<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Last Day - NEW &amp; UPDATE</title>
    <link>https://cyber.netsecops.io/</link>
    <description>All NEW and UPDATE articles from the last day with enhanced metadata</description>
    <language>en-us</language>
    <lastBuildDate>Fri, 04 Sep 2026 16:34:56 GMT</lastBuildDate>
    <atom:link href="https://cyber.netsecops.io/rss/last.xml" rel="self" type="application/rss+xml"/>

    <item>
      <title>NEW: Google Patches Actively Exploited Chrome V8 Zero-Day Flaw</title>
      <link>https://cyber.netsecops.io/articles/google-patches-actively-exploited-chrome-zero-day-vulnerability-cve-2026-85046/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/google-patches-actively-exploited-chrome-zero-day-vulnerability-cve-2026-85046/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Google Patches Actively Exploited Chrome V8 Zero-Day Flaw</p><p><strong>Summary:</strong><br/>Google has issued an emergency security update for its Chrome browser to address a high-severity zero-day vulnerability, CVE-2026-85046, which is confirmed to be actively exploited in the wild. The flaw is a type confusion bug within the V8 JavaScript engine that could allow a remote attacker to execute arbitrary code. The update, which also fixes 11 other vulnerabilities, is being rolled out for Windows, macOS, and Linux users, who are urged to apply the patch immediately to mitigate the risk of compromise.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Patch Management</p><p><strong>Article Type:</strong> Advisory</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> Google has released an emergency patch for a high-severity Chrome zero-day, CVE-2026-85046, which is actively exploited to achieve remote code execution.</p><p><strong>Article Slug:</strong> google-patches-actively-exploited-chrome-zero-day-vulnerability-cve-2026-85046</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/google-patches-actively-exploited-chrome-zero-day-vulnerability-cve-2026-85046/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/google-patches-actively-exploited-chrome-zero-day-vulnerability-cve-2026-85046.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Patch Management</category>
    </item>

    <item>
      <title>NEW: CISA: Patch Critical SonicWall SMA 1000 Flaws Now</title>
      <link>https://cyber.netsecops.io/articles/cisa-warns-of-active-exploitation-of-critical-sonicwall-sma-1000-vulnerabilities/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/cisa-warns-of-active-exploitation-of-critical-sonicwall-sma-1000-vulnerabilities/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> CISA: Patch Critical SonicWall SMA 1000 Flaws Now</p><p><strong>Summary:</strong><br/>CISA has added two critical vulnerabilities in SonicWall SMA 1000 series appliances to its Known Exploited Vulnerabilities (KEV) catalog, warning they are being actively exploited. The flaws, CVE-2026-83548 (SSRF, CVSS 10.0) and CVE-2026-83549 (Command Injection, CVSS 7.8), can be chained to achieve unauthenticated remote code execution. Federal agencies are mandated to patch by September 5, 2026, and all organizations using affected models are urged to apply updates immediately.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Patch Management, Cyberattack</p><p><strong>Article Type:</strong> Advisory</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> CISA warns of active exploitation of critical SonicWall SMA 1000 vulnerabilities (CVE-2026-83548, CVE-2026-83549) that can be chained for unauthenticated RCE.</p><p><strong>Article Slug:</strong> cisa-warns-of-active-exploitation-of-critical-sonicwall-sma-1000-vulnerabilities</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/cisa-warns-of-active-exploitation-of-critical-sonicwall-sma-1000-vulnerabilities/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/cisa-warns-of-active-exploitation-of-critical-sonicwall-sma-1000-vulnerabilities.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Patch Management</category>
      <category>Cyberattack</category>
    </item>

    <item>
      <title>NEW: 12-Year-Old "PostGREShell" Flaw Threatens PostgreSQL Servers</title>
      <link>https://cyber.netsecops.io/articles/decade-old-postgre-shell-flaw-allows-takeover-of-postgresql-servers/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/decade-old-postgre-shell-flaw-allows-takeover-of-postgresql-servers/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> 12-Year-Old "PostGREShell" Flaw Threatens PostgreSQL Servers</p><p><strong>Summary:</strong><br/>A 12-year-old high-severity vulnerability, CVE-2026-6471 or "PostGREShell," affects PostgreSQL versions since 9.4. The flaw allows a user with 'Replication' privileges to execute arbitrary code, escalate to superuser, and create a persistent backdoor. The bug lies in the logical decoding feature's failure to validate plugin names, enabling path traversal attacks. Patches have been released, and administrators are urged to update systems and audit accounts with replication rights immediately.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Vulnerability, Data Breach, Patch Management</p><p><strong>Article Type:</strong> NewsArticle</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> A 12-year-old vulnerability in PostgreSQL (CVE-2026-6471), dubbed PostGREShell, allows for remote code execution and server takeover. Patches are available.</p><p><strong>Article Slug:</strong> decade-old-postgre-shell-flaw-allows-takeover-of-postgresql-servers</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/decade-old-postgre-shell-flaw-allows-takeover-of-postgresql-servers/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/decade-old-postgre-shell-flaw-allows-takeover-of-postgresql-servers.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Data Breach</category>
      <category>Patch Management</category>
    </item>

    <item>
      <title>NEW: Settra Ransomware Claims Attack on Medical Firm MedEvolve</title>
      <link>https://cyber.netsecops.io/articles/settra-ransomware-group-claims-attack-on-us-medical-billing-firm-medevolve/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/settra-ransomware-group-claims-attack-on-us-medical-billing-firm-medevolve/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Settra Ransomware Claims Attack on Medical Firm MedEvolve</p><p><strong>Summary:</strong><br/>The Settra ransomware group has claimed responsibility for a cyberattack on MedEvolve, a U.S.-based medical billing and practice management company. On September 3, 2026, the group posted the company on its dark web leak site, alleging an attack on August 11 that resulted in the theft of 820GB of sensitive internal documents. MedEvolve has not yet confirmed the breach. This incident highlights the continued targeting of the healthcare sector and its supply chain by ransomware gangs.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Ransomware, Data Breach, Threat Actor</p><p><strong>Article Type:</strong> NewsArticle</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> The Settra ransomware group has claimed a cyberattack on U.S. medical billing firm MedEvolve, threatening to leak 820GB of sensitive internal documents.</p><p><strong>Article Slug:</strong> settra-ransomware-group-claims-attack-on-us-medical-billing-firm-medevolve</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/settra-ransomware-group-claims-attack-on-us-medical-billing-firm-medevolve/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/settra-ransomware-group-claims-attack-on-us-medical-billing-firm-medevolve.jpg" type="image/jpeg" length="0"/>
      <category>Ransomware</category>
      <category>Data Breach</category>
      <category>Threat Actor</category>
    </item>

    <item>
      <title>NEW: Iranian Hackers Target US Telecom and Energy Sectors</title>
      <link>https://cyber.netsecops.io/articles/iranian-hackers-expand-cyber-targeting-to-us-telecom-and-energy-sectors/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/iranian-hackers-expand-cyber-targeting-to-us-telecom-and-energy-sectors/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Iranian Hackers Target US Telecom and Energy Sectors</p><p><strong>Summary:</strong><br/>Iranian state-sponsored hacking groups have reportedly expanded their cyber operations to target U.S. telecommunications and energy providers. This represents a significant escalation from previous campaigns focused on water and wastewater systems. While recent attempts have been unsuccessful, the activity, which targets internet-exposed industrial control systems, signals a strategic focus on reconnaissance and gaining access to a wider range of U.S. critical infrastructure, raising concerns among federal officials.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Threat Actor, Cyberattack, Industrial Control Systems</p><p><strong>Article Type:</strong> Analysis</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> Iranian state-sponsored hackers have reportedly expanded their cyberattacks to target U.S. telecommunications and energy providers, signaling an escalation in threats.</p><p><strong>Article Slug:</strong> iranian-hackers-expand-cyber-targeting-to-us-telecom-and-energy-sectors</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/iranian-hackers-expand-cyber-targeting-to-us-telecom-and-energy-sectors/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/iranian-hackers-expand-cyber-targeting-to-us-telecom-and-energy-sectors.jpg" type="image/jpeg" length="0"/>
      <category>Threat Actor</category>
      <category>Cyberattack</category>
      <category>Industrial Control Systems</category>
    </item>

    <item>
      <title>NEW: CISA KEV Update Targets Flaws in AI and ML Infrastructure</title>
      <link>https://cyber.netsecops.io/articles/cisa-adds-7-flaws-to-kev-catalog-highlighting-attacks-on-ai-infrastructure/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/cisa-adds-7-flaws-to-kev-catalog-highlighting-attacks-on-ai-infrastructure/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> CISA KEV Update Targets Flaws in AI and ML Infrastructure</p><p><strong>Summary:</strong><br/>CISA has added seven actively exploited vulnerabilities to its KEV catalog, with a significant focus on AI/ML infrastructure. Three of the new additions—CVE-2026-59822 in LiteLLM, CVE-2026-48710 in Starlette, and CVE-2026-82329 in JFrog Artifactory—affect widely used AI development tools. Exploitation of these flaws has been linked to the Qilin ransomware group and cryptocurrency miners. The update also includes previously reported flaws in SonicWall and others, mandating rapid remediation for federal agencies.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Patch Management, Threat Intelligence</p><p><strong>Article Type:</strong> Advisory</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> CISA added seven actively exploited vulnerabilities to its KEV catalog, including three flaws in AI/ML tools LiteLLM, Starlette, and JFrog Artifactory.</p><p><strong>Article Slug:</strong> cisa-adds-7-flaws-to-kev-catalog-highlighting-attacks-on-ai-infrastructure</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/cisa-adds-7-flaws-to-kev-catalog-highlighting-attacks-on-ai-infrastructure/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/cisa-adds-7-flaws-to-kev-catalog-highlighting-attacks-on-ai-infrastructure.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Patch Management</category>
      <category>Threat Intelligence</category>
    </item>

    <item>
      <title>NEW: CISA Warns of High-Severity Flaw in Ignition ICS Platform</title>
      <link>https://cyber.netsecops.io/articles/cisa-advisory-for-inductive-automation-ignition-vulnerability-cve-2026-77393/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/cisa-advisory-for-inductive-automation-ignition-vulnerability-cve-2026-77393/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> CISA Warns of High-Severity Flaw in Ignition ICS Platform</p><p><strong>Summary:</strong><br/>CISA has issued an advisory for a high-severity vulnerability (CVE-2026-77393) in Inductive Automation's Ignition ICS platform. The flaw, rated 8.8 on the CVSS scale, is an incorrect default permission setting that allows any authenticated user to create new projects, potentially leading to unauthorized modifications in industrial environments. The issue affects Ignition versions 8.1.53 and earlier and has been fixed in version 8.1.54. Users in critical manufacturing and energy sectors are urged to upgrade.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Industrial Control Systems, Vulnerability, Patch Management</p><p><strong>Article Type:</strong> Advisory</p><p><strong>Reading Time:</strong> 5 minutes</p><p><strong>Meta Description:</strong> CISA issued an advisory for a high-severity default permissions flaw (CVE-2026-77393) in Inductive Automation's Ignition ICS platform, urging users to upgrade.</p><p><strong>Article Slug:</strong> cisa-advisory-for-inductive-automation-ignition-vulnerability-cve-2026-77393</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/cisa-advisory-for-inductive-automation-ignition-vulnerability-cve-2026-77393/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/cisa-advisory-for-inductive-automation-ignition-vulnerability-cve-2026-77393.jpg" type="image/jpeg" length="0"/>
      <category>Industrial Control Systems</category>
      <category>Vulnerability</category>
      <category>Patch Management</category>
    </item>

    <item>
      <title>NEW: OpenAI Commits $1B to Boost AI Defenses for Critical Infrastructure</title>
      <link>https://cyber.netsecops.io/articles/openai-pledges-1b-to-fortify-critical-infrastructure-with-defensive-ai/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/openai-pledges-1b-to-fortify-critical-infrastructure-with-defensive-ai/</guid>
      <pubDate>Fri, 04 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> OpenAI Commits $1B to Boost AI Defenses for Critical Infrastructure</p><p><strong>Summary:</strong><br/>OpenAI has announced the "Daybreak for Frontline Defenders" program, a $1 billion initiative to equip under-resourced cybersecurity teams at critical infrastructure entities with advanced AI tools. The program will provide subsidized access to OpenAI's frontier models and specialized training to help defenders combat sophisticated cyber threats. A pilot program, focused on water utilities and other public sector entities, will be launched in collaboration with the Multi-State Information Sharing and Analysis Center (MS-ISAC).</p><p><strong>Severity:</strong> Informational</p><p><strong>Categories:</strong> Policy and Compliance, Security Operations, Threat Intelligence</p><p><strong>Article Type:</strong> NewsArticle</p><p><strong>Reading Time:</strong> 4 minutes</p><p><strong>Meta Description:</strong> OpenAI announced a $1 billion program, "Daybreak for Frontline Defenders," to provide advanced AI tools and training to cybersecurity teams at critical infrastructure sites.</p><p><strong>Article Slug:</strong> openai-pledges-1b-to-fortify-critical-infrastructure-with-defensive-ai</p><p><strong>Published Date:</strong> Fri, 04 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/openai-pledges-1b-to-fortify-critical-infrastructure-with-defensive-ai/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/openai-pledges-1b-to-fortify-critical-infrastructure-with-defensive-ai.jpg" type="image/jpeg" length="0"/>
      <category>Policy and Compliance</category>
      <category>Security Operations</category>
      <category>Threat Intelligence</category>
    </item>

    <item>
      <title>UPDATE: CISA: Over 100 U.S. Water Systems Targeted in July Cyber Campaign</title>
      <link>https://cyber.netsecops.io/articles/over-100-us-water-systems-targeted-in-widespread-cyber-campaign/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/over-100-us-water-systems-targeted-in-widespread-cyber-campaign/</guid>
      <pubDate>Fri, 04 Sep 2026 12:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> CISA: Over 100 U.S. Water Systems Targeted in July Cyber Campaign</p><p><strong>Summary:</strong><br/>The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has revealed that a widespread cyber campaign in July 2026 targeted over 100 systems in the U.S. Water and Wastewater Systems (WWS) sector. The attacks, widely attributed to Iranian state-aligned actors, exploited internet-exposed industrial control devices, leading to operational disruptions, including flooding and boil-water notices in at least 12 states. The incidents highlight critical security gaps in the nation's vital infrastructure.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Industrial Control Systems, Cyberattack, Threat Actor</p><p><strong>Meta Description:</strong> CISA reports that a widespread cyber campaign in July 2026 targeted over 100 U.S. Water and Wastewater Systems by exploiting internet-exposed industrial controls, with attribution pointing to Iranian actors.</p><p><strong>Article Slug:</strong> over-100-us-water-systems-targeted-in-widespread-cyber-campaign</p><p><strong>Published Date:</strong> Sun, 30 Aug 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Sun, 30 Aug 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 12:00:00 GMT</p><p><strong>Update Count:</strong> 1</p><p><strong>Update History:</strong> 1 update recorded</p><p><a href="https://cyber.netsecops.io/articles/over-100-us-water-systems-targeted-in-widespread-cyber-campaign/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/over-100-us-water-systems-targeted-in-widespread-cyber-campaign.jpg" type="image/jpeg" length="0"/>
      <category>Industrial Control Systems</category>
      <category>Cyberattack</category>
      <category>Threat Actor</category>
    </item>

    <item>
      <title>UPDATE: CISA Adds Seven Actively Exploited Flaws to KEV Catalog</title>
      <link>https://cyber.netsecops.io/articles/cisa-adds-seven-actively-exploited-vulnerabilities-to-kev-catalog/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/cisa-adds-seven-actively-exploited-vulnerabilities-to-kev-catalog/</guid>
      <pubDate>Fri, 04 Sep 2026 12:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> CISA Adds Seven Actively Exploited Flaws to KEV Catalog</p><p><strong>Summary:</strong><br/>The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added seven vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The list includes critical flaws in SonicWall, Kestra, and JFrog products. This action falls under the new Binding Operational Directive (BOD) 26-04, which imposes accelerated patching deadlines on federal agencies, some as short as three days. The vulnerabilities range from server-side request forgery and command injection to improper authentication, with threat actors like the Qilin ransomware group linked to the exploitation of some flaws.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Patch Management, Threat Intelligence</p><p><strong>Meta Description:</strong> CISA has added seven actively exploited vulnerabilities to the KEV catalog, including critical flaws in SonicWall, Kestra, and JFrog, mandating urgent patching.</p><p><strong>Article Slug:</strong> cisa-adds-seven-actively-exploited-vulnerabilities-to-kev-catalog</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 12:00:00 GMT</p><p><strong>Update Count:</strong> 1</p><p><strong>Update History:</strong> 1 update recorded</p><p><a href="https://cyber.netsecops.io/articles/cisa-adds-seven-actively-exploited-vulnerabilities-to-kev-catalog/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/cisa-adds-seven-actively-exploited-vulnerabilities-to-kev-catalog.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Patch Management</category>
      <category>Threat Intelligence</category>
    </item>

    <item>
      <title>UPDATE: SonicWall Patches Two Actively Exploited SMA 1000 Zero-Days</title>
      <link>https://cyber.netsecops.io/articles/sonicwall-urges-patching-for-two-actively-exploited-zero-day-vulnerabilities/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/sonicwall-urges-patching-for-two-actively-exploited-zero-day-vulnerabilities/</guid>
      <pubDate>Fri, 04 Sep 2026 12:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> SonicWall Patches Two Actively Exploited SMA 1000 Zero-Days</p><p><strong>Summary:</strong><br/>SonicWall has released urgent security patches for two zero-day vulnerabilities in its SMA 1000 series appliances. The flaws, a critical-rated server-side request forgery (SSRF) and a high-severity command injection, are being actively chained by attackers to achieve unauthenticated remote code execution. The vulnerabilities, CVE-2026-83548 and CVE-2026-83549, affect models 6210, 7210, and 8200v. CISA has added both to its Known Exploited Vulnerabilities (KEV) catalog, mandating immediate action from federal agencies and strongly advising all customers to apply the hotfixes.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Cyberattack, Patch Management</p><p><strong>Meta Description:</strong> SonicWall urges customers to patch two actively exploited zero-day vulnerabilities (CVE-2026-83548, CVE-2026-83549) in SMA 1000 series appliances leading to RCE.</p><p><strong>Article Slug:</strong> sonicwall-urges-patching-for-two-actively-exploited-zero-day-vulnerabilities</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Fri, 04 Sep 2026 12:00:00 GMT</p><p><strong>Update Count:</strong> 1</p><p><strong>Update History:</strong> 1 update recorded</p><p><a href="https://cyber.netsecops.io/articles/sonicwall-urges-patching-for-two-actively-exploited-zero-day-vulnerabilities/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/sonicwall-urges-patching-for-two-actively-exploited-zero-day-vulnerabilities.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Cyberattack</category>
      <category>Patch Management</category>
    </item>

    <item>
      <title>NEW: FBI Investigates Massive Leak of 170M+ North American ID Scans</title>
      <link>https://cyber.netsecops.io/articles/fbi-probes-massive-data-leak-of-170-million-north-american-id-scans/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/fbi-probes-massive-data-leak-of-170-million-north-american-id-scans/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> FBI Investigates Massive Leak of 170M+ North American ID Scans</p><p><strong>Summary:</strong><br/>The FBI is investigating a colossal data breach after a dark web marketplace named 'Nexus' began selling a database containing over 170 million digital identity document scans. The data, which includes driver's licenses, ID cards, and medical marijuana cards, primarily belongs to citizens of the United States and Canada. The service was discovered after its operator advertised it on a Russian cybercrime forum. The database appears to be fed by an active, ongoing breach, as it is reportedly updated in real-time, posing a severe and continuous threat of identity theft and fraud.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Data Breach, Threat Intelligence</p><p><strong>Meta Description:</strong> The FBI is investigating a massive data breach involving a dark web marketplace selling over 170 million identity document scans from US and Canadian citizens.</p><p><strong>Article Slug:</strong> fbi-probes-massive-data-leak-of-170-million-north-american-id-scans</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/fbi-probes-massive-data-leak-of-170-million-north-american-id-scans/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/fbi-probes-massive-data-leak-of-170-million-north-american-id-scans.jpg" type="image/jpeg" length="0"/>
      <category>Data Breach</category>
      <category>Threat Intelligence</category>
    </item>

    <item>
      <title>NEW: Ransomware Groups Target Healthcare, Finance, and Government</title>
      <link>https://cyber.netsecops.io/articles/ransomware-blitz-hits-healthcare-finance-and-government-entities/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/ransomware-blitz-hits-healthcare-finance-and-government-entities/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Ransomware Groups Target Healthcare, Finance, and Government</p><p><strong>Summary:</strong><br/>Multiple ransomware groups, including Akira, Qilin, and Direwolf, have launched a wave of attacks against organizations across healthcare, finance, government, and manufacturing sectors. Victims announced on data leak sites include New York's Blossom Health, Gale Credit Union in Illinois, the City of Ormond Beach in Florida, and a Texas ambulance service. The attacks employ double extortion tactics, with threat actors exfiltrating sensitive personal and medical data before encrypting systems and demanding ransoms.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Ransomware, Cyberattack, Data Breach</p><p><strong>Meta Description:</strong> Ransomware groups including Akira, Qilin, and Direwolf target healthcare, finance, and government entities in a widespread campaign, exfiltrating sensitive data.</p><p><strong>Article Slug:</strong> ransomware-blitz-hits-healthcare-finance-and-government-entities</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/ransomware-blitz-hits-healthcare-finance-and-government-entities/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/ransomware-blitz-hits-healthcare-finance-and-government-entities.jpg" type="image/jpeg" length="0"/>
      <category>Ransomware</category>
      <category>Cyberattack</category>
      <category>Data Breach</category>
    </item>

    <item>
      <title>NEW: PaperCut Zero-Days Actively Exploited for Network Intrusions</title>
      <link>https://cyber.netsecops.io/articles/active-exploitation-of-papercut-zero-days-escalates-to-intrusions/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/active-exploitation-of-papercut-zero-days-escalates-to-intrusions/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> PaperCut Zero-Days Actively Exploited for Network Intrusions</p><p><strong>Summary:</strong><br/>Threat actors are actively exploiting and chaining two zero-day vulnerabilities in PaperCut NG/MF print management software to achieve unauthenticated remote code execution. The attacks have escalated from initial reconnaissance to hands-on-keyboard intrusions. The flaws, CVE-2026-81578 (authentication bypass) and CVE-2026-82078 (unsafe dynamic class loading), turn exposed print servers into a gateway for deeper network compromise. PaperCut has released emergency patches and hardening guidance for the approximately 1,000 instances estimated to be exposed online.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Cyberattack</p><p><strong>Meta Description:</strong> Active exploitation of two chained zero-day vulnerabilities (CVE-2026-81578, CVE-2026-82078) in PaperCut NG/MF software is leading to active network intrusions.</p><p><strong>Article Slug:</strong> active-exploitation-of-papercut-zero-days-escalates-to-intrusions</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/active-exploitation-of-papercut-zero-days-escalates-to-intrusions/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/active-exploitation-of-papercut-zero-days-escalates-to-intrusions.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Cyberattack</category>
    </item>

    <item>
      <title>NEW: Rockwell Automation Patches Over a Dozen Flaws in ICS Products</title>
      <link>https://cyber.netsecops.io/articles/rockwell-automation-patches-over-a-dozen-flaws-in-industrial-products/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/rockwell-automation-patches-over-a-dozen-flaws-in-industrial-products/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Rockwell Automation Patches Over a Dozen Flaws in ICS Products</p><p><strong>Summary:</strong><br/>Rockwell Automation has released a significant set of security updates, addressing more than a dozen vulnerabilities across its portfolio of industrial control systems (ICS) and operational technology (OT) products. The patches fix critical and high-severity flaws, including denial-of-service (DoS) bugs in RSLinx Classic, a remote code execution vulnerability in FactoryTalk Historian, and multiple cross-site scripting (XSS) issues in ArmorStart controllers. The updates are critical for operators in manufacturing and critical infrastructure to prevent operational disruptions.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Patch Management, Industrial Control Systems, Vulnerability</p><p><strong>Meta Description:</strong> Rockwell Automation has released patches for over a dozen vulnerabilities in its industrial products, including RSLinx Classic, FactoryTalk, and ControlLogix.</p><p><strong>Article Slug:</strong> rockwell-automation-patches-over-a-dozen-flaws-in-industrial-products</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/rockwell-automation-patches-over-a-dozen-flaws-in-industrial-products/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/rockwell-automation-patches-over-a-dozen-flaws-in-industrial-products.jpg" type="image/jpeg" length="0"/>
      <category>Patch Management</category>
      <category>Industrial Control Systems</category>
      <category>Vulnerability</category>
    </item>

    <item>
      <title>NEW: Google and Mozilla Patch Dozens of Browser Flaws, Including RCEs</title>
      <link>https://cyber.netsecops.io/articles/google-and-mozilla-patch-dozens-of-browser-vulnerabilities/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/google-and-mozilla-patch-dozens-of-browser-vulnerabilities/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Google and Mozilla Patch Dozens of Browser Flaws, Including RCEs</p><p><strong>Summary:</strong><br/>Google and Mozilla have released major security updates for their Chrome and Firefox web browsers, addressing a combined total of 55 vulnerabilities. The patches fix several critical and high-severity flaws that could be exploited for remote code execution. Google's Chrome update resolves 26 bugs, including two critical use-after-free vulnerabilities (CVE-2026-84353 and CVE-2026-84352). Mozilla's Firefox 155 release fixes 29 defects, including 13 high-severity issues related to memory corruption and sandbox escapes. Users are urged to update their browsers immediately to protect against potential attacks.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Patch Management, Vulnerability</p><p><strong>Meta Description:</strong> Google and Mozilla have released critical security updates for Chrome and Firefox, patching dozens of vulnerabilities including remote code execution (RCE) flaws.</p><p><strong>Article Slug:</strong> google-and-mozilla-patch-dozens-of-browser-vulnerabilities</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/google-and-mozilla-patch-dozens-of-browser-vulnerabilities/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/google-and-mozilla-patch-dozens-of-browser-vulnerabilities.jpg" type="image/jpeg" length="0"/>
      <category>Patch Management</category>
      <category>Vulnerability</category>
    </item>

    <item>
      <title>NEW: CISA to Finalize CIRCIA Cyber Incident Reporting Rule in Sept 2026</title>
      <link>https://cyber.netsecops.io/articles/cisa-to-issue-final-circia-cyber-attack-reporting-rule-in-september-2026/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/cisa-to-issue-final-circia-cyber-attack-reporting-rule-in-september-2026/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> CISA to Finalize CIRCIA Cyber Incident Reporting Rule in Sept 2026</p><p><strong>Summary:</strong><br/>The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is expected to issue its final rule for the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) in September 2026. This landmark regulation will mandate that covered critical infrastructure entities report substantial cyber incidents to CISA within 72 hours of discovery and any ransomware payments within 24 hours. The rule aims to provide CISA with greater visibility into the national threat landscape, but presents a significant operational challenge for organizations to meet the tight deadlines.</p><p><strong>Severity:</strong> Informational</p><p><strong>Categories:</strong> Policy and Compliance, Regulatory</p><p><strong>Meta Description:</strong> CISA will issue the final rule for the CIRCIA cyber incident reporting act in September 2026, mandating 72-hour incident and 24-hour ransom payment reporting.</p><p><strong>Article Slug:</strong> cisa-to-issue-final-circia-cyber-attack-reporting-rule-in-september-2026</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/cisa-to-issue-final-circia-cyber-attack-reporting-rule-in-september-2026/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/cisa-to-issue-final-circia-cyber-attack-reporting-rule-in-september-2026.jpg" type="image/jpeg" length="0"/>
      <category>Policy and Compliance</category>
      <category>Regulatory</category>
    </item>

    <item>
      <title>NEW: AI-Powered Cyberattacks Target Financial and Government Sectors in Latin America</title>
      <link>https://cyber.netsecops.io/articles/attackers-expose-ongoing-ai-tool-use-targeting-organizations-in-latin-america/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/attackers-expose-ongoing-ai-tool-use-targeting-organizations-in-latin-america/</guid>
      <pubDate>Thu, 03 Sep 2026 15:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> AI-Powered Cyberattacks Target Financial and Government Sectors in Latin America</p><p><strong>Summary:</strong><br/>Unit 42 researchers have uncovered two distinct but overlapping cyberattack campaigns, tracked as CL-CRI-1131 and CL-CRI-1163, targeting organizations in Latin America. The threat actors are leveraging commercial Large Language Models (LLMs) like Claude and GPT-4, accessed via the open-source NextChat interface, to generate scripts and troubleshoot data exfiltration tasks. The campaigns target Mexican federal government and transportation entities, as well as the Brazilian financial sector. Key TTPs include the use of shared SOCKS5 proxy infrastructure, dynamic DNS for command and control, and job-themed phishing for initial access. The attackers' reliance on AI for on-the-fly script generation was exposed through operational security errors, providing defenders a window into their methods.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Threat Actor, Malware, Threat Intelligence</p><p><strong>Article Type:</strong> Report</p><p><strong>Reading Time:</strong> 8 minutes</p><p><strong>Meta Description:</strong> Unit 42 research details two cyber campaigns targeting Latin American organizations with AI tools like Claude and GPT-4 for data exfiltration from government and financial sectors.</p><p><strong>Article Slug:</strong> attackers-expose-ongoing-ai-tool-use-targeting-organizations-in-latin-america</p><p><strong>Published Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 15:00:00 GMT</p><p><a href="https://cyber.netsecops.io/articles/attackers-expose-ongoing-ai-tool-use-targeting-organizations-in-latin-america/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/attackers-expose-ongoing-ai-tool-use-targeting-organizations-in-latin-america.jpg" type="image/jpeg" length="0"/>
      <category>Threat Actor</category>
      <category>Malware</category>
      <category>Threat Intelligence</category>
    </item>

    <item>
      <title>UPDATE: PaperCut Zero-Day RCE Actively Exploited; Emergency Patches Released</title>
      <link>https://cyber.netsecops.io/articles/papercut-warns-of-actively-exploited-zero-day-rce-vulnerability/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/papercut-warns-of-actively-exploited-zero-day-rce-vulnerability/</guid>
      <pubDate>Thu, 03 Sep 2026 12:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> PaperCut Zero-Day RCE Actively Exploited; Emergency Patches Released</p><p><strong>Summary:</strong><br/>Print management software provider PaperCut has issued an urgent security warning about a vulnerability chain being actively exploited in the wild. The flaws, affecting all versions of PaperCut NG and MF, can be chained to achieve pre-authentication remote code execution (RCE). The attack combines an authentication bypass (CVE-2026-81578, CVSS 8.8) with an unsafe dynamic class-loading issue (CVE-2026-82078, CVSS 9.4). PaperCut has released emergency patches and strongly advises customers with internet-facing servers to apply them immediately or restrict access via firewall rules. Security firm Huntress has confirmed observing exploitation in customer environments.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Patch Management, Cyberattack</p><p><strong>Article Type:</strong> Advisory</p><p><strong>Reading Time:</strong> 6 minutes</p><p><strong>Meta Description:</strong> PaperCut has released emergency patches for a critical, actively exploited zero-day vulnerability chain (CVE-2026-81578, CVE-2026-82078) that allows for RCE.</p><p><strong>Article Slug:</strong> papercut-warns-of-actively-exploited-zero-day-rce-vulnerability</p><p><strong>Published Date:</strong> Sat, 29 Aug 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Sat, 29 Aug 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 12:00:00 GMT</p><p><strong>Update Count:</strong> 1</p><p><strong>Update History:</strong> 1 update recorded</p><p><a href="https://cyber.netsecops.io/articles/papercut-warns-of-actively-exploited-zero-day-rce-vulnerability/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/papercut-warns-of-actively-exploited-zero-day-rce-vulnerability.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Patch Management</category>
      <category>Cyberattack</category>
    </item>

    <item>
      <title>UPDATE: SonicWall Warns of Two Actively Exploited Zero-Days in SMA1000</title>
      <link>https://cyber.netsecops.io/articles/sonicwall-sma1000-zero-day-vulnerabilities-actively-exploited/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/sonicwall-sma1000-zero-day-vulnerabilities-actively-exploited/</guid>
      <pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> SonicWall Warns of Two Actively Exploited Zero-Days in SMA1000</p><p><strong>Summary:</strong><br/>SonicWall has issued urgent patches for two zero-day vulnerabilities, CVE-2026-83548 and CVE-2026-83549, affecting its SMA 1000 series appliances. The flaws, a critical server-side request forgery (SSRF) and a command injection, are being actively chained by threat actors to achieve unauthenticated remote code execution. This marks the second time in seven weeks a similar SSRF-to-injection attack chain has targeted the product line, indicating a persistent architectural weakness. Organizations are urged to apply the patches immediately to prevent compromise.</p><p><strong>Severity:</strong> Critical</p><p><strong>Categories:</strong> Vulnerability, Cyberattack, Patch Management</p><p><strong>Meta Description:</strong> SonicWall has patched two actively exploited zero-day vulnerabilities, including a critical SSRF (CVE-2026-83548), in its SMA 1000 series appliances.</p><p><strong>Article Slug:</strong> sonicwall-sma1000-zero-day-vulnerabilities-actively-exploited</p><p><strong>Published Date:</strong> Wed, 02 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Wed, 02 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Update Count:</strong> 2</p><p><strong>Update History:</strong> 2 updates recorded</p><p><a href="https://cyber.netsecops.io/articles/sonicwall-sma1000-zero-day-vulnerabilities-actively-exploited/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/sonicwall-sma1000-zero-day-vulnerabilities-actively-exploited.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Cyberattack</category>
      <category>Patch Management</category>
    </item>

    <item>
      <title>UPDATE: Google Patches Two Critical Use-After-Free Flaws in Chrome</title>
      <link>https://cyber.netsecops.io/articles/google-patches-critical-use-after-free-vulnerabilities-in-chrome/?utm_source=rss&amp;utm_medium=feed&amp;utm_campaign=last</link>
      <guid isPermaLink="true">https://cyber.netsecops.io/articles/google-patches-critical-use-after-free-vulnerabilities-in-chrome/</guid>
      <pubDate>Thu, 03 Sep 2026 00:00:00 GMT</pubDate>
      <description><![CDATA[<p><strong>Headline:</strong> Google Patches Two Critical Use-After-Free Flaws in Chrome</p><p><strong>Summary:</strong><br/>Google has released a security update for its Chrome browser, version 152.0.7977.75 for Windows/Mac and 152.0.7977.76 for Linux, addressing 26 vulnerabilities. The patch includes fixes for two critical use-after-free flaws, CVE-2026-84353 in Shared Tab Groups and CVE-2026-84352 in WebGL. These vulnerabilities could allow a remote attacker to execute arbitrary code on a victim's device by luring them to a malicious website. Google reports no evidence of active exploitation.</p><p><strong>Severity:</strong> High</p><p><strong>Categories:</strong> Vulnerability, Patch Management</p><p><strong>Meta Description:</strong> Google has released a security update for Chrome, patching 26 flaws, including two critical use-after-free vulnerabilities (CVE-2026-84353, CVE-2026-84352).</p><p><strong>Article Slug:</strong> google-patches-critical-use-after-free-vulnerabilities-in-chrome</p><p><strong>Published Date:</strong> Wed, 02 Sep 2026 00:00:00 GMT</p><p><strong>Created Date:</strong> Wed, 02 Sep 2026 15:00:00 GMT</p><p><strong>Updated Date:</strong> Thu, 03 Sep 2026 00:00:00 GMT</p><p><strong>Update Count:</strong> 1</p><p><strong>Update History:</strong> 1 update recorded</p><p><a href="https://cyber.netsecops.io/articles/google-patches-critical-use-after-free-vulnerabilities-in-chrome/">Read Full Article →</a></p>]]></description>
      <enclosure url="https://cyber.netsecops.io/images/og-image/google-patches-critical-use-after-free-vulnerabilities-in-chrome.jpg" type="image/jpeg" length="0"/>
      <category>Vulnerability</category>
      <category>Patch Management</category>
    </item>
  </channel>
</rss>