Weekly Cyber Security Newsletter — OWASP Top 10 for LLM, Cisco IOS XE Flaw, and 1-Click Cursor RCE +20 Stories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

This week’s roundup covers active exploitation of Apache Tomcat and SonicWall SMA, a nearly two-decade-old Linux kernel flaw, critical bugs in N-able N-Central, Veeam ONE, Jenkins, and Cisco IOS XE, …

Metabase 0-Day Vulnerability Exploited in the Wild to Gain Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 9, 2026 Metabase, the widely used open-source business intelligence and data visualization platform, has confirmed that a critical zero-day vulnerability tracked as GHSA-vwf4-m7j8-wcjf was actively exploited in the wild, …

Microsoft to Launch New Security Detection Report in Teams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 9, 2026 Microsoft is preparing to roll out a new Security Detection Report inside the Teams admin center, giving administrators a long-awaited, unified way to monitor messaging-based threats across …

From Reactive Forensics to Predictive Defence: Strengthening Cyber Resilience in Banking 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 9, 2026 By Tarun Wig, Co-founder & CEO, Innefu Labs  A bank in India can be doing everything right on paper. ISO certifications in place. RBI-mandated controls implemented. A …

Levi Strauss Data Breach – Hackers Gained Access to the Company’s Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 8, 2026 Levi Strauss & Co., the denim giant, reported a cybersecurity incident where an unauthorized third party accessed the company’s internal systems via a targeted social engineering attack. …

Bugtraq Is Back: The Original Full Disclosure Mailing List Is Live Again

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 8, 2026 Sophia Antipolis, France, August 7th, 2026, CyberNewswire At DEF CON 34 in Las Vegas, security researcher Jonathan Brossard, known in the community as endrazine, announced the rebirth …

OpenAI Slows Down New Astra Model Development to Measure Cybersecurity Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 8, 2026 OpenAI has announced that it is deliberately slowing the development of Astra, its upcoming frontier AI model, after internal evaluations revealed advancements in agentic coding and cybersecurity …

WordPress XSS2Shell Flaw Chains Pre-Auth Login XSS to PHP Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 7, 2026 A critical vulnerability chain in WordPress Core, tracked as CVE-2026-64638 and nicknamed XSS2Shell, that turns a single failed login attempt into full remote code execution on the …

18-Year-Old Linux Kernel SCTP Vulnerability Lets Attackers Gain Full Root on Host

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

August 7, 2026 A newly disclosed Linux kernel vulnerability, dubbed SCTPhantom and tracked as CVE-2026-64564, allows attackers to escalate from unprivileged local access to full root and even escape containers …