Skip to content

N-able N-central auth-bypass flaw is under active exploitation; customers told to verify 2026.3.1.7

Share
Source: Badtech.org

N-able’s N-central RMM platform is under active exploitation through an authentication-bypass flaw, with Huntress reporting multiple affected organizations and observed follow-on activity including reconnaissance, process-list requests, and abuse of the Take Control remote-access feature on downstream hosts. N-central is a remote monitoring and management platform used to administer and remotely access systems across customer environments.

Huntress, CRN, and BleepingComputer reported that N-able released N-central 2026.3.1.7, also described as 2026.3 Hotfix 1, and urged customers to upgrade immediately. Later reporting indicates that stopping at the base 2026.3 release was not sufficient after expanded guidance.

Because N-central can execute scripts, jobs, software deployments, and remote-control sessions across managed environments, defenders should verify the actual deployed build, review administrator and configuration changes, and examine Take Control, server, identity, network, and endpoint logs for activity that predates remediation. The supplied reporting tracks the flaw as CVE-2026-18577, while sources disagree on a related earlier identifier.

Sources

Read more

Oracle August 2026 CPU ships 943 patches, including critical unauthenticated flaws in Fusion Middlew

Oracle released its August 2026 Critical Security Patch Update on August 18 with 943 new patches across its enterprise software portfolio, including 262 for Fusion Middleware, 120 for E-Business Suite, and 66 for Commerce. Covered products include WebLogic Server, PeopleSoft Enterprise PeopleTools, Oracle Internet Directory, Oracle Identity Manager, WebCenter,

By Adam Field Source: Badtech.org

Microsoft August Patch Tuesday includes exploited Windows privilege-escalation flaw and two publicly

Microsoft’s August 11 Patch Tuesday addressed hundreds of vulnerabilities across Windows, Office, Azure, Exchange Server, SharePoint, .NET, Teams, and other products. Qualys ThreatPROTECT and CyberHub Podcast counted 421 fixes, while other supplied coverage reported lower totals, with the difference attributed to counting method or update scope. The most urgent

By Adam Field Source: Badtech.org