⤷ Title: CVE-2026-66147: Unauthenticated Remote Code Execution Flaws Hit SonicWall GMS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 00:45:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_66145 #CVE_2026_66147 #Remote Code Execution #SonicWall Email Security #SonicWall GMS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 00:45:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_66145 #CVE_2026_66147 #Remote Code Execution #SonicWall Email Security #SonicWall GMS
Daily CyberSecurity
CVE-2026-66147: Unauthenticated Remote Code Execution Flaws Hit SonicWall GMS
TL;DR SonicWall disclosed critical flaws in its GMS and Email Security products on August 11, 2026. The most severe is a SonicWall GMS vulnerability, CVE-2026-66147, scoring CVSS 9.4. It allows un…
⤷ Title: Cisco ASA and FTD VPN Flaw CVE-2026-20349 Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 00:36:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cisco ASA #Cisco FTD #CVE_2026_20349 #Denial of Service #exploited in the wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 00:36:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cisco ASA #Cisco FTD #CVE_2026_20349 #Denial of Service #exploited in the wild
Daily CyberSecurity
Cisco ASA and FTD VPN Flaw CVE-2026-20349 Exploited in the Wild
TL;DR Cisco disclosed a Cisco ASA and FTD VPN vulnerability on August 11, 2026. Tracked as CVE-2026-20349 (CVSS 8.6), it lets an unauthenticated attacker crash the firewall remotely. Cisco confirm…
⤷ Title: Chrome Update Fixes 5 Use-After-Free Security Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 03:44:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #chrome #CVE_2026_19556 #CVE_2026_19559 #CVE_2026_19560 #google chrome #use after free
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 03:44:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #chrome #CVE_2026_19556 #CVE_2026_19559 #CVE_2026_19560 #google chrome #use after free
Daily CyberSecurity
Chrome Update Fixes 5 Use-After-Free Security Bugs
TL;DR Google shipped a new Chrome security update on the Stable channel. It fixes five high-severity use-after-free flaws across V8, Blink, HTML, TabStrip, and Extensions. No exploitation in the w…
⤷ Title: Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 02:44:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2026_68820 #DPRK #FudModule #Lazarus #Operation Dream Job #zero_day
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 02:44:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2026_68820 #DPRK #FudModule #Lazarus #Operation Dream Job #zero_day
Daily CyberSecurity
Lazarus Exploits Windows Zero-Day in Operation Dream Job Attacks
What happened at a glance Actor or group Lazarus (DPRK-linked), per Check Point Research Activity type Spear-phishing, trojanized software, zero-day exploitation Targets Defense, aerospace, and av…
⤷ Title: Microsoft August 2026 Patch Tuesday Fixes WinSock Zero-Day Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 02:21:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_68820 #Lazarus Group #Microsoft zero_day #Patch Tuesday #WinSock afd.sys
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 02:21:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_68820 #Lazarus Group #Microsoft zero_day #Patch Tuesday #WinSock afd.sys
Daily CyberSecurity
Microsoft August 2026 Patch Tuesday Fixes WinSock Zero-Day Exploited in the Wild
TL;DR Microsoft August 2026 Patch Tuesday fixes 421 vulnerabilities, with 62 rated critical. One flaw, CVE-2026-68820, is already exploited in the wild. Microsoft also patched two other zero-days …
⤷ Title: Zoom Patches Four Security Flaws, Including Two Remote Code Execution Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 02:03:58 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_53413 #CVE_2026_53415 #Remote Code Execution #Zoom Security #Zoom Workplace
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 02:03:58 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_53413 #CVE_2026_53415 #Remote Code Execution #Zoom Security #Zoom Workplace
Daily CyberSecurity
Zoom Patches Four Security Flaws, Including Two Remote Code Execution Bugs
TL;DR Zoom released four security bulletins on August 11, 2026. Two of the flaws allow remote code execution against meeting participants. Each Zoom security vulnerability now has a fix, so users …
⤷ Title: CVE-2026-50656 PoC Published: Defender Privilege Escalation Bypass
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 04:24:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_50656 #privilege escalation #proof_of_concept #RoguePlanet #ShieldBreak #Windows Defender
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 04:24:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_50656 #privilege escalation #proof_of_concept #RoguePlanet #ShieldBreak #Windows Defender
Daily CyberSecurity
CVE-2026-50656 PoC Published: Defender Privilege Escalation Bypass
TL;DR A researcher has published a public PoC called ShieldBreak. It bypasses Microsoft’s July patch for the RoguePlanet Windows Defender flaw, CVE-2026-50656. The exploit escalates a standa…
⤷ Title: CVE-2026-58115: CVSS 10 Node-RED RCE Hits SIMATIC IoT2050
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 07:32:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_58115 #ICS security #Node_RED #Remote Code Execution #Siemens #SIMATIC IoT2050
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 07:32:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_58115 #ICS security #Node_RED #Remote Code Execution #Siemens #SIMATIC IoT2050
Daily CyberSecurity
CVE-2026-58115: CVSS 10 Node-RED RCE Hits SIMATIC IoT2050
TL;DR Siemens has disclosed CVE-2026-58115, a maximum-severity flaw in SIMATIC IoT2050 Advanced devices. The bug scores a perfect CVSS 10.0 and enables remote code execution through Node-RED. An u…
⤷ Title: CVE-2026-55040 PoC Released for SharePoint Authentication Bypass
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 06:14:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_55040 #JWT #proof_of_concept #Rapid7 #Sharepoint
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 06:14:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_55040 #JWT #proof_of_concept #Rapid7 #Sharepoint
Daily CyberSecurity
CVE-2026-55040 PoC Released for SharePoint Authentication Bypass
TL;DR Rapid7 has published a technical analysis and a working proof-of-concept for CVE-2026-55040. The flaw is a critical SharePoint authentication bypass that lets a remote, unauthenticated attac…
⤷ Title: CVE-2021–35042 : Django QuerySet.order_by() SQL Injection
════════════════════════
𐀪 Author: Arya Utomo
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 08:21:07 GMT
════════════════════════
⌗ Tags: #programming #penetration_testing #cve #cybersecurity
════════════════════════
𐀪 Author: Arya Utomo
════════════════════════
ⴵ Time: Wed, 12 Aug 2026 08:21:07 GMT
════════════════════════
⌗ Tags: #programming #penetration_testing #cve #cybersecurity
Medium
CVE-2021–35042 : Django QuerySet.order_by() SQL Injection
1. Ringkasan Eksekutif