threat-intel Lazarus Exploits Windows Zero-Day to Gain SYSTEM Access and Deploy Backdoor The Lazarus Group, a North Korean threat actor, is exploiting a newly patched zero-day vulnerability in Microsoft Windows' AFD.sys driver to gain SYSTEM access and deploy a backdoor called Troy. They are leveraging a sop… The Hacker News · Aug 12, 2026 High CVE-2026-68820CVE-2025-49113FRGEBRzero-daysocial engineeringphishing
vulnerability SharePoint Vulnerability Exploited Shortly After PoC Release A SharePoint vulnerability, patched last month, is now being actively exploited in the wild, with attackers leveraging a publicly released proof-of-concept. This follows a series of similar vulnerabilities discovered thi… SecurityWeek · Aug 12, 2026 High CVE-2026-55040CVE-2026-63520CVE-2026-50522sharepointvulnerabilityexploitation
threat-intel Black Hat USA 2026: AI is racing ahead of cybersecurity controls Black Hat USA 2026 focused heavily on the accelerating role of AI in cybersecurity, both as a threat and a tool. Experts highlighted the rapid discovery of vulnerabilities by AI systems and the need for robust oversight… WeLiveSecurity · Aug 12, 2026 Medium aicybersecurityvulnerabilities
vulnerability Microsoft’s massive Patch Tuesday releases continue as AI reshapes bug discovery Microsoft released a massive update with 62 critical and 357 important security vulnerabilities, marking a significant increase in the number of flaws discovered and highlighting the growing role of AI in vulnerability d… The Record · Aug 12, 2026 High CVE-2026-68820CVE-2026-62832vulnerabilitypatch tuesdayai
threat-intel CISA gives federal agencies two weeks to patch Microsoft bug exploited in DPRK campaign The CISA has ordered federal agencies to patch a critical Windows vulnerability being actively exploited by North Korean hackers as part of Operation ‘Dream Job’. This campaign, led by the Lazarus Group, impersonates rec… The Record · Aug 12, 2026 Critical CVE-2026-68820FRGEBRzero-daynorth koreaoperation dream job
threat-intel Fresh Windows Zero-Day Exploited in North Korean Cyberattacks North Korean hackers, operating under the Lazarus Group, are exploiting a recently patched Windows zero-day vulnerability (CVE-2026-68820) to conduct targeted attacks against defense, aerospace, and aviation organization… SecurityWeek · Aug 12, 2026 High CVE-2026-68820CVE-2025-49113FRGEBRzero-daylazarus groupcyber espionage
vulnerability ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access A security researcher, Chaotic Eclipse, has released a proof-of-concept (PoC) demonstrating a patch bypass for a Microsoft Defender zero-day vulnerability, dubbed ShieldBreak. This vulnerability, CVE-2026-50656 (RoguePla… The Hacker News · Aug 12, 2026 High CVE-2026-50656CVE-2026-62832CVE-2026-68820zero-daypatch-bypassprivilege escalation
threat-intel ISC Stormcast For Wednesday, August 12th, 2026 https://isc.sans.edu/podcastdetail/10048, (Wed, Aug 12th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Aug 12, 2026 High phishingransomwaresupply chain
vulnerability Multiples vulnérabilités dans Microsoft .Net (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft .NET, allowing for remote code execution, privilege escalation, and denial-of-service attacks. These vulnerabilities affect various versions of .NET Framework an… CERT-FR · Aug 12, 2026 High CVE-2026-58641CVE-2026-62871CVE-2026-62872vulnerabilityremote code executionprivilege escalation
vulnerability Multiples vulnérabilités dans Microsoft Azure (12 août 2026) Multiple vulnerabilities have been discovered within Microsoft Azure, potentially allowing an attacker to elevate privileges, compromise data confidentiality, and bypass security policies. These vulnerabilities affect va… CERT-FR · Aug 12, 2026 High CVE-2026-47299CVE-2026-57104CVE-2026-65806azurevulnerabilitysecurity
vulnerability Multiples vulnérabilités dans Microsoft Edge (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Edge, allowing an attacker to trigger arbitrary code execution and a security issue not specified by the vendor. These vulnerabilities are part of a larger set o… CERT-FR · Aug 12, 2026 High CVE-2026-19137CVE-2026-19138CVE-2026-19139vulnerabilitysecuritymicrosoft
vulnerability Multiples vulnérabilités dans Microsoft Office (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Office, some of which allow an attacker to trigger arbitrary code execution, privilege escalation, and data confidentiality breaches. These vulnerabilities are p… CERT-FR · Aug 12, 2026 High CVE-2026-58651CVE-2026-62842CVE-2026-62882vulnerabilitysecuritymicrosoft
threat-intel Multiples vulnérabilités dans Microsoft Windows (12 août 2026) Multiple vulnerabilities have been discovered in Microsoft Windows, including remote code execution, privilege escalation, and denial-of-service attacks. Microsoft indicates that vulnerability CVE-2026-42976 is actively… CERT-FR · Aug 12, 2026 High CVE-2026-68820CVE-2026-42976CVE-2026-49179vulnerabilityremote code executionprivilege escalation
vulnerability Microsoft Patch Tuesday for August 2026 — Snort rules and prominent vulnerabilities Microsoft released its August 2026 security update, containing 421 vulnerabilities across a wide range of products, with 62 marked as critical. Several vulnerabilities, including those affecting Windows, SharePoint, Azur… Cisco Talos · Aug 11, 2026 High CVE-2026-68820CVE-2026-62893CVE-2026-65665vulnerabilityremote code executionprivilege escalation
threat-intel Microsoft's Patch Tuesday Deluge Continues With August Updates Microsoft released a substantial security update this month, addressing 421 unique CVEs, including two zero-day vulnerabilities. A significant portion of these – 236 affecting Windows and 98 affecting Office – require im… Dark Reading · Aug 11, 2026 High CVE-2026-68820CVE-2026-62832CVE-2026-62878patch-tuesdayvulnerabilityzero-day
vulnerability 421 bugs in Microsoft's Patch Tuesday release, and the Norks have already attacked one Microsoft released a Patch Tuesday update containing 421 bugs, and a group known as ‘The Norks’ has already exploited one of these vulnerabilities to launch an attack. This highlights a continuing issue with Microsoft’s… The Register · Aug 11, 2026 High CVE-2026-68820CVE-2026-62832CVE-2026-62893microsoftpatch tuesdayvulnerability
vulnerability Microsoft Plugs Nearly 400 Security Holes Microsoft released a massive update bundle addressing 398 security vulnerabilities, including one actively exploited and two previously disclosed flaws. Despite the sheer volume of fixes, only one of these vulnerabilitie… Krebs on Security · Aug 11, 2026 High CVE-2026-68820CVE-2026-62832CVE-2026-72971patch tuesdayvulnerabilityai
vulnerability Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack Microsoft released a security update containing 398 new vulnerabilities, with one zero-day flaw actively being exploited by Check Point Research's Lazarus group as part of Operation Dream Job. This zero-day (CVE-2026-688… The Hacker News · Aug 11, 2026 High CVE-2026-68820CVE-2026-62878CVE-2026-62893zero-dayrceexploit
vulnerability August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day Microsoft released a substantial update addressing 421 vulnerabilities, including a critical zero-day exploit in a kernel-mode driver (afd.sys). Threat actors, potentially including nation-state actors like those linked… SecurityWeek · Aug 11, 2026 High CVE-2026-68820CVE-2025-32709CVE-2025-21418zero-daykernel-modeprivilege escalation
threat-intel Microsoft Patch Tuesday August 2026, (Tue, Aug 11th) Microsoft released a substantial batch of security updates this month, including several critical vulnerabilities that are either being exploited in the wild or have been publicly disclosed as zero-days. Several of these… SANS Internet Storm Center · Aug 11, 2026 Critical CVE-2026-68820CVE-2026-62832CVE-2026-72971vulnerabilityremote code executionprivilege escalation