1. Critical unauthenticated RCEs in Adobe Campaign Classic — CVE-2026-48317, -48323, -48326, -48330, -48331, -48333, -48399 — Cyber Security News — https://cybersecuritynews.com/adobe-campaign-classic-vulnerabilities/
2. Cisco Secure Firewall Management Center auth bypass to root — CVE-2026-20079 — Cisco PSIRT — https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-onprem-fmc-authbypass-5JPp45V2
3. Check Point Security Management auth bypass / full takeover — CVE-2026-18574 — Cyber Security News — https://cybersecuritynews.com/check-point-authentication-bypass-flaw/
4. Apache NiFi authorization-bypass flaws — CVE-2026-62354, -68979, -68980, -68981 — Cyber Security News — https://cybersecuritynews.com/apache-nifi-vulnerabilities/
5. Critical cPanel/WHM SQL-as-root flaw — CVE-2026-58048 — Cyber Security News — https://cybersecuritynews.com/cpanel-vulnerability/
6. LiteLLM AI gateway hijack, key theft, tool-call injection — CVE-2026-42271 (EPSS 0.83) — Embrace The Red — https://embracethered.com/blog/posts/2026/hijacking-litellm-for-fun-and-profit/
7. Google ADK-python agent-to-agent prompt injection / PR tampering — SecurityWeek — https://www.securityweek.com/gemini-agent-to-agent-attack-exposed-secrets-enabled-pull-request-tampering/ · Cyber Security News — https://cybersecuritynews.com/ai-agent-against-its-own-ci-cd-pipeline/
8. DOUBLECUP loader-as-a-service, ClickFix, cached PNGs — The Hacker News — https://thehackernews.com/2026/08/doublecup-uses-clickfix-and-cached-pngs.html
9. Pass-ta-key attacks on Google-synced passkeys — The Hacker News — https://thehackernews.com/2026/08/google-password-manager-attacks-could.html
10. 18 malicious npm packages deliver cross-platform RAT (Alibaba tooling) — The Hacker News — https://thehackernews.com/2026/08/18-malicious-npm-packages-deliver-cross.html
11. Fake AI-tool GitHub clones deliver SmartLoader (TroyDens) — Cyber Security News — https://cybersecuritynews.com/fake-ai-tool-campaign/
12. BINDCLOAK Windows backdoor steals tokens for privileged execution — Cyber Security News — https://cybersecuritynews.com/bindcloak-steals-windows-tokens/
13. Fake IRS "Digital Asset Compliance Portal" letters phish crypto holders — Graham Cluley / Bitdefender — https://www.bitdefender.com/en-us/blog/hotforsecurity/fake-irs-letters-cryptocurrency
14. Device code phishing up 15x, vishing doubled in H1 2026 — Dark Reading — https://www.darkreading.com/cybersecurity-analytics/device-code-phishing-vishing-doubles