Week in review: Salesforce and ServiceNow portals exposed for 17 months, exploited Metabase 0-day
2026-08-16T08:51:39Z•3427ae59ce0291fa9050741cba1a039a0073f03418ec7e44282da92db5b7798e
Android malwareMetabase zero-dayNFC relay attackSalesforceServiceNowSpyNoteWindRelaycloud IAM misconfigurationcybersecurity regulationfraud call centersmobile banking fraudpayment card fraudremote access trojan
What happened
Help Net Security weekly roundup covering Android NFC payment-card relay malware (WindRelay paired with SpyNote), exposed Salesforce and ServiceNow portals, an exploited Metabase zero-day, cloud IAM misconfiguration, fraud call-center disruption, cybersecurity regulation, and other technology news. The most directly security-relevant item describes real-time theft of payment-card data through NFC relay attacks and remote device access.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- helpnetsecurity
- Record identifier
- 3427ae59ce0291fa9050741cba1a039a0073f03418ec7e44282da92db5b7798e
- Enrichment time
- 2026-08-16T08:51:39Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.