Cybersecurity Intelligence Report 2026-07-28
Collected: 2026-07-28T04:00:42.803070
CRITICAL SECTION
- [12] Arista patches VeloCloud Orchestrator zero-day exploited in attacks (BleepingComputer)
Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks. […]…
- [11] Dysphoria IoT Botnet Adds Blockchain C2 and Victim Relays After JackSkid Disruption (TheHackerNews)
Dysphoria, an Internet of Things (IoT) botnet line tracked by CNCERT and XLab, has adopted blockchain-based name services and infected-device relays after a March law-enforcement operation against JackSkid infrastructure. The researchers say the design makes the botnet harder to disrupt. CNCERT, Chi…
- [10] Hackers target US firms in FastJson RCE zero-day attacks (BleepingComputer)
Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges. […]…
- [10] PTC Windchill Vulnerability Exploited in Ransomware Campaign (SecurityWeek)
The critical unsafe deserialization flaw allows attackers to execute arbitrary code remotely, without authentication.
The post PTC Windchill Vulnerability Exploited in Ransomware Campaign
CISA KEV SECTION
| CVE | Vendor/Product | Score | Required Action |
|---|---|---|---|
| CVE-2025-68686 | Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability | 6 | Apply vendor mitigations / follow CISA guidance |
| CVE-2026-16812 | Arista VeloCloud Orchestrator On | 6 | Apply vendor mitigations / follow CISA guidance |
| CVE-2026-54121 | – | 4 | Apply vendor mitigations / follow CISA guidance |
| CVE-2026-27577 | – | 1 | Apply vendor mitigations / follow CISA guidance |
RANSOMWARE VICTIMS (DLS Monitoring)
shinyhunters: BH Security, LLC. (brinkshome.com), RingCentral, Inc., Ernst & Young
chaos: vit-best.com
nightspire: The Mountain, Kates Nussman Ellis Earle & Landolfi LLP, Akribis Systems Pte Ltd, Thai Seng International Co. Ltd, MKS Transformator, OPTIDEA GmbH, Furama Bukit Bintang, K. Venkatesh, Co, Wings Argo Private Limited, KSL Dirtworks LLC, Diffusion de Produits Inoxydables, TFG Benefits, Inc.
dragonforce: Katathani Phuket Beach Resort
termite: Affinia Healthcare, JD Young
incransom: minigrip.com.mx, DUCON, greenecountyga.gov, foundationstofreedom.org
anubis: Prelys Courtage, Coca-Cola / Fairlife
safepay: zinorm.de, moebelmayer.de, paritaet-nrw.org, haugbuersten.de, landesmuseum.de, hst.eu, braywoodschool.co.uk, weier.org, bnpdist.com
qilin: Groupe Fenwick, Savills France, Wilbert’s
CRPxO: IPTV Platform, Marketech, American Hospice & Home Health Services (Ahhh Care), Bright Star Partners Insurance, eCare Platform, Dignity Phoenix, Schorr Law, Simpkins Law Firm, Leah Walker Orthodontics, Elko Dental Specialists
Deadlock: Hardware Asesorias Software Ltda, Tesco Engineer
Global Secret Group: Louisiana Coalition Against | Domestic Violence
NEWS SECTION
- [6] Ernst & Young data breach claimed by ShinyHunters extortion gang (BleepingComputer)
The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company’s systems via a supply-chain attac… - [6] Tech giants form alliance to put open AI in cyber defenders’ hands (HelpNetSecurity)
NVIDIA and a group of tech companies have formed an alliance to promote the use of open AI models in cybersecurity, days after OpenAI disclosed that one of its own AI models breached Hugging Face&#…
- [6] Zenity advances AI governance with Runtime Boundaries (HelpNetSecurity)
Zenity has announced a major expansion of its platform, making it the AI security platform for autonomous AI built around a new security architecture designed to govern AI decisions before they bec…
- [5] Coca-Cola Confirms Data Breach After Fairlife Ransomware Attack (SecurityWeek)
The Anubis cybercrime group has taken credit for the attack and is threatening to leak data.
The post https://liberpulse.com/wp-content/uploads/2026/07/cyber_report_latest-10.html
Leave a Reply