Microsoft Plugs Nearly 400 Security Holes

2026-08-13T07:23:23Zd29d53e75b8d17ed28a567c8193b1f654e3fa506f09688768a5dd44969288e16
AWS GovCloudAndroid botnetGitHub leakIoT securityMicrosoft Patch TuesdayNetNutPopa botnetScattered SpiderSnowflakeaccount takeoveractively exploited vulnerabilityadvertising fraudcloud securitycredential exposurecybercrimedata breachdata scrapingextortionlaw enforcement disruptionresidential proxiessmart TV securityvulnerability managementzero-day

What happened

KrebsOnSecurity reporting covers major Microsoft vulnerability patches, including actively exploited and publicly disclosed flaws; cybercrime prosecutions involving Snowflake extortion and Scattered Spider; malicious TV streaming devices and the Popa Android botnet used for residential proxying, advertising fraud, account takeover, and data scraping; LG’s planned ban on residential proxy apps; a CISA credential and AWS GovCloud key leak; offensive zero-day brokerage concerns; and FBI disruption of the NetNut proxy platform and associated botnet infrastructure.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
d29d53e75b8d17ed28a567c8193b1f654e3fa506f09688768a5dd44969288e16
Enrichment time
2026-08-13T07:23:23Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.