Late August tightened around infrastructure and access: Qilin widened its ransomware lead, technology moved into the top victim sector, and the U.S. remained dominant even as its share fell again. Enterprise-facing vulnerabilities clustered around Oracle/WebLogic, SharePoint, vCenter, Zimbra, PaperCut, and NetScaler, while malware activity leaned heavily into stealers, loaders, mobile banking fraud, and remote access.