📰 DAILY THREAT BRIEFING
Thursday, August 20, 2026
12 News Items
HN · BleepingComputer · Krebs · Dark Reading · SANS · THN Intel · Unit 42 · Security.com

📰 Cybersecurity News Headlines

Top stories from leading cybersecurity publications as of August 20, 2026.

  1. ISC Stormcast For Thursday, August 20th, 2026 https://isc.sans.edu/podcastdetail/10060, (Thu, Aug 20th)
    — SANS ISC

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
  2. OpenAI confirms ChatGPT is down as logins and signups fail
    — Bleeping Computer

    ChatGPT is experiencing a major outage, and users are unable to sign in, create accounts, or load chats, including previous conversations. […
  3. Rogue ransomware affiliate poses as recovery firm to steal payments
    — Bleeping Computer

    A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the atta…
  4. Sakura Internet hack exposes data of up to 1.36 million accounts
    — Bleeping Computer

    Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer …
  5. No-Filter 'Kriminal' AI Platform Raises Cybercrime Concerns
    — Dark Reading

    The AI company officially forbids illicit use, while offering guardrail-free social engineering, offensive cybercrime, and OSINT scanning to…
  6. Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second
    — The Hacker News

    Cybersecurity researchers have disclosed details of a remote Spectre attack against Cloudflare Workers that leaked a JSON Web Token (JWT) …
  7. OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior
    — The Hacker News

    OpenAI on Tuesday revealed that it paused reinforcement learning (RL) training for its latest artificial intelligence (AI) models for two we…
  8. SilkParasite Threatens Central Asian Orgs With Flurry of RATs
    — Dark Reading

    A spear-phishing campaign by a Chinese-nexus group linked to FamousSparrow provides insight into geopolitical, technical, and strategic glob…
  9. Simple Scans for Cloud Metadata Service, (Wed, Aug 19th)
    — SANS ISC

    Cloud providers typically expose a REST API at 169.254.169.254 that allows code running on virtual machines to retrieve machine-specific dat…
  10. SilkParasite Espionage Campaign Targets Central Asian Governments with Five New RATs
    — The Hacker News

    A previously unreported cyber espionage operation dubbed SilkParasite has been observed targeting government bodies in Central Asia. The int…
  11. ISC Stormcast For Wednesday, August 19th, 2026 https://isc.sans.edu/podcastdetail/10058, (Wed, Aug 19th)
    — SANS ISC

    (c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
  12. China-Linked Hacker Shows AI Capabilities in APAC Attack
    — Dark Reading

    In the first purported "near-autonomous" attack on a nation-state, a Chinese-language operator used a complex AI framework to target and com…

🪲 NVD — Last 20 Scored Vulnerabilities

Latest scored CVEs from the National Vulnerability Database (12959 in last 30 days).
Critical: 0 · High: 5 · Medium: 14 · Low: 1. View full dashboard →

  1. CVE-2026-76800
    — CVSS 6.3 (MEDIUM)

    A flaw has been found in DeDeCMS 3. Affected by this vulnerability is an unknown functionality of the file /include/dialog/select_media_post.php. Executing a manipulation of the argument uploadfile can lead to unrestrict…
  2. CVE-2026-76799
    — CVSS 5.3 (MEDIUM)

    A weakness has been identified in code-projects Login Registration System 1.0. This affects an unknown function of the file /loginsystem/database/login_registration_system.sql of the component SQL Database Backup Handler…
  3. CVE-2026-76795
    — CVSS 7.3 (HIGH)

    A vulnerability has been found in AeternaLabsHQ PullMD 3.2.0. This impacts an unknown function of the file /api of the component REST API Endpoint. The manipulation of the argument url leads to server-side request forger…
  4. CVE-2026-76785
    — CVSS 6.3 (MEDIUM)

    A security flaw has been discovered in amirsanni Mini-Inventory-and-Sales-Management-System 0.1. Affected is the function Transaction::getAll of the file application/models/Transaction.php. Performing a manipulation of t…
  5. CVE-2026-76783
    — CVSS 7.3 (HIGH)

    A security vulnerability has been detected in DeDeCMS 53_1_UTF8. This vulnerability affects unknown code of the file /plus/advancedsearch.php. Such manipulation of the argument sql leads to sql injection. The attack can …
  6. CVE-2026-76764
    — CVSS 7.3 (HIGH)

    A flaw has been found in code-projects Employee Management System 1.0. The impacted element is an unknown function of the file /process/aprocess.php of the component Admin Login Endpoint. This manipulation of the argumen…
  7. CVE-2026-76762
    — CVSS 7.3 (HIGH)

    A vulnerability was detected in code-projects Assessment Management 1.0. The affected element is an unknown function of the file /welcome.php. The manipulation of the argument userid results in sql injection. The attack …
  8. CVE-2022-4996
    — CVSS 5.3 (MEDIUM)

    A flaw has been found in mruby 3.1.0. Affected is the function udiv of the file bigint.c. Executing a manipulation can lead to floating point comparison with incorrect operator. It is possible to launch the attack remote…
  9. CVE-2026-76929
    — CVSS 4.7 (MEDIUM)

    Pcapng file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  10. CVE-2026-76928
    — CVSS 7.5 (HIGH)

    X.509IF protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  11. CVE-2026-76927
    — CVSS 4.7 (MEDIUM)

    H.245 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  12. CVE-2026-76926
    — CVSS 3.1 (LOW)

    BUSMASTER file parser abnormal exit in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  13. CVE-2026-76924
    — CVSS 5.5 (MEDIUM)

    Kerberos protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  14. CVE-2026-76923
    — CVSS 5.5 (MEDIUM)

    Bluetooth HFP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  15. CVE-2026-76922
    — CVSS 5.5 (MEDIUM)

    Bluetooth BR/EDR FHS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  16. CVE-2026-76921
    — CVSS 5.5 (MEDIUM)

    CMS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  17. CVE-2026-76920
    — CVSS 4.7 (MEDIUM)

    3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  18. CVE-2026-76919
    — CVSS 5.3 (MEDIUM)

    ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  19. CVE-2026-76918
    — CVSS 5.5 (MEDIUM)

    SSH protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
  20. CVE-2026-76917
    — CVSS 5.5 (MEDIUM)

    Bluetooth AVRCP Profile protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

Source: NVD CVE API 2.0


Generated by CryptXNet.ai Threat Intelligence Platform · August 20, 2026 · Sources: The Hacker News, Bleeping Computer, Krebs on Security, Dark Reading, SANS ISC, THN Threat Intel, Unit 42, Security.com