IT News Roundup: Patch Tuesday Zero-Day, OpenAI IPO Timeline, Stripe Key Leak - August 21, 2026
Microsoft's August Patch Tuesday fixes an actively exploited Windows kernel zero-day, OpenAI puts a 2027 timeline on its IPO, and leaked Stripe merchant API keys expose data of roughly 688,000 customers.
The past day in IT brought a mix of urgent patching work and major industry moves. Microsoft's August Patch Tuesday closed out with an actively exploited Windows kernel zero-day, while OpenAI put a concrete 2027 timeline on its long-rumored IPO and Marvell tied itself to Google's custom AI chip roadmap with a $12.2 billion share purchase right. On the security front, a critical unauthenticated RCE in the Elementor Pro WordPress plugin and a leak of live Stripe merchant API keys exposing roughly 688,000 customers' data top the list for site operators and fintech teams alike. Elsewhere, hyperscaler earnings show AI workloads driving record cloud growth, and Cursor entered the code hosting market with a GitHub rival.
Microsoft August Patch Tuesday Fixes 421 CVEs, One Exploited Zero-Day
Microsoft released its monthly security update on Tuesday, patching 421 CVEs including a high-severity vulnerability that has already been exploited in the wild as a zero-day. The exploited flaw, tracked as CVE-2026-68820, is a use-after-free bug in afd.sys, the Windows kernel-mode network driver (Ancillary Function Driver for WinSock).
Analysts describe the vulnerability as a local privilege escalation primitive rather than an initial-access vector: attackers who have already established a foothold through phishing, stolen credentials, or malware can exploit it to gain SYSTEM privileges. Attribution points to North Korea's Lazarus Group, which has reportedly used the bug in multi-stage intrusions.
The update also fixes other high-severity issues, including CVE-2026-62889, a critical remote code execution flaw in Windows Secure Socket Tunneling Protocol (SSTP) that can be triggered over the network without authentication or user interaction. Administrators should prioritize patching internet-facing and domain-joined systems immediately.
Sources: SecurityWeek, CrowdStrike
OpenAI CFO: Company "Will Be a Public Company in 2027" or Sooner
OpenAI chief financial officer Sarah Friar told employees during an all-hands meeting on Wednesday that the artificial intelligence lab "will be a public company in 2027," adding that it could make its public market debut sooner if business momentum continues. CNBC reported the internal remarks, citing people familiar with them.
The announcement is the most concrete timeline yet from one of tech's most closely watched potential listings and comes roughly two months after OpenAI confidentially filed its S-1 prospectus. A listing would mark a significant milestone for a company that began as a nonprofit research lab, and analysts note that a wave of major AI IPOs could return substantial liquidity to limited partners and fuel a new venture fundraising cycle.
Marvell Gives Google Right to Buy $12.2 Billion in Shares in Custom AI Chip Deal
Marvell Technology will help develop Google's custom AI chips under a new agreement that also grants the search giant the right to purchase up to $12.2 billion of Marvell shares, according to securities filings reported by Reuters and CNBC on Wednesday.
The deal is the latest example of Big Tech deepening ties with chip suppliers as part of its AI buildout, effectively linking a major customer's equity stake to long-term silicon commitments. Marvell stock jumped roughly 8-10 percent in trading following the announcement.
Critical Elementor Pro WordPress Flaw Allows Unauthenticated Remote Code Execution
Security researchers disclosed a critical vulnerability in the Elementor Pro plugin for WordPress that could allow unauthenticated attackers to upload malicious files and achieve remote code execution on the server. Tracked as CVE-2026-32475 with a CVSS score of 9.0, the flaw is an unrestricted file upload (CWE-434) in the Forms module's file upload field.
Elementor Pro fixed the issue in version 4.2.2. Until sites are updated, administrators should disable the affected upload functionality or the plugin itself and inspect WordPress filesystems and upload directories for unexpected executable files - a common post-exploitation indicator on compromised sites. The vulnerability affects Elementor Pro versions 4.2.1 and earlier.
Sources: The Hacker News, BleepingComputer
Leaked Stripe Merchant API Keys Expose Data of Roughly 688,000 Customers
A threat actor published a roughly 35 GB dataset on the pwnforums data-trading forum on August 18 containing what appear to be live Stripe API keys for 659 merchant accounts along with customer records spanning approximately 688,000 individuals across 42 countries. The archive was posted for free rather than offered for sale.
Analysts say the incident does not appear to involve a breach of Stripe's own infrastructure; instead, the data appears aggregated from vendor-side exposure - misconfigured endpoints and infostealer-harvested credentials at businesses that use Stripe payments. The leak raises the risk of payment fraud against affected merchants and underscores how third-party credential hygiene shapes the fintech attack surface.
Hyperscaler Earnings: Google Cloud Grows 82% as AI Spending Accelerates
Quarterly results show the major cloud providers continuing to pour billions into AI infrastructure, with Google Cloud posting the strongest growth of the three. The unit's second-quarter revenue reached $24.8 billion, up 82 percent year over year from $13.6 billion a year earlier; Azure grew 43 percent and AWS 37 percent.
The growth is not a one-quarter spike - Google Cloud also expanded 63 percent in the first quarter of 2026 - and market research now puts its global cloud infrastructure share at roughly 15 percent, edging closer to Azure. For IT teams, the numbers reinforce that AI workloads are now the primary driver of capacity expansion across all three hyperscalers.
Source: The Motley Fool
Cursor Launches "Origin," a Code Hosting Platform Aimed at GitHub
Cursor, maker of the popular AI code editor, launched Origin, a Git-based code hosting platform aimed squarely at GitHub. The service offers generous free tiers, faster operations, privacy controls, and tight integration with Cursor's editor and AI agents - positioning agent-driven development workflows as its differentiator.
The launch comes amid growing developer frustration with Microsoft-owned GitHub, including rising costs, performance issues, and a string of outages; LeadDev counted 257 in the past year. Origin is designed to work alongside existing GitHub infrastructure, letting enterprises evaluate Cursor's repository capabilities without an immediate migration.
Sources: TechCrunch, DevOps.com
← Back to Blog