Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner

Today’s signal The Hacker News recently reported Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner. Published context: August 15, 2026. A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC-NL) has warned. The vulnerability in question is CVE-2026-65400 (CVSS score: 9.8), a critical authentication issue impacting the Screen Sharing component that could allow an atta ...

August 18, 2026 · 3 min · David Gomez

Amazon Bedrock expands API support and introduces Cross Region Inferencing for OpenAI models

Today’s signal AWS What’s New recently reported Amazon Bedrock expands API support and introduces Cross Region Inferencing for OpenAI models. Published context: August 17, 2026. Amazon Bedrock now supports the OpenAI GPT-5.6 models (Sol, Terra, and Luna) on the bedrock-runtime endpoint, with support for the Responses, Converse, and Chat Completions APIs. It also adds support for cross-Region inference, allowing customers to use Global and Geo cross-Region inference to access higher throughput and lower inference costs. Cross-Region ...

August 18, 2026 · 3 min · David Gomez

Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

Today’s signal The Hacker News recently reported Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware. Published context: August 17, 2026. Cybersecurity researchers have attributed the exploitation of a newly patched security flaw in Broadcom VMware vCenter to a suspected China-nexus advanced persistent threat (APT). The attacks involve the exploitation of CVE-2026-59310 (CVSS score: 9.8), a severe directory-traversal vulnerability in the VMware vCenter server that could be weaponized by a mali ...

August 17, 2026 · 3 min · David Gomez

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

Today’s signal The Hacker News recently reported Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations. Published context: August 12, 2026. Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captu ...

August 17, 2026 · 3 min · David Gomez

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

Today’s signal The Hacker News recently reported Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access. Published context: August 12, 2026. Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO. The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a directory-traversal vulnerability in the VMware vCenter server that a malicious actor with network access can exploit to execute arbitrar ...

August 16, 2026 · 3 min · David Gomez

Amazon RDS for MariaDB now supports MariaDB 12.3

Today’s signal AWS What’s New recently reported Amazon RDS for MariaDB now supports MariaDB 12.3. Published context: August 11, 2026. Starting today, Amazon RDS for MariaDB supports MariaDB major version 12.3, the latest Long-Term Support release from the MariaDB community. This release supports MariaDB 12.3.2 minor version. MariaDB 12.3 includes Oracle TO_DATE() function compatibility, reducing the code changes needed when migrating applications from Oracle to MariaDB. It adds an IS JSON ...

August 16, 2026 · 3 min · David Gomez

Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws

Today’s signal The Hacker News recently reported Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws. Published context: August 12, 2026. Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation. The most severe of the flaws are listed below - CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulne ...

August 15, 2026 · 3 min · David Gomez

AWS Certificate Manager supports switching from e-mail to DNS validation

Today’s signal AWS What’s New recently reported AWS Certificate Manager supports switching from e-mail to DNS validation. Published context: August 13, 2026. AWS Certificate Manager (ACM) now enables you to change the domain validation method on your existing ACM issued public TLS certificates from e-mail to DNS, without reissuing the certificate or changing its existing Amazon Resource Name (ARN). Due to the Certification Authority/Browser (CA/B) Forum’s mandated deprecation of email-based domain validation for ...

August 15, 2026 · 3 min · David Gomez

Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

Today’s signal The Hacker News recently reported Attackers Exploit SharePoint Authentication Bypass After Public PoC Release. Published context: August 13, 2026. Threat actors have begun to exploit a newly disclosed Microsoft SharePoint vulnerability following the release of a proof-of-concept (PoC) code. The vulnerability in question is CVE-2026-55040 (CVSS score: 9.1), which refers to a critical security feature bypass that stems from weak authentication. It was patched by Microsoft as part of its July 2026 Patch T ...

August 14, 2026 · 3 min · David Gomez

AWS Billing and Cost Management introduces Managed Dashboards

Today’s signal AWS What’s New recently reported AWS Billing and Cost Management introduces Managed Dashboards. Published context: August 14, 2026. AWS Billing and Cost Management (BCM) Dashboards now include Managed Dashboards. These are a collection of preconfigured and read-only dashboards located in your dashboard list. They deliver actionable cost insights with your account data pre-populated without setup. There are five curated dashboards. Cost Overview & Trends tracks your spending patterns acro ...

August 14, 2026 · 3 min · David Gomez

OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development

Today’s signal The Hacker News recently reported OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development. Published context: August 11, 2026. OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and incident response. “Built on GPT‑5.6 Sol, it is trained to improve capabilities on several specialized cybersecurity tasks (e.g., finding zero-day vulnerabilities and developing exploit chains) and to re ...

August 13, 2026 · 3 min · David Gomez

AWS IAM now provides role manager to set up IAM roles automatically

Today’s signal AWS What’s New recently reported AWS IAM now provides role manager to set up IAM roles automatically. Published context: August 12, 2026. Today, AWS announces the general availability of role manager, a capability in AWS Identity and Access Management (IAM) that automatically sets up the IAM roles your AWS services need. When you set up a supported service in the console, role manager creates a default role on your behalf, or reuses one that already exists in your account if it already matches ...

August 13, 2026 · 3 min · David Gomez