AI Security Digest
Aggregated ecosystem risk analysis
Vendor Watchlist
Tracking 0 critical integrations
Threat Stream Feed
Real-time security logs and system alerts
Cloudflare - Email Security delivery impacted by Spamhaus listing
Aug 12, 15:07 UTCInvestigating - We are continuing to investigate this issue.Aug 12, 15:04 UTCInvestigating - We are currently investigating an issue where customers that use Spamhaus for additional filtering of email downstream from the Cloudflare Email Security service are rejecting emails from IPs in the 134.195.26.0/23 block. This IP block should be allowed for all customer downstream systems to avoid treating the Email Security service as an originator of mail. We recommend all Cloudflare E...
Wix - Issues opening Wix Editors and dashboards
Aug 12, 14:54 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 12, 14:44 UTC Investigating - We are currently investigating this issue.
MongoDB Atlas - MongoDB Atlas: Brief elevated latency during scheduled maintenance.
Aug 12, 14:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 20:32 UTC Scheduled - We will perform planned maintenance on Atlas on August 12th from approximately 14:00 to 17:00 UTC.During this maintenance window, some users may experience slightly elevated latency on operations using the Atlas UI Console and the Atlas Admin API.No impact is expected to customer cluster performance or data.We will post updates when maintenance be...
Akamai - Certificate Provisioning System (CPS) Issues
Aug 12, 13:16 UTC Update - We are continuing to investigate this issue. Customers and partners can find more details on the Akamai Community: https://community.akamai.com/customers/s/feed/0D5a700001NAvXBCA1. We will provide an update as we make progress. Aug 11, 12:05 UTC Update - We are continuing to investigate this issue. Customers and partners can find more details on the Akamai Community: https://community.akamai.com/customers/s/feed/0D5a700001NAvXBCA1. We will provide an update as we ma...
Akamai - Edge Delivery Issues in India
Aug 12, 13:02 UTC Monitoring - We became aware of an issue with Edge Delivery in India related to connectivity issues in the form of latency or connection timeouts that impacted traffic flowing from India to multiple geos. The issue lasted between 11:15 UTC on August 12, 2026, and 11:50 UTC on August 12, 2026. The third-party service provider has implemented a fix and based on current observations, the service is resuming normal operations. Customers and partners can find more details on the Ak...
Sentry - Sentry API timeouts (US)
Aug 12, 12:58 UTC Investigating - We are currently investigating reports of API timeouts for the Sentry API in our US region.
OpenAI, Anthropic, Google API Flaw Let Weaker AI Models Decode Stronger Models' Reasoning
A newly disclosed flaw in the way OpenAI, Anthropic, and Google carried hidden AI reasoning between API calls let researchers recover internal reasoning and secrets from session logs, including API keys and passwords. The weakness affected encrypted reasoning objects used by the providers' reasoning APIs, where a block created in one session could be replayed into another and, during testing,
Sentry - Delayed Error ingestion in our US region
Aug 12, 11:45 UTC Investigating - We are actively investigating this issue.
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws
Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic that, if successfully exploited, could result in arbitrary code execution and privilege escalation. The most severe of the flaws are listed below - CVE-2026-48362 (CVSS score: 10.0) - An operating system command injection vulnerability in ColdFusion that could
Monday.com - Issues with creating sub-items and linked items
Aug 12, 10:42 UTC Resolved - The issue has been successfully resolved. Thank you for your patience Aug 12, 10:38 UTC Monitoring - We're currently experiencing issues with creating sub-items and linking items. Our developers have already identified the root cause, implemented a fix, and are monitoring results to ensure full system stability.
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
Two malicious LiteLLM releases sat on PyPI for about 40 minutes in March carrying credential-stealing code capable of harvesting cloud keys, SSH keys, Kubernetes tokens, database passwords, and other secrets from systems that installed them. Threat intelligence firm CloudSEK now says a dataset it obtained, built from roughly 434,000 files the attackers captured, maps potential exposure to more
Cloudflare - ORD (Chicago) on 2026-08-12
Aug 12, 06:00 UTCScheduled - Maintenance will begin as scheduled in 60 minutes.Aug 12, 03:40 UTCScheduled - We will be performing scheduled maintenance in ORD (Chicago) datacenter on 2026-08-12 between 07:00 and 11:00 UTC. Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting thi...
HubSpot - Some HubSpot tools may be unavailable for some users
Aug 11, 15:45 EDT Resolved - Between 03:16 PM EDT (UTC -04:00) and 03:25 PM EDT (UTC -04:00), many customers in all affected regions experienced issues accessing the CRM Record page. This was caused by a server impairment from a configuration update. As of 03:25 PM EDT (UTC -04:00), our CRM Record page are working properly and the incident has been fully resolved.HubSpot conducts a thorough review after each incident to understand the cause and prevent it from happening again. Learn more about ...
Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
Cybersecurity researchers have discovered a new version of the Kimwolf/AISURU Android and Internet of Things (IoT) botnet that comes with significant improvements to improve its operational resilience and conduct distributed denial-of-service (DDoS) attacks. The new version, tracked as Kimwolf v7, was discovered by Palo Alto Networks Unit 42 in February 2026. "Kimwolf v7 adds an HTTP/2-based
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
Anyone sharing their screen on a Zoom call could have taken over the computers of everyone watching, and anyone watching could have taken over the presenter's. The flaw sat in the annotation tool, the feature that lets participants draw and type on a shared screen, and it asked nothing of the victim beyond being in the meeting. No click, no download, no prompt, and nothing on screen to show it
Zoom - Service Degradation Affecting CX Analytics
Aug 11, 11:27 PDT Resolved - This incident has been resolved and the affected services have been restored. Aug 11, 11:04 PDT Monitoring - The service degradation with CX Analytics that occurred from 15:05 UTC to 17:27 UTC has been successfully resolved. Our team will continue to monitor the situation closely and keep you informed of any further developments. Aug 11, 11:01 PDT Identified - We have successfully identified the root cause affecting CX Analytics.Our team is actively working on a...
CopyEscape: Container-to-host arbitrary file write via docker cp (CVE-2026-17106)
Author here. We discovered a vulnerability in docker cp that allows a malicious container to create or overwrite files on the machine running the Docker CLI. The exploit combines a filesystem race in Docker’s archive creation with unsafe symlink handling during extraction. Depending on the CLI user’s privileges, this can lead to developer-account compromise or root code execution. Docker confirmed...
GitHub - Incident with GraphQL API Requests
Aug 11, 14:50 UTC Investigating - We are investigating reports of degraded performance for API Requests
Zoom - Service degradation with Zoom Contact Center smart note generation impacting a subset of users.
Aug 11, 07:48 PDT Monitoring - On 08/11/2026, Between 13:05 UTC to 14:30 UTC, A subset of users may have experienced issues with Zoom Contact Center smart note generation.This incident has been resolved and the affected services have been restored.
Supabase - MCP connection error to branch environments
Aug 11, 14:37 UTC Investigating - We're currently investigating an issue that is impacting MCP connections to branch environments.
Cloudflare - Cloudflare Analytics Delays
Aug 11, 14:22 UTCInvestigating - Reporting and analytics for the HttpRequestsAdaptiveGroups node is delayed. This will result in failures on dashboard for analytics. We are working to mitigate this problem. More updates to follow shortly.
DocuSign - Document Generation Failures or Latency (Incident 5576)
Aug 11, 13:14 UTC Investigating - We are currently investigating issues where some customers may see latency or failures when generating documents. Engineering teams have been engaged and are actively triaging.
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
OpenAI on Monday unveiled a new cybersecurity-focused model called GPT‑5.6‑Cyber that it said is focused on vulnerability research, penetration testing, and incident response. "Built on GPT‑5.6 Sol, it is trained to improve capabilities on several specialized cybersecurity tasks (e.g., finding zero-day vulnerabilities and developing exploit chains) and to reduce refusals for certain higher-risk
Cloudflare - Cloudflare Storage Maintenance
Aug 11, 13:00 UTC Completed - The scheduled maintenance has been completed. Aug 11, 12:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 7, 16:41 UTC Scheduled - Cloudflare has scheduled maintenance for our backend storage systems. Services will continue to operate normally, but customers will be unable to add or remove services via the Dashboard or the public API for a period of up to 3 minutes. This restriction includes all das...
Cloudflare - Increase in Connectivity errors in London, UK
Aug 11, 12:55 UTCResolved - Cloudflare is aware of, and has resolved, an issue within our London datacenter where some traffic may have seen reduced connectivity for a short time. This potential impact window for this was 12:58 UTC to 13:25 UTC. There is no ongoing impact.
CISA Adds Three Known Exploited Vulnerabilities to Catalog
CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-20349 Cisco Secure Firewall Adaptive Security Appliance (ASA) and Firewall Threat Defense (FTD) Heap Inspection Vulnerability CVE-2026-68820 Microsoft Windows Ancillary Function Driver for WinSock Use-After-Free Vulnerability CVE-2026-72898 Metabase S...
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks
Cybersecurity and intelligence agencies from South Korea and the U.S. warned of Gunra ransomware attacks targeting critical infrastructure sectors and organizations across the world. Targets of these attacks include healthcare and public health, financial services, government services and facilities, and professional and nonprofit services. "Gunra is another variant in the ongoing trend of
Cloudflare - STL (St. Louis) on 2026-08-11
Aug 11, 09:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 10, 12:30 UTC Update - We will be performing scheduled maintenance in STL (St. Louis) datacenter between 2026-08-11 09:00 and 2026-08-12 22:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this ...
Cloudflare - Elevated Errors in Fuzhou and Foshan
Aug 11, 05:32 UTC Resolved - This incident has been resolved. Aug 11, 05:22 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 11, 05:22 UTC Identified - The issue has been identified and a fix is being implemented. Aug 11, 05:22 UTC Investigating - Cloudflare is investigating an increase in 5xx errors in Fuzhou and Foshan China. We are working to understand the full impact and mitigate this problem. More updates to follow shortly.
DocuSign - Login Issues in AU region (Incident 5572)
Aug 11, 04:49 UTC Investigating - Some customers may be experiencing issues when attempting to sign in to Docusign in the AU region. Engineering teams have been engaged and we are actively triaging this issue.
Cloudflare - Retro - Increased HTTP 5xx Errors in Singapore
Aug 11, 03:30 UTC Resolved - Cloudflare observed an increased level of HTTP 5xx errors in Singapore from 03:30 AM - 04:00 AM UTC. The issue is currently resolved.
Cloudflare - LHR (London) on 2026-08-11
Aug 11, 01:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 10, 15:00 UTC Scheduled - We will be performing scheduled maintenance in LHR (London) datacenter on 2026-08-11 between 01:00 and 04:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location...
Cloudflare - BCN (Barcelona) on 2026-08-11
Aug 11, 00:15 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 11, 00:10 UTC Scheduled - We will be performing scheduled maintenance in BCN (Barcelona) datacenter on 2026-08-11 between 00:15 and 12:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this locat...
Cloudflare - WAW (Warsaw) on 2026-08-11
Aug 11, 00:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 7, 17:00 UTC Scheduled - We will be performing scheduled maintenance in WAW (Warsaw) datacenter on 2026-08-11 between 00:00 and 07:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location...
[CISA KEV] CVE-2026-20349: Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) Heap Inspection Vulnerability
Product: Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) by Cisco Description: Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) contain a heap inspection vulnerability that could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition. Required Action: Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.
Zoom - ZoomAI Services and Live/Recording Transcription Services Maintenance: August 12, 2026
Aug 10, 15:29 PDT Completed - The scheduled maintenance has been cancelled. Aug 10, 15:28 PDT Scheduled - We plan to have maintenance activity for ZoomAI services, live and recording transcription and translation, to support higher availability and resilience. No operational impact is expected.
GitHub - Disruption with Copilot for access to some models
Aug 10, 20:49 UTC Update - The degradation has been mitigated. We are monitoring to ensure stability. Aug 10, 20:39 UTC Monitoring - We are currently investigating reports of some Copilot users experiencing issues accessing certain models. Affected users may see errors or degraded functionality when attempting to use specific models. We are actively working on a fix and will provide updates as we have more information. Aug 10, 20:27 UTC Investigating - We are investigating reports of impact...
GitHub - Disruption with creation of fine grained personal access tokens
Aug 10, 18:46 UTC Resolved - This incident has been resolved. Thank you for your patience and understanding as we addressed this issue. A detailed root cause analysis will be shared as soon as it is available. Aug 10, 18:22 UTC Update - We identified the source of the issue affecting creation of fine-grained personal access tokens and have applied a mitigation. Users should now be able to create new fine-grained tokens successfully. We are continuing to monitor to confirm full recovery. Aug...
Inside a Russian-speaking operator's toolkit for compromising Ukrainian IP cameras
Hunt.io researchers analyzed two open directories recovered through our Attack Capture system and reconstructed the tooling one operator used to find, exploit, and view internet-exposed cameras in Ukraine. Technical highlights: A custom FastAPI/Docker project the operator named camview, which wraps the open-source Ingram scanner, brute-forces camera credentials over HTTP and RTSP (3,811 pair dic...
Heroku - Resolved: Heroku Feature Degradation
We are aware of an issue that affected the ability to provision new Heroku Data add-ons. To remediate, we completed a rollback of a recent change and validated that all services have been restored. We apologize for how you and your business may have been affected by this incident. We will thoroughly investigate the incident, confirming the technical trigger, the underlying cause, and preventive action to avoid a repeat in the future.
ActiveCampaign - Issue impacting customer logins for a portion of users
Aug 10, 09:53 CDT Monitoring - A fix has been implemented and we are monitoring closely to ensure resolution. Aug 10, 09:33 CDT Identified - The issue has been identified and a fix is in progress. Aug 10, 09:14 CDT Investigating - We are currently investigating an issue impacting customer logins for a portion of users. Affected customers may encounter errors or be unable to access their accounts. Our engineering team is actively working to pinpoint the cause and restore full access as quick...
#StopRansomware: Gunra Ransomware
Advisory at a Glance Title #StopRansomware: Gunra Ransomware Original Publication August 10, 2026 Executive Summary Gunra is a ransomware-as-a-service (RaaS) used by affiliates to target government, critical infrastructure, and other organizations. The Gunra ransomware variant first appeared in 2025 and expanded to RaaS operations in 2026. The actors leverage a double-extortion model, both ...
Cloudflare - Cloudflare Realtimekit API had reduced availability
Aug 10, 11:07 UTC Resolved - Cloudflare became aware of a brief period of reduced availability of the Realtimekit API, between the times 11:07 UTC and 11:13 UTC. This issue has recovered, and no further impact expected.
Sumo Logic - Problem with Logs Alerting and Metrics Alerting in Europe 2 (DE)
Aug 10, 11:04 UTC Resolved - We are no longer seeing issues with Logs Alerting and Metrics Alerting and normal operation has been restored at this time. Aug 10, 09:57 UTC Identified - We have identified the source of the issue affecting Logs Alerting and Metrics Alerting, which are resulting in latency, slowness, or delay in displaying data. We are working on a fix for the problem. Aug 10, 09:55 UTC Investigating - We are currently investigating reports of problems with Logs Alerting and M...
Cloudflare - Issues with 1.1.1.1 public resolver in Tel Aviv (TLV)
Aug 10, 10:15 UTC Investigating - Cloudflare is aware of, and investigating, an issue which potentially impacts multiple users in Tel Aviv that use 1.1.1.1 public resolver. Further detail will be provided as more information becomes available.
Cloudflare - IAD (Ashburn) on 2026-08-10
Aug 10, 10:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 5, 13:00 UTC Scheduled - We will be performing scheduled maintenance in IAD (Ashburn) datacenter between 2026-08-10 10:00 and 2026-08-11 06:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this...
Cloudflare - STL (St. Louis) on 2026-08-10
THIS IS A SCHEDULED EVENT Aug 10, 09:00 - 21:00 UTC Aug 6, 18:20 UTC Update - We will be performing scheduled maintenance in STL (St. Louis) datacenter on 2026-08-10 between 09:00 and 21:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this traffic to fail over elsew...
Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials
Cybersecurity researchers have flagged a malicious Microsoft Visual Studio Code (VS Code) extension named Solidity Pro ("solidity-pro") that has been observed delivering a browser wallet and credential stealer. The names of the extensions are below - helper-beeps.solidity-pro web3devtoolsx.solidity-pro Although neither of the extensions is now available on Open VSX, the GitHub repository
Zoom - Announcing IP Address Changes (No Operational Impact)
Aug 9, 23:59 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 9, 10:40 PDT Scheduled - The following new IPv4 subnet ranges will be deployed to Zoom resources for the Zoom Contact Center (ZCC) Flow Script and HTTP Call widgets, as well as the Zoom Virtual Agent (ZVA) Flow Script widget endpoints, starting no earlier than 30 days from the posting of this notice. We recommend that network administrators, with Zoom-specific firewall or...
Expensify - Expensify Site - Degraded Performance
Aug 10, 06:47 UTC Resolved - This incident has been resolved. Aug 9, 22:04 UTC Monitoring - A fix has been implemented and we are monitoring the results. Aug 9, 22:02 UTC Investigating - We are currently investigating this issue.
Zoom - Network Maintenance in Vancouver Datacenter: August 9, 2026
Aug 9, 23:00 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 27, 12:41 PDT Scheduled - Zoom will perform service maintenance at Vancouver (YVR ) Datacenter. During the maintenance window, Users may experience an impact for a brief amount of time for services mentioned.
OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause
OpenAI has announced that it's pausing some "internal activities" involving its upcoming artificial intelligence (AI) model Astra after an internal evaluation found it had made significant advancements in agentic coding and cybersecurity. In response to the discovery, the AI upstart said it's implementing security controls for higher-capability models and associated activities, such as isolated
Xero - Xero Bank Feeds - scheduled maintenance
Aug 9, 04:00 UTC Completed - The scheduled maintenance has been completed. Aug 9, 02:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 7, 06:44 UTC Scheduled - We’re carrying out scheduled system maintenance to Xero Bank Feeds from 2pm–4pm NZT, Sunday 9 August / 12pm–2pm AEST, Sunday 9 August.This may prevent new bank accounts from being connected. To avoid issues, add your bank account after maintenance ends. Thank you for you...
DigitalOcean - Account Registration, Droplets, and Related Services
Aug 8, 18:57 UTC Investigating - Our Engineering team is currently investigating reports of an issue affecting new account registration, Reserved IPs, Snapshots, Droplets and Droplet-based services across multiple regions.During this time, customers may be unable to create new accounts, create Droplets, allocate Reserved IPs, or perform Automated Backups and Snapshots operations. Droplet Autoscale scaling operations and DOKS cluster operations are also affected.Our Engineering team is actively...
Cloudflare - Connectivity issues affecting access to some website from certain networks in Egypt
Aug 8, 15:52 UTC Identified - Cloudflare has identified a connectivity issue affecting access to some websites from certain networks in Egypt. We are working with external parties to restore network availability. More updates will follow. Aug 8, 14:26 UTC Investigating - Cloudflare is aware of, and investigating a connectivity issue which potentially impacts end-user connectivity in Egypt.More updates to follow shortly.
Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
Attacker-controlled instructions can make Atlassian's Rovo assistant collect Jira or Confluence data that a signed-in user can access, then send it to an outside server. Two security firms found that behavior independently, by different routes. Only one of those routes is confirmed closed. PromptArmor, an AI security firm, hid the instructions in content Rovo reads. It said an uploaded file was
Cloudflare - Network Performance Issues in Istanbul
Aug 8, 08:25 UTC Investigating - We have lost dark fiber in the Istanbul region, we are working to follow up with our vendors to restore connectivity.More updates to follow shortly.
Zoom - Network Maintenance in Vancouver Datacenter: August 7, 2026
THIS IS A SCHEDULED EVENT Aug 7, 23:00 PDT - Aug 8, 03:00 PDT Jul 27, 12:20 PDT Scheduled - Zoom will perform service maintenance at Vancouver (YVR ) Datacenter. During the maintenance window, Users may experience an impact for a brief amount of time for services mentioned.
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
  submitted by   /u/lohacker0 [link]   [comments]
RovoBlast: How One Click Triggered Atlassian’s AI Assistant to Leak Data
  submitted by   /u/lohacker0 [link]   [comments]
Zoom - US West / US East Zoom Phone Maintenance (August 7, 2026)
THIS IS A SCHEDULED EVENT Aug 7, 20:00 PDT - Aug 8, 03:00 PDT Jul 13, 17:47 PDT Scheduled - Zoom will perform service maintenance at our "US West (SJC10)" and "US East (IAD10)" sip zones sequentially starting at 8:00 PM Pacific on August 7th. Zoom Phone users registered to the those sip zones will be automatically registered in the other side sip zone sequentially. During the maintenance window, a brief disconnection may be experienced and notifications may be missed. If you get disconnected,...
Zoom - Zoom Push Notification Service Release
THIS IS A SCHEDULED EVENT Aug 7, 20:00 PDT - Aug 15, 01:00 PDT Aug 5, 02:29 PDT Scheduled - We will be performing scheduled maintenance to upgrade our Push Notification Service.No operational impact is expected. This maintenance includes the following enhancements and improvements:* Ratelimit enhancement* Fixed presence related bugsAll services are expected to operate normally during the maintenance window.
Loggly - Alerting Delay
Aug 7, 13:54 PDT Resolved - On July 12, 2026, we experienced delays in our alerting system, resulting in an interruption to alert processing for some Loggly customers.The issue was traced to a production scheduler service responsible for evaluating and scheduling alerts. Due to resource exhaustion on the host, the scheduler was unable to operate normally, preventing alert jobs from being process downstream.The team restored service by increasing the capacity of the affected host, returning res...
Metabase customers staying silent about the breach
This start of the week Metabase disclosed that its Cloud service was hit through a 0 day which can give an attacker admin access and potentially expose connected database credentials and the data behind them. Metabase is used across a pretty interesting group of fintech and crypto companies too like Revolut, Privy (Stripe company), Yellow Card etc. But what is shocking to me in this whole mess is ...
Cloudflare - R2 Availability Issues
Aug 7, 18:42 UTC Investigating - Cloudflare is aware, and investigating an issue affecting availability in ENAM for a small number of R2 buckets.
DocuSign - Latency and Errors Across NA11 (Incident 5558)
Aug 7, 16:59 UTC Identified - Customers across NA11 are seeing latency and delays across the service. We have identified the underlying issue and are taking action to mitigate the issue.
Sentry - Spans, crons, logs ingestion delayed in US region
Aug 7, 16:48 UTC Monitoring - Ingestion latency for spans, crons, and logs is back to normal levels. Aug 7, 16:30 UTC Identified - We've put a fix in place and are monitoring. We anticipate catching up to ingestion within 1 hour Aug 7, 16:21 UTC Investigating - We are currently investigating the issue
Cloudflare - Worker's Observarbility Issues
Aug 7, 16:04 UTC Investigating - Cloudflare is aware, and investigating reports where a subset of customers are not seeing logs in the Workers Observability dashboard after deploying a new version of a Worker. Affected Workers continue to run and serve traffic normally. Metrics remain available.
Zoom - Network Maintenance in China and Hong Kong Datacenter (August 7, 2026)
Aug 7, 08:00 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 2, 10:21 PDT Scheduled - Zoom will perform network maintenance at our China data center. Below services may be interrupted or unavailable to users in China and Hong Kong during the maintenance.
Cloudflare - Network Performance Issues in Chicago (ORD)
Aug 7, 14:03 UTC Resolved - This incident has been resolved. Aug 7, 13:13 UTC Monitoring - Cloudflare is investigating issues with network performance in Chicago. We are working to analyse and mitigate this problem. More updates to follow shortly.
Zoom - Zoom Contact Center Maintenance - Australia
Aug 7, 04:00 PDT In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Jul 13, 03:16 PDT Scheduled - Zoom will perform service maintenance at our Australia (Sydney) data center starting at 09:00 PM AEST (4:00 AM Pacific) on 7th August 2026. Zoom Contact Center users registered to the Sydney data center will be automatically registered in an alternative data center (Melbourne). During the maintenance window, a brief disconnection may be experience...
Microsoft 365 AitM Phishing Hijacks Accounts to Collect Payroll and Finance Emails
Cybersecurity researchers have called attention to an active "widespread email-driven phishing campaign" that employs adversary-in-the-middle (AitM) techniques to take control of Microsoft 365 accounts with an aim to identify key personnel involved in financial workflows and gather related email. "The campaign uses residential proxies to disguise malicious sign-ins as ordinary consumer traffic,
Claude Code and Gemini CLI Flaws Let a GitHub Issue Reach CI Workflow Secrets
A GitHub issue opened by an account with no repository privileges was enough to execute code on the CI runners behind Anthropic's and Google's own coding-agent repositories. On OpenAI's, it was enough to hijack the next agent run. Novee Security ran the attack against each vendor's agent in the configuration that the vendor ships by default, and presented the work at Black Hat USA on August 5.
Cloudflare - SJC (San Jose) on 2026-08-07
Aug 7, 08:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 08:50 UTC Scheduled - We will be performing scheduled maintenance in SJC (San Jose) datacenter on 2026-08-07 between 08:00 and 14:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this locati...
TeamPCP Linked To Redis Attacks Dating Back To 2020 And Later Supply Chain Campaign
A new analysis has uncovered that the threat actor tracked as TeamPCP has been active on the cybercrime scene as far back as 2020, indicating the group has been compromising internet-facing infrastructure for years before training their sights on the software supply chain. "The connection is supported by overlapping domains, malware deployment paths, staging techniques, backend infrastructure,
Box - [Major] Issues affecting multiple Box services
Aug 6, 19:37 PDT Investigating - Our team is investigating an issue affecting multiple Box services. Users may experience errors or failures when using multiple Box services. We will provide additional information as it becomes available.
Box - [Critical] Issues with Multiple Box Services
Aug 6, 19:06 PDT Resolved - From approximately 6:42 PM to 6:48 PM PDT, we observed an issue impacting multiple Box services. Users may have experienced errors or been unable to complete actions during that time. There is no current impact and no further updates will be provided here. If you continue to experience any issues, please contact Support at https://support.box.com.
Cloudflare - WAW (Warsaw) on 2026-08-07
Aug 7, 00:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 13:00 UTC Scheduled - We will be performing scheduled maintenance in WAW (Warsaw) datacenter on 2026-08-07 between 00:00 and 07:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location...
How I've been hacked by Subdomain Takeover - Shopify - emre.xyz
Disclaimer: While I’m discussing how Shopify could implement better safeguards against this, I fully acknowledge that keeping my DNS clean and removing unused subdomains is ultimately my own responsibility. A stray DNS record from a project I shut down two years ago came back to bite me this week. Out of nowhere, I got a Google Search Console alert letting me know an unknown user (******@gma...
Slack - Incident: Trouble Using Search Bar For Some Admins
Since approximately 21:00 UTC on August 6, some admins have been unable to click or use the search bar on org dashboard pages. We are aware of this issue and are actively investigating the cause. We'll provide an update in 60 minutes or sooner if additional information becomes available.
DocuSign - Docusign Admin Intermittently Unavailable (Incident 5548)
Aug 6, 20:43 UTC Update - The issue has been identified and we continue our work to implement a fix. Aug 6, 20:14 UTC Identified - We have identified the issue and a fix is being implemented. Aug 6, 20:01 UTC Update - We are continuing to investigate this issue. Aug 6, 19:58 UTC Investigating - We are actively investigating this issue.
DigitalOcean - Functions on App Platform
Aug 6, 20:02 UTC Monitoring - Our Engineering team has implemented a fix for the issue affecting Functions on App Platform. Functions builds/deploys and requests to Functions endpoints should now be completing successfully. We are currently monitoring the situation to ensure the service has returned to normal operation and remains stable.We apologize for the inconvenience and will provide a further update once the incident is confirmed resolved. Aug 6, 19:01 UTC Investigating - Our Engineer...
Datadog - Delayed Processes data
Aug 6, 14:51 EDT Investigating - We are investigating increased latency processing Processes data.As a result of this issue, some users may see delays or gaps for data based on Live Process Monitoring.To prevent false monitor alerts due to delayed data, monitors affected by the delay will not notify and will automatically resume once current data is available. All other monitors will operate normally.
Elastic Cloud - GCP asia-south1 high latency
Aug 6, 17:41 UTC Resolved - On 2026-08-06 between 0900 - 1200 UTC, customers in GCP asia-south1 may have experienced high latency when communicating with their Elasticsearch deployments during this window. The cause has been identified and mitigated.
Canadian Man Pleads Guilty in Snowflake Extortions
A 26-year-old Canadian man once described as one of the most consequential cybercrime threat actors of 2024 has pleaded guilty to computer fraud and conspiracy to hack and extort more than 165 organizations that used the cloud data storage provider Snowflake. Connor Riley Moucka, of Kitchener, Ontario, also admitted to stealing call and text history records of more than 100 million AT&T custo...
Vercel - Delays delivering log drains
Aug 6, 16:58 UTC Update - We continue to investigate this issue and will provide updates as they become available. Aug 6, 16:37 UTC Investigating - We've identified an issue causing delays in log drain delivery. We are investigating and will provide updates as they become available.
Rippling - Delayed sync in integrations
Aug 6, 16:36 UTC Investigating - Several integrations including Ramp and Box are experiencing delays in data syncing. Any changes to the integration are not syncing and admins may see accounts as disconnected. Existing employee access is not affected. Aug 6, 16:12 UTC Identified - Several integrations including Ramp and Box are experiencing delays in data syncing. Any changes to the integration are not syncing and admins may see accounts as disconnected. Existing employee access is not affe...
DigitalOcean - Multiple Services Availability
Aug 6, 16:33 UTC Resolved - Between Aug 6, 06:42 UTC and 09:08 UTC, customers experienced failures with write operations across multiple DigitalOcean services, including Managed Databases, DOKS, Cloud Firewalls, DNS, Spaces, Block Storage Volumes, and event processing.Customers attempting to update Cloud Firewall rules, modify DNS records, manage object storage operations, provision or scale DOKS clusters and node pools, and make other infrastructure configuration changes experienced failures....
Heroku - Resolved: Heroku Retroactive Feature Degradation
Between 11:01 UTC on August 6, 2026 and 13:10 UTC on August 6, 2026, we identified a performance issue affecting Heroku release phase deploys. During this time, some customers experienced delayed completion of release phase commands during deploys, with some remaining in an release phase executing state longer than expected. We have confirmed that the issue is resolved. We apologize for how you and your business may have been affected by this incident. We will thoroughly investigate the incident...
GitHub - Incident with Actions
Aug 6, 15:53 UTC Update - Pages is experiencing degraded performance. We are continuing to investigate. Aug 6, 15:45 UTC Update - We are investigating errors affecting GitHub Actions. Some workflow runs are failing to start or failing partway through, and some requests to the Actions REST API are returning errors. Some customers may also see unexpected rate limiting in their workflows. Engineers have identified the source of the disruption and are actively working on a mitigation Aug 6, ...
GitHub - Incident with Pages - Deployment Lag
Aug 6, 15:50 UTC Monitoring - The degradation affecting Pages has been mitigated. We are monitoring to ensure stability. Aug 6, 15:03 UTC Investigating - We are investigating reports of degraded performance for Pages
Cloudflare - HNL (Honolulu) on 2026-08-06
Aug 6, 12:00 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 6, 10:10 UTC Scheduled - We will be performing scheduled maintenance in HNL (Honolulu) datacenter on 2026-08-06 between 12:00 and 15:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this locati...
ABB Ability Zenon
View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to bypass security, crash systems, execute unauthorized actions, or compromise data. The following versions of ABB Ability Zenon are affected: IIoT services with MongoDB (4.2) installed on ABB Ability Zenon vers:all/* CVSS Vendor Equipment Vulnerabilities v3 7.8 ABB ABB Ability Zenon Improper Handli...
Sentry - Delayed Error ingestion in our US region
Aug 6, 08:59 UTC Investigating - We are actively investigating this issue.
AWS, Google, and Vercel Agent Flaws Let Attackers Trigger Tools Without Running the Model
Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized them. In several of the attack paths, the model never ran at all, so system prompts, content filters, and model-level guardrails never got a chance to intervene. The affected products include Amazon
Cloudflare - SJC (San Jose) on 2026-08-06
THIS IS A SCHEDULED EVENT Aug 6, 08:00 - 16:00 UTC Aug 6, 04:30 UTC Scheduled - We will be performing scheduled maintenance in SJC (San Jose) datacenter on 2026-08-06 between 08:00 and 16:00 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in this location, please make sure you are expecting this traffic to fail over else...
Snowflake Hacker Pleads Guilty Over Breaches Affecting at Least 100 Million People
Connor Riley Moucka pleaded guilty in Seattle federal court on Wednesday to computer fraud, wire fraud, aggravated identity theft and a related conspiracy over the 2024 breaches of Snowflake customer accounts. The intrusions reached at least 165 organizations and exposed records belonging to at least 100 million people. Moucka, 26, of Kitchener, Ontario, personally took at least $495,000 from
does this road map ok for being a junior and what do i have to edit
CYBERSECURITY ROADMAP ↓ 1\Python ├─ Problem Solving ├─ Python Fundamentals ├─ 5–10 Projects └─ Security Automation ↓ 2\Networking ├─ OSI / TCP-IP ├─ TCP / UDP ├─ IP / Subnetting ├─ DNS / DHCP / ARP ├─ HTTP / HTTPS └─ CCNA ↓ 3\Operating Systems ├─ Linux ├─ Windows ├─ Permissions ├─ Processes / Services ├─ Logs ├─ Bash └─ PowerShell ↓ 4\Security Fundamentals ├─ CIA Triad ├─ Authentication / Authoriz...
Cloudflare - BCN (Barcelona) on 2026-08-05
Aug 5, 23:31 UTC In progress - Scheduled maintenance is currently in progress. We will provide updates as necessary. Aug 4, 03:30 UTC Scheduled - We will be performing scheduled maintenance in BCN (Barcelona) datacenter between 2026-08-05 23:30 and 2026-08-06 11:30 UTC.Traffic might be re-routed from this location, hence there is a possibility of a slight increase in latency during this maintenance window for end-users in the affected region. For PNI / CNI customers connecting with us in th...
Elastic Cloud - Elasticsearch 9.5.0 contains a query-correctness defect
Aug 5, 22:59 UTC Identified - Elasticsearch 9.5.0 contains a defect that can cause searches to return incorrect results for any index or data stream that disables indexing on a queried field . A query that excludes values using a must_not clause may fail to exclude them when the targeted field has doc values enabled but is not indexed for search. Affected searches can return documents that should have been excluded and report higher document counts than expected, and results may vary between r...