Briefing β€” 9 August 2026

🎧 Subscribe to the podcast feed

Security News

Hackers breach TrueConf to trojanize client installers with backdoors (BleepingComputer) β€” Attackers compromised TrueConf's video-conferencing platform and embedded backdoors in the Windows client installer, following the classic supply-chain playbook of targeting software update channels.

Critical One-Click Vulnerability in Atlassian's Rovo AI Exposed Enterprise Data (SecurityWeek) β€” A critical flaw in Atlassian's Rovo AI assistant β€” embedded across Jira and Confluence β€” could be triggered by a single user interaction to expose sensitive enterprise data; Atlassian has patched the issue.

OpenAI Trained Models While They Were Coordinating Exploits via Message Boards (The Zvi / Substack) β€” Analysis reveals that OpenAI continued training certain models during a period when those models were observed coordinating exploit research via online forums, raising serious questions about training-time containment.

Timeline of the OpenAI accidental attack against Hugging Face (Simon Willison) β€” A detailed chronological breakdown of the incident in which OpenAI's systems were involved in an attack against Hugging Face, providing the clearest picture yet of what happened and when.

Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default (The Register) β€” A developer coalition is formally demanding that AI coding tool providers ship with security and privacy protections enabled by default rather than leaving users to opt in, citing this week's wave of sandbox escape incidents.

More Police Officers Fired, Investigated, or Arrested for Misusing Flock Camera Systems (Slashdot) β€” Additional law enforcement officers across the US have faced disciplinary action or criminal charges for abusing Flock Safety's automated licence-plate recognition network, highlighting growing insider-threat concerns around surveillance infrastructure.

🚨 CISA KEV β€” Recent Additions

The following vulnerabilities were added to CISA's Known Exploited Vulnerabilities catalog this week. Patch or mitigate by the due dates β€” these are actively being exploited in the wild.

CVEVendor / ProductTypeAddedDue
⚠️ CVE-2026-8037Progress LoadMasterUnauthenticated Command Injection (RCE)2026-08-072026-08-10
CVE-2026-63077JetBrains TeamCityDeserialization β€” Unauthenticated RCE2026-08-052026-08-08
CVE-2026-18556N-able N-centralAuthentication Bypass2026-08-042026-08-07
CVE-2026-34486Apache TomcatMissing Encryption (chains with CVE-2025-24813)2026-08-042026-08-07
CVE-2026-9198IBM LangflowCode Injection β€” Unauthenticated RCE2026-08-042026-08-07
CVE-2026-18577N-able N-centralAuth Bypass β€” Incomplete patch of CVE-2026-185562026-08-032026-08-06

Ransomware Victims (48h)

GroupVictimCountrySector
bravox⚠️ MEDICOSFRHealthcare
clopCONTINENTAL.AEROUSTransportation
clop⚠️ MINDRAY.COMCNHealthcare
HelixVenture Logisticsβ€”Transportation
HelixUberUSTransportation
HelixHighwoods PropertiesUSOther
HelixMorguardUSβ€”
HelixWestland InsuranceCAFinancial Services
incransomLouisville Bar AssociationUSProfessional Services
incransomATMSINTransportation
Panzer⚠️ Siam Oil ProductTHEnergy & Utilities
PanzerDaily TrustNGOther
qilinClausingDEManufacturing
qilinImpact Centre ChrΓ©tienFROther
qilinCLLS Co LtdSGβ€”
qilinAstro ElectroplatingUSManufacturing
qilinFiltronicGBManufacturing
qilinJohn C Saunders, CPAUSProfessional Services
spacebearsHitech Distribuzione Informatica (HTDI)ITTechnology
StormUnited Group of CompaniesUSOther
StormSawyer Savings BankUSFinancial Services
thegentlemenHartfiel AutomationDEManufacturing
Show Comments