ransomware ⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors This week’s security news is dominated by AI-related threats, including a vulnerability exploited in Metabase, a new Shai-Hulud worm leveraging the MCP Registry, and a Chinese review of Palo Alto Networks. Alongside these, researchers are bypassing Spectre defenses, CSS attacks are targeting webmail, and a new ransomw… The Hacker News · Aug 10, 2026 High CVE-2026-34348CVE-2026-18497CVE-2026-63508CHransomwaresupply-chainvishing
vulnerability Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug HashiCorp, Veeam, and Django have released critical patches to address several vulnerabilities, including a cross-tenant credential reuse flaw in Terraform MCP Server, a multi-tenant console credential impersonation issu… The Hacker News · Aug 5, 2026 High CVE-2026-58073CVE-2026-58072CVE-2026-58067credential-reuseremote-code-executionspatial-data
vulnerability Multiples vulnérabilités dans les produits Veeam (05 août 2026) Multiple vulnerabilities have been discovered in Veeam products, including vulnerabilities that could allow for remote code execution, privilege escalation, and denial of service attacks. These issues affect Service Prov… CERT-FR · Aug 5, 2026 High CVE-2026-58067CVE-2026-58071CVE-2026-58072vulnerabilitypatchremote code execution