Daily Cyber Threat Intel Brief — 2026-08-20
Generated: 2026-08-20 08:00:16 UTC
Executive summary
Priority technology watch items
- Overview On August 19, 2026, a security advisory was published for CVE-2026-19490 , a critical authentication bypass vulnerability affecting Citrix NetScaler ADC and NetScaler Gateway. The vulnerability carries a CVSS v4.0 base score of 9.3 and can be…
- Corrected the Power BI Report Server version in the Security Updates table to use the public release version instead of the internal build number. This is an informational change only.
- The FBI said Tuesday that the Medusa ransomware gang has breached more than 500 critical infrastructure organizations in the United States since June 2021. [...]
- Public RansomLook extortion-site listing claim. Group: the gentlemen. Claimed victim/listing: Babcock. Description excerpt: babcock.co.za rocketreach.co/babcock-international-group-africa-profile_b5cda591f42e0b42 Babcock Africa is a leading engineering and…
Newly exploited vulnerabilities / CVE watch
Ransomware and extortion trend notes
Malware / infrastructure / abuse feed highlights
IOC highlights
| Type | Value | Context | Source |
| cve | `CVE-2026-19490` | CVE-2026-19490: Critical Vulnerability Affecting Citrix NetScaler ADC and NetScaler Gatewa | Rapid7 Blog |
| cve | `CVE-2026-65811` | CVE-2026-65811 Power BI Remote Code Execution Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2026-62705` | CVE-2026-62705 Microsoft Brokering File System Elevation of Privilege Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2026-42912` | CVE-2026-42912 Windows Telephony Service Elevation of Privilege Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2026-65675` | CVE-2026-65675 CoPilot Chat Security Feature Bypass Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2020-1173` | CVE-2020-1173 Microsoft Power BI Report Server Spoofing Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2021-26859` | CVE-2021-26859 Microsoft Power BI Information Disclosure Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2021-41372` | CVE-2021-41372 Power BI Report Server Spoofing Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2023-21806` | CVE-2023-21806 Power BI Report Server Spoofing Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2024-43612` | CVE-2024-43612 Power BI Report Server Spoofing Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2024-43481` | CVE-2024-43481 Power BI Report Server Spoofing Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2026-58647` | CVE-2026-58647 Microsoft PowerBI Report Server Spoofing Vulnerability | Microsoft Security Response Center RSS |
| ipv4 | `50.16.16.211` | Feodo Tracker: 1 recommended botnet C2 IPs listed | Feodo Tracker Recommended Blocklist |
| hash | `9d0b9595b62e70efa9c62d22143bcde3` | RansomLook: usbank.com claimed by lockbit5 | RansomLook Recent Listings |
| hash | `ce605d864c57ff747e7ecd30b1902f299173d3a000f157f0db042e5176388d4d` | RansomLook: sunsea.co.th claimed by krybit | RansomLook Recent Listings |
| hash | `46a64b85d31f0d777b0dc5a91f1600a5e5ae008c53047d5894278928d4da5c2c` | RansomLook: www.mestojilemnice.cz claimed by krybit | RansomLook Recent Listings |
| hash | `82b3572f2dadeca89f06a17fd17a8f05f10e23aff09bfc7071d7b6d29e6238e5` | RansomLook: automotoresrosedal.com.ar claimed by krybit | RansomLook Recent Listings |
| hash | `b4d8eca0770c757d11f65384178d5b5593c9c56b412f43ceab1594beb5de1669` | RansomLook: sipresitalia.it claimed by krybit | RansomLook Recent Listings |
| hash | `5a53eb10748f0117aaad6cba285ba46741fa0ad62a76966d702b51fad300978a` | RansomLook: www.hsi.info claimed by krybit | RansomLook Recent Listings |