Skip to content

Sam's News — security — 2026-08-23

Security

8 CISA Orders Immediate Patching of Four Actively Exploited Vulnerabilities in Microsoft, VMware, and Apple Products

The US Cybersecurity and Infrastructure Security Agency urges immediate patching of four actively exploited vulnerabilities.

  • CISA identified four vulnerabilities: CVE-2026-33824 (Windows IKE, CVSS 9.8), CVE-2026-55040 (SharePoint, CVSS 9.1), CVE-2026-59310 (VMware vCenter, CVSS 9.8), and CVE-2026-65400 (macOS Screen Sharing, CVSS 7.5)
  • All four flaws are actively exploited in the wild; VMware and Apple vulnerabilities saw exploitation within days of patch release
  • Federal agencies must patch by August 21, 2026, per BOD 26-04 requirements
  • Windows IKE Service flaw exploited by Chinese-speaking threat actors in autonomous hacking campaigns; macOS flaw used to deploy cryptocurrency miners

Sources: SecurityWeek AI Web Searched, SecurityWeek Web Search

8 Clop Ransomware Gang Breaches 50+ Organizations via Windchill and FlexPLM Vulnerability

The Clop ransomware gang compromised 50+ organizations including GE, Philips, and Shell through CVE-2026-12569 in product lifecycle management software.

Sources: CPO Magazine Web Search, Cyber Magazine Web Search Update to: Clop Ransomware Gang Exploits PLM Zero-Day, Breaches 50+ Major Enterprises

7.5 Latvia Suffers National-Scale Data Breach Exposing 1.2 Million Citizens' Records

Latvia's road traffic agency confirmed hackers stole personal data on approximately two-thirds of the country's population, prompting official resignations.

  • 1.2 million individuals affected—approximately two-thirds of Latvia's population
  • 200,000 businesses and legal entities also impacted
  • Breach exposed personal ID numbers, company registration numbers, vehicle details, and payment records from 2008 onward
  • Attack exploited vulnerability in internet-exposed system; agency lacked mandatory cybersecurity protections
  • CSDD supervisory board submitted resignation; chief Aivars Aksenoks preparing to depart

Sources: The Record from Recorded Future News Web Search Update to: Latvian Officials Resign After Cyberattack Exposes Data on 1.2 Million Citizens

7 CISA Issues Critical Alerts for MLflow, Siemens PLCs, and CareCloud Breach

CISA warned of exploited MLflow vulnerability, Siemens PLCs face AI-driven attacks, and CareCloud confirmed a breach affecting millions.

Sources: CISO Series Web Search Update to: Cybersecurity Alerts: Critical MLflow Vulnerability, Siemens PLC Risks, CareCloud Breach

7 Accenture Targeted in Major Data Breach Threatening Client Security

A threat actor claims to have stolen sensitive data from consulting giant Accenture in a cyberattack.

Sources: Cybersecurity Dive Web Search Update to: Accenture Faces Massive Data Breach Posing Risk to Clients

6.5 ToxicPanda Android malware expands targeting and command capabilities

The ToxicPanda Android malware has evolved with expanded targeting of 349 applications and support for 167 remote commands, abusing VPN permissions to block Google Play.

Sources: BleepingComputer RSS

6 Apollo Global Management Suffers Data Breach via Social Engineering Attack

Apollo Global Management disclosed a data breach resulting from a social engineering attack in August 2024.

Sources: PYMNTS.com Web Search Update to: Apollo Global Management suffers social engineering attack and data breach

5.5 UTSA Delays Fall Classes Following Cyberattack Attempt

The University of Texas at San Antonio postponed fall classes after a cybersecurity breach attempt.

Sources: KSAT Web Search

5.5 Quest Apartment Hotels Discloses Data Breach from Third-Party Vulnerability

Quest Apartment Hotels confirmed unauthorized access to customer data through a third-party vendor vulnerability.

Sources: Australian Cyber Security Magazine Web Search Update to: Quest Apartment Hotels confirms data breach from third-party vulnerability