Z „Igiho stránky o virech“ se stává agregátor veřejných bezpečnostních zdrojů!

Sleduju 65 zdrojů z 24 zemí — národní CERTy ze střední Evropy, výrobce a threat-intel týmy — a skládám je do jednoho chronologického přehledu v češtině. V databázi je 3 597 položek.

Umím toho spoustu, třeba i generovat týdenní reporty, přičemž AI se snaží o agregaci informací tak, aby to nebyla úplná nuda. Více na stránce o projektu.

Posledních 7 dnů

Různé zkratky a hodnoty pod každou zprávou mají svoji legendu — pokud na údaji postojíte myší. Některé jsou klikatelné. Typicky CVE.

CZ · EN/orig

300 karet z 310 položek · strana 4 z 5

40

FreePBX security advisory (AV26-818)

Serial number: AV26-818Date: August 14, 2026 As of August 13, 2026, FreePBX is affected by vulnerabilities in the following products: backup After or equal to 17.0.5.34, Prior to 17.0.11 framework After or equal to 17.0.1, Prior to 17.0.30 Prior to 16.0.47 missedcall After or equal to 17.0.1, Prior to 17.0.4 Prior to 16.0.11 music Prior to 17.0.7 tts After or equal to 17.0.1, Prior to 17.0.5.4 Prior to 16.0.6 ucp Prior to 17.0.9 The Cyber Centre encourages users and administrators to review the…

FreePBX CA

Cyber Centre Kanada ·

HashiCorp security advisory (AV26-817)

Serial number: AV26-817Date: August 14, 2026 As of August 13, 2026, HashiCorp is affected by a vulnerability in the following product Vault Secrets Operator - Prior to 1.5.0 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. HCSEC-2026-28 - Vault Secrets Operator vulnerable to arbitrary file read via AppRole secretIDPath Security - HashiCorp Discuss

HashiCorp CA

Cyber Centre Kanada ·

Upozorňujeme na řetězec kritických zranitelností „wp2shell“ ve WordPress

Upozorňujeme na dvojici zranitelností ve WordPress Core označovaných jako wp2shell (CVE-2026-63030 a CVE-2026-60137), které mohou při kombinovaném zneužití vést ke vzdálenému spuštění kódu (RCE) bez nutnosti přihlášení.

KEV ✓ EPSS 0.96 CVSS 9.0 CVE-2026-60137 CVE-2026-63030 WordPress Cisco Microsoft Progress CZ US AT FR 5 zdrojů

NÚKIB · Cisco Talos · Elastic Security · CERT.at · CERT-FR – alerty

Zimbra security advisory (AV26-816)

Serial number: AV26-816Date: August 14, 2026 As of August 13, 2026, Zimbra is affected by vulnerabilities in the following product: Collaboration - Prior to 10.1.20 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. Zimbra Security Advisories - Zimbra: Tech Center Zimbra Responsible Disclosure Policy - Zimbra: Tech Center Zimbra: Blog - All Things Zimbra

Zimbra CA

Cyber Centre Kanada ·

Apple now uses iPhone alerts for targets of mercenary spyware

Apple has expanded its threat-notification system for targets of mercenary spyware. Apple now shows a warning directly on an iPhone’s Lock Screen and in Settings when it believes the device owner has been targeted by mercenary spyware. The new on-device alert is meant to make a high-risk warning harder to overlook and complements notifications by email and through the user’s Apple Account page. In the explanation, Apple states: “Apple threat notifications are high-confidence alerts that a user…

Apple US

Malwarebytes Labs ·

Nový malware zneužívá Android telefony k NFC platebním podvodům

Nový malware s názvem WindRelay v kombinaci s trojanem SpyNote umožňuje zneužít zařízení s Androidem k bezkontaktním platebním podvodům. Útočníci oběť pomocí phishingu, SMS nebo telefonátu přesvědčí k instalaci škodlivé aplikace a následně k přiložení platební karty k telefonu, například pod záminkou ověření identity či změny PINu. Malware zachycenou NFC komunikaci v reálném čase přenáší do zařízení útočníka, který tak může kartu využít k platbám nebo výběrům hotovosti. Mezi listopadem 2025 a…

finance CZ

CSIRT.CZ (CZ.NIC) ·

NCSC-2026-0301 [1.00] [M/H] Kwetsbaarheden verholpen in IBM i operating system door IBM

IBM heeft kwetsbaarheden verholpen in IBM i operating system versies 7.3, 7.4, 7.5 en 7.6. De kwetsbaarheden betreffen meerdere aspecten van het IBM i - operating system, waaronder onjuist privilege management, onbeheerde zoekpadelementen, out-of-bounds reads en writes, buffer overflows (zowel heap- als stackgebaseerd), SQL-injecties, path traversal, TOCTOU-racecondities met symbolische links, onjuiste validatie van omgevingsvariabelen en profielnamen, en onjuiste neutralisatie van speciale…

IBM NL

NCSC-NL ·

WhatsApp is testing a new warning for scam messages

Meta announced it’s rolling out a new feature for WhatsApp users in the fight against scammers. Scam Alert is an optional beta feature that uses an on-device machine-learning model to flag likely scam messages from people who are not in a user’s contacts. The Scam Alert feature arrives as scammers increasingly use WhatsApp for impersonation, fake jobs, fake sales, investment fraud, romance baiting, malicious links, and payment requests. These campaigns often begin on another platform before…

Meta US

Malwarebytes Labs ·

Gitea: disponibili PoC per lo sfruttamento di nuove vulnerabilità

Disponibili Proof of Concept (PoC) per 8 nuove vulnerabilità presenti in Gitea Open Source Git Server, nota piattaforma open source utilizzata per l'hosting e la gestione di repository Git, la collaborazione sul codice sorgente, la distribuzione di pacchetti software e l'automazione di workflow di sviluppo tramite funzionalità CI/CD integrate.

Gitea IT

CSIRT Itálie (ACN) ·

Upozorenje: građani dobivaju lažne poruke koje se predstavljaju kao kazneni ili sudski postupak

Ministarstvo pravosuđa, uprave i digitalne transformacije upozorava građane na lažne poruke kojima se pokušava stvoriti dojam da se protiv primatelja vodi kazneni ili sudski postupak. “Trenutno se šire lažne poruke koje građani zaprimaju putem e-pošte. U privitku poruka nalaze se dokumenti koji izgledom pokušavaju djelovati službeno, pri čemu se koriste grbovi i logotipi različitih institucija, među ostalim i Ministarstva pravosuđa, uprave i digitalne transformacije. Građanima savjetujemo da ne…

veřejná správa HR

CERT.hr ·

APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit

Introduction CoolClient is a backdoor family attributed to the HoneyMyte APT group (also known as Mustang Panda) that has been used in their cyber-espionage campaigns targeting organizations across Asia and Russia. It supports such capabilities as keylogging, clipboard theft, credential harvesting, file management, system reconnaissance, and plugin-based extensions. Since its first public disclosure by Sophos in 2022 and subsequent analysis by Trend Micro in 2023, CoolClient has continued to…

veřejná správa RU

Securelist (Kaspersky) ·

Risolta vulnerabilità su Zimbra Collaboration

Rilasciati aggiornamenti di sicurezza per risolvere una vulnerabilità con gravità “alta” in Zimbra Collaboration, nota piattaforma di collaborazione e-mail sviluppata da Synacor Inc. Tale vulnerabilità, qualora sfruttata, potrebbe consentire a utenti malintenzionati remoti di eseguire codice arbitrario sui sistemi interessati.

Synacor IT

CSIRT Itálie (ACN) ·

CERT-SE:s veckobrev v.33

I veckans veckobrev kan du bland annat läsa om fortsatta utmaningar med AI-modeller som agerar utanför de tänkta testmiljöerna, samt rapporter om en ökning av mer kraftfulla överbelastningsangrepp.

SE

CERT-SE ·

Varovanie pred rizikami cestných meradiel

Národný bezpečnostný úrad varuje pred významnou kybernetickou hrozbou spojenou s používaním viacerých typov cestných rýchlomerov s kamerou. Bezpečnostná analýza identifikovala viaceré riziká a dotknutým subjektom odporúča predmetné produkty vo svojej infraštruktúre identifikovať. Národný bezpečnostný úrad podľa § 5 ods. 1 písm. q) v spojení s § 27 ods. 1 písm. a) a ods. 2 zákona... The post Varovanie pred rizikami cestných meradiel appeared first on SK-CERT.

doprava veřejná správa SK

SK-CERT (NBÚ SR) ·

Risolta vulnerabilità in OpenSSL

Rilasciato aggiornamento di sicurezza per una nuova vulnerabilità, con gravità “alta“, che interessa OpenSSL, nota libreria per l’implementazione degli standard crittografici e i protocolli TLS/SSL. Tale vulnerabilità, qualora sfruttata, potrebbe consentire ad un utente malintenzionato di compromettere la disponibilità del servizio sui sistemi interessati.

OpenSSL IT

CSIRT Itálie (ACN) ·

Sanata vulnerabilità in WordPress

Sanata una vulnerabilità con gravità “alta” in WordPress. Tale vulnerabilità, qualora sfruttata, potrebbe consentire ad un utente malintenzionato remoto autenticato di eseguire codice arbitrario sui sistemi interessati.

WordPress IT

CSIRT Itálie (ACN) ·

Riasztás Microsoft szoftverek 2026 augusztusában javított sérülékenységeiről

A Nemzetbiztonsági Szakszolgálat Nemzeti Kiberbiztonsági Intézet riasztást ad ki a Microsoft szoftvereket érintő kritikus kockázati besorolású sérülékenységek kapcsán azok súlyossága, a szoftverek széleskörű elterjedtsége, valamint az egyes biztonsági hibákat érintő aktív kihasználások miatt. A Microsoft tárgyhavi biztonsági csomagjában összesen 421 különböző biztonsági hibát javított, köztük 3 db nulladik napi (zero-day) sebezhetőséget is amelyet a Microsoft […]

Microsoft HU

NKI Maďarsko ·

ZDI-26-526: (0Day) PAX Technology Q80 Application Installer Signature Verification Bypass Remote Code Execution Vulnerability

This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PAX Technology Q80. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2026-19910, CVE-2026-19911.

EPSS 0.00 CVSS 7.5 CVE-2026-19910 CVE-2026-19911 PAX Technology US

Zero Day Initiative ·

20

ClamAV Vulnerabilities Affecting Cisco Products: August 2026

Multiple vulnerabilities in ClamAV could allow a remote attacker to cause a denial of service (DoS) condition, interrupting scanning operations. For more information about these vulnerabilities, see the Details section of this advisory. For additional information on these vulnerabilities in ClamAV, see the ClamAV blog. Cisco has released software updates that address these vulnerabilities in affected Cisco platforms. There are no workarounds that address these vulnerabilities. Notes: The…

EPSS 0.00 CVE-2026-20337 CVE-2026-20338 CVE-2026-20339 CVE-2026-20345 CVE-2026-20346 CVE-2026-20347 CVE-2026-20348 Cisco US

Cisco PSIRT ·

Curiouser and Curiouser

Welcome to this week’s edition of the Threat Source newsletter. “Experiment is the mother of knowledge.” ― Madeleine L'Engle, A Wrinkle in Time“Don't slide down the rabbit hole. The way down is a breeze, but climbing back's a battle.” ― Kate Morton, The Clockmaker's Daughter Hacker Summer Camp has come and gone, which means it’s time for you to start planning next year’s trip. I’m surely going to recap Camp Season, right? Nope.One of the things that I’ve really enjoyed lately is a segment on…

Microsoft Cisco Signal Shopify finance obchod US

Cisco Talos ·

Why API Discovery Is Critical for Modern AppSec Programs

Hidden API Estate And AI-speed Recon Are Reshaping Modern Application Risk Key Takeaways Unknown APIs create unattributed exposure, and such exposure rarely gets tested. Attackers build their own inventory through live reconnaissance; they do not wait for your spreadsheet. API discovery must pull from gateways, cloud, specs, traffic paths, scanners, and external exposure signals. OWASP API Top 10 includes improper inventory management because endpoint sprawl is now a core API risk. Qualys…

Qualys US

Qualys ·

Závažná hardvérová zraniteľnosť starších procesorov AMD

Národné centrum kybernetickej bezpečnosti upozorňuje na nový výskum bezpečnostného výskumníka Christophera Domasa, ktorý demonštruje závažnú hardvérovú zraniteľnosť procesorov AMD Family 16h (približne 2013 – 2016). Zmenou jediného konfiguračného bitu radiča operačnej pamäte je možné obísť hardvérovú ochranu, ktorá bráni operačnému systému v prístupe k najcitlivejším oblastiam pamäte a k bezpečnostným komponentom fungujúcim pod jeho úrovňou.... The post Závažná hardvérová zraniteľnosť starších…

AMD SK

SK-CERT (NBÚ SR) ·

WebPros security advisory (AV26-815)

Serial Number: AV26-815Date: August 13, 2026 As of August 12, 2026, WebPros is affected by a vulnerability in the following product: Plesk (Windows/Linux) Prior to 18.0.79.6 Prior to 18.0.80.2 The Cyber Centre encourages users and administrators to review the provided web link and apply any necessary updates as they become available. Vulnerability CVE-2026-64639: Privilege Escalation via Database Cloning in Plesk

EPSS 0.00 CVE-2026-64639 Plesk CA

Cyber Centre Kanada ·

GitLab security advisory (AV26-814)

Serial Number: AV26-814Date: August 13, 2026 As of August 12, 2026, GitLab is affected by vulnerabilities in the following product: GitLab Prior to 19.0.6 Prior to 19.1.4 Prior to 19.2.2 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available. GitLab Patch Release: 19.2.2, 19.1.4, 19.0.6 | GitLab Docs

GitLab CA

Cyber Centre Kanada ·

AMD security advisory (AV26-813)

Serial Number: AV26-813Date: August 13, 2026 As of August 11, 2026, AMD is affected by vulnerabilities in the following products: AMD Power Design Manager (PDM) Software Installer for Windows all except 2026.1 AMD Power Design Manager (PDM) Software Un-Installer all except 2026.1 AMD Ryzen Master all except 3.0.0.4199 all except 3.1.1.5502 AMD Ryzen Master (AMD Ryzen 3000 Series Processors) all except 2.14.3.5040 AMD Ryzen Master Monitoring SDK all except 3.1.1.5478 AMD Ryzen Master SDK all…

AMD CA

Cyber Centre Kanada ·

NCSC-2026-0300 [1.00] [M/H] Kwetsbaarheden verholpen in Fortinet FortiWeb

Fortinet heeft kwetsbaarheden verholpen in FortiWeb. De eerste kwetsbaarheid betreft een Improper Authentication in meerdere versies van FortiWeb, waardoor een externe, niet-geauthenticeerde aanvaller toegang kan krijgen tot de GUI- en CLI-interfaces door het indienen van willekeurige inloggegevens. Deze kwetsbaarheid treedt ook op bij FortiWeb-systemen die zijn geconfigureerd met Remote Radius Type Admin Authentication onder bepaalde niet-standaard instellingen. Hierdoor kan een aanvaller de…

Fortinet NL

NCSC-NL ·

NCSC-2026-0299 [1.00] [M/H] Kwetsbaarheid verholpen in Fortinet FortiManager

Fortinet heeft een kwetsbaarheid verholpen in FortiManager en FortiManager Cloud versies 7.2.5 tot en met 7.6.1. De kwetsbaarheid betreft een authenticatiebypass via een alternatieve route of kanaal. Een externe, niet-geauthenticeerde aanvaller die beschikt over een geldig certificaat kan zich voordoen als een FortiGate-apparaat dat wordt beheerd door FortiManager door speciaal opgemaakte FGFM-verzoeken te versturen. De oorzaak ligt in onjuiste toegangscontrolemechanismen binnen de getroffen…

Fortinet NL

NCSC-NL ·

NCSC-2026-0298 [1.00] [M/H] Kwetsbaarheden verholpen in Autodesk AutoCAD

Autodesk heeft meerdere kwetsbaarheden verholpen in AutoCAD. De kwetsbaarheden bevinden zich in de wijze waarop AutoCAD speciaal vervaardigde DXF- en DWG-bestanden verwerkt. Een heap-based overflow kan leiden tot crashen van de applicatie, ongeautoriseerde toegang tot gevoelige data of uitvoering van willekeurige code binnen de context van de applicatie. Daarnaast zijn er out-of-bounds read kwetsbaarheden die eveneens kunnen resulteren in het crashen van de applicatie of het lekken van…

Autodesk NL

NCSC-NL ·

NCSC-2026-0297 [1.00] [M/H] Kwetsbaarheden verholpen in GitLab Enterprise Edition en Community Edition

GitLab heeft meerdere kwetsbaarheden verholpen in GitLab Enterprise Edition (EE) en Community Edition (CE) versies variërend van 12.0 tot en met 19.2.2. De kwetsbaarheden betreffen verschillende aspecten van GitLab, waaronder onjuiste privilege-toewijzing waarbij gebruikers met een pending lidmaatschapsstatus onbedoeld permissies konden erven van custom rollen. Verder zijn er problemen met ontbrekende autorisatiecontroles op API-endpoints, waardoor gebruikers met ontwikkelaarsrollen toegang…

GitLab NL

NCSC-NL ·

AL26-018 - Vulnerability affecting Cisco ASA and Secure Firewall Threat Defense Software Remote Access SSL VPN - CVE-2026-20349

Number: AL26-018Date: August 13, 2026 Audience This Alert is intended for IT professionals and managers. Purpose An Alert is used to raise awareness of a recently identified cyber threat that may impact cyber information assets, and to provide additional detection and mitigation advice to recipients. The Canadian Centre for Cyber Security ("Cyber Centre") is also available to provide additional assistance regarding the content of this Alert to recipients as requested. Details The Canadian…

KEV ✓ EPSS 0.01 CVE-2026-20349 Cisco veřejná správa CA RO IT FR US 6 zdrojů

Cyber Centre Kanada · DNSC Rumunsko · CSIRT Itálie (ACN) · CERT-FR – avis · Cisco PSIRT · CISA KEV

NCSC-2026-0296 [1.00] [M/H] Kwetsbaarheid verholpen in Fortinet FortiClient

Fortinet heeft een kwetsbaarheid verholpen in FortiClient voor Windows. De kwetsbaarheid betreft een klassieke buffer overflow in de verwerking van DNS response packets. Deze ontstaat door een buffer copy operatie zonder controle op de grootte van de input. Hierdoor kan een niet-geauthenticeerde aanvaller kwaadaardige DNS responses opstellen en versturen. Bij succesvolle exploitatie kan de aanvaller willekeurige code uitvoeren binnen de context van de FortiClient applicatie.

Fortinet NL

NCSC-NL ·

The Model Is the Malware | What Four Agentic Intrusions Tell Defenders

Executive Summary Four incidents involving OpenAI, Anthropic, Meta and the UK AI Security Institute (AISI) describe AI agents reaching systems belonging to other organizations without their consent. While the causes differ, the consistent factor is the models’ persistence rather than their sophistication, whether as endurance across days of failed attempts or as pivots to entirely new vectors. Security teams have traditionally studied the artifacts attackers leave behind, but an agent that…

OpenAI Anthropic Meta US

SentinelLabs ·