Cybersecurity Daily 08 July 2026
Collected: 2026-07-08T04:00:49.771611
CRITICAL SECTION
CISA KEV (last 14 days)
CVE-2026-48908 [CISA KEV] CVE-2026-48908: JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability – JoomShaper SP Page Builder (Score: 6)
CVE-2026-55255 [CISA KEV] CVE-2026-55255: Langflow Authorization Bypass Through User-Controlled Key Vulnerability – Langflow Langflow (Score: 6)
CVE-2026-56290 [CISA KEV] CVE-2026-56290: Joomlack Page Builder Improper Access Control Vulnerability – Joomlack Page Builder (Score: 6)
CVE-2026-48282 [CISA KEV] CVE-2026-48282: Adobe ColdFusion Path Traversal Vulnerability – Adobe ColdFusion (Score: 6)
RANSOMWARE VICTIMS (today)
Booba Project: URA Group
incransom: Aesthetic Surgical Images
thegentlemen: LogiQuip, Mercado Libre, Shamrock Holdings Inc., Medic Rescue, Virginia Historical Society, Quanterm Logistics Sdn Bhd, Spedidam, hiddeenn, Arabia Falcon Insurance Company SAOG, Ce Ratp Comite D entreprise Ratp, Keifert, Kosmos, EBNY Development, Tonnies Group, Automovil Supply S.A, Excel Cell Electronic, CSIR Structural Engineering Research Centre, Jump Solutions Inc, MBT Energy, Pro-Tech Technology, Technical Solutions Group
cmdorganization: Mount Royal University
AiLock: Studio Sardano, Richmont Graduate University
krybit: seprec.gob.bo
qilin: Lechner Massivhaus GmbH, COP® Vertriebs-GmbH Zentrale, Next Clinics, Accelirate
interlock: YMCA of Western North Carolina
akira: RISE Architecture, Chisholm Persson & Ball, Excalibur Rentals, Edge Solutions | Stone Ridge Payments
medusalocker: Forces
dragonforce: hive360.com, amplesurveyor.com
bravox: PB Fiduciaire SA
play: Preneed Funeral Programs, Kevin Bao Lenguyen, United Infrastructure
payoutsking: Welldyne, C****p
NEWS
[8] What Changes When Your Software Supply Chain Includes AI Writing Your Code? Software supply chain security was hard enough. Then AI joined the build pipeline.
For five years, "software supply chain security" meant one question: what's in your code? Which open-source packages, which versions, which transitive dependencies three layers deep that nobody chose on purpose?
SolarWinds, Log4Shell, and XZ Utils all taught the same lesson: the risk lives less in the code a
[8] Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities A suspected China-aligned threat activity cluster has been observed exploiting Roundcube webmail software belonging to physics and engineering departments of U.S. and Canadian universities as part of a new campaign.
The activity involves the exploitation of now-patched, critical security flaws in the open-source email solution, such as CVE-2024-42009 (CVSS score: 9.3), to siphon credentials,
[8] CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware Several versions of firmware released by Chinese network device manufacturer Tenda have been found to embed an undocumented authentication backdoor that enables administrative access to the devices' web management interfaces, the CERT Coordination Center (CERT/CC) warned Monday.
"An attacker can exploit this vulnerability, tracked as CVE-2026-11405, to bypass the password verification process
[8] BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA BeyondTrust has released updates to address two critical security flaws affecting Remote Support (RS) and Privileged Remote Access (PRA) products that, if successfully exploited, could allow unauthenticated attackers to take control of susceptible devices.
The vulnerabilities are listed below –
CVE-2026-40138 (CVSS score: 9.2) – A pre-authentication vulnerability exists in the
[6] Accenture confirms breach after hacker offers stolen data for sale IT services giant Accenture has confirmed it suffered a security breach after a threat actor claimed to have stolen 35 GB of source code and other data from the company. […]
[5] Chinese hackers develop LONGLEASH malware to expand ORB network Chinese hackers tracked as 'UAT-7810' are actively evolving their malware to expand their Operational Relay Box (ORB) network by compromising internet-facing networking devices, primarily unpatched Ruckus routers. […]
[5] Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots A critical flaw in Google's Dialogflow CX could have let an attacker with edit rights on one Code Block-enabled agent compromise other Code Block-enabled agents in the same Google Cloud project.
From there, they could read live conversations, steal the data users shared, and make the bots send attacker-written messages, including requests to re-enter a password.
Security firm Varonis found it
[5] Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could result in cross-tenant compromise.
The one-click vulnerability has been codenamed WriteOut by the Sand Security Research team.
"An outsider could go from having no access to taking over any Writer AI
Companion HTML report: Download report (HTML)
Leave a Reply