CVE Tools

Week in review: Claude accounts compromised through infostealer, Patch Tuesday forecast

Help Net SecurityBy Sinisa Markovic

RoundupClaudeShinyHuntersMicrosoft Exchange

Our summary

This weekly security briefing highlights active exploitation of two zero-day vulnerabilities in SonicWall SMA 1000 appliances, identified as CVE-2026-83548 and CVE-2026-83549. Additionally, Shadowserver Foundation scans reveal that approximately 22,000 Microsoft Exchange servers remain unprotected against critical authentication bypass flaw CVE-2026-62911. The report also covers active targeting of Sangoma Switchvox via recently patched SQL injection defect CVE-2026-9586, alongside broader updates on threats including Claude account compromises via infostealer malware and the September 2026 Patch Tuesday landscape.

Read at Help Net Security

Help Net Security publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store