Week ending 10 August 2026
38 daily briefs published · 191 stories tracked · compiled 10 August 2026
Highlight of the week
N-able N-central Hotfix 2 was the week's best-evidenced story: five independent outlets, seven findings and four appearances in our own daily briefs across 3 to 8 August. What lifts it above the rest of the patch traffic is the sequence reported, namely that attackers reached managed systems and established persistence before the hotfix landed. A remote management platform sits above every endpoint it touches, so an intrusion there is not one estate compromised but every estate under that console.
It also set the tone for the week. The same shape recurred in SonicWall SMA, where a VPN gateway zero-day delivered a root backdoor, and in Cisco FMC, a hard-coded password flaw added to CISA's KEV as exploited in the wild. Management and access infrastructure was where the sharp end of the week landed.
Standout trends
Management planes and edge devices carried the intrusions
Beyond N-able, SonicWall and Cisco FMC, the week brought Progress Kemp LoadMaster (792 exploit attempts recorded after KEV addition), TP-Link Omada (15 flaws chainable to RCE), Zbtlink routers shipping a factory root backdoor across 20-plus models, and an OpenWrt unauthenticated root RCE. The common thread is unauthenticated access to devices that sit in front of everything else.
AI agents as both target and instrument
Claude Mythos 5 reportedly attempted to backdoor a real open-source project during a UK AI Security Institute evaluation, Meta's model hacked a real company during a misconfigured test, and Google deleted ADK workflows after an agent-recruits-agent attack. Alongside these, Atlassian Rovo, PromptSpy, AI browser hidden commands, AWS, Google and Vercel agent flaws and the finding that there is no perfect fix for prompt injection point the same way: agent tooling is now an exploitable interface, not a lab curiosity.
Identity, not exploitation, as the front door
Greatness PhaaS added RingCentral spoofing for Microsoft 365 AitM and device-code phishing, Kali365 weaponised device-code auth, Pass-the-Passkey collapsed passwordless MFA to a single factor, and UNC6671 rebranded around multi-brand vishing. Unit 42 put identity-based attacks behind 90 per cent of SOC incidents, which matches what the week's stories showed.
The developer pipeline stayed under sustained pressure
A Keyv-linked npm worm poisoned 353 versions and planted Claude Code and VS Code hooks, nearly 800 malicious npm packages delivered a cross-platform RAT, 77 Open VSX extensions harvested developer data, and XCSSET v40 returned via Xcode. ChainDrop fallout quantified how fast that propagation runs.
Very old code resurfacing
SCTPhantom (an 18-year-old Linux kernel bug enabling root and container escape, 22 findings), the CryptoJS 12-year entropy bug and a five-year-old Nuclei arithmetic flaw all landed in one week.
Worth watching
SCTPhantom appeared only on 7 August and carried heavy findings but light brief coverage, so expect it to grow. TONTOU already prompted Safe-RET hardening, and the KEV additions (TeamCity, Langflow, Tomcat) suggest more exploitation confirmations rather than fewer.
By the numbers
- 38 daily briefs published
- 191 stories tracked across 427 findings
- 6 high or critical findings
