Skip to main content

Cybersecurity News Bulletin: August 17, 2026

Bi-weekly Cybersecurity News Bulletin
Mar 26, 2026

Cybersecurity News – week of Aug 17, 2026

 

  1. Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
  2. Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware
  3. Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner
  4. Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets
  5. A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
  6. Chinese-Made Zbtlink Routers Ship With Backdoor 
  7. New CSS Attacks Can Break Webmail Defenses
  8. Anthropic's Model Attempts to Poison Open-Source Project
  9. Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
  10. Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
  11. OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause
  12. Uncle Sam Seeks Private Hackers to Disrupt Criminal Networks

 

Trending CVEs

Check the list, patch what you have, and hit the ones marked urgent first — CVE-2026-34348CVE-2026-18497 (stb TrueType), CVE-2026-63508, CVE-2026-56162, CVE-2026-65667, CVE-2026-50515, CVE-2026-62830, CVE-2026-59115, CVE-2026-50481 (Microsoft Windows), CVE-2026-64638 (WordPress), CVE-2026-64564(Linux SCTP), CVE-2026-56181 (Microsoft Windows NAT), CVE-2026-63913 (Linux), CVE-2026-64561 (Linux kernel), CVE-2026-20303, CVE-2026-20304, CVE-2026-20310, CVE-2026-20267, CVE-2026-20272 (Cisco), CVE-2026-18830 (AWS AgentCore), CVE-2026-18236 (Google ADK), CVE-2026-64650, CVE-2026-64651(Vercel), CVE-2026-41679, GHSA-x8hx-rhr2-9rf7 (Paperclip), CVE-2026-58073, CVE-2026-58072 (Veeam), CVE-2026-16498, CVE-2026-16496, CVE-2026-14869(HashiCorp), CVE-2026-15307 (GeoDjango), CVE-2026-64531 (Linux kernel Open vSwitch), CVE-2026-18577, CVE-2026-18556 (N-able N‑central), CVE-2026-59774(Gitea), CVE-2026-58048 (cPanel), CVE-2026-17583 (Thermo Fisher Scientific), CVE-2026-8496 (Alinto SOGo), CVE-2026-65400 (Apple macOS Tahoe, macOS Sequoia, and macOS Sonoma), CVE-2026-19137, CVE-2026-19149, CVE-2026-19154, CVE-2026-19157, CVE-2026-19170, CVE-2026-19172 (Google Chrome), CVE-2013-3821(Oracle PeopleSoft), CVE-2025-8943 (Flowise), and an SQL injection in Metabase.

 

 

Learn more about the Cyber Range at Salem State University

Back to top