Cybersecurity News | Daily Recap [19 Aug 2026]

Cybersecurity News | Daily Recap [19 Aug 2026]
Daily Recap, Medusa ransomware has struck more than 500 critical infrastructure organizations and is tied to additional victims, while Cl0p publicly named over 40 PTC Windchill targets and used a custom web shell to steal data. In parallel, attacks are actively exploiting the Windows IKE Extension critical RCE and the Forminator WordPress vulnerability, as identity threats accelerate with password spraying up 155x against MFA gaps and attackers compromising 14,500 Dahua devices. #Medusa #Cl0p #PTCWindchill #WindowsIKEExtension #Forminator #PasswordSpraying #MFA #Dahua #RansomBusters #RansomBustersClaims

Ransomware Threats

  • Medusa ransomware has hit over 500 critical infrastructure organizations and is now linked to hundreds of additional victims, while Cl0p publicly named more than 40 PTC Windchill targets and used a custom web shell for data theft. – Medusa Hits, Medusa Tactics, Cl0p Victims, Cl0p Shell
  • Ransom Busters claimed it hacked ransomware servers and is asking victims for up to $60,000, adding pressure to the cybercrime ecosystem. – Ransom Busters

Exploited Vulnerabilities

  • Windows IKE Extension has a critical RCE flaw that is now actively exploited in attacks, underscoring urgent patching needs. – Windows IKE RCE
  • Forminator WordPress flaw can enable unauthenticated RCE through malicious PHP uploads, putting sites at risk of full compromise. – Forminator RCE
  • MLflow SSRF vulnerability is being exploited to steal cloud credentials and secrets from misconfigured deployments. – MLflow SSRF

Identity & Credential Attacks

  • Password spraying attacks have surged 155x as hackers exploit MFA gaps, highlighting the continued weakness of account protections. – Spraying Surge
  • Attackers compromised more than 14,500 Dahua devices using credential attacks, auth bypasses, and P2P abuse to expand botnet-style access. – Dahua Devices
  • An analysis of the reported Stripe breach points to vendor exposure and claims of up to 20,000 compromised APIs, raising supply-chain security concerns. – Stripe Breach

Cloud, AI & SaaS Security

  • Microsoft Copilot Personal flaws could let a single click exfiltrate data from connected apps, creating a risky cross-app data leakage path. – Copilot Leak
  • Prevalent AI raised $22 million to expand its data fabric platform, reflecting continued investment in AI-driven security and data tooling. – Prevalent AI
  • A webinar and expert talk focused on defending against AI-speed attacks and the shift toward behavior-based controls. – AI Defense, Behavioral Defense, AI Offensive

Data Breaches & Public Impact

  • CareCloud‘s breach impact has grown to 3.7 million individuals, showing how disclosure timelines can expand incident scope. – CareCloud Breach
  • Brazil ordered Discord to suspend livestreaming after a teen suicide case, highlighting regulatory pressure on online platforms. – Discord Brazil
  • Comcast is turning Xfinity WiFi into a home motion detector, raising fresh privacy and consumer-surveillance questions. – Xfinity Motion

Iranian Hackers

  • U.S. authorities charged 17 Iranian hackers and offered up to $10 million rewards for 5 of them, while also renewing charges tied to the Mabna Institute case. – Iran Charges, Mabna Case

Cybersecurity News | Daily Recap – hendryadrian.com