August 2026

Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing

Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing 2026-08-11 at 22:36 By Cybersecurity researchers have discovered a new version of the Kimwolf/AISURU Android and Internet of Things (IoT) botnet that comes with significant improvements to improve its operational resilience and conduct distributed denial-of-service (DDoS) attacks. The new version, tracked as Kimwolf

Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing Read More »

Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee’s Client

Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee’s Client 2026-08-11 at 22:08 By Anyone sharing their screen on a Zoom call could have taken over the computers of everyone watching, and anyone watching could have taken over the presenter’s. The flaw sat in the annotation tool, the feature that lets participants draw

Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee’s Client Read More »

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day 2026-08-11 at 21:46 By Ionut Arghire A use-after-free in the afd.sys Windows kernel-mode driver has been exploited to gain SYSTEM privileges. The post August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from

August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day Read More »

Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands

Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands 2026-08-11 at 21:36 By The Computer Emergency Response Team of Ukraine (CERT-UA) has disclosed details of a new social engineering campaign orchestrated by Russian nation-state threat actors targeting IT workers in the country by masquerading as recruiters to trick them into installing

Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands Read More »

AI assistant goes rogue, hacks Australian gym website in stunning breach: report

AI assistant goes rogue, hacks Australian gym website in stunning breach: report 2026-08-11 at 20:30 By Thomas Barrabi An Australian man asked his OpenClaw AI assistant – an open-source software whose AI agents can perform real-world tasks — to book him a spot in a morning class, Australian outlet ABC reported. Instead of just following

AI assistant goes rogue, hacks Australian gym website in stunning breach: report Read More »

FlightAware sues Kalshi over flight cancellation data

FlightAware sues Kalshi over flight cancellation data 2026-08-11 at 19:55 By Cointelegraph by Turner Wright The legal action against Kalshi focused on trademark infringement and injury to its reputation in addition to citing state authorities comparing the company’s contracts to gambling. This article is an excerpt from Cointelegraph.com News View Original Source

FlightAware sues Kalshi over flight cancellation data Read More »

Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws

Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws 2026-08-11 at 19:50 By Ionut Arghire The security defects could be exploited for arbitrary code execution and denial-of-service. The post Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws Read More »

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE 2026-08-11 at 19:47 By Security researchers found a way to enter Microsoft SharePoint servers as any user, including an administrator, with no valid account. A significant part of the work that found it was done through an AI agent. The flaw, tracked as CVE-2026-55040 (CVSS 9.1), affects SharePoint

Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE Read More »

Coinbase-backed Flowdesk secures full broker-dealer license in Dubai

Coinbase-backed Flowdesk secures full broker-dealer license in Dubai 2026-08-11 at 19:39 By Cointelegraph by Sam Bourgi Flowdesk’s VARA approval follows its MiCA authorization in France as crypto firms build regulated operations across major global markets. This article is an excerpt from Cointelegraph.com News View Original Source

Coinbase-backed Flowdesk secures full broker-dealer license in Dubai Read More »

DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt

DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt 2026-08-11 at 19:35 By The ransomware group known as DeadLock has been observed using decentralized infrastructure to facilitate victim communications and data leak operations in a bid to improve operational resilience. “Its recovery ecosystem combines the Session messaging network with blockchain-backed services

DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt Read More »

Nasdaq to acquire LeveL Markets in push toward ‘always-on’ markets

Nasdaq to acquire LeveL Markets in push toward ‘always-on’ markets 2026-08-11 at 19:34 By Cointelegraph by Nate Kostar Nasdaq’s acquisition of the third-largest US alternative trading system comes as the exchange operator expands into tokenized securities and longer trading hours. This article is an excerpt from Cointelegraph.com News View Original Source

Nasdaq to acquire LeveL Markets in push toward ‘always-on’ markets Read More »

Zoom Patches Zero-Click Code Execution Vulnerability

Zoom Patches Zero-Click Code Execution Vulnerability 2026-08-11 at 18:49 By Ionut Arghire Impacting Zoom annotation, the bug could be exploited by a meeting participant to execute code on another participant’s machine. The post Zoom Patches Zero-Click Code Execution Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Zoom Patches Zero-Click Code Execution Vulnerability Read More »

The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It

The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It 2026-08-11 at 18:00 By Steve Durbin Organizations are rushing to implement AI without fully grasping where its legal protections begin and end. The post The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It appeared first on SecurityWeek. This article is

The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It Read More »

SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities

SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities 2026-08-11 at 17:14 By Ionut Arghire SAP released 28 new and two updated security notes, including four notes dealing with critical-severity bugs. The post SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities Read More »

US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’

US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’ 2026-08-11 at 17:03 By Eduard Kovacs The Water Watch Center launched at DEF CON aims to help under-resourced utilities protect their systems against hackers. The post US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’ appeared

US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’ Read More »

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk 2026-08-11 at 17:00 By Nolen Johnson Recent cyberattacks against U.S. water and wastewater systems delivered an important reminder: disrupting operational technology (OT) does not always require sophisticated malware or a previously unknown vulnerability. In the July 2026 activity, internet-facing programmable logic controllers (PLCs),

Practical Cybersecurity for Small Water Utilities: 5 Steps to Reduce Operational Risk Read More »

Scroll to Top