Threat Intel Bi-Weekly + AI Vuln Monitor | Coverage: August 14, 2026 - August 14, 2026 | Sources: NVD • CISA KEV • Microsoft MSRC • Google GTIG • Palo Alto PSIRT • BleepingComputer • OWASP LLM | Published: Friday, August 14, 2026 -58% vs prior run
[!!] ALERT THRESHOLD BREACHED

CVEs & Exploits

[CRITICAL]

CVE-2026-64633 — Veeam ONE

Critical unauthenticated remote code execution vulnerability (CVSS 10.0) in Veeam ONE 13.0.2.6723 and earlier version 13 builds. Allows remote exploitation without authentication, leading to RCE on Veeam ONE agent host.

REMEDIATION

Upgrade to Veeam ONE 13.1.0.7034 or later immediately. Remove Veeam instances from direct internet exposure. Rotate credentials and conduct forensic analysis on potentially compromised systems.

Source: Web  •  Published: 2026-08-05

[CRITICAL]

CVE-2026-58073 — Veeam Service Provider Console

Critical vulnerability (CVSS 10.0) in Veeam Service Provider Console allowing unauthenticated remote exploitation. Successful exploitation enables credential theft of managed Service Provider Console agents.

REMEDIATION

Apply Veeam security updates immediately. Rotate all Service Provider Console credentials. Implement network segmentation and monitoring for backup infrastructure. Review access logs for signs of compromise.

Source: Web  •  Published: 2026-08-05

AI & Supply Chain

[CRITICAL]

CVE-2025-59145 — GitHub Copilot

Critical prompt injection and RCE vulnerability (CVSS 9.6) in GitHub Copilot enabling theft of source code, API keys, and cloud secrets without malicious code execution. Dubbed 'CamoLeak', this exploit highlights growing threats in AI-assisted development.

REMEDIATION

Apply latest GitHub Copilot security updates. Review AI coding assistant configurations and implement mandatory code review for AI-generated code. Monitor for unauthorized data access. Rotate exposed credentials and secrets.

Source: Web  •  Published: 2026-08-10

[CRITICAL]

NPM-SHAI-HULUD-2026 — npm keyv and cacheable packages

Major npm supply chain attack (Shai-Hulud campaign) compromising maintainer account of keyv/cacheable packages affecting 400+ packages with 2+ billion combined monthly downloads. Credential-stealing malware harvests npm, GitHub, AWS, and HashiCorp Vault secrets. Attacker pushed malicious commits at 9:00 UTC August 4, 2026.

REMEDIATION

Check lockfiles for affected versions immediately. Rotate all exposed credentials (npm, GitHub, AWS, HashiCorp Vault). Audit systems for compromise indicators. Implement supply chain security controls including dependency scanning and SBOMs.

Source: Web  •  Published: 2026-08-04

Threat Actors & Dark Web

[HIGH]

CHINA-PAKISTAN-APT-2026 — Pakistani law enforcement databases

Sustained cyber espionage by China-aligned and India-aligned APTs against Pakistani law enforcement from February 2024-April 2026. Compromised servers hosting biometric records, criminal case files, hotel/tenant registrations, and personnel records at Balochistan Police and other agencies.

REMEDIATION

Enhance security for law enforcement databases with multi-factor authentication and encryption. Implement network segmentation and privileged access management. Conduct comprehensive forensic analysis of compromised systems. Deploy continuous monitoring for APT indicators.

Source: Web  •  Published: 2026-08-12

Priority Action Matrix

01DO NOWCVE-2026-64633 (Veeam ONE): Upgrade to Veeam ONE 13.1.0.7034 or later immediately. Remove Veeam instances from direct internet exposure. Rotate credentials and conduct forensic analysis on potentially compromised systems.
02DO NOWCVE-2026-58073 (Veeam Service Provider Console): Apply Veeam security updates immediately. Rotate all Service Provider Console credentials. Implement network segmentation and monitoring for backup infrastructure. Review access logs for signs of comp...
03DO NOWCVE-2025-59145 (GitHub Copilot): Apply latest GitHub Copilot security updates. Review AI coding assistant configurations and implement mandatory code review for AI-generated code. Monitor for unauthorized data access. Rotate exposed ...
04DO NOWNPM-SHAI-HULUD-2026 (npm keyv and cacheable packages): Check lockfiles for affected versions immediately. Rotate all exposed credentials (npm, GitHub, AWS, HashiCorp Vault). Audit systems for compromise indicators. Implement supply chain security controls...
05TODAYCHINA-PAKISTAN-APT-2026 (Pakistani law enforcement databases): Enhance security for law enforcement databases with multi-factor authentication and encryption. Implement network segmentation and privileged access management. Conduct comprehensive forensic analysis...

Biggest Risk This Period

BIGGEST RISK

CVE-2026-64633: Critical unauthenticated remote code execution vulnerability (CVSS 10.0) in Veeam ONE 13.0.2.6723 and earlier version 13 builds. Allows remote exploitation without authentication, leading to RCE on Veeam ONE agent host.