Back to advisories

⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More

Three critical vulnerabilities are under active exploitation: VMware vCenter (CVE-2026-59310) by China-nexus APT for potential ransomware deployment, Windows 0-day (CVE-2026-68820) by Lazarus Group targeting defense contractors with backdoors, and macOS flaw (CVE-2026-65400) distributing crypto miners. Organizations running affected VMware, Windows, and macOS systems are at immediate risk of compromise.

CRITICALAdvisoryAug 18, 2026
Action required
Immediately scan for exploitation of CVE-2026-59310 in vCenter logs and network traffic. Prioritize patching Windows systems against CVE-2026-68820. Hunt for suspicious vCenter admin activity, Windows process execution anomalies, and macOS crypto miner indicators across your environment.
Affected products
VMwarevCenterAppleMicrosoft