Press "Enter" to skip to content

OSINT / CyberSec report 31.08.2026 00:06

1. TerminalFix campaigns are using fake Cloudflare CAPTCHAs to trick users into executing malicious commands via Windows Terminal or PowerShell (thehackernews.com).

2. The ShinyHunters extortion group claims to have stolen 284 million patient records from McKesson following a voice phishing attack (bleepingcomputer.com).

3. Berlin state government officials confirmed a data breach and stated they will not pay the ransom demanded by the hackers (thehackernews.com).

4. A critical balance handling flaw in the Cosmos EVM module was exploited to drain funds from six blockchains between August 20 and August 25 (thehackernews.com).

5. Attackers are actively exploiting two chained vulnerabilities in PaperCut NG and MF software to achieve unauthenticated remote code execution (thehackernews.com).

6. CISA added CVE-2023-49105 to its Known Exploited Vulnerabilities catalog after Chinese speaking actors used it to target a nuclear research body (thehackernews.com).

7. ServiceNow patched four security flaws in its AI platform, including three critical vulnerabilities with a CVSS score of 10.0 (thehackernews.com).

8. Researchers discovered two factory implants in ZBT routers that allow unauthenticated remote attackers to gain root access (thehackernews.com).

9. A critical vulnerability in cPanel and WHM allows hosting customers to escalate privileges and gain root control of the entire server (thehackernews.com).

10. Multiple critical flaws in WordPress plugins and themes including GiveWP and WPMU DEV Dashboard could lead to site takeover or remote code execution (thehackernews.com).

11. Researchers identified 19 malicious Chrome and Edge extensions designed to steal cryptocurrency wallet secrets (thehackernews.com).

12. Two remote code execution vulnerabilities were disclosed for the Unitree G1 EDU humanoid robot, including one exploitable via Bluetooth (thehackernews.com).

13. Two individuals were charged for their roles in a global supply chain hacking spree involving the TeamPCP group and a self propagating worm (bitdefender.com).

Be First to Comment

    Leave a Reply

    Your email address will not be published. Required fields are marked *