","link":"https://www.elastic.co/security-labs/shai-hulud-chaindrop-npm-supply-chain","reason":"Chaindrop Packages Worm","category":"Research","sources":["Elastic Security Labs","Infosecurity Magazine"],"coverage":2,"cve_ids":[],"summary":"On August 4, 2026, Elastic Security Labs identified a new Shai-Hulud campaign targeting the maintainer of keyv , a widely used key-value storage library. The attackers trojanized the monorepo and embedded a\u2026","source":"Elastic Security Labs","date_rel":"10h ago","thumbnail":"https://www.elastic.co/security-labs/assets/images/shai-hulud-chaindrop-npm-supply-chain/shai-hulud-chaindrop-npm-supply-chain.webp","description":"On August 4, 2026, Elastic Security Labs identified a new Shai-Hulud campaign targeting the maintainer of keyv , a widely used key-value storage library. The attackers trojanized the monorepo and embedded a self-propagating worm called CHAINDROP that uses stolen npm credentials to automatically backdoor every other package the maintainer had publish rights to. The reach of this compromise is significant: keyv alone received over 600 million downloads last month, with related packages compounding the exposure: flat-cache near 580 million, cacheable-request at over 137 million, cacheable at\u2026","related":[{"title":"ChainDrop Worm Hits 400+ npm Packages with Two Billion Monthly Installs","link":"https://www.infosecurity-magazine.com/news/chaindrop-worm-400-npm-two-billion/","source":"Infosecurity Magazine","date_rel":"5 Aug"}]}],"kev_watch":[],"vuln_watch":[{"id":"CVE-2026-48168","vendor":"Microsoft","product":"PraisonAI","severity":"CRITICAL","score":10.0,"description":"PraisonAI is a multi-agent teams system. In versions prior to 4.6.40, the bundled Claude GitHub Actions workflow is vulnerable to command injection because it embeds an attacker-controlled pull request branch name into a Bash run: block wit\u2026","cwe":"CWE-862","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-48168"},{"id":"CVE-2026-5430","vendor":"HashiCorp","product":"WSO2 Universal Gateway","severity":"CRITICAL","score":10.0,"description":"The JWT authentication mechanism accepts tokens signed with algorithms other than those explicitly configured or supported. This allows an attacker to craft a JWT with an unsupported algorithm, which is then incorrectly validated, leading t\u2026","cwe":"CWE-347","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-5430"},{"id":"CVE-2026-10090","vendor":"Red Hat","product":"Red Hat Advanced Cluster Management for Kubernetes 2","severity":"CRITICAL","score":9.9,"description":"A flaw was found in the Application Subscription controller (multicluster-operators-subscription) of Red Hat Advanced Cluster Management for Kubernetes (ACM). A user with namespace-scoped \"edit\" privileges in an ACM hub namespace can create\u2026","cwe":"CWE-267","kev":false,"kev_action":"","kev_due":"","epss":0.0025,"url":"https://cve.blackmesa.ca/?q=CVE-2026-10090"},{"id":"CVE-2026-71268","vendor":"thiagoralves","product":"OpenPLC_v3","severity":"CRITICAL","score":9.9,"description":"OpenPLC Runtime v3's compile_program() function (webserver/openplc.py) parses `(*FILE:path content*)` directives from uploaded Structured Text (.st) program files and writes the referenced content to `os.path.join('./core', file_path)` with\u2026","cwe":"CWE-22","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-71268"},{"id":"CVE-2026-7329","vendor":"Progress","product":"MarkLogic Server","severity":"CRITICAL","score":9.9,"description":"An improper privilege management vulnerability in the SQL, SPARQL, and Optic REST query interfaces of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with a low-privileged REST role to escalate privileges to \u2026","cwe":"CWE-269","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-7329"},{"id":"CVE-2026-8709","vendor":"Progress","product":"MarkLogic Server","severity":"CRITICAL","score":9.9,"description":"An improper privilege management vulnerability in the REST API document patch operation of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with a low-privileged REST role to escalate privileges and execute pr\u2026","cwe":"CWE-269","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-8709"},{"id":"CVE-2026-9193","vendor":"Progress","product":"MarkLogic Server","severity":"CRITICAL","score":9.9,"description":"An improper privilege management vulnerability in the Hadoop integration of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an authenticated user with a low-privileged Hadoop role to escalate privileges and execute privileged oper\u2026","cwe":"CWE-269","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-9193"},{"id":"CVE-2026-20303","vendor":"Cisco","product":"Cisco Catalyst SD-WAN Controller","severity":"CRITICAL","score":9.9,"description":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that add\u2026","cwe":"CWE-20","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-20303"},{"id":"CVE-2026-20304","vendor":"Cisco","product":"Cisco Catalyst SD-WAN Controller","severity":"CRITICAL","score":9.9,"description":"As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco Catalyst SD-WAN engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that ad\u2026","cwe":"CWE-284","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-20304"},{"id":"CVE-2026-70615","vendor":"boringproxy","product":"boringproxy","severity":"CRITICAL","score":9.9,"description":"boringproxy through 0.10.0 contains a newline injection vulnerability that allows authenticated low-privileged users with tunnel-creation permission to inject arbitrary lines into the server account's SSH authorized_keys file by supplying a\u2026","cwe":"CWE-93","kev":false,"kev_action":"","kev_due":"","epss":null,"url":"https://cve.blackmesa.ca/?q=CVE-2026-70615"}],"vendor_spikes":[{"vendor":"Unknown","count":35,"critical_count":0},{"vendor":"WordPress","count":32,"critical_count":0},{"vendor":"IBM","count":32,"critical_count":0},{"vendor":"Cisco","count":23,"critical_count":5},{"vendor":"Jenkins","count":23,"critical_count":1},{"vendor":"Microsoft","count":20,"critical_count":1},{"vendor":"Red Hat","count":17,"critical_count":2},{"vendor":"Linux","count":16,"critical_count":0},{"vendor":"WSO2","count":11,"critical_count":2},{"vendor":"electron","count":10,"critical_count":0}],"epss_risers":[],"developing_map":{},"trending_count":17,"new_cve_count":389,"has_news_data":true,"has_cve_data":true}