Why Should I Care? โ 2026-08-29 | ๐ด 0 HIGH ยท ๐ก 0 MEDIUM ยท ๐ต 23 RADAR ยท โช 45 FILTERED
๐ Briefing โ 2026-08-29
23 vendor intel items scanned | ๐ด 0 HIGH | ๐ก 0 MEDIUM | ๐ต 23 RADAR | โช 45 FILTERED
โ No critical items today.
Everything else can wait.
๐ต 15 items on the radar โ see below โ
Why Should I Care? ๐ด HIGH โ Handle Now
No HIGH priority items in the last 24h.
Why Should I Care? ๐ก MEDIUM (0)
None.
Why Should I Care? ๐ต On the Radar (23)
- ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body (The Hacker News) โ A critical security flaw in ownCloud was exploited to steal nuclear records from a Philippine research body. The flaw allows attackers to bypass authentication and access, modify, or delete files without needing credentials.
- Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable (The Hacker News) โ A critical flaw in the Cosmos EVM module allowed attackers to drain funds from six blockchains. The vulnerability affects versions < 0.6.2 and >= 0.7.0 < 0.7.2. Upgrading to v0.6.2 or v0.7.2 is necessary to prevent further exploitation.
- McKesson discloses breach after ShinyHunters claims patient data theft (BleepingComputer) โ McKesson, a major healthcare and pharmaceutical distributor, experienced a significant data breach where an extortion group, ShinyHunters, claims to have stolen 284 million patient data records. This could affect the security of patient data and service reliability for McKesson's clients.
- Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication (The Hacker News) โ PaperCut NG and MF have critical vulnerabilities that allow attackers to execute code without authentication, potentially giving them full control over your system. For example, an attacker could access sensitive documents and execute harmful commands.
- GiveWP WordPress donation plugin flaw lets hackers execute server commands (BleepingComputer) โ A critical flaw in the GiveWP WordPress donation plugin allows attackers to execute arbitrary commands on the server. This affects versions up to 4.16.7.1 and impacts over 100,000 installations. The vulnerability can be exploited even if user registration is disabled.
- PaperCut releases second emergency patch for exploited flaws (BleepingComputer) โ PaperCut NG and MF software has critical vulnerabilities that allow unauthenticated attackers to execute code on your servers. The company has released a second emergency patch to fix these issues. If you use this software, you must apply the patch immediately to protect your infrastructure.
- 19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code (The Hacker News) โ Researchers found 19 Chrome and Edge extensions that can steal cryptocurrency and wallet secrets. These extensions look legitimate but have hidden malicious capabilities. They can steal sensitive data and drain cryptocurrency.
- Over 8,300 Gitea servers vulnerable to code execution attacks (BleepingComputer) โ Over 8,300 Gitea servers are still vulnerable to a critical security flaw that allows attackers to execute arbitrary code. This is a significant risk for any organization using Gitea for code hosting.
- PaperCut Zero-Day Exploited in Attacks, Affecting All NG and MF Versions (The Hacker News) โ A critical vulnerability in PaperCut NG and MF print management software is being actively exploited. The company has released an emergency patch for versions v25 and v26. If you use this software, you are at risk of unauthorized access and potential data breaches.
- Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server (The Hacker News) โ A critical flaw in cPanel and WHM could allow a hosting customer to gain root access to the server, potentially taking control of all hosted domains. This means a single compromised account could lead to full server compromise.
- China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access (The Hacker News) โ ZBT routers have two critical vulnerabilities that allow attackers to gain root access without authentication. This can lead to complete control over the router, including the ability to execute commands, steal sensitive information, and potentially take over the network.
- Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL (The Hacker News) โ ServiceNow has patched four critical vulnerabilities, three rated CVSS 10.0, allowing unauthenticated attackers to execute code and SQL. This can lead to full system compromise. ServiceNow has provided updates, but self-hosted customers must apply them manually.
- Toy-making giant Hasbro disclose data breach affecting employees (BleepingComputer) โ Hasbro, a major toy company, experienced a data breach affecting employee personal and financial information. This could impact IT infrastructure security measures and employee trust.
- Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth (The Hacker News) โ Two security flaws in Unitree G1 EDU robots allow attackers to gain root access and execute commands remotely, one through Bluetooth and another through a network path. This could let attackers take full control of the robot.
- APT28-Linked HOOKEDGE Backdoor Targets European Government and Diplomatic Organizations (The Hacker News) โ A new backdoor, HOOKEDGE, has been deployed by a Russian state-sponsored group targeting European government and diplomatic organizations. This backdoor is spread through Word documents and uses webhooks for command and control, making it hard to detect.
โช 45 low-priority items filtered.
๐ฆ Aggregated and triaged by Donna AI | Sources: 8 vendor feeds | CISA KEV