Rosetta Intel
Briefings/Daily BriefAI FrontierRansomware
Rosetta Lab ↗Blur Horizon LLC
Daily Brief2026-08-23
Daily Brief·2026-08-23·9 Sources·21 Items

Rosetta Daily · Aug 23, 2026

This edition scanned 9 sources and 321 raw items; 21 selected.

Actively Exploited / CISA KEV

Zimbra Collaboration Suite OS Command Injection (CVE-2026-73570, CVSS 8.9)
CERT Polska disclosed active exploitation: attackers send crafted SMTP requests to execute arbitrary OS commands as the Zimbra user. CISA added it to the KEV catalog on August 21.
Sources: The Hacker News · BleepingComputer · CISA

GitLab Code Injection (CVE-2026-19478, CVSS 9.4)
Per watchTowr, this flaw came under active exploitation within days of public disclosure; an unauthenticated attacker can modify or delete publicly accessible content.
Source: The Hacker News

TrueConf Server — two actively exploited flaws (CVE-2026-72530 code injection / CVE-2026-72529 missing authentication)
CISA added both to the KEV catalog (Aug 20) and ordered federal agencies to patch the self-hosted communications platform on a deadline.
Source: BleepingComputer

SPIP CMS unauthenticated RCE (CVE-2026-77806, CVSS 9.8)
NVD states this has been exploited in the wild since August 2026, via code injection through a malformed X-Spip-Filtre header; affects versions before 4.4.21.
Source: NVD

Possible new Microsoft Defender zero-day: SYSTEM privilege escalation from a standard account, no patch yet
Chinese outlet AnQuanKe reports a standard account can escalate to SYSTEM in one step; no CVE number or official patch has surfaced as of this writing — details are limited, watch for vendor confirmation.
Source: AnQuanKe

Critical Vulnerabilities

Microsoft Entra ID Remote Code Execution (CVE-2026-69836, CVSS 10.0)
The Hacker News reported active exploitation on the morning of Aug 21; MSRC's own advisory, updated later the same day, corrected the "Exploited" field to "No." The two sources disagree — defer to the vendor's latest statement and watch for further updates.
Sources: The Hacker News · MSRC

Cisco Crosswork and Secure Workload — 9 vulnerabilities, 5 rated CVSS 10.0
Fixed as part of Cisco's ongoing internal security review, affecting Crosswork Data Gateway, Network Controller, Planning, and Secure Workload.
Source: The Hacker News

Azure SQL Database SSRF (CVE-2026-69502, CVSS 10.0)
An unauthorized attacker can use server-side request forgery to elevate privileges over the network.
Source: NVD

llama.cpp RPC server use-after-free (CVE-2026-39909, CVSS 9.2)
A flaw in the GRAPH_RECOMPUTE handler before build b8585 lets an unauthenticated remote attacker gain arbitrary read/write. This is a widely deployed open-source LLM inference engine — teams self-hosting inference should check their version.
Source: NVD

Incus container/VM manager — 7 critical flaws (all CVSS 9.9)
Covers malicious images/backups leading to arbitrary file read/write, cross-cluster migration permission overrides, S3 upload path traversal, and command-line argument injection; fixed across versions 7.1.0–7.3.0. Upgrade promptly.
Source: NVD

FreeRTOS-Kernel input validation flaw (CVE-2026-77234, CVSS 9.3)
Before 11.3.1, an unprivileged task on MPU-enabled ports could execute code in privileged kernel context. FreeRTOS is widely used in embedded/IoT devices — upgrade to 11.3.1 or later.
Source: NVD

Joomla YOOtheme Pro authenticated SQL injection (CVE-2026-76613, CVSS 9.2)
Affects versions 1.0.0–5.0.40; any contributor-level user could inject SQL queries.
Source: NVD

AI Security

Multiple flaws in Headroom's LLM proxy
A user-impersonation flaw (CVE-2026-77776, CVSS 9.3) stems from the proxy trusting the client-supplied x-headroom-user-id header to determine memory ownership; a separate SSRF-style flaw (CVE-2026-77775, CVSS 7.7) lets a client pick the upstream destination via the x-headroom-base-url header.
Source: NVD

Open-source AI agent framework Omnigent — permission check gap (CVE-2026-62674, CVSS 9.0)
The PUT /sessions/{session_id}/agent endpoint fails to reject a bound shared session's permission check; affects versions before 0.3.0.
Source: NVD

14 trojanized npm packages drop AI-assisted Linux backdoor RedC2 4.0
Disguised as calendar and streak-tracking utilities, they deliver a Linux implant with AI-powered C2 capability once loaded.
Source: The Hacker News

Threat Intel & Malware

Check Point: Microsoft Defender's own driver can be weaponized
Using Defender's legitimately signed boot-time remediation driver, an attacker can perform kernel-level file and registry operations — including deleting security software — on Windows 7 through Windows 11 25H2, with no software flaw exploited and no detection triggered.
Source: The Hacker News

Unit 42: attackers keep exploiting the weak corners of the SDLC supply chain
Attackers are shifting focus from application code to CI/CD pipelines and developer tooling, requiring end-to-end visibility and stricter controls.
Source: Unit 42

Over 9,300 leaked AWS keys remain active
Publicly exposed between August 2022 and August 2026, these keys are enough to give an attacker full control of the corresponding corporate accounts.
Source: BleepingComputer

New SynkLoader malware spreads via Microsoft Teams phishing
Steals credentials through a fake lock screen.
Source: BleepingComputer

Android car head-unit malware campaign
Spreads through a legitimate firmware update app built by DoFun, enrolling devices in a proxy botnet and enabling ad fraud.
Sources: BleepingComputer · The Hacker News

Attackers abuse FTP server banners to deliver new RATs E4del and PINHOLE
Commands are hidden in FTP service banners to deliver these previously undocumented remote access trojans.
Source: BleepingComputer

← Prev
Rosetta Daily · Aug 22, 2026
Next →
Rosetta Daily · Aug 24, 2026