This day 02:07 06:07 10:08 14:08 18:09 22:09
Info  2026-08-14 14:08Z · last 4h · 16 findings · glm-5.2:cloud

Threat Brief — 2026-08-14 — Active exploitation and breach fallout

Executive summary: A maximum-severity SAP Commerce Cloud RCE patched just three days ago is now confirmed under active attack — if you haven't patched, treat it as imminent. RingCentral disclosed a ShinyHunters breach affecting 1.6 million accounts, and Shell is investigating Clop's claim of 89 GB stolen. On the research side, an unpatchable hardware flaw in Loongson processors leaks AES keys from the kernel, and New Zealand's intelligence service exposed a Chinese plan to covertly militarise a civilian telescope.

Top items

Themes

Patch-to-exploit window keeps shrinking. SAP Commerce Cloud went from patch to active exploitation in under three days, mirroring the pattern seen with SharePoint and VMware vCenter earlier this week. The window for patching critical internet-facing flaws is effectively zero.

Breach disclosure cascade. RingCentral (1.6M accounts), Shell (89GB claimed), and the Bybit legal action all landed in the same cycle — extortion groups (ShinyHunters, Clop) and state actors (Lazarus/ DPRK) are simultaneously pressuring major organisations, each through different playbooks.

Hardware trust assumptions challenged. LoongLeak follows the malicious-SIM research from earlier this week, underscoring that silicon-level and baseband trust models remain underexplored attack surfaces with no software remediation path.

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db