August 12, 2026

August 12, 2026 Hash 15077870a4d0537ed8630881cc99918b2 215d6d09a0898b0fc8b228c38003c897a 3ecbb70ce34c38b43c2ca18e4cd439aea URL 1http[:]//176[.]65[.]139[.]196/ 2http[:]//pococoxx[.]cc/ 3https[:]//herocrm[.]com[.]br/tmp1/webmailscksjlsjeif9ofikdsc/en-US/?t=1785470122 IP 1160[.]251[.]178[.]104 214[.]103[.]117[.]81 380[.]233[.]0[.]148...

Apple Product Security Update Advisory (CVE-2026-65400)

Apple Product Security Update Advisory (CVE-2026-65400)

Apple has released a security update to address a vulnerability found in Apple products. Vulnerability: CVE-2026-65400. Affected versions: macOS Sonoma 14, macOS Sequoia 15, macOS Tahoe 26. Vulnerability Details: This is a authentication bypass vulnerability in macOS Screen Sharing (the remote screen sharing feature). Resolution: Applying the latest security update

WordPress Security Update Advisory (CVE-2026-64638)

WordPress Security Update Advisory (CVE-2026-64638)

Overview A security update has been released to address a vulnerability in WordPress. This vulnerability, identified as CVE-2026-64638, is a pre-authentication reflected cross-site scripting (XSS) vulnerability—a type of vulnerability that tricks users into executing malicious scripts—occurring on the WordPress login screen. Affected Versions The affected WordPress versions are as follows:

Metabase Product Security Update Advisory

Metabase Product Security Update Advisory

A security update has been released for the Metabase product. The vulnerabilities addressed include two instances of SQL injection (a vulnerability where input is exploited to manipulate database queries) and one vulnerability that exposes sensitive information in the application database to users with low privileges. The related CVEs are CVE-2026-72898,

Beware of phishing emails disguised as requests to review quotes (PhantomStealer)

Beware of phishing emails disguised as requests to review quotes (PhantomStealer)

The AhnLab SEcurity intelligence Center (ASEC) recently identified a phishing email campaign that disguised itself as a request to review a quote. The threat actor impersonated a sales team member at a specific overseas company and, by claiming that a previous quote needed to be revised and product versions verified,

July 2026 Infostealer Trend Report

July 2026 Infostealer Trend Report

Content This report summarizes the distribution channels, number of Infostealers, number of detections, and target companies that were disguised as Infostealers collected during the month of July 2026. It was compiled based on results from AhnLab SEcurity intelligence Center (ASEC)’s automated data collection system, email honeypots, and automated C2 analysis,