Infosec News Nuggets — August 11, 2026

CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild A deserialization flaw in on-premise JetBrains TeamCity servers is being actively exploited, letting unauthenticated attackers bypass authentication via the agent polling protocol and run arbitrary commands with the privileges of the TeamCity server process. Successful attacks can expose stored credentials and configurations and compromise the integrity of downstream CI/CD build pipelines. Federal civilian agencies were given until August 8 to patch under CISA's…
Read More

InfoSec News Nuggets 12/11/2025

Google Warns of Chrome 0-Day Vulnerability Actively Exploited in the wild Google released an emergency Chrome update to fix a high severity zero day vulnerability that is already being exploited. The Stable channel has been updated for Windows, macOS, and Linux, but technical details of the flaw are being withheld while mitigations roll out.   DeadLock Ransomware Deploys BYOVD EDR Killer by Exploiting Baidu Driver for Kernel-Level Defense Bypass Researchers detailed a new ransomware strain…
Read More