π Security Pulse Β· 2026-08-30 16:00 UTC
β‘ TL;DR
APT-C-36 state-sponsored malware campaign targeting South America confirmed, posing active espionage risks π΄π΄π΄ Overall threat level remains elevated due to multiple critical software vulnerabilities.
π CYBER THREATS
- Multiple critical GitLab vulnerabilities (CVE-2026-18252, CVE-2026-77801, CVE-2026-7487, CVE-2026-15387, CVE-2026-3035) affecting a wide range of versions risk unauthorized access and privilege escalation in DevOps environments π‘π‘ [1] [2] [3] [4] [5].
- CVE-2026-79619 in Linux OpenZFS allows unprivileged namespaces to gain host-level capabilities, potentially escalating container escape attacks π΄ [6].
- RustDesk remote desktop versions 1.3.9 to 1.4.9 have path traversal and speculative memory allocation flaws (CVE-2026-73102, CVE-2026-73108) enabling code execution and data breach π‘π‘ [7] [8].
- Rently Smart Home (20.1.0 and prior) exposed credentials that could let attackers retrieve PINs, threatening IoT home security π‘ [9].
- Google Cloud BigQuery's CData JDBC driver has improper input validation (CVE-2026-12717) that could enable data exfiltration on affected versions prior to 2026-05-01 π‘ [10].
π‘οΈ NATIONAL SECURITY
- Espionage malware campaign in South America attributed to APT-C-36 detected in malware collections, evidencing ongoing state-sponsored espionage operations in the region π΄π΄π΄.
- No new military movements or critical infrastructure disruptions reported in the last 24h.
β οΈ RISK FLAGS
β οΈ The Linux OpenZFS CVE-2026-79619 vulnerability presents immediate risk of container breakouts in cloud and virtualized environments; mitigation urgent for cloud providers and enterprises using OpenZFS π΄π΄ [6].
β οΈ Persistent unpatched GitLab vulnerabilities across multiple releases allow for privilege escalation and code injection attacks in CI/CD pipelines, elevating threat levels for organizations relying on this platform π‘π‘ [1] [2] [3] [4] [5].
β οΈ Ongoing APT-C-36 espionage targeting South America underscores the need for heightened network monitoring and threat intelligence sharing in this region π΄π΄π΄.
π§ THREAT MOOD
Elevated π‘π‘
The discovery of state-sponsored espionage malware combined with multiple critical vulnerabilities in widely used enterprise tools maintains an elevated threat environment, requiring urgent patching and continued vigilance.
π Sources
- CVE-2026-18252 GitLab has remediated an issue in GitLab EE affβ¦ β @CVEnew
- CVE-2026-77801 GitLab has remediated an issue in GitLab CE/EE β¦ β @CVEnew
- CVE-2026-7487 GitLab has remediated an issue in GitLab EE affeβ¦ β @CVEnew
- CVE-2026-15387 GitLab has remediated an issue in GitLab EE affβ¦ β @CVEnew
- CVE-2026-3035 GitLab has remediated an issue in GitLab EE affeβ¦ β @CVEnew
- CVE-2026-79619 On Linux, several OpenZFS ioctl authorization cβ¦ β @CVEnew
- CVE-2026-73102 RustDesk versions 1.3.9 through 1.4.9 contain aβ¦ β @CVEnew
- CVE-2026-73108 RustDesk versions before 1.4.7 contain an unconβ¦ β @CVEnew
- CVE-2026-75960 Rently Smart Home versions 20.1.0 and prior areβ¦ β @CVEnew
- CVE-2026-12717 An Improper Input Validation vulnerability in Cβ¦ β @CVEnew
Educational & informational only β not financial advice. Markets carry risk; do your own research.
Serial 20260830-16-v55 Β· 2026-08-30 16:00 UTC Β· pulse.uzylab.com