Why Should I Care? โ 2026-09-05 | ๐ด 1 HIGH ยท ๐ก 0 MEDIUM ยท ๐ต 14 RADAR ยท โช 53 FILTERED
๐ Briefing โ 2026-09-05
15 vendor intel items scanned | ๐ด 1 HIGH | ๐ก 0 MEDIUM | ๐ต 14 RADAR | โช 53 FILTERED
๐ด Critical โ action required:
- CISA Adds One Known Exploited Vulnerability to Catalog (CVE-2026-85046) โ Yes, if you run Google Chromium versions prior to 105.0.5195.102: This vulnerability can allow attackers to take full control of your system.
Everything else can wait.
๐ต 14 items on the radar โ see below โ
Why Should I Care? ๐ด HIGH โ Handle Now
CISA Adds One Known Exploited Vulnerability to Catalog
CISA Advisories [CISA KEV] | CVE-2026-85046
โ Why Should I Care?
Yes, if you run Google Chromium versions prior to 105.0.5195.102: This vulnerability can allow attackers to take full control of your system.
๐ฏ Affected versions: All versions prior to 105.0.5195.102
Not affected: 105.0.5195.102 and later
๐ญ In plain English:
This vulnerability allows attackers to confuse the software into misinterpreting data types, leading to potential code execution. For example, an attacker could exploit this to run malicious software on your computer just by tricking you into visiting a compromised website.
๐ง Prerequisites:
- Running an affected version of Google Chromium
- Visiting a malicious website
โฑ Urgency: High urgency due to active exploitation and potential for full system compromise.
โ Fixed in: 105.0.5195.102
๐ก Context: The root cause is a flaw in the V8 JavaScript engine used by Chromium that allows for type confusion attacks.
Why Should I Care? ๐ก MEDIUM (0)
None.
Why Should I Care? ๐ต On the Radar (14)
- IDScan sued over alleged data breach affecting 153 million drivers (BleepingComputer) โ IDScan, a company that verifies identities for businesses, is facing lawsuits after a data breach potentially exposed over 153 million driver's licenses. This could affect businesses that use IDScan for identity verification, such as car rental firms, retailers, and financial institutions.
- New CrowdStrike 'FalconFlank' zero-day grants SYSTEM privileges (BleepingComputer) โ A new exploit called 'FalconFlank' can give attackers SYSTEM-level access on Windows systems protected by CrowdStrike Falcon. This means attackers can run commands with the highest level of access, potentially compromising your entire system.
- Critical Citrix NetScaler auth bypass now leveraged in attacks (BleepingComputer) โ Hackers are exploiting a critical flaw in Citrix NetScaler that lets them bypass authentication. This means unauthorized users could access your network if you haven't patched the flaw.
- Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws (The Hacker News) โ Two critical vulnerabilities in Super Forms and Elementor Pro plugins are being actively exploited, allowing attackers to upload malicious files and take control of WordPress sites. Over 440,000 exploit attempts have been detected.
- Google warns of new Chrome zero-day flaw exploited in attacks (BleepingComputer) โ Google has patched a critical zero-day flaw in Chrome that could allow attackers to execute code remotely. This flaw affects Chrome and other browsers based on Chrome's engine, like Edge and Brave.
- Google Releases Chrome Update to Patch Actively Exploited V8 Zero-Day (The Hacker News) โ Google has released an update for Chrome to fix a critical security flaw that attackers are already exploiting. This flaw could allow attackers to run malicious code on your computer just by visiting a specially crafted webpage.
- PostgreSQL Fixes 12-Year-Old Logical Decoding Flaw Enabling Replication-Role Code Execution (The Hacker News) โ A critical security flaw in PostgreSQL allows replication users to execute arbitrary code on the server. This affects versions before 18.6, 17.11, 16.15, 15.19, and 14.24. If you use these versions and have replication accounts, you need to update immediately to prevent unauthorized code execution.
- Phishing Campaign Sends Millions of Emails Using Invisible Unicode to Evade Filters (The Hacker News) โ A phishing campaign is using invisible Unicode characters to bypass email filters, making it harder to detect phishing attempts. This can lead to employees clicking on malicious links or providing sensitive information.
- Exchange Online outage causes email delays, 'Server busy' errors (BleepingComputer) โ Microsoft is experiencing an Exchange Online outage that's causing email delays and 'Server busy' errors, impacting external email communication. If you rely on Exchange Online, your email communications might be delayed or fail.
- Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws (The Hacker News) โ Plex has patched multiple security flaws in their Media Server and Desktop software. Not updating could leave your system vulnerable to unauthorized access and potential infrastructure exposure.
- OSPAR 2026 report now available with 167 services in scope (AWS Security Blog) โ Annual audit report confirmation.
- New Ted Backdoor Hides Inside Victims' Own HAProxy Builds to Intercept Web Traffic (The Hacker News) โ New Ted backdoor found in trojanized HAProxy builds.
- 39 New Methods That Compromise Passkey Authentication (BleepingComputer) โ Research on methods to compromise passkey authentication.
- GPT-6 Astra Scores 100% on ExploitBench as OpenAI Blocks PoC Exploit Requests (The Hacker News) โ News about GPT-6 Astra's capabilities and OpenAI's response to exploit requests.
โช 53 low-priority items filtered.
๐ฆ Aggregated and triaged by Donna AI | Sources: 8 vendor feeds | CISA KEV