August 2026 News & Updates

CTC News

  • Labor Day – Cyber Tech Cafe will be closed Monday, 7 September 2026 for Labor Day.
  • MyIT Program Reminder – For businesses running without managed IT, the MyIT Program provides enterprise-level protection without enterprise-level pricing. With no term agreements, you can cancel anytime if you don’t find value. Details available here.

Industry News

  • Microsoft August Patch Tuesday: 400 Flaws, Lazarus Zero-Day – Microsoft’s August Patch Tuesday addressed 400 vulnerabilities including one actively exploited zero-day (CVE-2026-68820) used by the Lazarus Group to deploy the FudModule rootkit. If you haven’t patched, you’re exposed.
  • CISA Warns: SharePoint Flaw Now Used in Ransomware – A previously disclosed Microsoft SharePoint vulnerability is now being actively exploited in ransomware attacks. Ensure your SharePoint servers are fully patched.
  • Cisco ClamAV Critical Flaws – Cisco patched high-severity vulnerabilities in ClamAV with public exploits available. If you use ClamAV for email or endpoint scanning, update immediately.
  • Veeam Backup Critical RCE – PATCH NOW – A critical remote code execution vulnerability in Veeam Backup & Replication allows authenticated domain users to execute remote code on backup servers. If you run Veeam, update immediately and review backup server access logs.
  • FortiGate Firewalls – Gunra ransomware is active and targeting healthcare, government, and financial sectors. US and South Korean agencies jointly warned that it exploits Fortinet and Schneider Electric flaws to breach networks.
  • SonicWALL SMA1000 – CISA confirmed two SonicWall SMA1000 vulnerabilities, including a maximum-severity SSRF flaw, are now being exploited by ransomware gangs. Patch any SMA1000 appliances you manage or take them offline until patched.

Updates

MicrosoftIt almost feels dirty to say but there are only 400 vulnerabilities patched from Microsoft in this month’s Patch Tuesday. Three months ago, that would have been a record breaking month (last month that would have been a record breaking month).

DEPLOY IMMEDIATELY – Microsoft’s August 2026 Patch Tuesday: 400 vulnerabilities patched, including 42 critical bugs and 3 zero-day vulnerabilities (one actively exploited in the wild by the Lazarus Group, two publicly disclosed). The breakdown by category: elevation of privilege, remote code execution, information disclosure, denial of service, security feature bypass, and spoofing vulnerabilities.

Actively Exploited:
CVE-2026-68820 – Windows Ancillary Function Driver for WinSock elevation of privilege. Check Point reports this was exploited by Lazarus Group to deploy FudModule, a kernel-mode rootkit used to maintain persistence on compromised systems.

Publicly Disclosed:
CVE-2026-62832 – Windows User Profile Service elevation of privilege vulnerability
CVE-2026-72971 – Windows Container Isolation FS Filter Driver tampering vulnerability

Microsoft releases regular updates the second Tuesday of each month, often referred to as ‘Patch Tuesday’. These updates are categorized as Low, Moderate, Important or Critical. Details on the categories are available here. The updates can include any supported Microsoft product from Windows to Office to Internet Explorer and server products like Exchange and SQL Server. If you have one or more of these products installed, especially if the update is listed as Important or Critical, it’s important that the updates are installed.

Additional details on this month’s Microsoft updates are available from Bleeping Computer and WindowsLatest.


Adobe has released five security bulletins this month, including updates for Experience Manager, InDesign, and Reader..

Like Microsoft, Adobe now releases updates to their products on the second Tuesday of each month. Adobe will also release ‘out of band’ updates if necessary to address critical vulnerabilities in their products. Adobe products include Adobe Reader (for viewing PDF files), Adobe Flash Player (often used to watch videos, for interactive content like games, etc.), Adobe Shockwave and the Adobe Creative Suite (Photoshop, Illustrator, Acrobat, Lightroom, etc.).

Additional details are available from Adobe Here including links to download the update(s) and instructions for installation.


Need IT Support for your Home or Business? We’d love to help!

Are you a small to medium sized business looking to leverage technology and enable your business and workforce to work smarter and more efficiently? Do you already have computers, servers, firewalls, VPNs or other technology that you’re not taking full advantage of? Are you looking for an IT Service Provider who understands small to medium sized businesses needs and the challenges that we face that can work with you to grow your business rather than just sell you time?

Cyber Tech Cafe is an IT Service Company with a focus on helping small to medium business get the most out of their technology investment. As a small business ourselves, we understand the challenges you face and have designed our service offerings to help you get the most out of your technology dollar. We offer on-call, as needed support if you just need a quick fix or extra set of hands right now. We also offer maintenance plans that we call “MyIT” that are designed to address the most common concerns (patch management, disaster recovery / backup, log review, etc.) that are based on the number of workstations and servers that you have and have no term contract. We believe that, if you find value in what we’re doing, you’ll find a way to keep us around without a contract saying that you have to.

If you have questions about the MyIT plans or have an IT need that you need addressed right now, let us know. We look forward to the opportunity to earn your business.

Article Submitted by Nathan J. Underwood, CEH