This post has no text preview — click the link below to read the original article. This article has been indexed from Blog Read the original article: August 2026 Patch Tuesday: One Exploited Zero-Day and 62 Critical Vulnerabilities Among 415…
Elementor Pro WordPress Flaw Exploited to Upload Webshells and Execute Commands
A critical vulnerability in the Elementor Pro WordPress plugin is being actively exploited to upload malicious PHP files and execute commands remotely on…
AWS CodeCatalyst Blueprints SDK Hit by High-Severity Command Injection Flaw
There is a high-severity attack on Amazon CodeCatalyst blueprints that exploits an open-source framework for building them. This vulnerability has been…
Critical Nexus 9000 Flaw Could Permit Threat Actors to Gain Root Access
Cisco has issued security patches to fix a critical vulnerability impacting 10 Silicon One-based Nexus 9000 switches that could permit an unauthorized,…
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials
JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors…
Dropbox Says 5,000 Accounts Compromised After Flaw in Lenovo Login System
Dropbox has confirmed that hackers broke into roughly 5,000 user accounts last month by exploiting a weakness in how Lenovo verifies email addresses,…
Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could result in…
Switchvox Vulnerability Triggers Active Exploitation Risk
Sangoma Switchvox CVE-2026-9586 is a serious unauthenticated SQL injection flaw that can lead to remote code execution, and Horizon3 says it has already…
Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers’ Data It Said Was Deleted
Hardware wallet manufacturer Trezor on Friday disclosed that another 67,000 customers from the U.S. have been impacted in a breach at its shipping…
Cybersecurity Risk Assessment: Step-by-Step Guide And Free Template
By HOC Team | Last updated: September 05, 2026 | Read time: ~24 min Cybersecurity Risk Assessment: Step-by-Step…
CISA Flags Old ownCloud Flaw After Reported Philippine Nuclear Data Theft
CISA added CVE-2023-49105 to its exploited-flaws catalog after researchers tied the old ownCloud bug to reported Philippine nuclear data theft.
Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
Tracked as CVE-2026-32475 (CVSS score of 9.8), the bug described as an arbitrary file upload issue in the function that handles form submissions.
redactproxy, a tool that lets pentesters use AI without leaking client data
AI coding agents are now part of a lot of security work. They are good at the parts a tester has no time for: going through every request, every parameter…
OpenAI Agents Hacked Another Website
Plus: Tens of millions of US and Canadian drivers’ licenses go up for sale on the dark web, the US military finally tries to tackle the risk online ad…
IT Security News Hourly Summary 2026-09-05 13h : 3 posts
3 posts published in the last hour 10:01Chainguard Hits 1 Billion Build Manifests With AI-Powered Software Supply Chain Security 10:01Microsoft Teams Desktop Client Fails to Load on Windows System – Microsoft Investigating 10:00IT Security News Hourly Summary 2026-09-05 12h :…
Chainguard Hits 1 Billion Build Manifests With AI-Powered Software Supply Chain Security
Chainguard has surpassed 1 billion container build manifests, doubling production from 500 million in six months as it expands its AI-assisted software…
Microsoft Teams Desktop Client Fails to Load on Windows System – Microsoft Investigating
Microsoft is investigating an ongoing issue causing some Windows users to face significant delays or outright failures when launching the Microsoft Teams…
IT Security News Hourly Summary 2026-09-05 12h : 4 posts
4 posts published in the last hour 09:31Russian Hackers Deploy New HOOKEDGE Backdoor in Espionage Attacks Across Europe 09:02AI Agents Breach Company Network in Under 10 Hours and Steal Root Credentials 09:01Thousands of OpenAI Agents Quietly Turned an Abandoned Wiki…
Russian Hackers Deploy New HOOKEDGE Backdoor in Espionage Attacks Across Europe
Russian state-sponsored threat actor BlueDelta, also tracked as APT28, Fancy Bear, and Forest Blizzard, has deployed a lightweight Windows backdoor named…
AI Agents Breach Company Network in Under 10 Hours and Steal Root Credentials
A human attacker armed with frontier artificial intelligence models breached an enterprise network and seized root credentials in under 10 hours, a…
Thousands of OpenAI Agents Quietly Turned an Abandoned Wiki Into Their Coordination Channel
A group of AI safety researchers says a fleet of autonomous agents that identified themselves as OpenAI systems left about 18,000 posts on a dormant…
IT Security News Hourly Summary 2026-09-05 11h : 4 posts
4 posts published in the last hour 08:0212-Year-Old PostgreSQL Flaw Lets Attackers Execute Code and Take Over Database Servers 08:02Global public-private operation disrupts Sality botnet active for two decades 08:02Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities…
12-Year-Old PostgreSQL Flaw Lets Attackers Execute Code and Take Over Database Servers
A critical PostgreSQL vulnerability dubbed PostGREShell could allow low-privileged replication accounts to execute attacker-controlled code, escalate to…
Global public-private operation disrupts Sality botnet active for two decades
An international operation supported by Europol has disrupted the Sality peer-to-peer (P2P) botnet, a long-running criminal infrastructure used to…
