HN · BleepingComputer · Krebs · Dark Reading · SANS · THN Intel · Unit 42 · Security.com
📰 Cybersecurity News Headlines
Top stories from leading cybersecurity publications as of August 14, 2026.
-
Ukraine shuts down 94 fraudulent call centers, seize millions in cash
— Bleeping Computer
Authorities in Ukraine shut down 94 fraudulent call centers across the country that lured people into investment scams or tried to obtain ac… -
Akira hackers disable EDR with Safe Mode, steal data but fail to encrypt
— Bleeping Computer
An Akira ransomware affiliate disabled the endpoint detection and response (EDR) solution on a compromised system by restarting the machine … -
Global Threat Campaign Hits Critical VMware vCenter Flaw
— Dark Reading
Exploitation against CVE-2026–59310 began earlier this month, and patching the vulnerability may not be enough to fully mitigate the threa… -
Hackers breach govt webmail while running parallel crypto fraud
— Bleeping Computer
The Jewelbug hacker group has been carrying out espionage operations targeting governments and militaries while also engaging in cryptocur… -
'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
— Dark Reading
Researchers discovered hackers-for-hire performing cyber espionage and financially motivated heists from the same Web panel. -
Belgium's eID Authentication Opens Citizen Accounts to RCE
— Dark Reading
The trust framework underlying Belgium's electronic ID system was fully compromised by severe vulnerabilities in a key browser extension, sh… -
Attackers Exploit SharePoint Authentication Bypass After Public PoC Release
— The Hacker News
Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) c… -
ISC Stormcast For Thursday, August 13th, 2026 https://isc.sans.edu/podcastdetail/10050, (Thu, Aug 13th)
— SANS ISC
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License. -
Using Gemma4 with Ollama – Testing File Hash Analysis and Recommendations with AI, (Wed, Aug 12th)
— SANS ISC
In the past few weeks, I have been using Gemma4 as a Large Language Model (LLM) to see how useful it can be to analyze some of the malware h… -
Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor
— The Hacker News
The North Korean threat actor known as Lazarus Group has been attributed to the zero-day exploitation of a newly patched security flaw impac… -
Linux Kernel Process Accounting, (Wed, Aug 12th)
— SANS ISC
A couple of days ago, Xavier posted about Atuin to gain more insight into the command history. Atuin does a great job of better organizing w… -
737 Chrome VPN Extensions Caught Routing Traffic Through Proxies. Check If You Have One
— The Hacker News
A massive set of 737 free VPN and proxy extensions have been found to mainly target Russian-speaking users seeking access to blocked service…
🪲 NVD — Last 20 Scored Vulnerabilities
Latest scored CVEs from the National Vulnerability Database (10913 in last 30 days).
Critical: 2 · High: 10 · Medium: 8 · Low: 0. View full dashboard →
-
CVE-2026-19756
— CVSS 6.3 (MEDIUM)
A vulnerability has been found in Dromara lamp-cloud up to 5.10.0. This affects an unknown part of the file DefGenProjectController.java of the component Code Generator. Such manipulation of the argument outputDir/parent⦠-
CVE-2026-19753
— CVSS 7.3 (HIGH)
A vulnerability was detected in Model Context Protocol mcp-rdf-explorer 1.0.0. Affected is the function explore_url of the file src/mcp-rdf-explorer/server.py of the component MCP Server. Performing a manipulation of the⦠-
CVE-2026-73843
— CVSS 9.6 (CRITICAL)
OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.2 and 1.1.2, internal/cluster-gateway/server.go served caller-facing management APIs on the externally reachable agent listener withou⦠-
CVE-2026-73842
— CVSS 9.0 (CRITICAL)
OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.3, 1.1.3, and 1.2.0-rc.2, internal/cluster-gateway/server.go exposed /api/proxy/, /api/exec/, and /api/wirelogs/ on an internal listen⦠-
CVE-2026-73841
— CVSS 8.8 (HIGH)
OpenChoreo is a complete, open-source developer platform for Kubernetes. From 1.2.0-rc.1 until 1.2.0, internal/openchoreo-api/api/handlers/exec.go and internal/openchoreo-api/api/handlers/wirelogs.go authorize component:⦠-
CVE-2026-73840
— CVSS 5.3 (MEDIUM)
OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.3, 1.1.3, and 1.2.0-rc.2, the POST /api/v1alpha1/autobuild endpoint in internal/openchoreo-api/api/handlers/webhook_handler.go selecte⦠-
CVE-2026-73667
— CVSS 8.8 (HIGH)
OpenChoreo is a complete, open-source developer platform for Kubernetes. Prior to 1.0.4, 1.1.4, and 1.2.0-rc.2, OpenChoreo Workflow Plane templates under samples/getting-started/workflow-templates/ interpolated developer⦠-
CVE-2026-73666
— CVSS 8.2 (HIGH)
OpenChoreo is a developer platform for Kubernetes. Prior to 1.0.4, 1.1.4, and 1.2.1, the OpenChoreo Backstage backend hardcoded backend.auth.dangerouslyDisableDefaultAuthPolicy and auth.providers.guest.dangerouslyAllowOu⦠-
CVE-2026-73659
— CVSS 8.1 (HIGH)
Trigger.dev is the open-source platform for building AI workflows in TypeScript. From 4.4.2 until 4.5.0, the packet presign routes in apps/webapp/app/routes/api.v1.packets.$.ts pass a caller-controlled filename through r⦠-
CVE-2026-73658
— CVSS 8.2 (HIGH)
Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. From 4.4.2 until 4.5.0-rc.5, Aws4FetchClient.buildUrl() and Aws4FetchClient.presign() in apps/webapp/app/v3/objectStoreClient.se⦠-
CVE-2026-73657
— CVSS 4.2 (MEDIUM)
Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. From 4.4.2 until 4.5.0-rc.4, `POST /api/v1/runs/:runParam/replay` in apps/webapp/app/routes/api.v1.runs.$runParam.replay.ts uses⦠-
CVE-2026-73489
— CVSS 4.3 (MEDIUM)
Russh is a Rust SSH client & server library. Prior to 0.62.4, an authenticated SSH client can cause a denial of service by sending a pty-req channel request with more than 130 terminal-mode records. The parser in russh/s⦠-
CVE-2026-73479
— CVSS 5.0 (MEDIUM)
dua-cli fails to filter terminal escape sequences when printing marked file paths after exiting the TUI interface. Attackers can craft file names containing OSC/CSI escape sequences that are interpreted by the terminal e⦠-
CVE-2026-73428
— CVSS 4.6 (MEDIUM)
Trix is a what-you-see-is-what-you-get rich text editor for everyday writing. Prior to 2.1.18, Trix is vulnerable to stored cross-site scripting when crafted HTML is pasted into the editor. HTMLParser processes a mock at⦠-
CVE-2026-73408
— CVSS 7.6 (HIGH)
Budibase is an open-source low-code platform. Prior to 3.39.18, packages/server/src/integrations/mysql.ts enabled multipleStatements and inserted an unescaped tableName into a DESCRIBE statement. An attacker able to crea⦠-
CVE-2026-73305
— CVSS 8.8 (HIGH)
Budibase is an open-source low-code platform. Prior to 3.39.24, POST /api/public/v1/roles/assign called validateGlobalRoleUpdate without checking appBuilder.appId or role.appId in packages/server/src/api/controllers/publ⦠-
CVE-2026-73304
— CVSS 4.9 (MEDIUM)
Budibase is an open-source low-code platform. Prior to 3.39.25, GET /api/users/metadata and GET /api/users/metadata/:id returned user objects processed by packages/server/src/utilities/global.ts without removing oauth2.a⦠-
CVE-2026-73039
— CVSS 5.4 (MEDIUM)
streama contains an insecure direct object reference vulnerability in ViewingStatusController that allows authenticated users to read and delete other users' viewing status records. Attackers can enumerate all users' wat⦠-
CVE-2026-72857
— CVSS 7.7 (HIGH)
Budibase before 3.40.0 fails to redact datasource credentials stored in STRING typed fields, allowing authenticated users to read MongoDB connection strings and Firebase private keys in plaintext. Attackers with table re⦠-
CVE-2026-72856
— CVSS 8.1 (HIGH)
Budibase versions before 3.40.0 contain an authorization/authentication bypass in the PUT /api/global/users/tenant/owner (changeTenantOwnerEmail) endpoint. On self-hosted instances (SELF_HOSTED or DISABLE_ACCOUNT_PORTAL â¦
Source: NVD CVE API 2.0
Generated by CryptXNet.ai Threat Intelligence Platform · August 14, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC, THN Threat Intel, Unit 42, Security.com
Leave a Comment