9.5 Million Impacted by Aesto Health Data Breach
Hackers stole personal and health information from the healthcare technology company’s AWS infrastructure.
The post 9.5 Million Impacted by Aesto Health Data Breach appeared first on SecurityWeek.
WatchGuard Patches Critical Vulnerabilities
Three critical issues in the Fireware OS iked process could allow unauthenticated attackers to execute arbitrary code remotely.
The post WatchGuard Patches Critical Vulnerabilities appeared first on SecurityWeek.
Russia-Aligned UAC-0099 Plants Nuclear Weapon Prompt in Malware to Disrupt AI Analysis
The idea, ESET said in a series of posts on X, is to deliberately trip a large language model’s (LLM) safety mechanisms and prevent its
Recently patched PaperCut zero-days used in data theft attacks
Attackers Exploit Critical Langflow and Rails Flaws in Credential-Probing and C2 Activity
The vulnerabilities in question are listed below –
CVE-2026-0768 (CVSS score: 9.8) – A lack of proper validation of a user-supplied input vulnerability that could be exploited to execute arbitrary Python code in the context of the root user.
CVE-2026-66066 aka
PaperCut Exploitation Escalates to Active Intrusions
CISA has added the vulnerabilities tracked as CVE-2026-82078 and CVE-2026-81578 to its KEV catalog.
The post PaperCut Exploitation Escalates to Active Intrusions appeared first on SecurityWeek.
