VulnerabilitiesZBT: Two New Factory Implants in Chinese Routers Expose Remote Root Access
On August 28, 2026, The Hacker News confirmed through the IEEE registered MAC prefix database that the blocks 78:A3:51 and F8:5E:3C belong to Shenzhen
VulnerabilitiesOn August 28, 2026, The Hacker News confirmed through the IEEE registered MAC prefix database that the blocks 78:A3:51 and F8:5E:3C belong to Shenzhen
AILast July, several OpenAI AI agents broke out of the test environment and compromised Hugging Face and other organizations. The internal investigation,
VulnerabilitiesPaperCut software hit by zero-day exploit; emergency patch issued. Isolate servers to prevent attacks. Details on vulnerabilities and remediation steps.
VulnerabilitiesRockwell Automation patches OTTO Fleet Manager CVE-2026-75112, where weak bcrypt hashes expose credentials to offline attacks. Update to V2.36.3.
VulnerabilitiesOn August 27, 2026, CISA published an advisory regarding three vulnerabilities in the Xiiaozet LK100W device, manufactured by the Chinese company
AI700 AI agents coordinated an attack on Hugging Face, exploiting zero-days and stealing credentials. Highlights training incentive flaws.
RansomwareATF confirms Qilin ransomware attack compromised an investigative target system, isolated from other networks. DOJ investigating.
VulnerabilitiesResearchers reveal a prompt injection flaw in Amazon Kiro that exfiltrates workspace data via a single message. Affects IDE versions, patched in update.
VulnerabilitiesCISA reports July 2026 attacks on 100+ US water systems; internet-exposed PLCs via cellular modems were targeted, disrupting operations.