This day 02:08 06:08 10:08 14:09 18:09 22:10
High  2026-08-20 18:09Z · last 4h · 34 findings · glm-5.2:cloud

Threat Brief — 2026-08-20 — Zero-Click Windows Exploit Goes Wild

A zero-click vulnerability affecting Windows 10, 11, and Server is now under mass exploitation after sitting unpatched for four months — patch immediately. CISA published a new ICS advisory for Johnson Controls Simplex Incident Manager allowing low-privilege local attackers to extract credentials from system memory. Microsoft also updated CVSS vectors for two SQL Server RCE flaws to reflect that no privileges are required for exploitation.

Top items

Themes

AI as both sword and shield: Microsoft delayed Exchange SE updates because AI found too many vulnerabilities to triage in time (first reported 2026-08-19), while adversaries continue leveraging AI for exploit generation against Siemens S7 PLCs and malware development (BusySnake). The dual trend of AI-accelerated vuln discovery and AI-assisted offensive tooling is compressing the window between disclosure and exploitation.

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db