logo

Lazarus Windows zero-day, Adobe CVSS 10.0 patches, 737 malicious Chrome VPN extensions

ID: 7229dbab-25c6-5ce7-833c-4fcc0f062b30

STIX ID: report--7229dbab-25c6-5ce7-833c-4fcc0f062b30

Feed Name: defend.network

Threat Score
90/100

Date Published: 2026-08-13

Date Updated: 2026-08-13

Author: defend.network

...
...

**Executive summary:** A multi-source briefing reports active exploitation of a Windows zero-day by the Lazarus Group against defense and aerospace organizations across France, Germany, Brazil, and India, highlights Microsoft’s large August Patch Tuesday (398 CVEs) including actively exploited flaws, documents 737 malicious Chrome VPN extensions intercepting user traffic, notes Adobe patches for CVSS 10.0 flaws, and describes the ongoing City-Forum data-theft campaign abusing guest access to Salesforce and ServiceNow.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.