This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415…
GitLab Patches Multiple Security Flaws in CE and EE With 19.2.4 Update
GitLab has released critical security updates for both the Community Edition (CE) and the Enterprise Edition (EE), addressing two GraphQL-related…
North Korean IT worker lands federal job, Azure records go up for sale, GitHub goes down
Federal agency hires North Korean IT worker Millions of Azure records allegedly for sale GitHub outage hits Actions and Copilot Get the show notes here:…
CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited Vulnerabilities…
New Mirai-Based Evooo1Bot Botnet Targets Linux Devices
Evooo1Bot is a Mirai-based Linux botnet that hijacks routers and IoT devices for DDoS attacks, credential theft and criminal proxy services. Fortinet’s…
Operation ASTERIX Uses Vishing and Fake Crypto Wallet Apps to Steal Seed Phrases
Operation ASTERIX, a cryptocurrency fraud campaign that combined account enumeration, branded phishing, targeted voice calls, and trojanized wallet…
Hackers Turn Claude Code and Codex Into AI-Powered Tools for Credential Theft and Cloud Attacks
Threat actors are increasingly using coding assistants as operational tools. Detailed research from Gambit Security highlights three campaigns where…
Dozens of WebKit Vulnerabilities Patched With Fresh macOS, iOS Security Updates
The bugs could be exploited to crash Safari, corrupt memory, leak sensitive data, escape the sandbox, and exfiltrate data.
IT Security News Hourly Summary 2026-08-18 09h : 8 posts
8 posts published in the last hour 06:31How QR-code phishing can slip past corporate security measures 06:31Claude Code Helps Ransomware Operator Steal LDAP Passwords, Backdoor VPNs and Exfiltrate SQL Databases 06:31Shadow hVNC Malware Kit Gives Hackers Hidden Windows Desktop for…
How QR-code phishing can slip past corporate security measures
Quishing has become a popular alternative to traditional phishing. Here’s how businesses can close the gap.
Claude Code Helps Ransomware Operator Steal LDAP Passwords, Backdoor VPNs and Exfiltrate SQL Databases
A new threat intelligence report from Gambit Security has documented one of the clearest real-world examples yet of artificial intelligence being…
Shadow hVNC Malware Kit Gives Hackers Hidden Windows Desktop for Covert Remote Control
A newly advertised malware-as-a-service toolkit named Shadow hVNC combines browser credential theft, hidden virtual desktop control, reverse proxying, and…
Google’s open-source HEIR lets AI work with data it can’t see
Google’s researchers and engineers developed the Homomorphic Encryption Intermediate Representation (HEIR) compiler project, an open-source compiler…
Public Exploit Code Released for Microsoft SCCM Remote Code Execution Vulnerability
Public proof-of-concept exploit code is now available for CVE-2026-47301, a critical remote code execution vulnerability affecting Microsoft Configuration…
VMware vCenter RCE Gives Attackers a Path From One Appliance to Entire Virtual Infrastructure
A critical VMware vCenter vulnerability is being actively exploited in a fast-moving campaign that turns a single exposed management appliance into a…
Multi-Factor Authentication (MFA) Explained: Types, Bypass Attacks and Best Practices (2026)
By HOC Team | Last updated: August 2026 | Read time: ~22 min In September 2022, Uber suffered…
IT Security News Hourly Summary 2026-08-18 08h : 5 posts
5 posts published in the last hour 05:31PoC Exploit Released for Microsoft SCCM Vulnerability Enabling SYSTEM-Level Code Execution 05:31A hollowed out data layer is making CISOs fly blind into AI attacks 05:31Pokémon Center Data Breach Exposes Customers’ Personal and Order…
PoC Exploit Released for Microsoft SCCM Vulnerability Enabling SYSTEM-Level Code Execution
A recently disclosed proof-of-concept (PoC) exploit for Microsoft Configuration Manager, previously known as System Center Configuration Manager (SCCM),…
A hollowed out data layer is making CISOs fly blind into AI attacks
The security industry is currently transitioning to an era where both offense and defense are AI-led, and every SOC operates at machine speed. However,…
Pokémon Center Data Breach Exposes Customers’ Personal and Order Data
Pokémon Center has begun notifying customers in the United Kingdom and Germany that personal information from their online orders was exposed following a…
Attackers turn to AI for help identifying files worth stealing
AI tools are being used by cyber attackers to write malicious code, build tools that harvest credentials, search compromised networks, identify valuable…
GitLab Released GraphQL Vulnerability (CVE-2026-19478) Emergency Patch
GitLab released an emergency, out-of-band security update to address a critical access control flaw affecting self-managed instances of…
Cybersecurity jobs available right now: August 18, 2026
CISO ADI Global Distribution | USA | Hybrid – View job details As a CISO, you will develop and lead ADI’s global security strategy to protect information…
Pokémon Center Confirms Data Breach – Hackers Stole Customers’ Personal Data
Pokémon Center has begun notifying customers in the United Kingdom and Germany that their personal information was exposed in a third-party data breach,…