HomeWeekly DigestsThis Week
LiveThreat Threat Intelligence

Weekly Threat Intelligence Digest — Jul 06 to Jul 13, 2026

Weekly threat intelligence digest from 398 items (44 critical, 260 high).

July 13, 2026 398 articles analyzed
LIVETHREAT WEEKLY THREAT DIGEST July 06 – July 13, 2026 Across the week the most striking signal was the erosion of the “perimeter” – attackers are no longer breaking in through unpatched software, they are hijacking trusted accounts and supply‑chain components that already have privileged access. From the OAuth device‑code flow phishing that stole Microsoft 365 tokens to malicious npm releases that dropped a Rust infostealer, the attacks converge on the same weak point: privileged third‑party access. Even high‑profile ransomware groups are leveraging compromised admin consoles to amplify impact across dozens of downstream customers. 👉 Access, not a single vulnerability, is the primary risk driver 🚨 EXECUTIVE RISK SNAPSHOT * Supply‑chain as entry point → compromised npm packages, jscrambler release, and malicious GitHub Actions gave attackers code execution across thousands of downstream apps * Privileged credentials amplify damage → hijacked Microsoft 365 device‑code tokens, passkey‑enrollment vishing, and stolen admin keys enabled ransomware or data exfiltration affecting up to 6.9 M records * Untracked assets create blind spots → OT/IoT devices, cloud‑admin accounts and third‑party CI/CD pipelines remain outside most inventory and audit scopes 🔍 WHAT CHANGED THIS WEEK * Phishing has evolved to abuse modern authentication flows (OAuth device‑code, passkey enrollment) that bypass traditional password controls * Supply‑chain compromises now surface in package managers (npm, GitHub) and CI/CD workflows, delivering malware before any code is written * AI‑enabled ransomware (GodDamn, JadePuffer) uses automated exploit chains, reducing dwell time to hours * Government and education sectors see nation‑state actors exploiting legacy webmail (Roundcube) and cloud‑misconfigurations, expanding the attack surface beyond corporate IT 🎯 WHERE YOU ARE MOST LIKELY EXPOSED * Microsoft 365 and Azure AD admin consoles – especially OAuth device‑code and passkey enrollment flows * npm and other public package registries (jscrambler, Injective SDK) that feed code into your build pipelines * GitHub Actions / CI/CD pipelines that have repository‑wide read permissions * Cloud hosting provider admin APIs (AWS, GCP, Azure) used by managed service providers * Identity & Access Management solutions (Okta, Entra ID) that handle MFA and passkey provisioning ⚡ WHAT COMPLIANCE & SECURITY LEADERS SHOULD DO THIS WEEK 1. Map incident vectors to SOC 2 Trust Services Criteria – CC6.1 (System Operations) for privileged‑access abuse, CC6.2 (Change Management) for supply‑chain code injection, and CC7 (Risk Management) for third‑party risk. 👉 Ask: “Can we produce audit‑ready logs that show every admin token issuance this month?” #Compliance #SOC2 #AuditReadiness #Cybersecurity #ThreatIntel #ContinuousCompliance #LiveThreat #VerisqAI

Articles Referenced in This Digest 398 items

Advisory (66)

CriticalWriter AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants
CriticalRogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots
HighProgress Told ShareFile Customers to Pull the Plug on Their Servers. Here’s What We Know.
HighDebian 13.6 security update patches over a hundred advisories in trixie
HighChrome 150 Adds Android Back Button, Major Security Fixes
HighFresh ATM Crypto Software Bugs: Jackpot or Bust?
HighAttackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets
HighLaser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched
HighProgress urges ShareFile admins to shut down servers over “credible” threat
HighCISA Adds Two Known Exploited Vulnerabilities to Catalog
HighMicrosoft is rewriting Windows patch guidance because of AI
HighEuropean Patience With Cybersecurity Laggards Snaps
HighChina Warns of Claude Code ‘Backdoor’ Security Risk
HighHow to Meet a 3-Day Remediation SLA & Comply with CISA BOD 26-04
HighMeta's new AI tool lets others use your Instagram posts for image generation - how to opt out
HighThis iPhone bug won't let me save cropped screenshots - but I found a fix
HighEU takes member states to court over unimplemented cybersecurity law
HighWireshark 4.6.7 patches a dozen security flaws
HighWhy leaving extension cords plugged in permanently is riskier than you realize
HighFalconStor Cloud Clean Room enables validated recovery without dedicated infrastructure
HighEU unveils cyber plan to reduce reliance on foreign AI systems
HighUK Govt Pairs Agentic AI Initiative With Cyber Resilience Pledge
HighGoogle Search Uploads Can Train AI Unless You Opt Out
HighSiemens Mendix Studio Pro
HighCISA Adds Three Known Exploited Vulnerabilities to Catalog
MediumNew York Bans Smart Glasses Across 1,240 Courts
MediumAWS gives its ERP agent deny-by-default rules and a separate identity
MediumWhy Post-Quantum Migration Might Be Bigger Than It Looks
MediumDiscord Bug Wrongly Banned 8,000 Users Over Harmless Images
Mediumnpm 12 Disables Install Scripts by Default to Reduce Supply Chain Risk
MediumMicrosoft expects more Windows security updates from AI-discovered flaws
MediumWhite House Quantum Summit Aligns Industry on Transition, Innovation
MediumYour Windows 11 PC might be hiding a 500GB storage bug - how to check
MediumHow to implement a continuous offensive security testing program
MediumCyber Shield: The path to an agentic AI future for cyber defence
MediumMicrosoft to enable Windows settings backup by default for orgs
MediumUK cyber pledge draws only a handful of top firms despite ministerial appeal
MediumSupreme Court allows Texas app law requiring age verification to take effect
LowClaude Fable 5 stays free for paid users until July 19 as Anthropic buys more time
LowOpenAI temporarily relaxes GPT-5.6 Sol usage limits
LowRed Hat will support your RHEL forever now - for a price
InformationalHumble Brag: Symantec® Data Center Security Achieves Common Criteria Certification
InformationalWorkato expands Agent Studio with Headless API, AI guardrails
InformationalSecuring our future: July 2026 progress report on Microsoft’s Secure Future Initiative
InformationalBarracuda Buys Evo to Build SMB Identity Resilience Platform
LowDuckDuckGo Now Blocks Most Video Ads on Windows, Mac, iPhone
InformationalUK Cyber Resilience Pledge Sets 90-Day Test for Security Leaders
InformationalMicrosoft's new Windows 11 recovery tool is the ultimate Undo button - how to enable it
InformationalAWS centralizes access, spending, and governance for Claude
LowMicrosoft to retire the OWA Light client in Exchange Server
InformationalCyber Essentials Pathways: from proof of concept to cyber confidence
InformationalProtecting Microsoft at AI speed: How SFI proactively hardens our cloud  
InformationalOpenMatter Network Joins HOL Initiative to Help Define Standards for Verifiable AI Collaboration and Security
LowDNSFilter makes its DNS threat protection available to OEM partners
LowDuckDuckGo browser now blocks YouTube video ads
Informational20 open-source cybersecurity tools to keep your team ready for anything
InformationalTips to Harden Your Air Gapped Environments
InformationalCloudflare proudly joins the UK government's Cyber Resilience Pledge
InformationalI enabled Android's new security feature that detects fake cell towers - here's why
InformationalRadware updates Agentic AI Protection with AI governance and compliance capabilities
InformationalMicrosoft testing new Cloud Rebuild Windows 11 recovery feature
InformationalMicrosoft wants to keep your AI agents from going rogue
InformationalAlibaba Bans Claude Code Over Spy-Like Tracking Code
InformationalRCS and DNS: The NAPTR Record, (Mon, Jul 6th)
Informational5 insights from Frost & Sullivan’s 2025 Frost Radar™ for Cloud Security Posture Management
InformationalInsignary Closes SBOM Accuracy Gap With Binary-Level Clarity for Regulatory Risk

Breach (45)

CriticalChinese Cyberespionage Exploits University Roundcube Servers
CriticalHackers Breach Sensitive DHS Information-Sharing Network
HighSECURITY AFFAIRS MALWARE NEWSLETTER ROUND 105
HighSecurity Affairs newsletter Round 585 by Pierluigi Paganini – INTERNATIONAL EDITION
HighWeek in review: Accenture data breach, great open-source cybersecurity tools
HighHackers Weaponize Balochistan Police Portal in Multi-Group Espionage Campaigns
HighCompromised jscrambler 8.14.0 npm Release Drops Rust Infostealer During Install
HighExposed Server Reveals 25,000 Compromised WordPress Websites
HighGlendale Community College - 793,925 breached accounts
HighDutch police trace Odido telco cyberattack to suspected local accomplice
HighChina, India ran separate spying campaigns against same Pakistani police force
HighInjective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages
HighMoney launderer accused of stealing seized crypto while in prison
HighPolice suspects Dutch hackers were involved in Odido breach
HighInjective SDK on npm infected with cryptocurrency wallet stealer
HighOpenMandriva Linux says contributor tried to sabotage the project
HighAssuranceAmerica Data Breach: 6.9M Driver’s License Numbers Exposed
HighAI Gateway Connected to Amazon Bedrock Hijacked for Cryptomining
High 6.9 million driver’s license numbers stolen from AssuranceAmerica
HighAI Gateways Offer Attackers the Keys to the Kingdom
HighOne Target, Two Flags | Rival Espionage Actors Converge On Pakistani Law Enforcement
HighExtortion crew hijacks Microsoft 365 accounts via fake passkey setup
HighThreatsDay: Cloud Bucket Hijacking, Windows LPE Chain, Global Fraud Bust + 17 More Stories
HighAssuranceAmerica data breach exposes records of 6.9 million drivers
HighNew Helix vishing group emerges in SharePoint data theft attacks
HighAssuranceAmerica Breach Exposes 7 Million Driver’s Licenses After Employee Account Hack
HighLone Attacker Uses AI to Breach AWS Cloud Environment in 72 Hours
HighMount Royal University confirms breach as hackers claim attack
HighCash App owner to pay $45 million to settle allegations of lax security
HighHacker Claims Accenture Breach Exposed Source Code, SSH Keys, and Azure Tokens
HighA Hacker Claims 35 GB of Accenture Source Code. The Company discloses the data breach
HighAccenture acknowledges security incident following 35GB data theft claim
HighTelco giant KDDI says data breach affects over 12 million people
HighUNK_MassTraction Exploits Roundcube Flaws Against US, Canadian Universities
HighAccenture confirms breach after hacker offers stolen data for sale
HighAtrium Health to Pay $1.8M to Settle Web Tracker Lawsuit
High16-30 June 2026 Cyber Attacks Timeline Infographic
HighTwo arrested over credit card phishing – as the Netherlands is named Europe’s worst for payment fraud
HighCourt Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker
HighDEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts
HighMajor Japanese telco says cyberattack exposed 12 million emails
HighHome Medical Gear Firm Tells SEC Hackers Stole Patient Data
HighDHS Confirms Breach of Homeland Security Information Network
HighJapanese teen arrested over cyberattack that disrupted anime streaming service
HighMajor medical device manufacturer notifies nearly 4 million of breach

Ransomware (9)

CriticalFormer ransomware negotiator gets 4 years for BlackCat attacks
HighRyuk Ransomware Member Pleads Guilty Over Attacks on U.S. Organizations
HighCybersecurity Negotiator Gets 70 Months for Helping BlackCat Extort Victims
HighRyuk operator pleads guilty; Blackcat/AlphV conspirator gets nearly 6-year sentence
HighRansomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
HighRyuk ransomware member pleads guilty in the US, faces 15 years in prison
HighGodDamn Ransomware: Latest Beast Rebrand Uses Malicious Driver to Disable Defenses
High'GodDamn' Ransomware Uses BYOVD to Smite US Companies
High⚡ Weekly Recap: Proxy Botnets, Browser Ransomware, AI Agent Tricks, Fake PoC Malware and More

ThreatIntel (185)

HighSomeone Is Scanning for Your MCP Servers and AI Assistant Credentials, (Mon, Jul 13th)
HighRedHook Android malware now uses Wireless ADB for shell access
HighAustralia warns of global campaign targeting vulnerable CMS platforms
HighNo Manners Here: The Ruthless Rise of The Gentlemen Ransomware
HighURGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat
HighOpenAI Hardware Biz Built with Apple Secrets, Apple Says
High This new Windows malware can take over your PC and wipe it clean
HighMassive Telstra Outage Hits Mobile Networks, Rail, and Payments in Australia
HighClaude Code Espionage Campaign Exposes a New Enterprise AI Risk
HighLicense plate cameras may be next target after Supreme Court reins in location tracking
HighEurope revives law allowing big tech to scan for CSAM
High"Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th)
HighCybercriminals Flock to Healthcare Businesses as Attacks Surge
HighMost data brokers won’t tell you what happened to your deletion request
HighThe open source library holding up your stack might have one maintainer
HighHackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access
HighStudy of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking
HighExposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
HighFrom 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at Scale
HighNew MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic
HighThe Replicant in Your Directory: AI Agents and the Identity Security Gap
HighAnthropic Tops AI Safety Index, Despite a C+ Grade
High How mule betting scams recruit ordinary people
HighGigaWiper Merges Three Malware Families Into One Destructive Backdoor
High222 GitHub Repositories Linked to Fake Go Package Malware Operation
HighRansomware Never Stopped: Over 9,000 Confirmed Attacks Since 2018
HighAI Agents Are a New Kind of Identity & Most Organizations Aren't Ready
HighIran's Cyber Crosshairs Focus Beyond Critical Infrastructure
HighOnly 28% of financial workforce MFA is phishing-resistant
HighTurning software supply chain security into a daily habit
HighNew GigaWiper Windows Backdoor Bundles Disk Wiping, Fake Ransomware, and Spyware
HighDormant GitHub Accounts Help Attackers Blend In While Mapping Corporate Orgs
HighBreach Roundup: Hush, Don't Talk About the Data Breach
HighWhy we cannot wait for better post-quantum signature algorithms
HighWinning 54% of the time
HighGodDamn Ransomware Uses PoisonX to Blind Security Software
HighINTERPOL Operation First Light Nets 5,811 Arrests and Seizes $293 Million
HighMicrosoft Warns of GigaWiper Backdoor Built to Destroy Windows PCs
High Turn off this Meta setting before someone generates AI images of you
High How World Cup crypto prediction sites take your money
HighInvited to a “job interview” with Netflix or OpenAI? Beware! Your Google password could be at risk
HighAs Global Conflicts Go Digital, Businesses Need Wartime Gameplans
HighYour Tenda router could have a hidden firmware backdoor - disable this setting ASAP
HighMicrosoft goes all in on new AI-powered Windows security strategy - what it means for you
HighYour coding agent says no in chat and yes in the code
High5,811 arrests, $293 million seized over social engineering scams
HighMeta's New AI Image Tool Lets Others Use Your Public Instagram Photos in AI Images
HighGodDamn Ransomware Uses PoisonX Driver to Disable Endpoint Defenses
HighAI Attacks Move in Minutes. Join This Webinar on Building a Defense That Keeps Up
HighPolice arrests 5,800 suspects in global anti-fraud crackdown
HighThe Hidden Security Risks of Reduced Summer IT Coverage
HighNew Forg365 phishing platform uses AI to target Microsoft 365 accounts
HighLatvian forestry company still restoring systems weeks after ransomware attack
HighCryptohack Roundup: US SEC Eyes July Crypto Rule Proposal
HighGigaWiper: Anatomy of a destructive backdoor assembled from multiple malware
HighFake VPN and 7-Zip Apps Turn Victims Into Residential Proxy Nodes
HighSmashing Security podcast #475: JadePuffer – the AI that ran a ransomware attack all by itself
HighMessaging fraud trends point to smarter attacks, stronger blocking
HighThe fake report message that ends with a stolen Reddit account
HighMalicious AI agent skills can slip past the scanners built to stop them
HighFake 7-Zip Installers Turn Devices Into Residential Proxy Nodes
HighFake Paysafe, Skrill SDKs on NPM and PyPi steal credentials
HighWhat's in a Name? The Quest to Understand Scattered Spider
HighOpenAI Readies GPT-5.6 for Public Launch After Federal Testing
HighAustralia’s Teen Social Media Ban Exposes Age Verification Gap
HighFake Job Offers Impersonate Netflix, OpenAI, and FIFA to Steal Google Credentials
HighArmored Likho Hits Government, Energy Sectors With BusySnake Stealer
HighThe Threat Isn’t the Frontier Model
HighCybersecurity and the Gap Between Skill and Ability
HighFortiBleed: Credential Reuse, Legacy Hashes, and the Risk of Internet-Exposed FortiGate Devices 
HighWhen AI-Accelerated Discovery Outruns Patching, Exploitability Proof Decides What Gets Fixed First
HighVidar Infostealer Hammers SMBs via Malvertising Campaign
HighFirst Recon AI Security Runtime helps enterprises govern AI with audit-ready evidence
HighBlackpoint AI SOC Agent autonomously contains identity-based attacks
HighChina-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware
HighGitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code
HighThe Verification Step Is the New ATO Battleground in 2026
HighSCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users
HighNew Ghost Phishing Wave Is Breaking Traditional Email Security
HighNew HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware
HighAI Coding Agents Found Triggering Endpoint Security Rules Built to Catch Attackers
High3 Ways AI Powers Service Desk Attacks and How to Prevent Them
HighEntra passkey enrollment vishing targets Microsoft 365 users
HighSpain arrests alleged supporter of pro-Russian hacktivist groups after FBI tip
HighFormer UK privacy chief preparing legal action against woman who reported him, minister says
HighTaiwan charges two businessmen over alleged role in Chinese espionage campaign
High Your next car could be watching your face
HighThis Popular Antivirus is on Sale for $19.99
HighCISA Deploys Anthropic’s Mythos AI to Hunt Vulnerabilities in U.S. Government Code
HighTelegram-Hosted RedWing Malware Lets Anyone Rent Android Spyware Tools
HighVidar Stealer Unmasked: Code Signing Abuse, Go Loaders and File Inflation
HighBig Brand Jobs Scam Targets Marketing Pros' Google Accounts
HighOpenAI and Anthropic are pulling in different directions
HighChinese hackers develop LONGLEASH malware to expand ORB network
HighThe Most Elusive Criminal Quality: Anonymity
HighEU Pushes for Domestic AI Momentum
HighInvestors Accuse Oracle of Hiding OpenAI Financial Risks
High Claude Code’s hidden tracker was an “experiment,” says Anthropic
High Fake Netflix, Coca-Cola, and FIFA job scams target marketers
High How the Reddit and Discord false report scam steals accounts
HighSpanish Police Arrest Man Linked to CARR, Z-Pentest, and NoName057(16)
High7 Arrested Over World’s Top Anime Piracy Site HiAnime
HighGoogle Is Suing Chinese Scammers Who Are Using Gemini
HighUAT-7810 continues building ORB networks using new malware
HighWhy this fully agentic ransomware attack is giving researchers nightmares
HighProcess Parameter Poisoning
HighPublic GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data
HighRedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service
HighWebinar tomorrow: Why modern email attacks require a new approach to defense
HighThe GitHub Actions Attack Pattern Your CI Security Scanners Miss
HighSpain arrests suspected member of pro-Russian hacktivist groups
HighBritain plans to build autonomous AI 'Cyber Shield' to defend nation
HighAI Sovereignty Is a New Test for Enterprises
HighSelling Cyber: Anthropic's Fable 5 Raises Security Tradeoffs
HighSpain Arrests Suspected Russian Hacktivist After FBI Tip
HighAI-Generated Malware Powers New Armored Likho APT Campaign
High16-30 June 2026 Cyber Attacks Timeline
HighOne Email Closer to the Edge: UNK_MassTraction & the Physics of Exploitation
High'BusySnake' Infostealer Slithers into Critical Infrastructure Networks
HighPower shortages could slow AI data center expansion
HighIran-Linked Hackers Use New Cavern C2 Framework to Target Israeli Organizations
HighVietnam arrests suspects behind HiAnime anime piracy service
HighFake IT support calls on Microsoft Teams push EtherRAT malware
HighPhishing poses as big-brand job interview to steal Google accounts
HighAttackers vote themselves $20 million in BONK cryptocurrency
HighCanadian spy agency reports hacking three criminal groups in 2025
High How to tell if an image is AI-generated
HighAzure CLI Password Spray Attack Exposes Microsoft 365 MFA Gap
HighHidden Web Prompts Trick AI Agents Into Sending Money
HighClickFix Scams Abuse Google, Cloudflare Checks to Deliver 7 Malware Families
HighFBI and Spanish Police Arrest Alleged Cyber Army of Russia Reborn Member
HighWhen checking the URL isn’t enough: a Device Code Phishing attack via a Microsoft website
HighHow to prioritize AI agent security by business impact
HighSkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing
HighNew Java-Based QuimaRAT MaaS Built to Run on Windows, Linux, and macOS
HighNew TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions
HighSuspected China-Nexus Hackers Use Fake Indian Tax Filing Utility to Deploy DcRAT
HighUkrainian media outlets now among 'priority targets' for Russian hackers
High NetNut botnet takes a hit. Don’t be part of the next one.
HighAI Can Forge Documents in Minutes – “Looks Right” Is No Longer Enough
MediumMore Countries Jump on the Social Media 'Ban Wagon'
MediumJune 2026 Cyber Attacks Statistics Infographic
MediumEuropean Organizations Have a Collaboration Security Confidence Gap
MediumRiskX interview video featuring Colin Mahony and Mastercard's Aditi Sawhney
MediumI found an Android launcher so good that I don't miss Nova anymore
MediumNetSPI pairs AI pentesting with expert-validated security findings
MediumVectogate debuts platform to secure and govern autonomous AI agents
MediumCitrix launches MCP Gateway to secure enterprise AI agents
MediumNSA revives 'Tailored Access Operations' name for elite hacking unit
MediumMexico's New Cyber Plan Faces Its First Real Test
MediumA single malware file can outweigh an entire AI dataset
MediumOpen-source collaboration is growing worldwide and putting pressure on maintainers
MediumOpenAI’s New GPT-5.6 Is Coming Sooner Than You Think
MediumWeekly Update 511: Live from my Riad in Marrakech
MediumMy Stack Simulator, (Wed, Jul 8th)
MediumState IDs for AI Agents: Will Estonia Set a Precedent?
MediumAI Chatbot Warnings May Not Stop Hallucinations, Researchers Say
MediummacOS is becoming a proving ground for AI agents
Medium Scammers are using AI to sell impossible flowers
MediumSharpHound Recon Attack – How AI enhanced the threat hunt
MediumThreat landscape for industrial automation systems. Q1 2026
MediumResearchers make the case for a cybersecurity AI scientist
MediumCommvault measures cyber recovery readiness with AI attack simulations
Medium Choose your WhatsApp username carefully
MediumFrom Image-to-3D to AI Agents: How AI 3D Generation Operates in 2026
MediumIs Your AppSec Program Built to Close the OWASP Top 10 2025 Coverage Gap? 
InformationalISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th)
InformationalIncode brings on-device processing to age estimation for privacy-focused verification
InformationalISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th)
InformationalJune 2026 Cyber Attacks Statistics
InformationalI use Android Auto in my living room now - and it solves ones of my biggest productivity problems
InformationalISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th)
LowAnthropic Sues Abnormal AI Over Alleged Brand Copying
InformationalOperationalizing Day Minus Seven: The Cloud-Native ROC
InformationalIBM and Red Hat launch Lightwell to defend open-source code from AI attacks
InformationalCensys Internet Map links real-time DNS data to internet infrastructure
InformationalNordVPN, 1-Year Subscription for 10 Devices is Only $30 With This Code
InformationalISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th)
InformationalMore Odd DNS Records: NIMLOC, (Tue, Jul 7th)
InformationalPicus Autonomous Exposure Validation Platform validates real-world CVE exploitability
InformationalQualys Joins Cisco Cloud Control Studio as a Launch Partner to Bring Risk Intelligence to Agentic Operations
InformationalISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th)
InformationalISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th)
InformationalI sideloaded 3 apps into my Android Auto, and they've made my drives so much easier
InformationalCriminal IP integrates threat intelligence with OpenCTI for automated indicator enrichment

Vulnerability (93)

CriticalCritical U-Boot Bugs Undermine Secure Boot on Millions of Devices
CriticalU.S. CISA adds iCagenda and Balbooa Forms flaws to its Known Exploited Vulnerabilities catalog
CriticalCritical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions
CriticalUpdate Now: Critical Zimbra Classic Web Client Flaw Could Expose Mailboxes
CriticalJune 2026 CVE Landscape
CriticalZimbra urges customers to patch critical web client XSS flaw
CriticalHackers exploit critical auth bypass in Gitea Docker image
Critical Two Chrome updates in two days fix critical vulnerabilities
Critical Microsoft fixes RoguePlanet zero-day in Defender
CriticalOpenPLC v3
CriticalHidden Backdoor Found in Tenda Router Firmware
Critical[webapps] Langflow 1.9.0 - RCE
CriticalGhostApproval Symlink Flaws Could Let Malicious Repos Run Code in AI Coding Agents
CriticalMicrosoft patches RoguePlanet Defender zero-day vulnerability
CriticalHidden Backdoor in Tenda Router Firmware
CriticalUbiquiti Patches Critical UniFi OS Flaws Allowing Command Injection and Privilege Escalation
CriticalCISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV
CriticalUbiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS
CriticalCISA orders feds to patch max severity ColdFusion flaw by Friday
CriticalUbiquiti warns of new max severity UniFi OS vulnerability
CriticalU.S. CISA adds Adobe ColdFusion, Joomlack Page Builder, Langflow, and JoomShaper SP Page Builder flaws to its Known Exploited Vulnerabilities catalog
Critical[webapps] WordPress Bricks Builder Theme - RCE
Critical[webapps] Discuz! X5.0 - Authentication Bypass
Critical[webapps] MCPJam Inspector - Remote Code Execution
CriticalCritical Gitea Docker Bug Under Active Exploitation Exposes Repositories and Secrets
CriticalAttackers exploit critical Adobe ColdFusion vulnerability (CVE-2026-48282)
CriticalBeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA
CriticalSuspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities
CriticalBeyondTrust warns of critical flaws in remote access software
CriticalNew Januscape Linux flaw allows VM escape on Intel, AMD devices
CriticalHydro-Québec Le Circuit Electrique charging station backend
CriticalSiemens SINEC OS
CriticalJanuscape: 16-Year-Old Linux KVM Bug Enables Cloud VM Escape Attacks
CriticalHidden Tenda Router Backdoor Grants Admin Access, No Patch Available
Critical[webapps] KeepInMind 0.8.4.2 - Stored XSS
CriticalAdobe ColdFusion flaw CVE-2026-48282 now exploited in the wild
CriticalThreat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure
CriticalMax severity Adobe ColdFusion flaw now exploited in attacks
CriticalBad Epoll Flaw Gives Attackers Root Access on Linux and Android
HighNew U-Boot flaws could enable stealthy firmware attacks
HighFriday Squid Blogging: “Squidbleed” Vulnerability
HighJuly 2026 Patch Tuesday forecast: Is CVE tracking still practical?
HighUnpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers
HighResearcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws
HighSix New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot
HighAI Coding Tools Can Fake Approval Prompts
HighMicrosoft Reins in RoguePlanet Zero-Day Threat
HighWolfSSL, GeoVision, VTK vulnerabilities
HighMicrosoft releases fix for RoguePlanet Defender flaw (CVE-2026-50656)
HighMicrosoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges
HighMicrosoft fixed Defender flaw RoguePlanet (CVE-2026-50656)
HighGhostApproval Flaws Let Top AI Coding Tools Write Outside Workspaces
High[webapps] Krayin CRM v2.2.x - Authenticated Remote Code Execution
HighTop AI Agents Built to Catch Malicious Code Can Be Tricked Into Running It
HighZDI-26-398: (0Day) (Pwn2Own) Lorex 2K Indoor Wi-Fi Security Camera CDeviceOperator Format String Remote Code Execution Vulnerability
HighZDI-26-399: (0Day) (Pwn2Own) Lorex 2K Indoor Wi-Fi Security Camera Device Management Server Improper Certificate Validation Vulnerability
HighZDI-26-402: (0Day) Glarysoft Glary Utilities Link Following Local Privilege Escalation Vulnerability
HighZDI-26-403: (0Day) Ollama downloadBlob Improper Validation of Array Index Denial-of-Service Vulnerability
HighAttackers using Langflow flaw for credential harvesting (CVE-2026-55255)
High15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros
HighGitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures
HighCISA orders feds to prioritize patching Langflow auth bypass flaw
High[remote] iOS Bluetooth PAN Exploit - Ethernet Gateway without Adapter
High[remote] Hydra - Stack Buffer Overflow
High[local] ProtonVPN v4.4.1 - Unquoted Service Path
HighDialogflow CX 'Rogue Agent' Flaw Enabled AI Chatbot Data Theft
HighCISA Adds One Known Exploited Vulnerability to Catalog
HighGitLost: GitHub’s AI Agent Tricked Into Leaking Private Repository Data
High'GitLost' Flaw Leaks Private Data From GitHub's Agentic Workflows
HighCERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware
HighHidden backdoor in Tenda router firmware grants admin access
HighHitachi Energy PROMOD V
HighLabcenter Proteus 9
HighHitachi Energy e-mesh EMS
High[webapps] WordPress Plugin WPZOOM Portfolio 1.4.21 - Reflected Cross-Site Scripting (XSS)
High[local] Windows Defender (MsMpEng.exe) - Race Condition
High[webapps] KNX visualisering - Broken Access Control
High[local] MEmu Android Emulator 9.2.7.0 - Local Privilege Escalation
High[webapps] Pulpy 0.1.1-Beta - Filesystem Sandbox Bypass
High[webapps] Joomla Extension 4.1.4 - PHP Object injection
HighCitrixBleed-ing Again? NetScaler Vulnerability Under Attack
HighOpenSSH 10.4 arrives with security fixes and a post-quantum signature option
HighOpera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages
High A week in security (June 29 – July 5)
HighSeven Bugs in FatFs Put IoT and Embedded Devices at Risk
MediumWireshark 4.6.7 Released, (Sat, Jul 11th)
MediumSchneider Electric PowerChute Serial Shutdown
MediumZDI-26-400: (0Day) AnyDesk Screen Recording Link Following Denial-of-Service Vulnerability
MediumZDI-26-401: (0Day) AnyDesk Support Information Link Following Denial-of-Service Vulnerability
Medium[webapps] Tenable Nessus 10.12.1 - SQL Injection
Medium[webapps] Flowise 3.1.3 - arbitrary code execution
MediumDigi International PortServer TS, Digi One SP IA
MediumCortex Security Audit

Daily breach, advisory, and vulnerability briefs publish every weekday.

View Live Breach Feed ← All Weekly Digests