← All briefings

GitLab · Microsoft Azure SQL Database · Incus

Date: 2026-08-22 Prepared for: SOC Analysts | Incident Responders | Vulnerability Management | Security Leadership


Executive Summary

A new npm supply chain attack distributes the AI-powered RedC2 4.0 Linux backdoor via 14 trojanized packages. CVE-2026-19478 (GitLab code injection, CVSS 9.4) is under active exploitation within days of disclosure. CVE-2026-69502 (Azure SQL Database SSRF, CVSS 10.0) and a cluster of critical Incus container manager flaws (CVSS 9.9) were published yesterday. A SynkLoader phishing campaign is actively targeting Microsoft Teams users. Two Berlin Senatsverwaltungen remain offline following a cyberattack.


Critical Vulnerabilities

CVE-2026-19478 — GitLab (Unauthenticated Code Injection / RCE)

  • Severity: CVSS 9.4
  • EPSS: Not yet scored
  • Technical detail: An unauthenticated attacker can inject code to modify or delete publicly accessible GitLab projects and overwrite repository data without authentication, under certain project visibility conditions. Active exploitation began within days of public disclosure, consistent with GitLab’s historically short time-to-exploit window. Self-managed instances are the primary risk surface; GitLab.com is patched.
  • Exploitation status: Actively exploited in the wild — confirmed by watchTowr.
  • Remediation: Apply the latest GitLab security release immediately. Review repository audit logs for unauthorized modifications or deletions. Restrict public project visibility where operationally feasible.

CVE-2026-69502 — Microsoft Azure SQL Database (SSRF / Privilege Escalation)

  • Severity: CVSS 10.0
  • EPSS: 0.0 (newly published; no exploitation observed yet)
  • Technical detail: A server-side request forgery vulnerability in Azure SQL Database allows an unauthenticated network attacker to elevate privileges. CVSS 10.0 with no authentication requirement makes this a critical priority despite the absence of confirmed exploitation. The cloud-hosted nature limits direct customer remediation options, but organizations using Azure SQL should verify Microsoft has applied the service-side fix and review IAM configurations.
  • Exploitation status: No confirmed exploitation at time of writing.
  • Remediation: Confirm Microsoft’s service-side patch is applied (check Azure Service Health). Review Azure SQL firewall rules and IAM role assignments. Monitor for anomalous privilege escalation in Azure audit logs.

CVE-2026-48749 / CVE-2026-48752 / CVE-2026-48753 / CVE-2026-48755 / CVE-2026-62867 / CVE-2026-62941 / CVE-2026-63343 — Incus (Multiple Critical Flaws)

  • Severity: CVSS 9.9 across all entries
  • EPSS: Not yet scored
  • Technical detail: Seven distinct vulnerabilities in the Incus system container and VM manager (LXC project) were published simultaneously. The cluster includes: arbitrary file read/write via crafted images or backup archives (CVE-2026-48749, CVE-2026-48752); S3 endpoint path traversal enabling arbitrary host file creation (CVE-2026-48753); argument injection via backup compression algorithm (CVE-2026-48755); storage volume block.create_options argument injection (CVE-2026-62867); project restriction bypass during cross-project instance copy (CVE-2026-62941); and symlink attack via malicious metadata.yaml (CVE-2026-63343). Collectively these allow authenticated or in some cases unauthenticated container escapes and host compromise. Relevant for any organization using Incus for container or VM orchestration.
  • Exploitation status: No confirmed exploitation; CVSS 9.9 warrants urgent treatment.
  • Remediation: Upgrade Incus to ≥ 7.3.0 (addresses all listed CVEs). Restrict image and backup sources to trusted origins. Audit container configurations for malicious metadata.yaml or crafted storage options.

CVE-2026-61539 — Xorbits Xinference (Unauthenticated RCE via eval())

  • Severity: CVSS 10.0
  • EPSS: Not yet scored
  • Technical detail: Xinference (an open-source inference API for LLMs and multimodal models) passes attacker-influenced Llama3 tool-call output directly to eval() in the model handler. An unauthenticated remote attacker can craft a tool-call response to execute arbitrary Python code on the inference server. Xinference is increasingly deployed in enterprise AI/ML pipelines and research environments. Versions ≤ 2.5.0 are affected.
  • Exploitation status: No confirmed exploitation; CVSS 10.0 unauthenticated RCE in AI infrastructure warrants immediate action.
  • Remediation: Upgrade to Xinference ≥ 2.7.0. Restrict network access to inference API endpoints; do not expose Xinference directly to the internet.

CVE-2026-61400 — Apache CloudStack (Command Injection / Admin RCE)

  • Severity: CVSS 8.8
  • EPSS: Not yet scored
  • Technical detail: A command injection vulnerability in Apache CloudStack’s diagnostics functionality for system VMs and virtual routers allows a remote attacker to execute arbitrary commands. Affects versions 4.14.0.0–4.20.3.0 and 4.21.0.0–4.22.1.0. BSI advisory WID-SEC-2026-2962 covers this and related CloudStack flaws. CloudStack is widely used in European cloud and hosting provider environments.
  • Exploitation status: No confirmed exploitation.
  • Remediation: Upgrade Apache CloudStack to a patched release (≥ 4.20.4.0 or ≥ 4.22.2.0 per vendor guidance). Restrict access to the management API and diagnostics endpoints.

ONGOING:

  • CVE-2026-72529 / CVE-2026-72530 (TrueConf): KEV deadline 2026-08-23 — patch today or block port 4307/TCP.
  • CVE-2026-73570 (Zimbra ZCS): KEV deadline 2026-08-24 — actively exploited; patch and audit for web shells.
  • CVE-2026-77647 (SPIP): Exploited in the wild — upgrade to ≥ 4.4.20; note CVE-2026-77806 (SPIP < 4.4.21, same product) also published — upgrade to ≥ 4.4.21.
  • CVE-2026-32475 (Elementor Pro): CVSS 9.0 unauthenticated file upload — update immediately.
  • CVE-2026-68820 (Windows AFD/Lazarus): KEV deadline 2026-08-25 — apply August Patch Tuesday.
  • CVE-2026-64849 (MLflow SSRF): KEV deadline 2026-09-02 — patch and audit IAM.
  • CVE-2026-69414 (Microsoft Defender ShieldBreak): Unpatched zero-day — monitor MSRC; see also new BTR.sys research below.
  • CVE-2026-19490 (Citrix NetScaler): Patch immediately.
  • CVE-2026-76316 et al. (Splunk): Patch to current release; restrict port 8089.

European Advisories

BSI — New Advisories (2026-08-21):

WID-SEC-2026-2962 (Apache CloudStack — hoch, NEU): Multiple vulnerabilities including command injection enabling admin-level RCE. Covered in Critical Vulnerabilities above.

WID-SEC-2026-2964 (TP-Link Omada Gateway — hoch, NEU): Multiple vulnerabilities enabling arbitrary code execution, information disclosure, file manipulation, and DoS. Apply TP-Link Omada firmware updates; relevant for organizations using TP-Link for branch or campus networking.

WID-SEC-2026-2963 (PTC Windchill / FlexPLM — hoch, NEU): Remote unauthenticated attackers can bypass security controls, execute arbitrary code, and exfiltrate data. PTC Windchill is widely used in manufacturing and engineering environments. Apply PTC patches; restrict external access to Windchill/FlexPLM interfaces.

WID-SEC-2026-2953 (Google Chrome — hoch, NEU): Multiple vulnerabilities enabling privilege escalation, security bypass, possible code execution, and DoS. Update Chrome to the latest stable release.

WID-SEC-2026-2951 (Microsoft Azure / Entra ID / Exchange — hoch, NEU): Multiple vulnerabilities including RCE, privilege escalation, and information disclosure. Includes CVE-2026-69502 (Azure SQL, CVSS 10.0) covered in Critical Vulnerabilities. Apply current Microsoft patches.

WID-SEC-2026-2956 / WID-SEC-2026-2955 (VMware Tanzu Spring Security / Spring Framework — hoch, NEU): Multiple vulnerabilities including RCE, XSS, security bypass, and open redirect. Apply Spring Security and Spring Framework updates; relevant for Java enterprise application deployments.

WID-SEC-2026-2959 (Tor — hoch, NEU): Security bypass, data manipulation, information disclosure, and DoS. Update Tor to the latest release.

WID-SEC-2026-2950 (NoMachine — hoch, NEU): Authenticated remote code execution. Apply NoMachine updates; restrict remote desktop access to trusted networks.

BSI also published updates for Linux Kernel (multiple advisories), Mozilla Firefox/Thunderbird, Rsync, IBM DB2, IBM License Metric Tool, Red Hat Enterprise Linux (mrtg/kbd/urwid), libvirt, and CPython — apply vendor patches per standard cycle.

Heise Security reports Atlassian patched 160+ vulnerabilities in Confluence and related products, including critical RCE flaws. Apply August 2026 Atlassian security updates immediately for all self-managed instances.

Berlin Cyberattack: Two Berlin Senatsverwaltungen remain isolated from the state network following a cyberattack, with ongoing impact on public services including housing benefit payments. (Heise)


Active Threats and Campaigns

NEW — RedC2 4.0 npm Supply Chain Attack: Researchers identified 14 trojanized npm packages masquerading as calendar and streak utilities. On load, each package extracts a bundled binary, marks it executable, and launches it as a detached background process — delivering the AI-assisted RedC2 4.0 Linux backdoor. Any Node.js project or CI/CD pipeline that installed these packages should be treated as compromised. Audit npm dependency trees, rotate secrets accessible from affected build environments, and hunt for unexpected background processes on Linux build agents. (The Hacker News)

NEW — SynkLoader / Microsoft Teams Phishing: A previously undocumented malware family, SynkLoader, is being distributed via Microsoft Teams phishing campaigns. It presents victims with a fake lock screen to harvest credentials. Organizations should enforce Teams external access policies, alert users to unsolicited Teams messages from external senders, and monitor for fake lock screen activity in EDR telemetry. (Bleeping Computer)

NEW — FTP Banner Malware Delivery (E4del / PINHOLE RATs): Threat actors are abusing FTP server banners to embed commands that deliver two undocumented Windows RATs named E4del and PINHOLE. Hunt for anomalous FTP banner content and unexpected outbound connections from FTP servers. (Bleeping Computer)

NEW — Android Car Head Unit Malware: Kaspersky identified malware targeting Android-based vehicle head units (DoFun firmware) spreading via built-in updaters to enable ad fraud and proxy botnet enrollment. Relevant for organizations with fleet management or connected vehicle exposure.

ONGOING — Rust supply chain (arrayref/internment/append-only-vec), Russian OAuth clusters (UNC6293/UNC7005/UNC5976), UAT-10147/SPECTRE, Manic Android malware, ToxicPanda 2.0: No material new developments; prior guidance applies.


Security News and Context

  • Microsoft Defender BTR.sys abuse: Check Point Research disclosed that Microsoft Defender’s legitimately signed BTR.sys boot-time driver can be weaponized to perform arbitrary kernel-level file and registry deletions on Windows 7–11 25H2 with no software flaw required — relevant to CVE-2026-69414 (ShieldBreak). (The Hacker News)
  • 9,300+ active AWS keys exposed: Over 9,300 AWS access keys publicly leaked between 2022–2026 remain valid and grant full corporate account control. (Bleeping Computer)
  • Cisco patches five CVSS 10.0 flaws in Crosswork Data Gateway, Network Controller, Planning, and Secure Workload. (The Hacker News)
  • Unit 42 SDLC supply chain research: New analysis highlights CI/CD pipelines and developer tooling as primary attacker targets, reinforcing the npm and Rust supply chain incidents. (Unit 42)

  1. GitLab (CVE-2026-19478): Apply latest security release immediately — actively exploited within days of disclosure; audit repository logs for unauthorized modifications.
  2. TrueConf (CVE-2026-72529): Patch today — CISA KEV deadline is 2026-08-23. Block port 4307/TCP at perimeter if patch cannot be applied immediately.
  3. Zimbra ZCS (CVE-2026-73570): Apply patches before KEV deadline 2026-08-24; audit for web shells and unauthorized accounts.
  4. Incus (CVE-2026-48749 cluster): Upgrade to ≥ 7.3.0; restrict image/backup sources to trusted origins.
  5. Azure SQL / Entra ID (CVE-2026-69502): Verify Microsoft service-side patch applied; review Azure IAM and audit logs for privilege anomalies.
  6. Xinference (CVE-2026-61539): Upgrade to ≥ 2.7.0; restrict inference API network exposure.
  7. npm pipelines: Audit for RedC2 4.0 trojanized packages; rotate secrets from affected build environments; enforce npm package integrity checks.
  8. Microsoft Teams: Enforce external access restrictions; brief users on SynkLoader fake lock screen phishing; monitor EDR for credential harvesting activity.
  9. Atlassian Confluence: Apply August 2026 Atlassian security updates for all self-managed instances (160+ CVEs patched).
  10. Continue remediation of previously reported items: CVE-2026-68820 (Lazarus/Windows — deadline 2026-08-25), CVE-2026-64849 (MLflow — deadline 2026-09-02), CVE-2026-77647/CVE-2026-77806 (SPIP — upgrade to ≥ 4.4.21), CVE-2026-32475 (Elementor Pro), CVE-2026-19490 (Citrix NetScaler), CVE-2026-76316 (Splunk), CVE-2026-69414 (Defender ShieldBreak — no patch, monitor).