Wave of cybersecurity vulnerabilities disclosed across platforms

Between August 6 and August 20, 2026, multiple critical security flaws were disclosed: the Clop extortion group exploited CVE-2026-12569 in PTC Windchill to steal engineering data; Microsoft patched CVE-2026-24301 affecting Copilot Personal; and a high-severity vulnerability (CVE-2026-0075) in Android's ContactsProvider was made public, affecting Android versions 14–16.

35 reportsprimary · us_mainstream · other · tech

Claim audit

No BS check run yet — press ⚖ to extract this story's claims and verify them against independent sources.

All coverage

ABB Ability Zenon

rss:cisa-advisoriesprimary54d ago kagi ↗

View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to bypass security, crash systems, execute unauthorized actions, or compromise data. The following versions of ABB Ability Zenon are affected: IIoT services with MongoDB (4.2) installed on ABB Ability Zenon vers:all/* CVSS Vendor Equipment Vulnerabilities v3 7.8 ABB ABB Ability Zenon Improper Handling of Lengt

Medixant RadiAnt DICOM

rss:cisa-advisoriesprimary54d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to cause the application to crash if a maliciously crafted DICOM file is opened. The following versions of Medixant RadiAnt DICOM are affected: RadiAnt DICOM <=2025.2 CVSS Vendor Equipment Vulnerabilities v3 4.3 Medixant Medixant RadiAnt DICOM Out-of-bounds Write Background Critical Infrastructure Sectors: Heal

Johnson Controls Inc. TL280

rss:cisa-advisoriesprimary54d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to access sensitive information on the device. The following versions of Johnson Controls Inc. TL280 are affected: TL280 <5.63 (CVE-2026-27871) CVSS Vendor Equipment Vulnerabilities v3 4.1 Johnson Controls Inc. Johnson Controls Inc. TL280 Use of a Broken or Risky Cryptographic Algorithm Background Critical Infr

CPDLC over ATN-B1 Vulnerabilities

rss:cisa-advisoriesprimary53d ago kagi ↗

View CSAF Summary ATN-B1 CPDLC relies on legacy clear text unauthenticated radio frequency links. Research demonstrates that these characteristics allow unauthorized message injection, denial-of-service conditions, and forced session resets. These vulnerabilities do not constitute an unsafe aircraft condition but can degrade operational safety margins by increasing workload, delaying safety-critic

#StopRansomware: Gunra Ransomware

rss:cisa-advisoriesprimary50d ago kagi ↗

Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared in 2025 and expanded to RaaS operations in 2026. The actors leverage a double-extortion model, both encrypt

Mira Hormone Monitor, Mira Android App

rss:cisa-advisoriesprimary49d ago kagi ↗

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to access unauthorized health profile information, make changes to health information, cause a denial-of-service condition, disclose session token information, and obtain control of user accounts. The following versions of Mira Hormone Monitor, Mira Android App are affected: Mira Monitor Firmware 1.7.1.47 (C

Pulsetto Vagus Nerve Stimulator

rss:cisa-advisoriesprimary49d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to use hidden commands to disable electrical safety mechanisms or modify other stimulation output settings. The following versions of Pulsetto Vagus Nerve Stimulator are affected: Pulsetto Vagus Nerve Stimulator vers:all/* (CVE-2026-18844) CVSS Vendor Equipment Vulnerabilities v3 8.1 Pulsetto Pulsetto Vagus Ner

Siemens RUGGEDCOM APE1808

rss:cisa-advisoriesprimary48d ago kagi ↗

View CSAF Summary Fortinet has published information on vulnerabilities in FortiOS. This advisory lists the related Siemens Industrial products. Siemens recommends to contact customer support for additional information, and follow Fortinet advisory for workarounds and mitigation measures. The following versions of Siemens RUGGEDCOM APE1808 are affected: RUGGEDCOM APE1808 vers:all/* (CVE-2026-23573

Musk and Zuckerberg claw back into AI race with new model momentum

rss:axiosus_mainstream47d ago kagi ↗

Elon Musk and Mark Zuckerberg have muscled their way back into AI's elite ranks, defying early obituaries to close the gap on a new generation of Silicon Valley startups. Why it matters: Recent gains by tech giants SpaceX and Meta — long stuck in AI's second tier — are putting new pressure on a hierarchy dominated by OpenAI and Anthropic. State of play: Both companies released models this week fea

Siemens Parasolid

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Parasolid is affected by an out of bounds read vulnerability that could be triggered when the application reads files in X_T format. This could allow an attacker to crash the application or execute arbitrary code. Siemens has released new versions for the affected products and recommends to update to the latest versions. The following versions of Siemens Parasolid are affected: P

Siemens License Server (SLS)

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Siemens License Server is affected by multiple vulnerabilities which could allow an attacker to elevate its privileges and read arbitrary files on the system. Siemens has released a new version for Siemens License Server (SLS) and recommends to update to the latest version. The following versions of Siemens License Server (SLS) are affected: Siemens License Server (SLS) vers:intd

Siemens Desigo DXR and PXC Controllers

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary A vulnerability in Desigo DXR and PXC controllers has been identified that could allow an attacker to cause denial of service conditions by sending malformed BACnet packets. Recovery requires a device reset or reboot to restore normal functionality. Siemens has released new versions for the affected products and recommends to update to the latest versions. The following versions

Johnson Controls Inc. Airwall

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to decrypt sensitive data, bypass authentication controls, gaining unauthorized access to read arbitrary files on the system, or gain unauthorized access to protected system resources. The following versions of Johnson Controls Inc. Airwall are affected: Airwall <=4.0.4 (CVE-2026-64887, CVE-2026-34492) CVSS

Johnson Controls Metasys

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow a low-privilege user or attacker to inject a persistent malicious payload via a crafted URL that executes in the context of other users' sessions, including administrators, potentially leading to session hijacking and unauthorized access. The following versions of Johnson Controls Metasys are affected: Metasys 12 vers:all/

Siemens Siveillance Video

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Siveillance Video Management Servers contains a vulnerability that could allow a Remote Code Execution attack. Siemens has released new versions for the affected products and recommends to update to the latest versions. The following versions of Siemens Siveillance Video are affected: Siveillance Video V2023 R3 vers:intdot/<23.3.27 (CVE-2026-3014) Siveillance Video V2024 R1 vers:

Flow Neuroscience FL-100

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker within Bluetooth range to manipulate brain stimulation parameters and override safety limits. The following versions of Flow Neuroscience FL-100 are affected: Flow Neuroscience FL-100 Halo Neuroscience FL-100 CVSS Vendor Equipment Vulnerabilities v3 8.1 Flow Neuroscience Flow Neuroscience FL-100 Use of Hard-cod

Siemens LOGO! Soft Comfort

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary or brute-force attacks against the password hashes. S

ANDRITZ HIPASE-250 and 250 SCALA

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to read data from the device or gain access to affected workstations. The following versions of ANDRITZ HIPASE-250 and 250 SCALA are affected: HIPASE-250 <=7.20 (CVE-2026-65309, CVE-2026-65310, CVE-2026-65311, CVE-2026-65313) 250 SCALA <=7.20 (CVE-2026-65309, CVE-2026-65310, CVE-2026-65311, CVE-2026-65313) C

Siemens Solid Edge

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Solid Edge is affected by multiple file parsing vulnerabilities that could be triggered when the application reads specially crafted files in PAR, PSM or DFT format. This could allow an attacker to crash the application or execute arbitrary code. Siemens has released new versions for the affected products and recommends to update to the latest versions. The following versions of

AVEVA Enterprise SCADA

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow an attacker to tamper with serialized data, potentially resulting in code execution during deserialization. The following versions of AVEVA Enterprise SCADA are affected: Enterprise SCADA 2025 (CVE-2025-7639) Enterprise SCADA >=2024|<=2024_SP1_P01 (CVE-2025-7639) Enterprise SCADA >=2023|<=2023_SP1 (CVE-2025-7639) Enterpris

Hitachi Energy APM Edge Product

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Hitachi Energy is aware of Dirty Frag vulnerabilities that affect APM Edge product versions listed in this document. Successful exploitation of these vulnerabilities could result in impact on confidentiality, integrity and availability of the product. Please refer to the Recommended Immediate Actions for information about the mitigation/remediation. The following versions of Hita

Haiwell IoT Cloud HMI Gateway

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability may allow an attacker to inject and execute arbitrary OS commands with root privileges. The following versions of Haiwell IoT Cloud HMI Gateway are affected: Haiwell IoT Cloud HMI Gateway 3.40.1.12 (CVE-2026-19188) CVSS Vendor Equipment Vulnerabilities v3 10 Haiwell Haiwell IoT Cloud HMI Gateway Improper Neutralization of Special Elem

Siemens Simcenter Femap

rss:cisa-advisoriesprimary47d ago kagi ↗

View CSAF Summary Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads files in BMP file format. If a user is tricked to open a malicious file with the affected application, this could lead the application to crash or potentially lead to arbitrary code execution. Siemens has released a new version for Simcenter Femap and recommends to update

States tighten energy rules for AI data centers

kite:energyother42d ago kagi ↗

California, Pennsylvania and other jurisdictions moved this week to tighten oversight of data centers as AI-related power demand raises concerns about utility bills, pollution and grid planning. In California, two bills by Democratic state Sen. Steve Padilla cleared a key committee ahead of the Legislature’s end-of-month deadline; one seeks to shield other utility customers from data-center costs,

GitLab patches critical flaw affecting public projects

kite:cybersecurityother42d ago kagi ↗

GitLab issued out-of-band security releases for Community Edition and Enterprise Edition to fix two GraphQL-related vulnerabilities, including a critical code-injection flaw tracked as CVE-2026-19478 [cybersecuritydive.com#1][habr.com#1][securityweek.com#1]. The critical bug carries a CVSS score of 9.4 and can be exploited remotely by an unauthenticated attacker without user interaction to modify

Siemens Simcenter Nastran

rss:cisa-advisoriesprimary42d ago kagi ↗

View CSAF Summary Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process. Siemens has rel

CISA Malcolm

rss:cisa-advisoriesprimary42d ago kagi ↗

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to cause a denial-of-service condition or execute arbitrary code. The following versions of CISA Malcolm are affected: Malcolm <26.06.1 (CVE-2026-55676) Malcolm <26.07.0 (CVE-2026-63133, CVE-2026-63134, CVE-2026-63177) Malcolm <=26.07.1 (CVE-2026-19670, CVE-2026-19671) CVSS Vendor Equipment Vulnerabilities v

Clop exploits PTC Windchill flaw for data theft

kite:cybersecurityother42d ago kagi ↗

The Clop extortion group has been linked to a campaign exploiting CVE-2026-12569, a critical remote-code-execution flaw in exposed PTC Windchill and FlexPLM servers, to steal engineering files, passwords and sensitive company data [bleepingcomputer.com#1][cybersecuritynews.com#1]. ReliaQuest said the attackers deployed a custom Java web shell built specifically for Windchill rather than a generic

Microsoft patches one-click Copilot data theft flaw

kite:cybersecurityother42d ago kagi ↗

Microsoft patched CVE-2026-24301, a Copilot Personal vulnerability dubbed CoSnitch by Varonis Threat Labs, on August 18, 2026, after researchers said a crafted link could steal data from a victim’s connected apps with a single click [thehackernews.com#1][cybersecuritynews.com#1][frandroid.com#1][computerworld.com#1]. Varonis said it reported the issue to Microsoft in December 2025 and found no evi

🚨 Public PoC available for high-severity Android ContactsProvider flaw https:// github.com/qm4rs/cve-2026-0075 CVE-2026-0075 affects Android 14, 15, 16, and 16 QPR2 and can allow access to informatio

mastodon:infosec-exchangeother41d ago kagi ↗

🚨 Public PoC available for high-severity Android ContactsProvider flaw https:// github.com/qm4rs/cve-2026-0075 CVE-2026-0075 affects Android 14, 15, 16, and 16 QPR2 and can allow access to information from the contacts database through a SQL-related side channel without user interaction. Researcher QM4RS has now released a controlled Android PoC that intentionally requests neither READ_CONTACTS n

Oracle Releases Massive August 2026 Security Update Fixing 943 Vulnerabilities Oracle's August 2026 update patches 943 vulnerabilities, including critical remote code execution flaws in WebLogic and E

mastodon:infosec-exchangeother41d ago kagi ↗

Oracle Releases Massive August 2026 Security Update Fixing 943 Vulnerabilities Oracle's August 2026 update patches 943 vulnerabilities, including critical remote code execution flaws in WebLogic and E-Business Suite that allow unauthenticated attackers to take over systems. **If you are using Oracle products, review this advisory in detail. Prioritize patching of internet-facing systems, as more t

Splunk MCP Server app v1.2 is impacted by CVE-2026-76404 (CRITICAL, CVSS 9.1) — insecure deserialization lets admin users run arbitrary OS commands. Limit admin access & monitor for misuse until a pat

mastodon:infosec-exchangeother40d ago kagi ↗

Splunk MCP Server app v1.2 is impacted by CVE-2026-76404 (CRITICAL, CVSS 9.1) — insecure deserialization lets admin users run arbitrary OS commands. Limit admin access & monitor for misuse until a patch is released. https:// radar.offseq.com/threat/cve-20 26-76404-the-application-deserializes-untrusted-data-without-sufficiently-verifying-that-the-a0d42d963a9e6a80 # OffSeq # Splunk # Infosec # CVE2

Collective Hallucination in Multi-Agent LLMs:Modeling and Defense

rss:arxiv-cscrtech40d ago kagi ↗

arXiv:2606.07941v2 Announce Type: replace Abstract: Hallucination is a critical reliability challenge in multi-agent Large Language Model (LLM) systems because unsupported claims can propagate through recursive interactions and produce collective false consensus. We model collective hallucination as a time-evolving network process over directed communication graphs and introduce HPR-Adaptive, a de

# OT # Advisory VDE-2026-078 Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangero

mastodon:infosec-exchangeother40d ago kagi ↗

# OT # Advisory VDE-2026-078 Frauscher: FDS102 for FAdC/FAdCi R2 has multiple vulnerabilities Frauscher Sensortechnik FDS102 for FAdC/FAdCi R2 is vulnerable to Unrestricted Upload of File with Dangerous Type, Path Traversal: '../filedir', Insertion of Sensitive Information into Log File, Incorrect Authorization, Insufficient Session Expiration, Cross-Site Request Forgery (CSRF), Missing Authentica

Johnson Controls Simplex Incident Manager

rss:cisa-advisoriesprimary40d ago kagi ↗

View CSAF Summary Successful exploitation of this vulnerability could allow a local attacker with low privileges to extract user credentials (passwords and authentication tokens) from system memory, potentially leading to unauthorized access to the application and connected systems. The following versions of Johnson Controls Simplex Incident Manager are affected: Simplex Incident Manager <=V2.01 (