Cybersecurity experts found several serious flaws this week in Windows, Chromium, OpenSSL, Microsoft Exchange, and ServiceNow. Some of these flaws are being used in real attacks, allowing attackers to gain extra access, run harmful code from afar, and get around security measures.
At the same time, attackers are using many Microsoft software tools to spread malware that steals passwords. Companies are advised to install security updates right away since hackers are still targeting popular business technologies.
By infosecbulletin
/ Wednesday , August 12 2026
Cisco warns customers that it has fixed a serious security hole in firewalls using Secure Firewall Adaptive Security Appliance (ASA)...
Read More
By infosecbulletin
/ Wednesday , August 12 2026
Microsoft announced fixes for 394 CVEs on Tuesday, including a serious flaw that has been used by hackers as a...
Read More
By infosecbulletin
/ Wednesday , August 12 2026
A serious security flaw in Zoom might let a hacker take control of someone else's device in a live meeting...
Read More
By infosecbulletin
/ Tuesday , August 11 2026
The CISA in the U.S. has added two important SonicWall SMA1000 flaws—CVE-2026-15409 and CVE-2026-15410-to its list of Known Exploited Vulnerabilities...
Read More
By infosecbulletin
/ Tuesday , August 11 2026
A joint warning from the FBI, CISA, the Department of Defense Cyber Crime Center, the NSA, the U.S. Secret Service,...
Read More
By infosecbulletin
/ Tuesday , August 11 2026
Attackers penetrated into IEH Corporation, a US defense and airspace firm, using a fake link that looked like a real...
Read More
By infosecbulletin
/ Tuesday , August 11 2026
Android users are reminded that a known app store listing can hold a money threat. Researchers found harmful loaders on...
Read More
By infosecbulletin
/ Monday , August 10 2026
The gentlemen ransomware group targets various industries of Bangladesh. In an advisory Bangladesh e-Government Computer Incident Response Team (BGD e-GOV...
Read More
By infosecbulletin
/ Saturday , August 8 2026
A group of almost 800 harmful packages was added to the npm registry in a new effort to spread malware...
Read More
By infosecbulletin
/ Saturday , August 8 2026
Google has launched Chrome version 151.0.7922.108/.109 for Windows and macOS, and version 151.0.7922.108 for Linux. This update brings 41 security...
Read More
The headlines are:
Windows Collaborative Translation Framework 0-Day Vulnerability Allows Privilege Escalation
CISA Warns of Google Chromium 0-Day Vulnerability Exploited in Attacks
Windows RDP Vulnerabilities Allow Attacker to Expose Sensitive Data
Critical OpenSSL Vulnerabilities Enable Remote Code Execution Attacks
73 Microsoft Packages Weaponized to Deploy Password Stealer Malware
Windows BitLocker 0-Day Vulnerability Allows Attackers to Bypass Security Feature
New Windows Defender 0-Day Exploit “RoguePlanet” Grants SYSTEM Access to Attackers
Microsoft patches Exchange Server zero-day exploited in attacks
Microsoft Defender ‘RoguePlanet’ zero-day grants SYSTEM privileges
Vulnerabilities ServiceNow Patches Vulnerability Exploited Against Some Customers
New Windows CTF 0-Day Vulnerability Lets Attackers Gain Elevated Privileges
New Windows Defender ‘RoguePlanet’ zero-day grants SYSTEM privileges