Cyber Security Weekly Newsletter – Outlook RCE, Palo Alto, Cisco 0-day and Windows 0-Day Flaws +20 Stories

Cyber Security Weekly Newsletter – Outlook RCE, Palo Alto, Cisco 0-day and Windows 0-Day Flaws +20 Stories

By Guru Baran
Publication Date: 2026-08-16 16:24:00

This week’s roundup covers a record-setting Microsoft Patch Tuesday, an actively exploited Cisco firewall zero-day, a Lazarus-linked Windows kernel bug, and critical flaws across TP-Link, Palo Alto Networks, Fortinet, and VMware — plus a first-of-its-kind autonomous AI agent “hack” and a DEF CON in-flight Wi-Fi scare.

Ransomware & Threat Actor Campaigns

Gunra Ransomware Exploits Fortinet VPN Flaws to Bypass MFA

A joint FBI, CISA, NSA, and South Korean advisory has exposed the Gunra ransomware group, a Conti-derived double-extortion operation that emerged in April 2025 and has since matured into a full ransomware-as-a-service model rebranded as “Golden Community.” Affiliates gain initial access primarily by exploiting known Fortinet authentication-bypass flaws (CVE-2024-55591 and CVE-2025-24472), in one case tampering with authentication files on a VDI portal so a Gunra-designated one-time password always succeeded, fully neutralizing…