Security News

Urgent: Patch Now — Microsoft, VMware and Apple Flaws Under Active Attack

Security Week · 19 Aug 2026
Key Takeaway Check your Microsoft, VMware, and Apple systems today and install any available security updates immediately—don't wait for your next scheduled maintenance window.

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent alert calling on organisations to patch newly identified security flaws in Microsoft, VMware, and Apple products. These vulnerabilities are already being exploited by attackers in the wild, meaning the risk is not theoretical—businesses using affected software could be targeted right now.

The flaws vary in impact but include serious risks such as remote code execution (allowing attackers to run malicious commands on a device), authentication bypass (letting attackers skip login security), and full device takeover. Given the widespread use of Microsoft, VMware, and Apple products across businesses of all sizes, this alert has broad relevance—not just for large enterprises with dedicated IT security teams.

For Australian small businesses, the message is simple: check whether your systems run any of the affected software and apply updates as soon as they're available. Delaying patches on known, actively exploited vulnerabilities significantly increases the chance of a successful cyberattack, which can lead to data theft, downtime, or ransomware.

Summarised by CISO AI from Security Week. We link back to every original so you can read it yourself.