PaperCut Releases Second Emergency Patch After Attackers Bypass Initial Fixes
August 29, 2026 PaperCut has released a second emergency security patch for two critical vulnerabilities in its PaperCut NG and PaperCut MF print management software after security researchers discovered multiple methods to bypass the original emergency…
Mirage2FA Phishing Campaign Compromises 4,500 Microsoft 365 Accounts
August 25, 2026 The Mirage2FA phishing campaign has compromised an estimated 4,500 organizations across the United States and European Union by abusing legitimate Microsoft 365 login flows and bypassing traditional two-factor authentication.…
Unpatched Calix GS7 XGS Router CVE Lets Attackers Bypass NAT and Expose Internal Devices
August 24, 2026 An unpatched vulnerability in Calix GS7 XGS residential routers allows remote attackers to bypass NAT and firewall protections and expose internal network devices to the public internet. The flaw, tracked as CVE-2026-75501, affects…
Critical Elementor Pro CVE Enables Unauthenticated RCE on WordPress Sites
August 23, 2026 A critical vulnerability in the Elementor Pro WordPress plugin allows unauthenticated attackers to upload executable PHP files for remote code execution on affected servers. Furthermore, the flaw has been actively disclosed and patched,…
ToxicPanda 2.0 Android Malware Abuses VPN and Wireless ADB
August 23, 2026 A critical vulnerability in the Elementor Pro WordPress plugin allows unauthenticated attackers to upload executable PHP files for remote code execution on affected servers. Furthermore, the flaw has been actively disclosed and patched,…
Lazarus Exploits Windows AFD.sys Zero-Day in Defense Sector Attacks
August 21, 2026 North Korean Lazarus hackers exploited CVE-2026-68820, a zero-day vulnerability in the Windows Ancillary Function Driver (AFD.sys), to deploy their FudModule rootkit and gain SYSTEM privileges on defense-sector targets. Microsoft patched…
Critical MLflow CVE Enables SSRF Cloud Credential Theft
August 20, 2026 CISA has added a critical MLflow vulnerability to its Known Exploited Vulnerabilities catalog after confirming active exploitation in the wild. The flaw, tracked as CVE-2026-64849, is a DNS-rebinding server-side request forgery…
Operation CameraSwarm: Dahua Cameras Compromised
August 20, 2026 Threat intelligence firm Hunt.io has uncovered a massive 35-day campaign that compromised more than 14,500 Dahua IP cameras across Ukraine and Russia. The operation, dubbed Operation CameraSwarm, exploited credential attacks,…
Critical Windows IKE Extension RCE CVE-2026-33824 Under Active Exploitation
August 19, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a critical Windows Internet Key Exchange (IKE) vulnerability to its Known Exploited Vulnerabilities (KEV) catalog on August 18, 2026. Threat actors are actively…
CISA Confirms Ransomware Gangs Exploit Windows Task Host Privilege Escalation Flaw
August 18, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are now actively exploiting a high-severity Windows Task Host privilege escalation vulnerability tracked as CVE-2025-60710. Consequently,…