CISA published an advisory on critical vulnerabilities in All-Line Equipment Company Fuel-Boss, affecting multiple product versions. Exploitation could allow remote code execution. Fixes are available for some versions, but not all.
Global event network
World
One evolving event. Every credible source. Your language.
The UN Secretary-General warns that the Ebola Bundibugyo outbreak in the DRC requires urgent action and funding, with 500 new cases weekly and the response only 48% funded.
Masked Israeli settlers attacked Palestinians in Qusra, West Bank, trapping residents in homes and injuring several with pepper spray. The IDF intervened but faced accusations of protecting settlers and mistreating Palestinians. Prime Minister Netanyahu condemned the violence.
The UAE intercepted a drone approaching from Iran over its territorial waters and denied reports of an attack on Al Menhad airbase, following renewed US-Iran hostilities.
Hundreds of passengers stranded at Jomo Kenyatta International Airport as aviation workers' strike causes delays and cancellations for second day.
Heavy rains in recent days have caused complex technical failures at several major desalination plants across Israel, leading to significant disruption in the regular water supply nationwide. Infrastructure authorities are working to restore full operation, but urgent demand management is needed to prevent further drops in pressure and emergency reserves.
CISA published an advisory on August 25, 2026, disclosing three vulnerabilities in Bendix EC80 Brake ECU used in commercial vehicles. The flaws include a stack-based buffer overflow, an out-of-bounds write, and use of hard-coded credentials, which could allow an attacker to crash the ECU, execute arbitrary code, inject CAN bus traffic, or disable safety functions like ABS and traction control. Bendix has released firmware updates to address the issues.
CISA published an advisory on August 27, 2026, disclosing two vulnerabilities in the Applied Systems Engineering ASE2000 V2 Communications Test Set (versions 2.25 through 2.37). The vulnerabilities, CVE-2018-1285 (XXE) and CVE-2026-18717 (improper certificate validation), could allow attackers to read/write arbitrary files, issue outbound requests, or intercept and modify TLS-protected communications. The vendor has released version 2.38 to fix both issues. No public exploitation has been reported.
Israeli authorities forcibly entered and seized the UNRWA-run Kalandia Vocational Training Centre in occupied East Jerusalem, affecting hundreds of Palestinian youth.
Somali piracy has surged, with at least 13 ships attacked since January, including two seized in the Gulf of Aden last week. The increase is linked to reduced naval patrols due to the US-Iran war and Houthi blockades, and has led to drone strikes that killed 13 people.