Lazarus Windows zero-day, Adobe CVSS 10.0 patches, 737 malicious Chrome VPN extensions
ID: 7229dbab-25c6-5ce7-833c-4fcc0f062b30
STIX ID: report--7229dbab-25c6-5ce7-833c-4fcc0f062b30
Feed Name: defend.network
**Executive summary:** A multi-source briefing reports active exploitation of a Windows zero-day by the Lazarus Group against defense and aerospace organizations across France, Germany, Brazil, and India, highlights Microsoft’s large August Patch Tuesday (398 CVEs) including actively exploited flaws, documents 737 malicious Chrome VPN extensions intercepting user traffic, notes Adobe patches for CVSS 10.0 flaws, and describes the ongoing City-Forum data-theft campaign abusing guest access to Salesforce and ServiceNow.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
