2026-07-16
- threat intel
ACR Stealer: Two observed intrusion chains amid increased threat activity
Microsoft Defender Experts observed increased ACR Stealer activity from late April 2026 to mid-June 2026, identifying two distinct intrusion campaigns that use ClickFix social engineering to deliver information-stealing malware. Campaign 1 employs WebDAV-based payload delivery with Python loaders and blockchain-backed command-and-control, while Campaign 2 uses MSHTA and steganography for fileless execution. Both ultimately target browser credentials, authentication tokens, and sensitive enterprise documents.
Why it matters: Enterprise security teams need to detect and block ACR Stealer campaigns now; successful compromise exposes browser credentials and session tokens that enable account takeover, unauthorized cloud access, and further intrusion activity.
- research
AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report
Unit 42 has published a 2026 Global Incident Response Report examining how AI and automation are shaping cybersecurity threats and incident response practices. The report synthesizes observations from the team's incident response engagements throughout the year.
Why it matters: Security teams managing incident response operations should review this report to understand emerging trends in AI-driven attacks and automation tactics that may affect their detection and response strategies.
- ransomware
Coca-Cola says Fairlife ransomware attack halts US dairy production
Coca-Cola disclosed that a ransomware attack on its Fairlife dairy subsidiary has disrupted US operations and temporarily halted production of Fairlife products. The attack impacts supply chains for a major dairy brand sold nationwide.
Why it matters: Retailers and distributors relying on Fairlife products face inventory disruptions; enterprises should review incident response protocols for critical supply chain partners and monitor ransom demands or data exfiltration claims.
- government policy
Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation
A Democratic senator has urged the Trump administration to oppose Canadian surveillance legislation that he claims would exploit American technology infrastructure. The proposal under debate in Canada has raised concerns among U.S. officials about potential misuse of cross-border systems.
Why it matters: Technology companies and practitioners managing cross-border infrastructure should monitor developments in Canadian surveillance law as it may affect data handling obligations, product design, or service availability in Canada.
- ai security
Agentic AI Is Untamable: Ask the Right Security Questions
The article discusses security risks posed by agentic AI (artificial intelligence systems that operate autonomously) within organizations, independent of external threats. A reframing of security approaches is needed to address the inherent dangers these systems present.
Why it matters: Security teams must understand that agentic AI introduces internal risks beyond traditional attack vectors, requiring organizations to rethink threat models and control strategies for autonomous AI systems.
- breaches incidents
The Breach That Won’t End: An Update on Canvas, and how they created an EdTech’s Vendor Trust Problem
Instructure's forensic investigation into its Canvas breach continues to extend beyond initial timelines, with the company only beginning to deliver institution-specific findings in early July after months of delay. Educational institutions are receiving data packets through secured file-sharing links as Instructure completes its review of customer-specific impacts.
Why it matters: Canvas administrators and information security teams need to assess breach findings promptly upon receipt and identify what user data was exposed at their institution to determine notification and remediation obligations.
- ai security
1M+ Emails Use Hidden Text to Dupe AI Security Filters
Researchers have identified over one million emails using hidden text techniques called text salting to bypass AI-powered email security filters. The method exploits weaknesses in how large language models (LLMs) process obfuscated content, allowing phishing messages to reach user inboxes undetected.
Why it matters: Security teams relying on AI email filters need to understand this evasion technique impacts organizations across all industries; you should evaluate whether your email security provider has detection logic for text salting and consider supplementing with additional authentication controls.
- threat intel
Now, even Russia's most elite hackers are using Clickfix to infect devices
Sandworm, an elite hacking unit within Russia's GRU military intelligence, has adopted the Clickfix technique to target sensitive organizations in Ukraine. Clickfix tricks users into copying and pasting malicious commands into a terminal by masking them as CAPTCHA verification steps, leading to malware installation or data theft. Ukrainian authorities discovered at least 10 compromised websites using this method, with confirmed infections from FreakyPoll, a custom Sandworm malware package.
Why it matters: Organizations in Ukraine and those handling sensitive data are at immediate risk from state-sponsored attacks using a low-friction social engineering technique; security teams should educate users to never paste unknown commands into terminals and monitor for Clickfix lures.
- vulnerabilities
Claude Chrome extension flaw lets malicious extensions trigger AI actions
A vulnerability in Anthropic's Claude Chrome extension allows malicious extensions to simulate user clicks and trigger predefined AI actions without explicit user consent. The flaw could be exploited to abuse Claude's access to connected services including Gmail, Google Docs, Google Calendar, and Salesforce.
Why it matters: Organizations and users with the Claude Chrome extension installed face unauthorized access to sensitive data and services if a malicious extension is present on the same browser; patching or disabling the extension should be prioritized.
- government policy
Program to rotate cyber personnel through federal agencies saw little use
The Federal Rotational Cyber Workforce program, launched in 2022 to shuffle skilled personnel among federal agencies, enrolled only eight participants across 634 applications over its three-year run. The Government Accountability Office attributed the low uptake to declining advertised positions, applicant qualification issues, and agencies preferring internal rotations, while the Office of Personnel Management cited budgetary constraints and has discontinued the program as of summer 2026.
Why it matters: Federal security leaders must recognize that workforce development initiatives struggle without sustained funding and clear participation incentives, limiting the federal government's ability to build cyber expertise across agencies during a critical shortage period.
- threat intel
New OkoBot framework deploys 20 payloads to steal data, crypto
OkoBot is a newly identified malicious framework delivering over 20 payloads in coordinated attacks targeting cryptocurrency wallets, credentials, and sensitive data theft. The framework appears designed for large-scale data exfiltration across multiple attack vectors.
Why it matters: Security teams protecting cryptocurrency users and enterprises handling sensitive credentials need to identify and block OkoBot payloads; the multi-payload architecture suggests established distribution infrastructure.
- ransomware
Ransomware and Cyber Extortion in Q2 2026
A ransomware threat report covering Q2 2026 activity found that group rankings shifted significantly, with "The Gentlemen" claiming the top spot while previously dominant groups like Qilin and DragonForce declined. Notable developments include Deadlock's resurgence with blockchain-based command and control and kernel-level endpoint detection and response (EDR) evasion techniques, alongside steady targeting patterns favoring professional, scientific, and technical services sectors across 90 groups in 99 countries. Despite quarterly fluctuations in victim counts, underlying attack techniques remained consistent, with the US absorbing approximately 49 percent of victim activity.
Why it matters: Security teams must prioritize detection of ransomware behaviors (remote-service abuse, identity compromise, lateral movement, defense evasion) rather than tracking group rankings, and should immediately assess exposure to Deadlock's blockchain-based command and control and kernel-level EDR termination tactics that may evade current defenses.
- threat intel
Russian trio indicted for allegedly running bulletproof hosting providers that spurred cybercrime
Three Russian nationals were indicted in 2024 for operating bulletproof hosting providers, Media Land and ML.Cloud, that supported cybercriminals conducting attacks on critical infrastructure across 21 U.S. states and multiple countries, resulting in losses exceeding $62 million. The defendants allegedly provided malware and ransomware distribution infrastructure, technical support for phishing and brute-force attacks, and hosted criminal marketplaces. The U.S. Treasury Department and allied governments imposed sanctions on the defendants and their companies in November 2025.
Why it matters: Critical infrastructure operators in any of the 21 affected states and allied nations should investigate whether their systems were targeted, and all practitioners should understand that bulletproof hosting providers remain a key enabler of ransomware and extortion campaigns that directly threaten operational continuity.
- ransomware
The Real Cost of Ransomware Is What Cripples the Business
A new analysis reveals that financial executives significantly underestimate ransomware expenses, typically by a factor of ten or more. The article examines the actual cost calculation methodology and explains why standard risk assessments fail to capture the true financial impact of ransomware incidents.
Why it matters: CFOs and security leaders need to recalibrate ransomware risk valuations in their risk registers today, as current estimates may understate exposure by an order of magnitude and inform inadequate resource allocation for prevention and response.
- breaches incidents
Italy fines WINDTRE €1.7 million over data breaches
Italy's data protection authority fined telecommunications operator WINDTRE 1.7 million euros for inadequate data security that led to two unauthorized breaches affecting over 365,000 customers. The regulator cited serious shortcomings in the company's security systems as the basis for the enforcement action.
Why it matters: Telecom operators and any organization handling customer personal data face regulatory exposure for insufficient security controls; practitioners should audit their breach notification processes and remediation timelines against local data protection requirements.
- regulatory
UK investigates TikTok for alleged age-verification lapses, exposing kids to online harms
Ofcom, the UK's communications regulator, is investigating TikTok for potentially inadequate age-verification measures that may have exposed children to harmful content. The regulator emphasized that age checks are fundamental to compliance with UK online safety requirements and indicated that many services lack sufficient verification systems.
Why it matters: UK-based businesses and platform operators subject to online safety regulations must ensure robust age verification; TikTok faces potential enforcement action if lapses are confirmed, signaling regulatory priorities for child protection compliance.
- vulnerabilitiesCVE-2026-32201CVE-2026-45659
CVE-2026-32201, CVE-2026-45659, CVE-2026-56164: Frequently Asked Questions About Active Exploitation of Microsoft SharePoint Server Vulnerabilities
CISA confirmed active exploitation of three Microsoft SharePoint Server vulnerabilities (CVE-2026-32201, CVE-2026-45659, CVE-2026-56164) affecting on-premises deployments across all supported versions. Two additional high-severity flaws (CVE-2026-55040 and CVE-2026-58644) were disclosed July 14-15, 2026, with CVE-2026-58644 confirmed exploited in the wild. Attackers chain these flaws to gain unauthorized access, achieve remote code execution, steal IIS machine keys, and deploy malware for persistence.
Why it matters: Organizations running on-premises SharePoint Server 2016, 2019, or Subscription Edition face immediate risk from active attacks; patching all five vulnerabilities and applying Microsoft Defender signatures is critical to prevent remote compromise and lateral movement.
- identity access
Least privilege for AI agents: Identity, access, and tool binding
Organizations deploying AI agents face identity and access control challenges as agentic systems operate across multiple tools and systems without explicit human approval for each action. The article outlines risks from misconfigured permissions, scope creep, and unclear identity models that can lead to unauthorized data access, unintended modifications, and audit gaps. Best practices include treating agents as first-class principals with managed identities, explicit role-based access controls (RBAC), tightly scoped permissions, and preconfigured tool manifests.
Why it matters: Security practitioners must establish proper identity, RBAC, and tool-binding controls for AI agents in production before scope creep and cross-system access create compliance and incident response failures that cannot be easily investigated or explained to auditors.
- government policy
Ukrainians rally against dismissal of tech-minded defense minister Fedorov
Ukraine's President Volodymyr Zelensky dismissed Defense Minister Mykhailo Fedorov, who had championed the integration of drone technology and digital innovation into the military. Fedorov's removal prompted public opposition from Ukrainians who supported his technology-focused defense initiatives.
Why it matters: Defense organizations globally watch Ukraine's military innovation approach; dismissal of a tech-forward defense leader may signal shifts in priority for cyber and digital warfare capabilities that other nations are actively developing.
- ransomware
ThreatsDay: Game Cheat Spyware, 24-Hour Ransomware, Chrome Sync Stalking + 12 More Stories
This week's security news covers multiple attack vectors including game cheat spyware, rapid ransomware deployment, and Chrome synchronization exploitation for surveillance. The stories highlight how attackers leverage seemingly legitimate tools, weak configurations, and straightforward attack paths to compromise systems and escalate damage.
Why it matters: Practitioners need to monitor for threats using familiar-looking repositories and installers, review sync settings across browsers and tools, and patch or mitigate known attack chains that remain effective despite public disclosure.
- research
Period tracker Stardust shares users’ health data with analytics firm, says Mozilla research
Mozilla research on period tracker applications revealed significant privacy disparities among tested apps, with one application sharing users' health data with an analytics firm while another demonstrated strong privacy protections. The findings highlight inconsistent data handling practices in the period tracking app ecosystem.
Why it matters: Users of period tracking apps face unexpected data sharing to third parties; practitioners should assess which apps in their organization or recommendations contain these privacy gaps and consider privacy-first alternatives.
- ot ics
Legacy Systems, Real-World Impacts: The Reality of OT Security
An article examining the challenges of balancing vulnerability disclosure in operational technology environments where legacy systems, safety concerns, and critical infrastructure risks complicate security practices. The piece addresses the tensions inherent in securing aging systems that cannot always be quickly patched or updated.
Why it matters: OT security practitioners and asset owners need to understand disclosure best practices when legacy infrastructure cannot be rapidly remediated, as improper handling of vulnerabilities in these environments can directly impact physical safety and continuity of critical services.
- industry
How a former DeepMind researcher raised at a $300M pre-seed valuation before launching a product
A former DeepMind researcher has raised funding at a $300 million pre-seed valuation to work on visual AI systems. The funding round precedes the actual product launch.
Why it matters: Security practitioners monitoring AI supply chain risks and emerging AI company landscapes should track high-valuation AI startups founded by prominent researchers, as these companies may influence future AI security standards and become acquisition targets for major vendors.
- threat intel
Early Attack Warning Signals for AI and Agentic Security
Silent Push released version 6.0 of its Context Graph platform with a Model Context Protocol (MCP) server that integrates early attack warning intelligence directly into AI-assisted security workflows and existing tools like Claude, Splunk, and Palo Alto XSOAR. The platform maps adversary infrastructure across DNS, WHOIS, certificate, and hosting data to surface Indicators of Future Attack (IOFA) weeks before campaigns launch, addressing the gap where traditional detection relies on stale Indicators of Compromise (IOCs) that appear only after attacks are underway. The integration eliminates context switching by allowing threat analysts to query infrastructure intelligence in plain language within tools they already use.
Why it matters: SOC and threat intelligence teams can now feed higher-quality, earlier-stage attack signals into their AI-assisted investigation tools and SIEMs, reducing false confidence in AI-generated analysis and improving detection timing by weeks before adversary infrastructure becomes active.
- ai security
Protecting Privacy in an AI Era
Daniel Solove argues that individual data control is insufficient for privacy protection in the age of AI, and proposes regulatory approaches including data minimization, company fiduciary duties, liability for negligent design, and independent technology review modeled after pharmaceutical regulation.
Why it matters: Organizations and regulators need to understand emerging accountability frameworks that could reshape data handling obligations and AI deployment requirements.
- ai security
AI Agents Broke the Security Playbook. Here's What Replaces It.
Traditional security workflows designed for human-paced environments are becoming inadequate as AI agents operate at faster speeds. Security teams need to build on a live identity foundation and create flexible, customized workflows to address the unique challenges posed by AI agent deployments.
Why it matters: Security practitioners must reassess and update their playbooks to manage AI agents effectively, as legacy approaches may not scale or respond quickly enough to emerging threats in AI-driven infrastructures.
- vulnerabilities
Demystifying AI Exploits: A Blueprint for AI-Assisted Vulnerability Management
Mandiant Consulting outlines a blueprint for safely integrating large language model agents into vulnerability management workflows, given that mean time-to-exploit has dropped to negative seven days. The guidance emphasizes establishing operational guardrails such as data security controls, zero data retention agreements with providers, workload isolation, and combining AI capabilities with deterministic controls and human oversight. Organizations deploying AI agents should extend existing security frameworks into the AI execution environment to manage architectural risks while accelerating vulnerability discovery and remediation.
Why it matters: Security teams adopting AI for vulnerability management must implement structural controls to prevent unauthorized access to sensitive data, code exfiltration, and privilege escalation, as AI agents pose new operational and architectural risks in CI/CD pipelines.
- threat intel
Sandworm hackers have a CAPTCHA trick for Ukrainians
Sandworm, a Russian state-sponsored hacking group, is distributing a malicious CAPTCHA that tricks Ukrainian users into executing a PowerShell command on their Windows systems. The fake verification appears legitimate but actually delivers malware when users follow the embedded instructions.
Why it matters: Ukrainian organizations and individuals are at direct risk of compromise through this social engineering attack; security teams should warn users to verify CAPTCHA legitimacy and avoid copying unfamiliar commands from web forms.
- vulnerabilities
Adaptiva simplifies secure patch management for air-gapped networks
Adaptiva released AirGap for OneSite Patch, a new feature that applies autonomous patch management to air-gapped networks, allowing isolated systems to receive security updates while maintaining physical separation. The capability targets government agencies, critical infrastructure operators, and enterprises that require high-security isolation standards.
Why it matters: Organizations managing air-gapped networks can now patch critical systems without breaking isolation requirements, reducing exposure to vulnerabilities in disconnected environments.
- vulnerabilities
n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another Issuer
n8n, a workflow automation platform, contained a JWT validation flaw in Enterprise instances configured with multiple external token issuers. The vulnerability allowed an attacker with a valid token from one issuer to gain unauthorized access to another user's account by exploiting weak claim matching that validated only the subject (sub) claim while ignoring the issuer (iss) claim.
Why it matters: Enterprise customers using n8n with multiple federated identity providers face account takeover risk; teams should audit token issuer configurations and apply fixes immediately.
- vulnerabilities
The best defenders build AI agents together: Join Tenable for Swarm at Black Hat ’26
Tenable is hosting Swarm, a collaborative build event at Black Hat 2026 where security practitioners will develop open-source AI agents and tools together. The event aims to address isolated development of agentic AI in security teams by fostering community collaboration on agents, skills, and model context protocol servers to improve collective cyber defenses.
Why it matters: Security teams adopting AI agents need templates and shared open-source tooling to avoid redundant development and security gaps; practitioners should attend to contribute expertise and access community-built solutions for automating triage, threat hunting, and detection work.
- vulnerabilities
Sunsetting the Public AttackerKB Platform
Rapid7 is retiring the standalone AttackerKB platform on August 18, consolidating its vulnerability intelligence and exploit analysis into the Rapid7 blog, Vulnerability and Exploit Database, and customer-specific APIs. The company is also ending the community contribution model and public API access to maintain tighter control over data quality and prevent inaccurate or manipulated submissions. Current users will find AttackerKB-style technical write-ups and intelligence through Rapid7's unified ecosystem, with the AttackerKB domain redirecting to the Vulnerability and Exploit Database.
Why it matters: Security practitioners and vulnerability managers who rely on AttackerKB for exploit analysis and vulnerability intelligence need to transition to Rapid7's blog and Vulnerability and Exploit Database by August 18, and organizations using the public API must contact Rapid7 for customer-specific migration guidance.
- ai security
AI Data Centers Are Being Built Faster Than They Can Be Secured
AI data centers are being deployed at a pace that outstrips the ability to implement adequate security controls. Traditional data center security architectures were not designed to address the unique risks introduced by AI infrastructure.
Why it matters: Organizations deploying or relying on AI services face exposure to novel attack surfaces and misconfigurations; security teams should assess their AI infrastructure's security posture before production use.
- threat intel
‘ClickLock Stealer’ Bypasses macOS Security With Social Engineering, Process Killing
A macOS malware called ClickLock Stealer has targeted at least 100 users by combining social engineering tactics with process killing techniques to bypass security protections and steal passwords and cryptocurrency. The attack method exploits user interaction to circumvent macOS defenses.
Why it matters: macOS users and organizations supporting Mac endpoints need to recognize this threat uses social engineering to appear legitimate, making traditional security controls insufficient without user awareness training.
- threat intel
New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password
ClickLock Stealer is a new macOS infostealer that arrives via a Terminal command and displays a fake system dialog requesting the user's login password. When users decline, the malware installs LaunchAgents that repeatedly terminate core system applications like Finder, Dock, and Spotlight every 210 milliseconds until the victim relents and provides their credentials.
Why it matters: macOS users and administrators need to block Terminal-based installation vectors and educate staff to refuse suspicious password prompts, as this stealer renders systems unusable to coerce credential theft.
- ransomware
Scattered Spider members behind TfL hack get five years in prison
Two prominent members of the Scattered Spider cybercrime group received sentences of five years and six months each for conducting a hack against Transport for London in 2024. The sentences represent judicial action against key figures in the criminal collective responsible for the intrusion.
Why it matters: Organizations targeted by Scattered Spider and security teams tracking the group should monitor this case outcome as it signals law enforcement capability to prosecute major cybercriminals, while the group's remaining members may adjust tactics or targets in response.
- threat intel
Russian cybercriminal used jailbroken Gemini CLI to rebuild botnet infrastructure in six minutes
A Russian-speaking threat actor named bandcampro leveraged a jailbroken version of Google's Gemini CLI to build and manage botnet command-and-control infrastructure targeting a dental clinic. Over more than 200 sessions between March 19 and April 21, 2026, the attacker deployed malware across eight clinic computers and accessed the OpenDental database, accomplishing botnet reconstruction in approximately six minutes.
Why it matters: Healthcare organizations and dental practices are exposed to AI-augmented attack automation; practitioners should assume adversaries can now use jailbroken large language models to rapidly rebuild malware infrastructure and should monitor for Gemini CLI abuse and unauthorized terminal-based AI agent activity.
- vulnerabilitiesCVE-2026-9653
Rockwell Automation 1756-EN2, 1756-EN3, and 1756-ENBT
Rockwell Automation disclosed a denial-of-service vulnerability (CVE-2026-9653) affecting communication modules 1756-EN2, 1756-EN3, and 1756-ENBT used in critical manufacturing environments worldwide. The flaw stems from improper validation of CIP Implicit Connection packets, allowing network-based attackers to send crafted packets that temporarily disrupt device connections. Patches are available for the EN2 and EN3 modules (version 12.002), though the ENBT module is discontinued with no fix available.
Why it matters: Manufacturing and critical infrastructure operators deploying these Rockwell Automation modules face service disruption risk if exposed to the public internet or untrusted networks; immediate patching of EN2 and EN3 devices and network segmentation of ENBT modules are required to prevent availability attacks.
- vulnerabilitiesCVE-2026-57896CVE-2026-60063
AutomationDirect Productivity Suite
AutomationDirect Productivity Suite versions up to 4.6.2.2 contain multiple vulnerabilities including out-of-bounds write, out-of-bounds read, and divide-by-zero flaws that require local or physical access to exploit. These issues can lead to memory corruption, information disclosure, application instability, or denial-of-service conditions. The vendor recommends updating to version 4.7.0.47 or later, with network isolation and access controls as interim mitigations.
Why it matters: Critical manufacturing facilities worldwide running affected versions face privilege escalation and system instability risks; practitioners should prioritize patching or implementing network isolation immediately if updates cannot be deployed.
- vulnerabilitiesCVE-2026-15352
NASA Core Flight System (cFS) Health & Safety (HS) Application
A null pointer dereference vulnerability (CVE-2026-15352) in NASA's Core Flight System Health & Safety application can cause a denial-of-service condition when processing Housekeeping Telemetry requests. The flaw affects versions prior to v7.0.1, which NASA recommends as the remediation. CISA scored the vulnerability as High severity with a CVSS v3.1 base score of 7.5 and notes no known public exploitation at this time.
Why it matters: Organizations operating NASA cFS HS application in critical infrastructure or space systems need to update to v7.0.1 immediately to prevent denial-of-service attacks that could disrupt mission-critical telemetry and health monitoring functions.
- vulnerabilitiesCVE-2026-9292
Rockwell Automation FactoryTalk DataMosaix
Rockwell Automation FactoryTalk DataMosaix Private Cloud versions 8.02 and earlier contain a stored cross-site scripting (XSS) vulnerability that allows authenticated attackers with high privileges to inject malicious scripts into the Workflows configuration. The vulnerability could enable account takeover, credential theft, or malicious redirection when other users access affected pages. Rockwell Automation recommends upgrading to version 8.03 or later to remediate the issue.
Why it matters: Organizations running DataMosaix Private Cloud 8.02 or earlier in manufacturing and IT environments worldwide should upgrade immediately, as internal attackers with elevated access can compromise other user accounts and systems through script injection.
- vulnerabilitiesCVE-2026-11889
SALTO ProAccess Space
SALTO ProAccess Space versions before 6.13 contain a privilege escalation vulnerability (CVE-2026-11889) that allows authenticated attackers to bypass authorization and access spaces outside their assigned partition when the tenancy feature is enabled. The vulnerability has a CVSS score of 6.5 and affects physical access control systems deployed worldwide. SALTO recommends upgrading to version 6.13 and implementing additional security measures including network isolation and least-privilege access controls.
Why it matters: Organizations operating SALTO ProAccess Space with logical partitioning should prioritize upgrading to version 6.13, as authenticated insiders or compromised operator accounts can escalate privileges to access restricted areas across physical security installations.
- vulnerabilitiesCVE-2026-54798CVE-2026-54799
Siemens SICAM 8
Siemens released a security advisory for multiple SICAM 8 products affected by four vulnerabilities, including active debug code exposure, firmware signature validation flaws, insecure default configurations, and unverified password changes. The vulnerabilities range from CVSS 6.5 to 7.2 and could enable denial of service, malicious firmware installation, and unauthorized system access. Siemens recommends updating to firmware version 26.20 or later.
Why it matters: Critical infrastructure operators in manufacturing and energy sectors worldwide using SICAM 8 components (A8000, EGS, S8000) must prioritize patching to prevent attackers from disrupting operations, compromising system integrity, or gaining unauthorized control of essential functions.
- vulnerabilitiesCVE-2025-11698CVE-2025-12011
Rockwell Automation CompactLogix, ControlLogix, Compact GuardLogix and GuardLogix
Rockwell Automation has disclosed three denial-of-service vulnerabilities (CVE-2025-12011, CVE-2025-12012, CVE-2025-11698) affecting multiple CompactLogix, ControlLogix, Compact GuardLogix, and GuardLogix controller models with a CVSS score of 8.6. These flaws could allow a remote attacker to load an invalid project file, causing affected devices to enter a major non-recoverable fault. Rockwell recommends updating to patched versions such as V35.016, V36.011, or later depending on the controller model.
Why it matters: Organizations operating critical manufacturing infrastructure worldwide using these Rockwell Automation controllers are exposed to production downtime if systems are exploited; patching to the recommended versions is required to restore service availability and prevent operational disruptions.
- regulatory
Windows 11 24H2 Home and Pro reach end of support in 90 days
Microsoft announced that Windows 10 Enterprise LTSB 2016 and Windows 11 24H2 Home and Pro editions will reach end of support on May 13, 2025, concluding the 18-month support window for the 24H2 version. Organizations and individuals using these editions must plan upgrades or transitions to supported versions before updates cease.
Why it matters: Windows 11 24H2 Home and Pro users face a hard deadline to migrate or upgrade before losing security patches, creating a significant exposure window if systems remain unsupported.
- threat intel
20+ Hijacked Government Websites Became an Attack Channel
Researchers discovered that more than 20 Brazilian government websites were compromised and used to distribute malware as part of an active campaign called PhantomEnigma. The investigation identified previously unknown backdoor functionality, infrastructure links, and multiple attack components associated with the campaign.
Why it matters: Security teams protecting government networks and endpoints need to identify and remediate any artifacts from these compromised sites, and defenders should monitor for indicators of compromise (IOCs) from this campaign across their infrastructure.
- breaches incidents
AU: Regulator’s preliminary findings did not indicate Qantas breached privacy obligations
Australia's Office of the Australian Information Commissioner completed a preliminary inquiry into the Qantas data breach affecting 5.67 million customer records and determined no likely violation of privacy obligations occurred. The investigation examined how the 2025 incident unfolded after an attacker gained unauthorized access to the airline's systems.
Why it matters: Qantas customers and Australian organizations should note that regulatory clearance does not necessarily indicate adequate security practices; practitioners should review their own incident response, disclosure, and data protection measures regardless of preliminary findings.
- cloud saas
ValorC3 extends SaaS protection with immutable cloud backups
ValorC3 Data Centers released a fully managed backup service for SaaS applications including Microsoft 365, Entra ID, and Salesforce, featuring immutable backup copies to protect against deletion, corruption, and ransomware. The service addresses a common misconception that cloud vendors automatically provide data backup protection. Recent governance research indicates 80% of organizations have encountered at least one cloud security incident.
Why it matters: SaaS users relying on Microsoft 365 and Salesforce should evaluate whether their native backup capabilities meet recovery needs from ransomware or accidental deletion, as shared responsibility models leave data protection gaps.
- breaches incidents
Thalha Jubair and Owen Flowers sentenced to prison
Two individuals, Thalha Jubair (age 20) and Owen Flowers (age 18), were sentenced to five years and six months in prison at Woolwich Crown Court for hacking Transport for London. The judge indicated the motivation behind their actions was primarily criminal in nature. This case represents enforcement action against unauthorized access to critical infrastructure systems.
Why it matters: Organizations operating public transportation and critical infrastructure should reinforce that attacks on these systems carry serious criminal penalties, and should review access controls and logging to detect similar intrusions early.
- ai security
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker Commands
Researchers have identified a data injection attack where adversaries can embed malicious content in data sources that AI agents consult, causing them to perform unintended actions like clicking purchase buttons or executing commands. The attack corrupts the factual information the agent relies on rather than directly hijacking the agent's core task.
Why it matters: Organizations deploying AI agents for business processes face risk that attackers can manipulate external data sources to trigger harmful actions; security teams should assess how their agents validate and sanitize data inputs from untrusted sources.
- industry
Oak Emerges From Stealth Mode With $60 Million in Funding
Oak, an identity management startup, has exited stealth mode with $60 million in funding to develop an AI-powered Identity Operating System designed to manage and govern all identities across an organization's environment.
Why it matters: Security practitioners evaluating identity governance solutions should monitor this new entrant as AI-driven identity platforms may simplify multi-identity management and access control across increasingly complex enterprise environments.
- threat intel
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor
A China-linked threat actor has redeployed Daxin, a kernel-mode rootkit inactive for over four years, in a Taiwan manufacturing company alongside a new backdoor named Stupig. Daxin was previously documented by Symantec in March 2022 as a tool used in targeted attacks.
Why it matters: Manufacturers in Taiwan and other sectors face renewed risk from sophisticated state-sponsored malware; security teams should assess whether Daxin or Stupig exist in their environments and review kernel-mode persistence mechanisms.
- vulnerabilities
CISA orders feds to patch actively exploited Oracle flaw by Saturday
The Cybersecurity and Infrastructure Security Agency (CISA) has issued a mandatory directive requiring federal agencies to patch a critical vulnerability in Oracle E-Business Suite that is currently being exploited in active attacks. The deadline for remediation is Saturday.
Why it matters: Federal agencies running Oracle E-Business Suite must immediately identify and patch affected systems to comply with CISA's order and defend against active exploitation.
- vulnerabilities
Splunk, Zoom Patch Critical Vulnerabilities
Splunk and Zoom released patches for critical vulnerabilities that could enable attackers to obtain credentials, access data, take over user accounts, and elevate privileges.
Why it matters: Organizations running Splunk or Zoom should prioritize applying these patches to prevent credential theft, account takeover, and privilege escalation attacks against their infrastructure and users.
- breaches incidents
Romania’s land registry hit by cyber attack, data allegedly for sale
Romania's National Agency for Cadastre and Land Registration experienced a cyber attack on July 14 that took down its e-Terra cadastre and land registry application. Initially reported as a technical incident, the disruption has been confirmed as an attack, and the agency states that data has not been compromised, though the investigation remains ongoing.
Why it matters: Organizations managing critical land registry infrastructure and practitioners in government IT security should assess their incident response protocols, as attackers targeting cadastral systems can compromise property records and enable fraud across real estate and financial sectors.
- threat intel
Russian hackers trojanize WebEx, Zoom apps to push Starland malware
A Russian financially motivated threat actor identified as UAT-11795 is distributing trojanized versions of WebEx and Zoom applications to deliver Starland RAT, a new backdoor designed to steal credentials and cryptocurrency.
Why it matters: Organizations and individuals using WebEx or Zoom are at risk of credential theft and financial loss if they download software from untrusted sources; practitioners should validate application authenticity and monitor for Starland RAT indicators.
- ai security
AI Can Find Bugs, But Human Knowledge Still Proves Them
AI tools accelerate offensive security work by reading code quickly, generating payloads, summarizing attack surfaces, and automating repetitive testing, yet human expertise remains essential to validate findings and turn them into actionable intelligence. The technology amplifies security practitioner productivity without replacing the need to prove vulnerabilities through manual verification.
Why it matters: Security teams adopting AI-assisted testing tools should recognize that automation handles reconnaissance and ideation efficiently, but practitioners must still invest in human validation to ensure findings are reliable and exploitable before action.
- ai security
The Hunter's Paradox: Is it time to embrace automated threat hunting?
A security researcher examines the tension between the human and AI approaches to threat hunting: humans cannot process the volume and velocity of modern security data alone, yet AI systems struggle with the deception and misdirection that attackers routinely embed in telemetry. The piece argues that resolving this paradox requires moving beyond an either-or debate to find a balanced approach that acknowledges both constraints.
Why it matters: Security teams and leaders deciding on threat hunting operations need to understand that neither pure human-driven hunting nor fully automated AI-based hunting is viable; the hybrid approach requires rethinking how to architect tooling and processes that account for AI's blindness to adversarial deception.
- threat intel
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign
Cisco Talos identified UAT-11795, a Russian-speaking financially motivated threat actor conducting campaigns since at least June 2025 against victims in the U.S. and Europe. The group deploys Starland RAT, a Python-based remote access tool, alongside WLDR, a sophisticated PowerShell-based command-and-control implant featuring encrypted beaconing and task queuing capabilities. The actor distributes trojanized installers of legitimate software such as MobaXterm, WebEx, Zoom, and DBeaver to establish persistence and steal credentials and cryptocurrency assets.
Why it matters: Organizations and users in the U.S. and Europe face credential and cryptocurrency theft risk from trojanized downloads of common developer tools and collaboration platforms, requiring immediate review of installation sources and endpoint detection tuning for Starland RAT and WLDR beaconing patterns.
- ransomware
New Spirals ransomware encrypts victim network in under 24 hours
A previously unknown ransomware actor named Spirals has demonstrated the ability to compromise a corporate network and complete encryption within a single day. The speed of the attack, from initial access through data theft to full encryption, indicates a highly efficient operational capability.
Why it matters: Security teams need to accelerate detection and response procedures, as this threat actor can move from entry to encryption in less than 24 hours, leaving minimal time for manual intervention or escalation.
- vulnerabilities
Tenable One unifies code risks with enterprise exposure data
Tenable expanded its Tenable One Exposure Management Platform to integrate static code vulnerability data with enterprise exposure data, enabling security teams to track code risks from development through production. The platform addresses the challenge of vulnerable code reaching production before security review, a problem intensified by the adoption of generative AI in development workflows.
Why it matters: Security practitioners managing application vulnerabilities need visibility across code and runtime environments to reduce the window where vulnerable code reaches production before remediation.
- vulnerabilities
Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-Wide
A researcher disclosed an unpatched vulnerability in Shark RV2320EDUS robot vacuums that allows extracting a certificate from one device to gain root access to other vacuums operating on the same AWS region. An attacker exploiting this flaw could control cameras, movement, access home maps, and retrieve plaintext Wi-Fi passwords from affected devices.
Why it matters: Owners of Shark RV2320EDUS vacuums and other models using the same architecture face immediate risk of unauthorized device control and network credential theft; practitioners managing IoT device security should assess exposure and contact Shark for patched firmware.
- vulnerabilities
F5 Patches Multiple NGINX, BIG-IP Vulnerabilities
F5 released patches for multiple vulnerabilities affecting NGINX and BIG-IP products. The flaws could enable attackers to modify configurations, terminate processes, cross security boundaries, leak memory, and execute arbitrary code.
Why it matters: Organizations running F5 NGINX or BIG-IP should prioritize patching to prevent configuration tampering, denial of service, privilege escalation, information disclosure, and remote code execution in critical infrastructure.
- ai security
Lineation.ai focuses on runtime security for autonomous AI agents
Lineation.ai launched a runtime security platform for autonomous AI agents, featuring a zero trust control plane and lightweight endpoint daemon to protect agents during execution. The platform addresses gaps in traditional security approaches as enterprises deploy agents that handle sensitive data, call APIs, and execute workflows.
Why it matters: Security teams deploying autonomous AI agents need runtime protection mechanisms to prevent unauthorized data access or malicious API calls that standard LLM gateways cannot catch.
- government policy
China’s Top Cybersecurity Firms Hit by Mounting Military Procurement Bans
Chinese cybersecurity firms are experiencing procurement restrictions from the country's military, though specific reasons for the bans remain undetailed in available reporting. The action reflects tensions within China's defense-industrial ecosystem regarding vendor relationships or compliance frameworks.
Why it matters: Organizations relying on Chinese cybersecurity tools for supply chain integration should monitor potential shifts in vendor viability and support continuity, as military procurement restrictions may signal regulatory or geopolitical pressures affecting broader market participation.
- identity access
Microsoft makes Windows SSO prompts easier to manage
Microsoft introduced a new registry-based policy allowing IT administrators to automatically accept Windows single sign-on (SSO) permissions on Windows 11 versions 24H2 and 25H2 devices managed through Microsoft Entra ID. Users with personal Microsoft accounts and unmanaged devices will still receive SSO permission prompts. The change addresses European Economic Area (EEA) regulatory requirements for user choice in the sign-in experience.
Why it matters: Administrators managing Entra ID-joined Windows 11 devices can now reduce friction in SSO workflows through policy configuration, streamlining user authentication while maintaining controls for personal accounts and unmanaged endpoints.
- threat intel
Police take down investment fraud network that stole €100 million a month
Dutch and Belgian police, with Europol support, dismantled a transnational investment fraud network operating approximately 20 call centers with over 700 employees posing as financial advisers. The organization generated an estimated €100 million monthly by targeting victims across multiple countries, with the primary suspect, a 46-year-old with Israeli and Polish citizenship, taken into custody.
Why it matters: Financial services firms, compliance teams, and fraud detection units should monitor for call center-based investment scams targeting their customers and review authentication controls to prevent impersonation of legitimate advisers.
- industry
VS Code agent host runs Copilot, Claude, and Codex in a dedicated process
Visual Studio Code version 1.129 introduces a dedicated agent host process that runs AI coding agents like Copilot, Claude, and Codex using the Agent Host Protocol. Each agent session now runs in its own isolated process rather than within the main editor window, improving resource management and stability.
Why it matters: Developers using multiple AI coding assistants should understand this architectural change affects performance, session stability, and resource consumption when managing concurrent agent workloads.
- ransomware
Srsly Risky Biz: Ransomware Uses AI To Amp Up Negotiations
Ransomware operators are leveraging AI not primarily to conduct breaches but to strengthen negotiation tactics with victims to demand higher ransoms. FulcrumSec, a data extortion group active since September 2025, exploits basic security gaps such as hardcoded credentials, unpatched software, and misconfigured storage to breach organizations, claiming over 25 victims and multiple terabytes of stolen data.
Why it matters: Organizations face dual pressure from both initial compromise through elementary security failures and elevated ransom demands amplified by AI-driven negotiation techniques, requiring immediate remediation of exposed credentials and misconfigurations alongside incident response readiness.
- threat intel
Police Disrupt a €140M Cyber Fraud Ring in Spain
Spanish police dismantled a cybercriminal network that conducted multiple cyberattacks and laundered approximately 140 million euros through intricate financial schemes. The operation targeted the organized fraud ring's infrastructure and money laundering operations.
Why it matters: Organizations across Europe should review their fraud detection and financial monitoring controls, as this ring's sophistication in attack variety and money laundering indicates ongoing threats to financial institutions and their customers.
- vulnerabilities
Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day
A researcher has disclosed a Windows zero-day vulnerability named LegacyHive, attributed to the threat actor Nightmare Eclipse. The researcher released a stripped proof-of-concept to limit immediate weaponization of the flaw.
Why it matters: Windows administrators and security teams need to monitor for patches and defensive guidance from Microsoft, as this zero-day presents an active threat to unpatched systems until remediation is available.
- vulnerabilities
Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities
Cybersecurity vendors Trend Micro, Tanium, ESET, and Tenable released patches for critical and high-severity vulnerabilities in their products. The article provides no details on affected products, vulnerability types, or patch availability.
Why it matters: Security teams running these tools should immediately check vendor advisories to determine if patches apply to their deployments and prioritize installation based on severity ratings.
- regulatory
Reading between the lines of a cyber insurance policy
The global cyber insurance market reached approximately $16 billion in premiums in 2024, with coverage now widespread across regulated industries, though payouts have become less predictable. The Global Federation of Insurance Associations identified a significant protection gap of roughly $900 billion, indicating a substantial mismatch between actual cyber exposures and available coverage.
Why it matters: Risk managers and security leaders in regulated industries need to understand the true limits of their cyber insurance coverage and identify the exposures that remain unprotected by their policies.
- research
What public money does to open-source projects
Open-source software comprises approximately 96 percent of enterprise codebases, yet most of it is maintained by unpaid volunteers. Recent supply chain incidents like the log4j vulnerability in December 2021 and the xz utils backdoor in 2024 have highlighted the risks of relying on under-resourced projects. The article examines how public funding affects open-source project sustainability and security.
Why it matters: Engineering and security teams depend on open-source libraries for critical infrastructure and should understand how funding models and maintainer capacity directly influence vulnerability detection and patch velocity.
- vulnerabilities
Companies keep getting breached by vulnerabilities they already knew about
A survey of 300 IT and cybersecurity leaders in the United States and United Kingdom found a significant gap between vulnerability discovery and remediation. Organizations identify more weaknesses than ever before, but struggle with the processes of assigning, approving, deploying, and confirming fixes, leaving known vulnerabilities exposed to breach risk.
Why it matters: Security teams and IT leaders face a gap in vulnerability management workflows that leaves discovered weaknesses unpatched, creating exploitable gaps that attackers actively target.
- ai security
GPT-Red beat human red teamers on a prompt injection test
OpenAI has developed GPT-Red, an automated red-teaming model trained through self-play reinforcement learning to identify prompt injection vulnerabilities in large language models. In testing, GPT-Red outperformed human red teamers at finding weaknesses by iterating through prompts to achieve objectives such as data exfiltration, with both attacker and defender models learning simultaneously across multiple scenarios.
Why it matters: Security teams and LLM builders need to understand that automated adversarial techniques can discover prompt injection flaws faster than manual testing, informing investment in both defensive mechanisms and adversarial testing practices.
- threat intel
Finance phishing works because it sounds boringly normal
Phishing emails targeting finance departments succeed by mimicking routine business correspondence like invoices and contracts rather than using urgency-based social engineering tactics. These normal-sounding messages often evade AI-powered email security gateways and other defenses because they lack the suspicious characteristics of typical phishing attempts. Attackers exploit the high volume of legitimate financial communications to increase their chances of initial access to organizations.
Why it matters: Finance employees and their security teams need to implement behavioral authentication and workflow verification controls beyond email filtering, since routine-sounding financial communications now represent a primary attack surface.
- threat intel
AI Has Enhanced Iran’s Asymmetric Playbook During the 2026 Conflict
Between January and June 2026, Iran leveraged artificial intelligence to enhance its asymmetric warfare capabilities across cyber operations, information warfare, propaganda production, and domestic surveillance during military and political crises. AI functioned as a force multiplier that increased the speed, scale, and effectiveness of Iranian operations, particularly in information campaigns and cyber attacks, though its direct impact on battlefield tactics remains unconfirmed. Iran's hybrid approach, augmented by partnerships with Russia and China for military and surveillance technologies, demonstrates how AI amplifies existing capabilities rather than creating fundamentally new ones.
Why it matters: Security practitioners and critical infrastructure operators in Western and regional organizations face elevated threats from AI-enhanced Iranian cyber operations, drone attacks, and influence campaigns targeting both digital assets and physical infrastructure, necessitating improved defenses against attribution-resistant asymmetric threats.
- breaches incidents
Cyberattack on Japan's largest cold-chain operator disrupts KFC, supermarket supplies
A cyberattack on Nichirei Logistics Group, Japan's largest cold-chain operator, disrupted ingredient deliveries to Kentucky Fried Chicken and other major restaurant chains. The attack caused operational strain for food service businesses dependent on the logistics provider's supply capabilities.
Why it matters: Restaurants and food service operators using Nichirei face immediate supply chain disruptions; practitioners should assess critical dependencies on third-party logistics providers and develop contingency plans for supplier outages.