Home / Aug 29, 2026 / Story
0
#6 The Hacker News general August 28, 2026 at 15:56 UTC

ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body

By [email protected] (The Hacker News)

AI Summary

CISA added CVE-2023-49105 (CVSS 9.8), a critical ownCloud vulnerability, to its Known Exploited Vulnerabilities catalog after a Chinese-speaking threat actor exploited it to target a nuclear research organization in the Philippines and exfiltrate nuclear records. The flaw affects ownCloud file-sharing deployments and has a public CVE with a near-maximum severity score, making unpatched internet-facing instances high-priority targets. Security teams running ownCloud should verify patch status immediately given active nation-state exploitation.

Relevance score: 83.0/100

# More from August 29