Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
- ID
- 15579
- Status
- summarized
- Published
- 19 Aug 2026, 7:01 PM
- Fetched
- 19 Aug 2026, 8:37 PM
- Provider
- The Hacker News
- Category
- security
- Original URL
- https://thehackernews.com/2026/08/critical-macos-sharepoint-vcenter-and.html
- Source URL
- https://feeds.feedburner.com/TheHackersNews
Summary
- Score
- 8.0
- Created
- 19 Aug 2026, 8:40 PM
- Tags
- Audience
- developerssaas_foundersai_agent_users
What happened
CISA added four critical vulnerabilities (macOS, SharePoint, vCenter, Microsoft IKE) to its Known Exploited Vulnerabilities catalog due to active exploitation. The VMware vCenter flaw (CVE-2026-59310) has been used by a suspected China-nexus APT to deploy Babuk-derived ransomware across 361 IPs, while the Microsoft IKE flaw (CVE-2026-33824) was exploited alongside an AI-enabled autonomous hacking campaign using DeepSeek.
Why it matters
Builders running VMware vCenter or Microsoft SharePoint must patch immediately to prevent ransomware and unauthorized access. The mention of DeepSeek being used for an AI-enabled autonomous hacking campaign signals that threat actors are now actively weaponizing AI agents to exploit known vulnerabilities, shrinking the window builders have to patch.
Discussion angle
How AI models like DeepSeek are being integrated into autonomous hacking campaigns and what this means for the speed and automation of future infrastructure attacks.