Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development
2026-08-10T19:23:59Z•6a84e50973f85f39e05acb7fbbd4ad7c162f6b535ae20835ba8fd5d1e8340992
CVE-2026-64638CVE-2026-8037China-linked threat actorClickFixLinux kernelMetabaseN-centralProgress Kemp LoadMasterRATSCTPStorm-1175StormEncryptorVS Code extensionsWordPressactive exploitationadversary-in-the-middle (AitM)container escapecrypto wallet theftinfostealermacOS malwaremalwarenpm supply chainphishingransomwarezero-day
What happened
The document is a security news digest covering active exploitation of critical vulnerabilities, ransomware, malware and supply-chain campaigns, phishing and identity attacks, AI-assisted offensive security, and emerging attacks against passkeys, webmail, NAT, CI/CD, and enterprise assistants. Notable items include an actively exploited Metabase zero-day enabling unauthenticated database SQL injection and admin access, exploitation of Progress Kemp LoadMaster CVE-2026-8037, WordPress CVE-2026-64638, malicious npm and VS Code extensions, ransomware deployment by Storm-1175, and credential or Sa
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 6a84e50973f85f39e05acb7fbbd4ad7c162f6b535ae20835ba8fd5d1e8340992
- Enrichment time
- 2026-08-10T19:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.