SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code

**Critical Flaw in SAP Commerce Cloud Exposes Businesses to Unauthenticated Attacks** A critical vulnerability in the SAP Commerce Cloud platform has been discovered, allowing unauthenticated attackers to execute arbitrary code and gain unauthorized access to sensitive systems. The flaw, which affects all versions of the software, has significant implications for businesses that rely on the … Read more

Windows 11 KB5121003 & KB5120240 cumulative updates released

Microsoft has rolled out two new cumulative updates for Windows 11 – KB5121003 and KB5120240 – which bring a host of security patches, bug fixes, and new features to the operating system. These mandatory updates are part of the August 2026 Patch Tuesday release, addressing over 400 vulnerabilities discovered in previous months. The updates will … Read more

Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days

Microsoft’s August Patch Tuesday Update Fixes 400 Vulnerabilities, Including Three Zero-Day Flaws Today, Microsoft released its highly anticipated August Patch Tuesday update, addressing a staggering 400 security vulnerabilities across its software products. Among these critical flaws are three zero-day vulnerabilities, with one already being actively exploited in attacks and two publicly disclosed. The sheer scale … Read more

Microsoft releases Windows 10 KB5120249 extended security update

Microsoft Delivers Critical Security Update for Windows 10 Users Windows 10 users are in for a dose of good news as Microsoft has released an extended security update (ESU) for versions 22H2 and 21H2. The KB5120249 update is mandatory, containing the August 2026 Patch Tuesday security updates that address critical vulnerabilities and bugs. This update … Read more

Sandworm hackers target IT pros with trojanized WireGuard VPN client

Cybersecurity experts have been sounding the alarm about a sophisticated social engineering campaign, attributed to the notorious Russian threat group Sandworm. This campaign targets IT professionals and system administrators with fake job offers, tricking them into downloading a trojanized VPN client that compromises their systems. The Ukrainian Computer Emergency Response Team (CERT-UA) has been tracking … Read more

Google says Chrome cuts 7 billion unwanted Android notifications a day to fight abuse

Google’s Chrome browser has been working tirelessly behind the scenes to combat notification abuse on Android devices, and the results are impressive. According to Google, its anti-abuse systems have successfully blocked over 7 billion unwanted notifications per day since the start of this year alone. The problem of notification abuse is a serious one, as … Read more

Windows 11 KB5121003 & KB5120240 cumulative updates released

Microsoft has just released two critical cumulative updates for Windows 11 – KB5121003 and KB5120240 – designed to fix security vulnerabilities, bugs, and add new features. These mandatory updates contain the August 2026 Patch Tuesday security patches for a staggering 400 vulnerabilities discovered in previous months. The updates are applicable to all versions of Windows … Read more

Microsoft August 2026 Patch Tuesday fixes 400 flaws, 3 zero-days

Today, Microsoft released its August 2026 Patch Tuesday update, addressing a staggering 400 security flaws in its software products. Among these vulnerabilities are three zero-days, with one actively exploited and two publicly disclosed. This large-scale patching effort is part of Microsoft’s efforts to improve the overall security posture of its software. The majority of the … Read more

Cisco warns of ASA and FTD VPN flaw exploited to crash devices

A high-severity vulnerability in Cisco’s Secure Firewall ASA and Threat Defense (FTD) software has been exploited to remotely crash affected devices, according to a warning from the company. This flaw, tracked as CVE-2026-20349, impacts devices running specific versions of these software packages with certain remote access services enabled. The vulnerability allows an attacker to send … Read more

Sandworm hackers target IT pros with trojanized WireGuard VPN client

Sandworm Hackers Target IT Pros with Trojanized WireGuard VPN Client A sophisticated social engineering campaign attributed to the Russian threat group Sandworm has been targeting system administrators and IT professionals with fake job offers, leaving many wondering how these skilled hackers are able to breach even the most secure networks. The Ukrainian Computer Emergency Response … Read more