AI Security Digest
Aggregated ecosystem risk analysis
Vendor Watchlist
Tracking 0 critical integrations
Threat Stream Feed
Real-time security logs and system alerts
Cloudflare - Cloudflare Workers AI errors with Specific models
Aug 13, 15:15 UTCIdentified - The issue has been identified and a fix is being implemented.Aug 13, 15:00 UTCInvestigating - Cloudflare is aware of, and investigating, an increased amount of errors with @cf/meta/m2m100-1.2b and @cf/myshell-ai/melotts. We are working to mitigate this problem. More updates to follow shortly.
DigitalOcean - Volume Attach/Detach events in FRA1
Aug 13, 14:59 UTC Resolved - Between Aug 13, 09:50 UTC and 14:30 UTC, customers in the FRA1 region experienced an issue affecting Block Storage Volumes attachment and detachment operations on Droplets and Managed Kubernetes clusters.During this window, customers may have encountered delays or been unable to attach and detach Block Storage Volumes from their resources.Block Storage Volumes attachment and detachment operations now appear to be functioning normally, and customers should no longer...
GitHub - Incident with Webhooks
Aug 13, 14:58 UTC Update - We are currently investigating a brief degradation of service for Git operations (specifically pushes), issues, pull requests, package registry, and webhooks between 14:32 and 14:46 UTC. We have identified the source of the degradation and are investigating mitigation strategies to prevent recurrence. Aug 13, 14:56 UTC Update - Packages is experiencing degraded performance. We are continuing to investigate. Aug 13, 14:46 UTC Update - Git Operations is experiencing...
GitHub - Errors with the Fable 5 Model in Copilot
Aug 13, 14:50 UTC Update - We are experiencing degraded availability for the Fable 5 model in Copilot products and IDE surfaces. This is due to an issue with an upstream model provider. While we work with them to resolve the issue, we recommend choosing another model or selecting 'Auto' to continue using Copilot. Aug 13, 14:43 UTC Investigating - We are investigating reports of degraded performance for Copilot AI Model Providers
Cloudflare - DNS Record Management Maintenance
Aug 13, 12:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Aug 13, 11:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Jul 24, 18:09 UTCScheduled - Cloudflare will be performing scheduled maintenance on the database that stores DNS records and other DNS settings and metadata. During this window, updates to DNS records or DNS settings may be delayed or fail, including changes made via the dashboard and API, and records cr...
Elastic Cloud - Increased error rates for microsoft-multilingual-e5-large
Aug 13, 08:32 UTC Investigating - We are seeing elevated error rates from the upstream provider for the microsoft-multilingual-e5-large embedding model. Search embedding requests to this model may fail. We are investigating
Cloudflare - CMH (Columbus) on 2026-08-13
Aug 13, 07:30 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Aug 13, 07:10 UTCScheduled - We will be performing scheduled maintenance in CMH (Columbus) datacenter on 2026-08-13 between 07:30 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, ...
I open-sourced a categorized catalog of 2,800+ malware families (Mapped to NIST/CISA & MITRE)
Hey everyone, Over the last few months, I've been curating and categorizing a massive catalog of malware families designed specifically for incident responders, SOC analysts, and threat hunters. I got tired of having to scrape together fragmented IOCs and CISA advisories every time a new variant popped up, so I built a centralized, open-source dataset. **What's included:** * **2,800+ Malware Fami...
Cloudflare - ORD (Chicago) on 2026-08-13
Aug 13, 06:00 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Aug 13, 05:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 12, 07:00 UTCScheduled - We will be performing scheduled maintenance in ORD (Chicago) datacenter on 2026-08-13 between 06:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the ...
Elastic Cloud - Serverless project creation delayed or failing
Aug 13, 03:57 UTC Investigating - We are investigating failures with Serverless project creation.
Cloudflare - IST (İstanbul) on 2026-08-13
Aug 13, 02:01 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 12, 10:40 UTCScheduled - We will be performing scheduled maintenance in IST (İstanbul) datacenter on 2026-08-13 between 03:00 and 21:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting th...
Zoom - Zoom Phone Maintenance - US East (IAD9 / IAD10) Data Center: August 21, 2026
Aug 12, 17:52 PDT Completed - This maintenance has been cancelled Aug 10, 17:30 PDT Scheduled - Zoom will perform service maintenance at our US East (IAD9 / IAD10)) Data Center starting at 5:00 PM Pacific on August 21st. Zoom Phone users registered to the those sip zones will be automatically registered in the other side sip zone sequentially. During the maintenance window, a brief disconnection may be experienced and notifications may be missed. If you get disconnected, the system will attem...
Zoom - Zoom Workforce Management Update
THIS IS A SCHEDULED EVENT Aug 12, 17:00 PDT - Aug 13, 02:00 PDT Aug 10, 23:44 PDT Scheduled - We will be providing an update to Zoom Workforce Management. Please refer to https://support.zoom.com/hc/en/article?id=zm_kb&sysparm_article=KB0068337 for more details. This update includes work rule notifications in preview optimization.There is no operational impact. All services will be available during this scheduled update.
DocuSign - Document Upload and Generation Errors (Incident 5595)
Aug 12, 23:47 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 12, 23:25 UTC Update - We are continuing to investigate this issue. Aug 12, 23:21 UTC Investigating - We are actively investigating this issue.
Cloudflare - HEL (Helsinki) on 2026-08-12
Aug 12, 22:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 12, 03:20 UTCScheduled - We will be performing scheduled maintenance in HEL (Helsinki) datacenter between 2026-08-12 23:00 and 2026-08-13 04:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expe...
Squarespace - Acuity Scheduling Service Disruption
Aug 12, 18:55 EDT Identified - We are currently experiencing a service disruption.Our Engineering team has identified the issue and is working to implement a solution. All users and services may be affected.We will provide an update as soon as possible.
Sentry - Error ingestion delays in US
Aug 12, 21:58 UTC Investigating - We are currently investigating error ingestion latency in US.
GitHub - Disruption with Login and Release Asset downloads
Aug 12, 21:43 UTC Update - We are investigating issues with Login and when downloading Release Assets. We will continue to keep users updated on progress towards mitigation. Aug 12, 21:39 UTC Investigating - We are investigating reports of impacted performance for some GitHub services.
Cloudflare - PTY (Panama City) on 2026-08-12
Aug 12, 21:15 UTCIn Progress - Scheduled maintenance is currently in progress. We will provide updates as necessary.Aug 12, 20:15 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 12, 00:10 UTCScheduled - We will be performing scheduled maintenance in PTY (Panama City) datacenter on 2026-08-12 between 21:15 and 22:15 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in ...
Confluence - Confluence intermittent errors
Aug 12, 20:11 UTC Identified - ImpactSome Confluence Cloud users visiting public links saw a Something went wrong error page. The issue affected anonymous access paths for public links, and some related Confluence areas could also show the same error message.Current StatusA problematic recent change was identified and a revert was prepared. The team is using the revert path to restore the affected experience while checking that service returns to normal.Next StepsThe incident team is completing...
GitHub - Incident with Pull Requests and Issues
Aug 12, 16:41 UTC Resolved - This incident has been resolved. Thank you for your patience and understanding as we addressed this issue. A detailed root cause analysis will be shared as soon as it is available. Aug 12, 16:38 UTC Update - We identified the source of errors affecting Pull Requests, Issues, and Search on GitHub.com and have applied a mitigation. A database index hint was referencing an index that had been removed by a recent migration, causing query failures for some users. We di...
Cloudflare - Email Security delivery impacted by Spamhaus listing
Aug 12, 15:07 UTCInvestigating - We are continuing to investigate this issue.Aug 12, 15:04 UTCInvestigating - We are currently investigating an issue where customers that use Spamhaus for additional filtering of email downstream from the Cloudflare Email Security service are rejecting emails from IPs in the 134.195.26.0/23 block. This IP block should be allowed for all customer downstream systems to avoid treating the Email Security service as an originator of mail. We recommend all Cloudflare E...
Wix - Issues opening Wix Editors and dashboards
Aug 12, 14:54 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 12, 14:44 UTC Investigating - We are currently investigating this issue.
MongoDB Atlas - MongoDB Atlas: Brief elevated latency during scheduled maintenance.
Aug 12, 14:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 20:32 UTC Scheduled - We will perform planned maintenance on Atlas on August 12th from approximately 14:00 to 17:00 UTC.During this maintenance window, some users may experience slightly elevated latency on operations using the Atlas UI Console and the Atlas Admin API.No impact is expected to customer cluster performance or data.We will post updates when maintenance be...
Akamai - Certificate Provisioning System (CPS) Issues
Aug 12, 13:16 UTC Update - We are continuing to investigate this issue. Customers and partners can find more details on the Akamai Community: https://community.akamai.com/customers/s/feed/0D5a700001NAvXBCA1. We will provide an update as we make progress. Aug 11, 12:05 UTC Update - We are continuing to investigate this issue. Customers and partners can find more details on the Akamai Community: https://community.akamai.com/customers/s/feed/0D5a700001NAvXBCA1. We will provide an update as we ma...
Akamai - Edge Delivery Issues in India
Aug 12, 13:02 UTC Monitoring - We became aware of an issue with Edge Delivery in India related to connectivity issues in the form of latency or connection timeouts that impacted traffic flowing from India to multiple geos. The issue lasted between 11:15 UTC on August 12, 2026, and 11:50 UTC on August 12, 2026. The third-party service provider has implemented a fix and based on current observations, the service is resuming normal operations. Customers and partners can find more details on the Ak...
Sentry - Sentry API timeouts (US)
Aug 12, 12:58 UTC Investigating - We are currently investigating reports of API timeouts for the Sentry API in our US region.
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including API keys and passwords. The weakness affected encrypted reasoning objects used by the providers' reasoning APIs, where a block created in one session could be replayed into another and, during testing,
Sentry - Delayed Error ingestion in our US region
Aug 12, 11:45 UTC Investigating - We are actively investigating this issue.
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation. The most severe of the flaws are listed below - CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulnerability in ColdFusion that could
Monday.com - Issues with creating sub-items and linked items
Aug 12, 10:42 UTC Resolved - The issue has been successfully resolved. Thank you for your patience Aug 12, 10:38 UTC Monitoring - We're currently experiencing issues with creating sub-items and linking items. Our developers have already identified the root cause, implemented a fix, and are monitoring results to ensure full system stability.
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captured, maps potential exposure to more
Cloudflare - ORD (Chicago) on 2026-08-12
Aug 12, 06:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 12, 03:40 UTCScheduled - We will be performing scheduled maintenance in ORD (Chicago) datacenter on 2026-08-12 between 07:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting thi...
HubSpot - Some HubSpot tools may be unavailable for some users
Aug 11, 15:45 EDT Resolved - Between 03:16 PM EDT (UTC -04:00) and 03:25 PM EDT (UTC -04:00), many customers in all affected regions experienced issues accessing the CRM Record page. This was caused by a server impairment from a configuration update. As of 03:25 PM EDT (UTC -04:00), our CRM Record page are working properly and the incident has been fully resolved.HubSpot conducts a thorough review after each incident to understand the cause and prevent it from happening again. Learn more about ...
Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
Cybersecurity researchers have discovered a new version of the Kimwolf/AISURU Android and Internet of Things (IoT) botnet that comes with significant improvements to improve its operational resilience and conduct distributed denial-of-service (DDoS) attacks. The new version, tracked as Kimwolf v7, was discovered by Palo Alto Networks Unit 42 in February 2026. "Kimwolf v7 adds an HTTP/2-based
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
Anyone sharing their screen on a Zoom call could have taken over the computers of everyone watching, and anyone watching could have taken over the presenter's. The flaw sat in the annotation tool, the feature that lets participants draw and type on a shared screen, and it asked nothing of the victim beyond being in the meeting. No click, no download, no prompt, and nothing on screen to show it
Zoom - Service Degradation Affecting CX Analytics
Aug 11, 11:27 PDT Resolved - This incident has been resolved and the affected services have been restored. Aug 11, 11:04 PDT Monitoring - The service degradation with CX Analytics that occurred from 15:05 UTC to 17:27 UTC has been successfully resolved. Our team will continue to monitor the situation closely and keep you informed of any further developments. Aug 11, 11:01 PDT Identified - We have successfully identified the root cause affecting CX Analytics.Our team is actively working on a...
CopyEscape: Container-to-host arbitrary file write via docker cp (CVE-2026-17106)
Author here. We discovered a vulnerability in docker cp that allows a malicious container to create or overwrite files on the machine running the Docker CLI. The exploit combines a filesystem race in Docker’s archive creation with unsafe symlink handling during extraction. Depending on the CLI user’s privileges, this can lead to developer-account compromise or root code execution. Docker confirmed...
GitHub - Incident with GraphQL API Requests
Aug 11, 14:50 UTC Investigating - We are investigating reports of degraded performance for API Requests
Zoom - Service degradation with Zoom Contact Center smart note generation impacting a subset of users.
Aug 11, 07:48 PDT Monitoring - On 08/11/2026, Between 13:05 UTC to 14:30 UTC, A subset of users may have experienced issues with Zoom Contact Center smart note generation.This incident has been resolved and the affected services have been restored.
Supabase - MCP connection error to branch environments
Aug 11, 14:37 UTC Investigating - We're currently investigating an issue that is impacting MCP connections to branch environments.
Cloudflare - Cloudflare Analytics Delays
Aug 11, 14:22 UTCInvestigating - Reporting and analytics for the HttpRequestsAdaptiveGroups node is delayed. This will result in failures on dashboard for analytics. We are working to mitigate this problem. More updates to follow shortly.
DocuSign - Document Generation Failures or Latency (Incident 5576)
Aug 11, 13:14 UTC Investigating - We are currently investigating issues where some customers may see latency or failures when generating documents. Engineering teams have been engaged and are actively triaging.
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and incident response. "Built on GPT‑5.6 Sol, it is trained to improve capabilities on several specialized cybersecurity tasks (e.g., finding zero-day vulnerabilities and developing exploit chains) and to reduce refusals for certain higher-risk
Cloudflare - Cloudflare Storage Maintenance
Aug 11, 13:00 UTC Completed - The scheduled maintenance has been completed. Aug 11, 12:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 7, 16:41 UTC Scheduled - Cloudflare has scheduled maintenance for our backend storage systems. Services will continue to operate normally, but customers will be unable to add or remove services via the Dashboard or the public API for a period of up to 3 minutes. This restriction includes all das...
Cloudflare - Increase in Connectivity errors in London, UK
Aug 11, 12:55 UTCResolved - Cloudflare is aware of, and has resolved, an issue within our London datacenter where some traffic may have seen reduced connectivity for a short time. This potential impact window for this was 12:58 UTC to 13:25 UTC. There is no ongoing impact.
CISA Adds Three Known Exploited Vulnerabilities to Catalog
CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-20349 Cisco Secure Firewall Adaptive Security Appliance (ASA) and Firewall Threat Defense (FTD) Heap Inspection Vulnerability CVE-2026-68820 Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability CVE-2026-72898 Metabase S...
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks
Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and organizations across the world. Targets of these attacks include healthcare and public health, financial services, government services and facilities, and professional and nonprofit services. "Gunra is another variant in the ongoing trend of
Cloudflare - STL (St. Louis) on 2026-08-11
Aug 11, 09:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 10, 12:30 UTC Update - We will be performing scheduled maintenance in STL (St. Louis) datacenter between 2026-08-11 09:00 and 2026-08-12 22:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this ...
Cloudflare - Elevated Errors in Fuzhou and Foshan
Aug 11, 05:32 UTC Resolved - This incident has been resolved. Aug 11, 05:22 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 11, 05:22 UTC Identified - The issue has been identified and a fix is being implemented. Aug 11, 05:22 UTC Investigating - Cloudflare is investigating an increase in 5xx errors in Fuzhou and Foshan China. We are working to understand the full impact and mitigate this problem. More updates to follow shortly.
DocuSign - Login Issues in AU region (Incident 5572)
Aug 11, 04:49 UTC Investigating - Some customers may be experiencing issues when attempting to sign in to Docusign in the AU region. Engineering teams have been engaged and we are actively triaging this issue.
Cloudflare - Retro - Increased HTTP 5xx Errors in Singapore
Aug 11, 03:30 UTC Resolved - Cloudflare observed an increased level of HTTP 5xx errors in Singapore from 03:30 AM - 04:00 AM UTC. The issue is currently resolved.
Cloudflare - LHR (London) on 2026-08-11
Aug 11, 01:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 10, 15:00 UTC Scheduled - We will be performing scheduled maintenance in LHR (London) datacenter on 2026-08-11 between 01:00 and 04:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location...
Cloudflare - BCN (Barcelona) on 2026-08-11
Aug 11, 00:15 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 11, 00:10 UTC Scheduled - We will be performing scheduled maintenance in BCN (Barcelona) datacenter on 2026-08-11 between 00:15 and 12:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this locat...
Cloudflare - WAW (Warsaw) on 2026-08-11
Aug 11, 00:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 7, 17:00 UTC Scheduled - We will be performing scheduled maintenance in WAW (Warsaw) datacenter on 2026-08-11 between 00:00 and 07:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location...
[CISA KEV] CVE-2026-20349: Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability
Product: Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) by Cisco Description: Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) contain a heap inspection vulnerability that could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. Required Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
Zoom - ZoomAI Services and Live/Recording Transcription Services Maintenance: August 12, 2026
Aug 10, 15:29 PDT Completed - The scheduled maintenance has been cancelled. Aug 10, 15:28 PDT Scheduled - We plan to have maintenance activity for ZoomAI services, live and recording transcription and translation, to support higher availability and resilience. No operational impact is expected.
GitHub - Disruption with Copilot for access to some models
Aug 10, 20:49 UTC Update - The degradation has been mitigated. We are monitoring to ensure stability. Aug 10, 20:39 UTC Monitoring - We are currently investigating reports of some Copilot users experiencing issues accessing certain models. Affected users may see errors or degraded functionality when attempting to use specific models. We are actively working on a fix and will provide updates as we have more information. Aug 10, 20:27 UTC Investigating - We are investigating reports of impact...
GitHub - Disruption with creation of fine grained personal access tokens
Aug 10, 18:46 UTC Resolved - This incident has been resolved. Thank you for your patience and understanding as we addressed this issue. A detailed root cause analysis will be shared as soon as it is available. Aug 10, 18:22 UTC Update - We identified the source of the issue affecting creation of fine-grained personal access tokens and have applied a mitigation. Users should now be able to create new fine-grained tokens successfully. We are continuing to monitor to confirm full recovery. Aug...
Inside a Russian-speaking operator's toolkit for compromising Ukrainian IP cameras
Hunt.io researchers analyzed two open directories recovered through our Attack Capture system and reconstructed the tooling one operator used to find, exploit, and view internet-exposed cameras in Ukraine. Technical highlights: A custom FastAPI/Docker project the operator named camview, which wraps the open-source Ingram scanner, brute-forces camera credentials over HTTP and RTSP (3,811 pair dic...
Heroku - Resolved: Heroku Feature Degradation
We are aware of an issue that affected the ability to provision new Heroku Data add-ons. To remediate, we completed a rollback of a recent change and validated that all services have been restored. We apologize for how you and your business may have been affected by this incident. We will thoroughly investigate the incident, confirming the technical trigger, the underlying cause, and preventive action to avoid a repeat in the future.
ActiveCampaign - Issue impacting customer logins for a portion of users
Aug 10, 09:53 CDT Monitoring - A fix has been implemented and we are monitoring closely to ensure resolution. Aug 10, 09:33 CDT Identified - The issue has been identified and a fix is in progress. Aug 10, 09:14 CDT Investigating - We are currently investigating an issue impacting customer logins for a portion of users. Affected customers may encounter errors or be unable to access their accounts. Our engineering team is actively working to pinpoint the cause and restore full access as quick...
#StopRansomware: Gunra Ransomware
Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared in 2025 and expanded to RaaS operations in 2026. The actors leverage a double-extortion model, both ...
Cloudflare - Cloudflare Realtimekit API had reduced availability
Aug 10, 11:07 UTC Resolved - Cloudflare became aware of a brief period of reduced availability of the Realtimekit API, between the times 11:07 UTC and 11:13 UTC. This issue has recovered, and no further impact expected.
Sumo Logic - Problem with Logs Alerting and Metrics Alerting in Europe 2 (DE)
Aug 10, 11:04 UTC Resolved - We are no longer seeing issues with Logs Alerting and Metrics Alerting and normal operation has been restored at this time. Aug 10, 09:57 UTC Identified - We have identified the source of the issue affecting Logs Alerting and Metrics Alerting, which are resulting in latency, slowness, or delay in displaying data. We are working on a fix for the problem. Aug 10, 09:55 UTC Investigating - We are currently investigating reports of problems with Logs Alerting and M...
Cloudflare - Issues with 1.1.1.1 public resolver in Tel Aviv (TLV)
Aug 10, 10:15 UTC Investigating - Cloudflare is aware of, and investigating, an issue which potentially impacts multiple users in Tel Aviv that use 1.1.1.1 public resolver. Further detail will be provided as more information becomes available.
Cloudflare - IAD (Ashburn) on 2026-08-10
Aug 10, 10:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 5, 13:00 UTC Scheduled - We will be performing scheduled maintenance in IAD (Ashburn) datacenter between 2026-08-10 10:00 and 2026-08-11 06:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this...
Cloudflare - STL (St. Louis) on 2026-08-10
THIS IS A SCHEDULED EVENT Aug 10, 09:00 - 21:00 UTC Aug 6, 18:20 UTC Update - We will be performing scheduled maintenance in STL (St. Louis) datacenter on 2026-08-10 between 09:00 and 21:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this traffic to fail over elsew...
Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials
Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code (VS Code) extension named Solidity Pro ("solidity-pro") that has been observed delivering a browser wallet and credential stealer. The names of the extensions are below - helper-beeps.solidity-pro web3devtoolsx.solidity-pro Although neither of the extensions is now available on Open VSX, the GitHub repository
Zoom - Announcing IP Address Changes (No Operational Impact)
Aug 9, 23:59 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 9, 10:40 PDT Scheduled - The following new IPv4 subnet ranges will be deployed to Zoom resources for the Zoom Contact Center (ZCC) Flow Script and HTTP Call widgets, as well as the Zoom Virtual Agent (ZVA) Flow Script widget endpoints, starting no earlier than 30 days from the posting of this notice. We recommend that network administrators, with Zoom-specific firewall or...
Expensify - Expensify Site - Degraded Performance
Aug 10, 06:47 UTC Resolved - This incident has been resolved. Aug 9, 22:04 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 9, 22:02 UTC Investigating - We are currently investigating this issue.
Zoom - Network Maintenance in Vancouver Datacenter: August 9, 2026
Aug 9, 23:00 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 27, 12:41 PDT Scheduled - Zoom will perform service maintenance at Vancouver (YVR ) Datacenter. During the maintenance window, Users may experience an impact for a brief amount of time for services mentioned.
OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause
OpenAI has announced that it's pausing some "internal activities" involving its upcoming artificial intelligence (AI) model Astra after an internal evaluation found it had made significant advancements in agentic coding and cybersecurity. In response to the discovery, the AI upstart said it's implementing security controls for higher-capability models and associated activities, such as isolated
Xero - Xero Bank Feeds - scheduled maintenance
Aug 9, 04:00 UTC Completed - The scheduled maintenance has been completed. Aug 9, 02:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 7, 06:44 UTC Scheduled - We’re carrying out scheduled system maintenance to Xero Bank Feeds from 2pm–4pm NZT, Sunday 9 August / 12pm–2pm AEST, Sunday 9 August.This may prevent new bank accounts from being connected. To avoid issues, add your bank account after maintenance ends. Thank you for you...
DigitalOcean - Account Registration, Droplets, and Related Services
Aug 8, 18:57 UTC Investigating - Our Engineering team is currently investigating reports of an issue affecting new account registration, Reserved IPs, Snapshots, Droplets and Droplet-based services across multiple regions.During this time, customers may be unable to create new accounts, create Droplets, allocate Reserved IPs, or perform Automated Backups and Snapshots operations. Droplet Autoscale scaling operations and DOKS cluster operations are also affected.Our Engineering team is actively...
Cloudflare - Connectivity issues affecting access to some website from certain networks in Egypt
Aug 8, 15:52 UTC Identified - Cloudflare has identified a connectivity issue affecting access to some websites from certain networks in Egypt. We are working with external parties to restore network availability. More updates will follow. Aug 8, 14:26 UTC Investigating - Cloudflare is aware of, and investigating a connectivity issue which potentially impacts end-user connectivity in Egypt.More updates to follow shortly.
Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
Attacker-controlled instructions can make Atlassian's Rovo assistant collect Jira or Confluence data that a signed-in user can access, then send it to an outside server. Two security firms found that behavior independently, by different routes. Only one of those routes is confirmed closed. PromptArmor, an AI security firm, hid the instructions in content Rovo reads. It said an uploaded file was
Cloudflare - Network Performance Issues in Istanbul
Aug 8, 08:25 UTC Investigating - We have lost dark fiber in the Istanbul region, we are working to follow up with our vendors to restore connectivity.More updates to follow shortly.
Zoom - Network Maintenance in Vancouver Datacenter: August 7, 2026
THIS IS A SCHEDULED EVENT Aug 7, 23:00 PDT - Aug 8, 03:00 PDT Jul 27, 12:20 PDT Scheduled - Zoom will perform service maintenance at Vancouver (YVR ) Datacenter. During the maintenance window, Users may experience an impact for a brief amount of time for services mentioned.
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
  submitted by   /u/lohacker0 [link]   [comments]
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
  submitted by   /u/lohacker0 [link]   [comments]
Zoom - US West / US East Zoom Phone Maintenance (August 7, 2026)
THIS IS A SCHEDULED EVENT Aug 7, 20:00 PDT - Aug 8, 03:00 PDT Jul 13, 17:47 PDT Scheduled - Zoom will perform service maintenance at our "US West (SJC10)" and "US East (IAD10)" sip zones sequentially starting at 8:00 PM Pacific on August 7th. Zoom Phone users registered to the those sip zones will be automatically registered in the other side sip zone sequentially. During the maintenance window, a brief disconnection may be experienced and notifications may be missed. If you get disconnected,...
Zoom - Zoom Push Notification Service Release
THIS IS A SCHEDULED EVENT Aug 7, 20:00 PDT - Aug 15, 01:00 PDT Aug 5, 02:29 PDT Scheduled - We will be performing scheduled maintenance to upgrade our Push Notification Service.No operational impact is expected. This maintenance includes the following enhancements and improvements:* Ratelimit enhancement* Fixed presence related bugsAll services are expected to operate normally during the maintenance window.
Loggly - Alerting Delay
Aug 7, 13:54 PDT Resolved - On July 12, 2026, we experienced delays in our alerting system, resulting in an interruption to alert processing for some Loggly customers.The issue was traced to a production scheduler service responsible for evaluating and scheduling alerts. Due to resource exhaustion on the host, the scheduler was unable to operate normally, preventing alert jobs from being process downstream.The team restored service by increasing the capacity of the affected host, returning res...
Metabase customers staying silent about the breach
This start of the week Metabase disclosed that its Cloud service was hit through a 0 day which can give an attacker admin access and potentially expose connected database credentials and the data behind them. Metabase is used across a pretty interesting group of fintech and crypto companies too like Revolut, Privy (Stripe company), Yellow Card etc. But what is shocking to me in this whole mess is ...
Cloudflare - R2 Availability Issues
Aug 7, 18:42 UTC Investigating - Cloudflare is aware, and investigating an issue affecting availability in ENAM for a small number of R2 buckets.
DocuSign - Latency and Errors Across NA11 (Incident 5558)
Aug 7, 16:59 UTC Identified - Customers across NA11 are seeing latency and delays across the service. We have identified the underlying issue and are taking action to mitigate the issue.
Sentry - Spans, crons, logs ingestion delayed in US region
Aug 7, 16:48 UTC Monitoring - Ingestion latency for spans, crons, and logs is back to normal levels. Aug 7, 16:30 UTC Identified - We've put a fix in place and are monitoring. We anticipate catching up to ingestion within 1 hour Aug 7, 16:21 UTC Investigating - We are currently investigating the issue
Cloudflare - Worker's Observarbility Issues
Aug 7, 16:04 UTC Investigating - Cloudflare is aware, and investigating reports where a subset of customers are not seeing logs in the Workers Observability dashboard after deploying a new version of a Worker. Affected Workers continue to run and serve traffic normally. Metrics remain available.
Zoom - Network Maintenance in China and Hong Kong Datacenter (August 7, 2026)
Aug 7, 08:00 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 2, 10:21 PDT Scheduled - Zoom will perform network maintenance at our China data center. Below services may be interrupted or unavailable to users in China and Hong Kong during the maintenance.
Cloudflare - Network Performance Issues in Chicago (ORD)
Aug 7, 14:03 UTC Resolved - This incident has been resolved. Aug 7, 13:13 UTC Monitoring - Cloudflare is investigating issues with network performance in Chicago. We are working to analyse and mitigate this problem. More updates to follow shortly.
Zoom - Zoom Contact Center Maintenance - Australia
Aug 7, 04:00 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 13, 03:16 PDT Scheduled - Zoom will perform service maintenance at our Australia (Sydney) data center starting at 09:00 PM AEST (4:00 AM Pacific) on 7th August 2026. Zoom Contact Center users registered to the Sydney data center will be automatically registered in an alternative data center (Melbourne). During the maintenance window, a brief disconnection may be experience...
Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email. "The campaign uses residential proxies to disguise malicious sign-ins as ordinary consumer traffic,
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic's and Google's own coding-agent repositories. On OpenAI's, it was enough to hijack the next agent run. Novee Security ran the attack against each vendor's agent in the configuration that the vendor ships by default, and presented the work at Black Hat USA on August 5.
Cloudflare - SJC (San Jose) on 2026-08-07
Aug 7, 08:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 08:50 UTC Scheduled - We will be performing scheduled maintenance in SJC (San Jose) datacenter on 2026-08-07 between 08:00 and 14:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this locati...
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their sights on the software supply chain. "The connection is supported by overlapping domains, malware deployment paths, staging techniques, backend infrastructure,
Box - [Major] Issues affecting multiple Box services
Aug 6, 19:37 PDT Investigating - Our team is investigating an issue affecting multiple Box services. Users may experience errors or failures when using multiple Box services. We will provide additional information as it becomes available.
Box - [Critical] Issues with Multiple Box Services
Aug 6, 19:06 PDT Resolved - From approximately 6:42 PM to 6:48 PM PDT, we observed an issue impacting multiple Box services. Users may have experienced errors or been unable to complete actions during that time. There is no current impact and no further updates will be provided here. If you continue to experience any issues, please contact Support at https://support.box.com.
Cloudflare - WAW (Warsaw) on 2026-08-07
Aug 7, 00:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 13:00 UTC Scheduled - We will be performing scheduled maintenance in WAW (Warsaw) datacenter on 2026-08-07 between 00:00 and 07:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location...
How I've been hacked by Subdomain Takeover - Shopify - emre.xyz
Disclaimer: While I’m discussing how Shopify could implement better safeguards against this, I fully acknowledge that keeping my DNS clean and removing unused subdomains is ultimately my own responsibility. A stray DNS record from a project I shut down two years ago came back to bite me this week. Out of nowhere, I got a Google Search Console alert letting me know an unknown user (******@gma...