# flaw (news sources) — RSS Amplifier

Recent posts from the 9 feeds in the RSS Amplifier directory that cover flaw.

Page: <https://rssamplifier.com/topics/flaw/news>  
Feed: <https://rssamplifier.com/topics/flaw/news.md>

---

## [14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2](https://thehackernews.com/2026/08/14-trojanized-npm-packages-drop-redc2.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

Cybersecurity researchers have discovered a set of trojanized npm packages that masquerade as working calendar and streak utilities but are engineered to stealthily deliver an artificial intelligence (AI)-powered Linux implant dubbed RedC2 4.0. "When the module loads, it locates the bundled binary, marks it executable, and launches it as a detached background process," TrendAI, Trend Micro's

## [New SynkLoader malware pushed in Microsoft Teams phishing campaign](https://www.bleepingcomputer.com/news/security/new-synkloader-malware-pushed-in-microsoft-teams-phishing-campaign/)

_2026-08-21 · Bill Toulas · BleepingComputer_

A previously unknown malware family dubbed SynkLoader is being distributed in Microsoft Teams phishing campaigns to steal credentials via a fake lock screen. \[...\]

## [OWASP Flags Top AI Skill Risks in New Security Blueprint](https://www.darkreading.com/application-security/owasp-flags-top-ai-skill-risks-security-blueprint)

_2026-08-21 · Robert Lemos · darkreading_

The Open Worldwide Application Security Project has a brand-new top 10 security list tailored for the modern era, and it debuts a Universal Skill Format to add consistency and security to the AI add-ons.

## [Hundreds of leaked AWS keys give full control over corporate accounts](https://www.bleepingcomputer.com/news/security/hundreds-of-leaked-aws-keys-give-full-control-over-corporate-accounts/)

_2026-08-21 · Bill Toulas · BleepingComputer_

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. \[...\]

## [Microsoft Defender's Own Driver Can Be Weaponized to Delete Security Software at Boot](https://thehackernews.com/2026/08/microsoft-defenders-own-driver-can-be.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

Check Point Research has disclosed a technique that uses Microsoft Defender's own legitimately signed boot-time remediation driver to perform arbitrary kernel-level file and registry operations on Windows systems ranging from Windows 7 through Windows 11 25H2, with no software flaw exploited and no driver imported from outside the machine. The driver, BTR.sys (Boot Time Removal Tool), is a

## [Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet](https://thehackernews.com/2026/08/android-car-malware-spreads-through.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

Cybersecurity researchers have flagged a new malware family that's specifically designed to infect Android-based vehicle head unit firmware developed by DoFun. Kaspersky, which discovered the threat in June 2026, said the end goal of the malware is to serve a multi-stage downloader to enable ad fraud and creation of a proxy botnet. "The malware spread through the built-in updaters of

## [Lawmakers request watchdog review of federal hacking of Americans](https://hackernews.ae/lawmakers-request-watchdog-review-of-federal-hacking-of-americans/)

_2026-08-21 · News Room · Hacker News_

Two members of Congress have formally requested that a government watchdog agency investigate the extent and oversight of federal agencies’ use of hacking tools, including spyware, against Americans. The lawmakers seek a public report detailing the findings. The request, sent Friday to the Government Accountability Office (GAO), was made by Senator Ron Wyden, a Democrat \[...\]

## [Microsoft blames Windows gaming issues on RGB lighting devices](https://www.bleepingcomputer.com/news/microsoft/microsoft-blames-windows-gaming-issues-on-rgb-lighting-devices/)

_2026-08-21 · Sergiu Gatlan · BleepingComputer_

Microsoft says ongoing issues causing games to crash or fail to launch after installing the August 2026 Windows updates may be caused by peripherals with RGB lighting. \[...\]

## [Microsoft confirms maximum severity flaw in Entra ID targeted for exploitation](https://www.cybersecuritydive.com/news/microsoft-maximum-severity-flaw-entra-id-exploitation/828501/)

_2026-08-21 · David Jones · Cybersecurity Dive - Latest News_

The company said the remote-code execution vulnerability has been fully mitigated and no further action is necessary.

## [Defense contractors’ CMMC confidence lags, even as self-assessments improve](https://www.cybersecuritydive.com/news/defense-contractors-cmmc-cybersecurity-confidence-gap/828494/)

_2026-08-21 · Eric Geller · Cybersecurity Dive - Latest News_

A "confidence disconnect" is plaguing the industry, a consulting firm said.

## [Find it on Amazon (Sponsored)](https://crawlproof.com/a/l7UgYVrw58LK)

_2026-08-21 · **Sponsored**_

Open the Amazon product listing to see details and availability

## [Is Online Privacy Possible? How Digital Identities Can Help](https://www.bleepingcomputer.com/news/security/is-online-privacy-possible-how-digital-identities-can-help/)

_2026-08-21 · Sponsored by ANONYOME LABS · BleepingComputer_

Using the same email, phone number, payment method, and other identifiers makes it easier for data brokers and attackers to profile your activity. Anonyome Labs explains how separate digital personas can reduce correlation and limit the impact of breaches, spam, and identity theft. \[...\]

## [Calling on Cyber Pros to Help Defend City Hall](https://www.darkreading.com/cyber-risk/calling-on-cyber-pros-to-help-city-hall)

_2026-08-21 · Darshan Tiwari · darkreading_

Government agencies with smaller budgets need support — and here's how you can help.

## [Microsoft rolls out Classic Outlook theme for New Outlook users](https://www.bleepingcomputer.com/news/microsoft/microsoft-rolls-out-classic-outlook-theme-for-new-outlook-users/)

_2026-08-21 · Sergiu Gatlan · BleepingComputer_

Microsoft has started rolling out a Classic Outlook theme for users of Outlook on the web and the New Outlook for Windows. \[...\]

## [Veridos: Why designing quantum-ready trust for global travel and identity starts now](https://securitybrief.co.uk/story/veridos-why-designing-quantum-ready-trust-for-global-travel-and-identity-starts-now)

_2026-08-21 · jake@techday.com (Jake MacAndrew) · SecurityBrief UK_

Passports could be exposed for years before quantum computers arrive, as governments face a slow, fragile migration to new cryptography.

## [OpenAI Adds Controls That Should've Been There Already](https://www.darkreading.com/application-security/openai-adds-controls-already)

_2026-08-21 · Alexander Culafi · darkreading_

The new AI security controls follow the Hugging Face incident last month, though many of these additions perhaps should have been in place prior to the frontier models escaping.

## [CISA orders feds to patch actively exploited TrueConf Server flaws](https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-actively-exploited-trueconf-server-flaws/)

_2026-08-21 · Sergiu Gatlan · BleepingComputer_

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) ordered U.S. federal agencies to prioritize patching two actively exploited vulnerabilities in the TrueConf Server self-hosted communications platform. \[...\]

## [Cisco Addresses Critical Vulnerabilities in Crosswork and Secure Workload Software](https://hackernews.ae/cisco-addresses-critical-vulnerabilities-in-crosswork-and-secure-workload-software/)

_2026-08-21 · News Room · Hacker News_

Cisco has issued a new set of security advisories detailing critical vulnerabilities across its Crosswork platforms and Secure Workload Software. These updates are part of an ongoing, comprehensive internal security review by the networking giant. The identified security flaws, several with maximum or near-maximum CVSS scores, underscore the persistent threat landscape for enterprise security…

## [Wazuh and AI For Enhanced SOC Workflows](https://thehackernews.com/2026/08/wazuh-and-ai-for-enhanced-soc-workflows.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

Artificial Intelligence (AI) has become one of this decade's defining technologies. From healthcare and finance to manufacturing and education, organizations increasingly rely on AI to automate repetitive tasks, uncover patterns hidden within large datasets, and support faster decision-making. Cybersecurity has experienced a similar transformation. While attackers employ AI to automate

## [Microsoft warns of max severity Entra ID flaw exploited in attacks](https://www.bleepingcomputer.com/news/microsoft/microsoft-warns-of-max-severity-entra-id-flaw-exploited-in-attacks/)

_2026-08-21 · Sergiu Gatlan · BleepingComputer_

Microsoft has patched a maximum-severity vulnerability in the Entra ID identity and access management (IAM) platform that has been exploited in attacks. \[...\]

## [Hackers abuse FTP server banners to deliver new Windows malware](https://www.bleepingcomputer.com/news/security/hackers-abuse-ftp-server-banners-to-deliver-new-windows-malware/)

_2026-08-21 · Bill Toulas · BleepingComputer_

Threat actors are abusing FTP banners to hide commands that deliver two previously undocumented remote access trojans named E4del and PINHOLE. \[...\]

## [A Friend Gave You $30 (Sponsored)](https://crawlproof.com/a/WFFyr1Zwl7wm)

_2026-08-21 · **Sponsored**_

Sign up, deposit $5 within 30 days, and start investing with expert guidance.

## [SickKids data breach exposes employee and job applicant info](https://www.bleepingcomputer.com/news/security/sickkids-data-breach-exposes-employee-and-job-applicant-info/)

_2026-08-21 · Ax Sharma · BleepingComputer_

Toronto's Hospital for Sick Children (SickKids) says a cybersecurity incident exposed the personal information of some current and former employees and job applicants, stemming from a flaw in third-party software. Clinical systems and patient records were not affected. (264) \[...\]

## [Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0](https://thehackernews.com/2026/08/cisco-patches-nine-crosswork-and-secure.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

Cisco has published another round of security updates for Crosswork platforms and Secure Workload Software as part of a continued comprehensive internal security review. Four of the security vulnerabilities affect Crosswork Data Gateway, Crosswork Network Controller, and Crosswork Planning, regardless of the device configuration. A brief description of each of the flaws is below -

## [GitLab CVE-2026-19478 exploited days after disclosure](https://hackernews.ae/gitlab-cve-2026-19478-exploited-days-after-disclosure/)

_2026-08-21 · News Room · Hacker News_

A critical GitLab vulnerability, identified as CVE-2026-19478, is being actively exploited in the wild shortly after its public disclosure. This severe code injection flaw allows unauthenticated attackers to compromise publicly accessible GitLab projects, enabling them to modify, delete, or rewrite project data without needing credentials or user interaction, according to a report by preemptive…

## [Google flags Russian spies abusing real login features](https://securitybrief.co.uk/story/google-flags-russian-spies-abusing-real-login-features)

_2026-08-21 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief UK_

Personal accounts used by researchers and officials are being hit by Russian-linked groups, exposing institutions to stealthy account theft and malware.

## [GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure](https://thehackernews.com/2026/08/gitlab-cve-2026-19478-comes-under.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The vulnerability in question is CVE-2026-19478 (CVSS score: 9.4), a case of code injection that allows an unauthenticated attacker to modify or delete publicly accessible GitLab projects and rewrite their data under certain conditions without requiring

## [Microsoft Entra ID Vulnerability Exploited Remotely](https://hackernews.ae/microsoft-entra-id-vulnerability-exploited-remotely/)

_2026-08-21 · News Room · Hacker News_

Microsoft has issued a critical alert regarding a maximum-severity security flaw, CVE-2026-69836, within its Microsoft Entra ID service, formerly known as Azure Active Directory. The company confirmed that this remote code execution vulnerability has already been exploited in the wild, posing a significant threat. However, Microsoft has stated that no immediate action is required from \[...\]

## [Cohesity adds partner incentives & services specialisation](https://securitybrief.com.au/story/cohesity-adds-partner-incentives-services-specialisation)

_2026-08-21 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

Partners will get higher rebates and simpler certification rules as Cohesity shifts its channel push towards services-led security sales.

## [Microsoft Entra ID Flaw (CVSS 10.0) Exploited in Wild, Allows Remote Code Execution](https://thehackernews.com/2026/08/microsoft-entra-id-flaw-cvss-100.html)

_2026-08-21 · info@thehackernews.com (The Hacker News) · The Hacker News_

Microsoft on Thursday warned of a maximum-severity security flaw in Entra ID that it said has been exploited in the wild, but noted that no customer action is required. The vulnerability, tracked as CVE-2026-69836 (CVSS score: 10.0), is a case of remote code execution impacting the tech giant's cloud-based identity and access management service. It was previously called Azure Active Directory

## [Australia's home batteries are now a cybersecurity compliance isue](https://securitybrief.com.au/story/australia-s-home-batteries-are-now-a-cybersecurity-compliance-isue)

_2026-08-21 · mark@techday.com (Mark Tarre) · SecurityBrief Australia_

Millions of rooftop batteries are now subject to mandatory cyber standards as Canberra widens scrutiny of grid-connected home devices.

## [Hexnode launches AI context layer for endpoint management](https://securitybrief.co.uk/story/hexnode-launches-ai-context-layer-for-endpoint-management)

_2026-08-21 · sofiah@techday.com (Sofiah Nichole Salivio) · SecurityBrief UK_

It aims to cut the steps IT administrators take by routing natural-language requests to specialist workflow agents while keeping human approval for changes.

## [Make any domain metal (Sponsored)](https://crawlproof.com/a/dl1Rzsq9IzX0)

_2026-08-21 · **Sponsored**_

Turn any domain into a blacked-out metal landing page with an email waitlist

## [AI is testing the limits of Zero Trust](https://securitybrief.com.au/story/ai-is-testing-the-limits-of-zero-trust)

_2026-08-21 · mark@techday.com (Mark Tarre) · SecurityBrief Australia_

Breaches are rising as AI tools widen access inside firms, leaving security teams struggling to spot data flows that Zero Trust was built to limit.

## [Google adds Antigravity to Gemini Enterprise subscriptions](https://securitybrief.com.au/story/google-adds-antigravity-to-gemini-enterprise-subscriptions)

_2026-08-21 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

Enterprises can now give developers the coding agent via Google Cloud controls, with pooled budgets, audit logs and IDE support included.

## [FormationQ & Hartree Centre partner on quantum adoption](https://securitybrief.co.uk/story/formationq-hartree-centre-partner-on-quantum-adoption)

_2026-08-21 · sofiah@techday.com (Sofiah Nichole Salivio) · SecurityBrief UK_

More than 40% of respondents cite a skills shortage as quantum computing's adoption barrier, as the UK seeks practical uses.

## [GitLab adds enterprise controls for agentic AI tools](https://securitybrief.com.au/story/gitlab-adds-enterprise-controls-for-agentic-ai-tools)

_2026-08-20 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

Regulated teams can now keep AI processing inside GitLab Dedicated, with new secret handling, spending caps and security fixes added in 19.3.

## [Barracuda finds average web app has 20 security flaws](https://securitybrief.com.au/story/barracuda-finds-average-web-app-has-20-security-flaws)

_2026-08-20 · seanm@techday.com (Sean Mitchell) · SecurityBrief Australia_

Basic security lapses are leaving web apps exposed, with Barracuda saying routine misconfigurations account for most of 20 flaws per site.

## [Google Cloud previews quantum-safe key import in KMS](https://securitybrief.com.au/story/google-cloud-previews-quantum-safe-key-import-in-kms)

_2026-08-20 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

The preview aims to reduce the risk of intercepted keys being cracked later by quantum computers, especially in bring your own key deployments.

## [Google named Gartner leader for cloud-native platforms](https://securitybrief.com.au/story/google-named-gartner-leader-for-cloud-native-platforms)

_2026-08-20 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

The recognition underlines Google Cloud's push to keep developers on one platform as enterprises move AI agents from prototypes into production.

## [Google Cloud warns startups on AI scaling pitfalls](https://securitybrief.com.au/story/google-cloud-warns-startups-on-ai-scaling-pitfalls)

_2026-08-20 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

Startups risk leaked keys, quota throttling and surprise bills unless they tighten controls as AI prototypes move into production.

## [Critical NetScaler Flaw Bypasses Authentication on Gateway and AAA Servers](https://hackernews.ae/critical-netscaler-flaw-bypasses-authentication-on-gateway-and-aaa-servers/)

_2026-08-20 · News Room · Hacker News_

Citrix has issued critical security updates to address two significant vulnerabilities affecting its NetScaler ADC and NetScaler Gateway products. The patches are particularly important for organizations using customer-managed NetScaler instances, as one of the flaws allows for a critical-severity authentication bypass, potentially granting unauthorized access. The vulnerabilities were disclosed…

## [Fortinet buys Virtue AI to boost AI security tools](https://securitybrief.com.au/story/fortinet-buys-virtue-ai-to-boost-ai-security-tools)

_2026-08-20 · joseph@techday.com (Joseph Gabriel Lagonsin) · SecurityBrief Australia_

The deal extends Fortinet's reach into AI runtime protection as companies race to secure agents, models and tools across production systems.

## [Asia Pacific leaders urge overhaul of scam defences](https://securitybrief.co.nz/story/asia-pacific-leaders-urge-overhaul-of-scam-defences)

_2026-08-20 · sofiah@techday.com (Sofiah Nichole Salivio) · SecurityBrief New Zealand_

Australia's new scams rules are adding pressure on firms to detect fraud faster as AI-powered attacks expose weak governance and identity controls.

## [Isolated VM vulnerability allows sandboxed JavaScript to escape to host for potential remote code execution.](https://hackernews.ae/isolated-vm-vulnerability-allows-sandboxed-javascript-to-escape-to-host-for-potential-remote-code-execution/)

_2026-08-20 · News Room · Hacker News_

A critical security vulnerability has been discovered in isolated-vm, a widely-used Node.js sandbox library, potentially allowing attackers to escape the confined environment. The flaw, identified by cybersecurity researchers, impacts numerous applications that rely on this library for running untrusted JavaScript code securely. This discovery highlights ongoing challenges in maintaining robust…

## [Researchers Discover Cryptographic Context Injection Attack Targeting Web Pages](https://hackernews.ae/researchers-discover-cryptographic-context-injection-attack-targeting-web-pages/)

_2026-08-20 · News Room · Hacker News_

AI security firm Adversa AI has disclosed a novel attack technique, codenamed “Cryptographic Context Injection,” that it claims can compel xAI’s Grok chatbot to leak sensitive user information to an attacker. This exploit reportedly allows an attacker to obtain a user’s name, approximate location, subscription tier, and current conversation prompts by tricking Grok into summarizing \[...\]

## [New CUSTODY Framework Constrains AI Agents Inside the Network](https://www.darkreading.com/perimeter/new-custody-framework-constrains-ai-agents-inside-network)

_2026-08-20 · darkreading_

Enterprise cybersecurity expert Jake Williams joins the Dark Reading News Desk to explain why he decided to release his new agentic AI framework in the wake of the OpenAI attacks on Hugging Face.

## [Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads](https://thehackernews.com/2026/08/rust-supply-chain-attack-puts-build.html)

_2026-08-20 · info@thehackernews.com (The Hacker News) · The Hacker News_

The Rust Project has deleted malicious versions of three widely used Rust crates from crates.io after a compromised maintainer account published releases that added a typosquatted dependency whose build script downloaded and executed a remote payload during compilation. The affected releases are arrayref 0.3.10, internment 0.8.7, and append-only-vec 0.1.9, all published from the same owner

## [Suspected Russian Hackers Abuse Google OAuth and WhatsApp Linking to Hijack Accounts](https://thehackernews.com/2026/08/suspected-russian-hackers-abuse-google.html)

_2026-08-20 · info@thehackernews.com (The Hacker News) · The Hacker News_

Three distinct suspected Russian cyber espionage threat clusters have been observed leveraging legitimate authentication flows to single out individuals working in academia, aerospace and defense, governments, and think tanks across Europe, as well as academia and think tanks within the U.S. These clusters include UNC6293, UNC7005, and UNC5976. "These clusters engage in persistent, adaptive

## [AI-Generated Exploit Scripts Target Siemens S7 PLCs in U.S. Critical Infrastructure](https://hackernews.ae/ai-generated-exploit-scripts-target-siemens-s7-plcs-in-u-s-critical-infrastructure/)

_2026-08-20 · News Room · Hacker News_

The U.S. government has issued a stark warning about an “active threat” leveraging artificial intelligence (AI) to generate exploit scripts targeting critical infrastructure organizations. This new wave of cyber activity specifically targets Siemens S7 Series Programmable Logic Controllers (PLCs) for reconnaissance and capability development, though the scope is believed to be broader than just…

## [What We Missed: Delta Flight Disrupted With Wi-Fi Hack](https://www.darkreading.com/cyber-risk/delta-flight-disrupted-wi-fi-hack)

_2026-08-20 · Rob Wright, Alexander Culafi · darkreading_

In this video, Dark Reading editors discuss some of the news they didn't get a chance to cover, including some scary airplane security risks and the US government's newest "hack back" strategy.

## [Vulnerabilities disclosed include Gogs 10.0 RCE, n8n workflow-to-RCE, a $10M reward opportunity, and a GLM-5.3 AI exploit.](https://hackernews.ae/vulnerabilities-disclosed-include-gogs-10-0-rce-n8n-workflow-to-rce-a-10m-reward-opportunity-and-a-glm-5-3-ai-exploit/)

_2026-08-20 · News Room · Hacker News_

This week’s cybersecurity landscape is dominated by threats leveraging trusted components for malicious purposes, underscoring the persistent challenges in securing digital infrastructure. From the abuse of signed drivers to the exploitation of legitimate applications, attackers continue to find innovative ways to bypass defenses, making the need for robust cybersecurity measures more critical…

## [Hackers poison arrayref Rust crate to push infostealer malware](https://www.bleepingcomputer.com/news/security/hackers-poison-arrayref-rust-crate-to-push-infostealer-malware/)

_2026-08-20 · Bill Toulas · BleepingComputer_

Hackers compromised the maintainer account behind the widely used Rust crate arrayref to introduce malware that executed on developers' systems during compilation. \[...\]

