Top 5 Cybersecurity News Stories August 21, 2026

Cybersecurity News Stories August 21, 2026: VMware vCenter CVSS 9.8, SharePoint JWT bypass, macOS root exploit, MLflow SSRF, Cisco ASA DoS — five layers.

This week’s Cybersecurity News Stories August 21, 2026 arrives at a moment when the breadth of simultaneous active exploitation across enterprise infrastructure demands attention that goes beyond any single advisory. Within a seven-day window, CISA added five separate vulnerabilities to its Known Exploited Vulnerabilities catalogue across five entirely different product categories: VMware vCenter, Microsoft SharePoint,…

Read More

Medusa Ransomware 500 Victims — What the CISA Advisory Means

Medusa ransomware 500 victims: CISA, FBI and HHS updated their advisory Aug 18. What changed, who's at risk, and how to cut your exposure.

Medusa ransomware 500 victims is now the official U.S. federal tally: CISA, the FBI and the Department of Health and Human Services updated their joint advisory on August 18, 2026, confirming the ransomware-as-a-service group has breached more than 500 U.S. critical infrastructure organizations since June 2021 — up from the 300-plus figure in their original…

Read More

Windows IKE RCE: Patched in April, Exploited Now

CVE-2026-33824 Windows IKE RCE is now actively exploited despite an April patch. CVSS 9.8, no auth needed. See who's affected and what to check today.

CVE-2026-33824 Windows IKE RCE has gone from a quietly patched bug in April to an actively exploited flaw four months later: CISA added it to its Known Exploited Vulnerabilities catalog on August 18, 2026, giving U.S. federal agencies until August 21 to patch — while Microsoft’s own advisory still lists it as not exploited. What…

Read More

Progress LoadMaster CVE-2026-8037: 792 Attacks Logged

Progress LoadMaster CVE-2026-8037 (CVSS 9.6) is on CISA's KEV list after 792 exploit attempts. Unauthenticated root RCE — patch now.

Progress LoadMaster CVE-2026-8037, a CVSS 9.6 unauthenticated command-injection flaw, has already been hit with 792 confirmed exploitation attempts from 65 IP addresses over 41 days — and CISA added it to its Known Exploited Vulnerabilities catalog on August 7. If your load balancer is still running an unpatched build, the scanning has almost certainly already…

Read More

SME Squeeze: NIS2, AI Act, Ransomware Collide

Three regulatory and threat deadlines create an SME squeeze in Germany

On January 7, 2026, the ransomware group Akira hit Buhlmann Group, a Hamburg-based steel and metal trading company with roughly 2,000 employees and €428 million in annual revenue. The attackers made off with about 55GB of data — engineering drawings, HR files, financial records — before anyone at the company could respond. Buhlmann wasn’t an…

Read More