City-Forum Campaign Exposes Sensitive Data from Global Portals
A recent campaign called City-Forum has been exposing Salesforce and ServiceNow portals around the world for over 17 months. Researchers at Reco discovered that someone had been pulling records from these portals, which are designed to provide secure access to customer data.
The attackers used a domain registered in 2002, abandoned and now resolving to a generic rented server from a German hosting provider. This allows them to gain access to sensitive information without being detected.
N-able has released a second security hotfix for N-central, its monitoring and management solution popular with managed service providers, as attackers continue to exploit CVE-2026-18577. Meanwhile, Framework, the San Francisco-based company that designs repairable laptops, has suffered a data breach after attackers exploited a zero-day vulnerability in the Metabase business intelligence service.
Microsoft's August 2026 Patch Tuesday delivered security fixes for over 400 vulnerabilities, including one being actively exploited in zero-day attacks (CVE-2026-68820). Cisco also fixed a high-severity vulnerability (CVE-2026-20349) that was being used to temporarily interrupt the operation of its firewalls.