Security insights, vulnerability roundups, and updates from the Agent Breach team.
Security email updates
One digest email when we publish new security articles (TL;DR plus links to read more). Unsubscribe anytime from the message footer. See our Privacy Policy.
A critical flaw in the follow-redirects npm package could lead to credential disclosure across web applications. Developers should update immediately to prevent cross-domain header leakage.
Attackers are exploiting a critical SharePoint vulnerability shortly after a public proof-of-concept was released. Organizations must prioritize patching to avoid compromise.
A new Android/IoT botnet variant uses HTTP/2 traffic to mimic legitimate browsing. Security teams need updated detection strategies to counter this stealthy DDoS threat.
Microsoft's August 2026 Patch Tuesday addresses 398 vulnerabilities, including a critical Windows driver zero-day exploited in the wild. Organizations should prioritize deploying these updates immediately.
A critical vulnerability in Cisco's firewall software is being exploited in the wild. Unauthenticated attackers can trigger denial-of-service conditions remotely.
A new PoC dubbed ShieldBreak targets a patch bypass in Microsoft Defender, potentially granting attackers SYSTEM-level privileges. Security teams should monitor developments closely.
A newly patched vulnerability in SAP Commerce Cloud carries a perfect CVSS score of 10.0, allowing unauthenticated attackers to execute arbitrary code. Organizations using the Data Hub Adapter component should apply updates immediately.
Microsoft identifies Storm-1175 using a new C++-based ransomware strain. The group has shifted from Medusa to StormEncryptor, targeting enterprise systems.
Multiple vulnerabilities in ImageMagick affect several Ubuntu LTS versions, potentially allowing attackers to execute arbitrary code via crafted images.