Your Shredded Visa Card May Still Work at the Checkout

2026-08-21T20:51:36Z37c44ece11cc734b5a2d621cc6ea3ec5012b0309fd2d2adc0a37fbf820d88d10
CVE-2026-19478CVE-2026-64849CVE-2026-73570Android malwareCISA KEVCiscoCl0pFlexPLMGitLabICS/SCADAMLflowOAuth abusePTC WindchillRussia-linked espionageSiemens S7TrueConf ServerWhatsAppZimbra Collaboration Suiteactive exploitationbanking trojancritical vulnerabilitiespayment card securityphishingspywareunauthenticated remote code execution

What happened

SecurityAffairs roundup covering active exploitation and disclosure of critical vulnerabilities and campaigns, including unauthenticated RCE in Zimbra, an actively exploited GitLab GraphQL flaw, CISA KEV additions affecting TrueConf and MLflow, mass exploitation claims involving PTC Windchill/FlexPLM, attacks against Siemens S7 PLCs, Russia-linked phishing and OAuth abuse, Android malware, Cisco maximum-severity flaws, and contactless Visa transaction security research.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
37c44ece11cc734b5a2d621cc6ea3ec5012b0309fd2d2adc0a37fbf820d88d10
Enrichment time
2026-08-21T20:51:36Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Your Shredded Visa Card May Still Work at the Checkout · Baitaphish