ransomware ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors This week’s security news is dominated by AI-related threats, including a vulnerability exploited in Metabase, a new Shai-Hulud worm leveraging the MCP Registry, and a Chinese review of Palo Alto Networks. Alongside these, researchers are bypassing Spectre defenses, CSS attacks are targeting webmail, and a new ransomw… The Hacker News · Aug 10, 2026 High CVE-2026-34348CVE-2026-18497CVE-2026-63508CHransomwaresupply-chainvishing
threat-intel New NatJack Attacks Hijack TCP Sessions and Spoof DNS by Manipulating NAT Tables A new attack class, dubbed NatJack, has been disclosed that allows attackers to hijack active TCP sessions and spoof DNS responses by manipulating NAT connection state. The vulnerability exists in both Windows and Linux… The Hacker News · Aug 7, 2026 High CVE-2026-56181CVE-2026-63913nattcp hijackingdns spoofing
threat-intel Black Hat USA 2026 – Summary of Vendor Announcements (Part 4) This article summarizes several cybersecurity vendor announcements and research findings from Black Hat 2026. Key developments include 1Password's research on AI-generated patches and new PAM offerings, Cogent's Mythos-c… SecurityWeek · Aug 7, 2026 High CVE-2026-56181CVE-2026-63913aisecuritythreat intelligence