Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Active Exploitation of Critical Software Vulnerabilities

Active Exploitation of Critical Software Vulnerabilities

Posted on August 19, 2026 By CWS

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has expanded its Known Exploited Vulnerabilities (KEV) catalog with four critical security flaws that are currently being exploited. This update, announced on Tuesday, highlights vulnerabilities in widely used software systems, posing significant risks if left unaddressed.

Details of the Vulnerabilities

The vulnerabilities identified by CISA include an improper authentication flaw in Apple macOS, labeled CVE-2026-65400, with a CVSS score of 9.8. This flaw allows network-based attackers to gain unauthorized screen sharing access. Microsoft SharePoint is affected by CVE-2026-55040, a weakness in authentication mechanisms that could enable attackers to bypass security over a network, rated at 9.1 on the CVSS scale.

Broadcom VMware vCenter is susceptible to CVE-2026-59310, a path traversal vulnerability with a critical CVSS score of 9.8. This issue could allow attackers with network access to execute arbitrary code. Lastly, Microsoft Internet Key Exchange Service Extensions suffer from a double free vulnerability, CVE-2026-33824, also assessed at 9.8, permitting unauthorized code execution over a network.

Impact and Exploitation

Despite the release of patches by vendors, these vulnerabilities are actively being exploited. The macOS flaw has been used to deploy Monero cryptocurrency mining malware, while the SharePoint vulnerability was targeted following the release of a proof-of-concept code. The VMware vCenter vulnerability is reportedly being leveraged by a suspected China-linked advanced persistent threat (APT) to install backdoors and ransomware, affecting numerous systems globally.

The scope of exploitation is extensive, with 361 unique victim IP addresses compromised across 47 countries. Germany, the United States, Turkey, Iran, and France have reported the highest number of infections.

Response and Mitigation Measures

Palo Alto Networks Unit 42 has observed the exploitation of the Microsoft IKE vulnerability by another Chinese-speaking threat actor. This actor is noted for using AI-enhanced tools like DeepSeek to conduct autonomous hacking campaigns alongside manual operations. In response, Federal Civilian Executive Branch agencies are required to update affected systems by August 21, 2026, in accordance with BOD 26-04 patching guidelines to ensure robust protection.

Overall, these developments underscore the importance of timely patching and vigilant monitoring of network security to mitigate the risks posed by these critical vulnerabilities.

The Hacker News Tags:CISA, Cybersecurity, IKE, macOS, Patching, Ransomware, Security, SharePoint, vCenter, Vulnerabilities

Post navigation

Previous Post: RAVEN Tool Exploits Elasticsearch Vulnerabilities
Next Post: Prevalent AI Secures $22M to Enhance Data Fabric Solutions

Related Posts

Jewelbug Espionage and Crypto Fraud Uncovered Jewelbug Espionage and Crypto Fraud Uncovered The Hacker News
100+ Fake Chrome Extensions Found Hijacking Sessions, Stealing Credentials, Injecting Ads 100+ Fake Chrome Extensions Found Hijacking Sessions, Stealing Credentials, Injecting Ads The Hacker News
North Korean Hackers Launch PolinRider Campaign North Korean Hackers Launch PolinRider Campaign The Hacker News
Security Tools Alone Don’t Protect You — Control Effectiveness Does Security Tools Alone Don’t Protect You — Control Effectiveness Does The Hacker News
Cloud Bucket Hijacking and Global Fraud: Key Cybersecurity Threats Cloud Bucket Hijacking and Global Fraud: Key Cybersecurity Threats The Hacker News
INTERPOL’s Cybercrime Crackdown Nets 651 Arrests in Africa INTERPOL’s Cybercrime Crackdown Nets 651 Arrests in Africa The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Oracle’s Major Security Update Tackles Critical Vulnerabilities
  • Prevalent AI Secures $22M to Enhance Data Fabric Solutions
  • Active Exploitation of Critical Software Vulnerabilities
  • RAVEN Tool Exploits Elasticsearch Vulnerabilities
  • US Indicts 17 Iranian Hackers, Offers $10M Rewards

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Oracle’s Major Security Update Tackles Critical Vulnerabilities
  • Prevalent AI Secures $22M to Enhance Data Fabric Solutions
  • Active Exploitation of Critical Software Vulnerabilities
  • RAVEN Tool Exploits Elasticsearch Vulnerabilities
  • US Indicts 17 Iranian Hackers, Offers $10M Rewards

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark