Daily DefSec Brief
Daily DefSec Brief
Daily DefSec Brief·Aug 5, 2026·5m

Cyber Security News for August 5 2026 - Daily DefSec Brief

Show notes

1. Langflow unauthenticated RCE now on CISA KEV — CVE-2026-9198 — SecurityWeek — https://www.securityweek.com/cisa-warns-of-exploited-langflow-n-central-and-tomcat-vulnerabilities/
2. Apache Tomcat EncryptInterceptor bypass added to KEV — CVE-2026-34486 — CISA KEV — https://www.cisa.gov/known-exploited-vulnerabilities-catalog
3. ChainDrop npm worm self-propagates across hundreds of packages — Microsoft — https://www.microsoft.com/en-us/security/blog/2026/08/04/chaindrop-supply-chain-compromise-anatomy-self-propagating-worm/
4. N-able N-central auth bypass on KEV, 3-day fed clock — CVE-2026-18556 — The Register — https://www.theregister.com/security/2026/08/04/feds-get-3-days-to-patch-n-able-god-mode-flaw-under-active-exploit/5282894
5. Veeam ONE 13 unauthenticated RCE at CVSS 10.0 — CVE-2026-64633 (+ -58074, -58075, -64630, -64631, -64634) — Cyber Security News — https://cybersecuritynews.com/multiple-veeam-one-vulnerabilities/
6. TP-Link Omada ZTP flaws breach SMB networks — CVE-2025-7850, -7851, -9289, -9293, -15544, -15627, -15631 — BleepingComputer — https://www.bleepingcomputer.com/news/security/tp-link-patches-omada-ztp-flaws-allowing-hackers-to-breach-networks/
7. 1-click RCE in Cursor, VS Code and Google Antigravity via Git commit links — Cyber Security News — https://cybersecuritynews.com/1-click-rce-vulnerability-in-code-editors/
8. QuickFox VPN supply-chain attack drops Mustang Panda's FDMTP backdoor — The Hacker News — https://thehackernews.com/2026/08/quickfox-supply-chain-attack-delivers.html
9. 77 Open VSX "evil twin" extensions exfiltrate developer and CI data — The Hacker News — https://thehackernews.com/2026/08/open-vsx-removes-77-malicious-evil-twin.html
10. SMOKE#SCREEN and BoA lures push ScreenConnect for persistent access — The Hacker News — https://thehackernews.com/2026/08/fake-adobe-and-zoom-updates-install.html
11. Greatness PhaaS adds device-code phishing to bypass MFA — The Hacker News — https://thehackernews.com/2026/08/greatness-phaas-adds-device-code.html
12. 7-Zip strips Mark-of-the-Web, files dodge SmartScreen — Cyber Security News — https://cybersecuritynews.com/7-zip-mark-of-the-web-bypass/
13. EtherRAT spreads via remote scheduled tasks in Gentlemen ransomware intrusion — Cyber Security News — https://cybersecuritynews.com/remote-scheduled-tasks-etherrat/
14. XCSSET v40 spreads through compromised Xcode projects and Git repos — BleepingComputer — https://www.bleepingcomputer.com/news/security/new-xcsset-variant-targets-macos-devs-via-compromised-xcode-projects/
15. Malware increasingly skips DNS, going direct-to-IP for C2 — Unit 42 — https://unit42.paloaltonetworks.com/malware-bypass-dns-direct-to-ip/
16. Copilot and email AI assistants weaponized for BEC and account takeover — Cyber Security News — https://cybersecuritynews.com/hackers-weaponize-microsoft-copilot/