Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development

2026-08-10T19:23:59Z6a84e50973f85f39e05acb7fbbd4ad7c162f6b535ae20835ba8fd5d1e8340992
CVE-2026-64638CVE-2026-8037China-linked threat actorClickFixLinux kernelMetabaseN-centralProgress Kemp LoadMasterRATSCTPStorm-1175StormEncryptorVS Code extensionsWordPressactive exploitationadversary-in-the-middle (AitM)container escapecrypto wallet theftinfostealermacOS malwaremalwarenpm supply chainphishingransomwarezero-day

What happened

The document is a security news digest covering active exploitation of critical vulnerabilities, ransomware, malware and supply-chain campaigns, phishing and identity attacks, AI-assisted offensive security, and emerging attacks against passkeys, webmail, NAT, CI/CD, and enterprise assistants. Notable items include an actively exploited Metabase zero-day enabling unauthenticated database SQL injection and admin access, exploitation of Progress Kemp LoadMaster CVE-2026-8037, WordPress CVE-2026-64638, malicious npm and VS Code extensions, ransomware deployment by Storm-1175, and credential or Sa

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
6a84e50973f85f39e05acb7fbbd4ad7c162f6b535ae20835ba8fd5d1e8340992
Enrichment time
2026-08-10T19:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.