Attackers Access Aesto Health AWS Infrastructure, Exposing 9.5 Million Records
2026-09-02T02:51:37Z•f316b3fb1be4449c4d59d46c9b420eca9e62031e315f63212af034f39e3f32dd
CVE-2026-81578actively-exploitedatm-jackpottingavast-antivirusawschina-linked-aptּcisa-kevcloud-securitydata-breachdll-sideloadingdprkfinancial-crimegivewphealthcareinsider-threatkaspersky-endpoint-securitypapercutphp-object-injectionprivilege-escalationproof-of-conceptremote-code-executionremote-workerssilver-foxvalleyratwordpresszero-day
What happened
Security news roundup covering a major Aesto Health AWS data breach affecting more than 9.5 million people; publicly released proof-of-concept privilege-escalation exploits for GenDigital Avast Antivirus and Kaspersky Endpoint Security; CISA adding actively exploited PaperCut NG/MF vulnerabilities to its KEV catalog; a critical unauthenticated GiveWP WordPress flaw enabling server command execution; DPRK-linked workers infiltrating Western companies; ATM jackpotting; ValleyRAT malware using DLL sideloading; China-linked Fire Ant compromising Cisco routers and hiding activity; and infostealers’
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- f316b3fb1be4449c4d59d46c9b420eca9e62031e315f63212af034f39e3f32dd
- Enrichment time
- 2026-09-02T02:51:37Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.