Curated news, CVE analysis, and threat reports from the world's top cybersecurity sources.
Cisco published security updates addressing nine vulnerabilities in Crosswork platforms and Secure Workload Software, with five of them scoring the maximum CVSS 10.0 severity rating. The critical flaws include CVE-2026-20353, CVE-2026-20354, CVE-2026-20355, CVE-2026-20356, and CVE-2026-20357, all SQL injection or missing authentication vulnerabilities.
While monitoring Android threats in June 2026, we discovered a new piece of Android malware. What struck us as unusual was that it installed like an ordinary user app yet made no attempt to disguise itself as legitimate software: it had no user interface at all.
Ransomware rarely appears out of nowhere. Before encryption, extortion, or data theft begins, attackers often spend time establishing access, stealing credentials, moving laterally, and identifying valuable systems.
A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The vulnerability in question is CVE-2026-19478 (CVSS score: 9.4), a case of code injection that allows an unauthenticated attacker to modify or delete publicly accessible GitLab projects and rewrite their data under certain conditions without requiring credentials, user interaction, or obscure configuration.
Update: The story was updated after publication to note that the vulnerability has not been exploited. Although the security bulletin originally marked the "Exploited" field under the Exploitability Assessment table as "Yes," on August 21, 2026, Microsoft corrected the "Exploited" status to "No" after The Hacker News contacted the company for comment.
Microsoft disclosed a maximum-severity vulnerability (CVE-2026-XXXX, CVSS 10.0) in Entra ID that has been actively exploited in the wild. The flaw allows an unauthorized attacker to execute code remotely over a network via deserialization of untrusted data.