Category: Cybersecurity

  • Cybersecurity Intelligence Report – 10 July 2026

    CRITICAL SECTION

    No critical items today.

    CISA KEV (last 14 days)

    No KEV items.

    RANSOMWARE VICTIMS (today)

    No ransomware victims today.

    NEWS

    [8] 12 Million Impacted by Data Breach at Japanese Telco KDDI 

    Hackers exploited a zero-day vulnerability in a third-party system to access a KDDI email system for ISPs.

    The post 12 Million Impacted by Data Breach at Japanese Telco KDDI appeared first on SecurityWeek.

    (SecurityWeek)

    [7] 5,811 arrests, $293 million seized over social engineering scams 

    Criminals who pose as police officers, romantic partners, and business suppliers have built fraud operations that reach across continents. A four-month enforcement campaign against these schemes wrapped up, and police in 97 countries and territories took part. Thousands of arrests The campaign, called Operation First Light 2026, centered on social engineering scams and the money laundering that moves their proceeds. Arrests reached 5,811. Investigators intercepted $293 million in illicit asse (HelpNetSecurity)

    [6] Injective SDK on npm infected with cryptocurrency wallet stealer  Hackers compromised the Injective Labs SDK project’s GitHub repository and used it to publish a malicious package on the Node Package Manager (npm) that stole cryptocurrency wallet private keys and mnemonic seed phrases. […] (BleepingComputer)

    [6] Microsoft patches RoguePlanet Defender zero-day vulnerability  Microsoft has released a security patch to address a Defender zero-day vulnerability known as “RoguePlanet,” disclosed after the June 2026 Patch Tuesday. […] (BleepingComputer)

    [6] NetSPI pairs AI pentesting with expert-validated security findings 

    NetSPI has announced the expansion of its AI-powered continuous pentesting platform, broadening the suite of services that organizations can use to ensure critical assets are always protected. The new services comprise continuous web application penetration testing, continuous AI penetration testing, continuous internal penetration testing and continuous AI findings validation which applies expert human judgement to AI-generated security findings. With an expanding number of new attack surfac (HelpNetSecurity)

    [5] Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges  Microsoft has released security updates for a Defender vulnerability known as RoguePlanet, nearly a month after details of the flaw became public.

    The vulnerability, tracked as CVE-2026-50656 (CVSS score: 7.8), is a privilege escalation issue in the Microsoft Malware Protection Engine (“mpengine.dll”), which provides scanning, detection, and cleaning capabilities for its antivirus and (TheHackerNews)

    [5] Microsoft Patches Defender ‘RoguePlanet’ Vulnerability 

    The privilege escalation vulnerability tracked as CVE-2026-50656 has been patched with a Microsoft Malware Protection Engine update.

    The post Microsoft Patches Defender ‘RoguePlanet’ Vulnerability appeared first on SecurityWeek.

    (SecurityWeek)

    [5] Microsoft releases fix for RoguePlanet Defender flaw (CVE-2026-50656) 

    Microsoft has finally released a security update for its Microsoft Malware Protection Engine, which fixes CVE-2026-50656, the Windows Defender local privilege escalation vulnerability triggered by the RoguePlanet exploit. The vulnerability and the fix CVE-2026-50656 is due to improper link resolution before file access, affects Windows 10 and Windows 11, and may allow authenticated attackers to achieve SYSTEM-level privileges on vulnerable machines by launching low-complexity attacks. The fla (HelpNetSecurity)

    [5] [RANSOMWARE] nova leaked Hynet  Victim: Hynet | Group: nova | Country: GB | Details: Hynet helps businesses protect and manage their most important asset: information. With a team of skilled tech experts, they solve complex IT challenges by providing smart data storage and network security services. Their remote team works closely with clients to improve productivity and keep compan (ransomware.live/nova)

    [5] [RANSOMWARE] cmdorganization leaked Finance Yorkshire  Victim: Finance Yorkshire | Group: cmdorganization | Website: www.finance-yorkshire.com | Country: GB | Details: Finance Yorkshire provides funding solutions for small and medium-sized enterprises (SMEs) located in or planning to relocate to Yorkshire. Their offerings include business loans ranging from £25,000 to £250,000, equity-linked investments, and seedcorn startup finance, with a focus on supporting gro (ransomware.live/cmdorganization)

    [5] [RANSOMWARE] moneymessage leaked Envision Unlimited  Victim: Envision Unlimited | Group: moneymessage | Details: [AI generated] Envision Unlimited is a nonprofit human services organization based in the United States, primarily operating in Illinois. Founded in Chicago, it provides support services for individuals with intellectual and developmental disabilities. Its programs include residential services, day (ransomware.live/moneymessage)

    [5] [RANSOMWARE] BrainCipher leaked robroy.com  Victim: robroy.com | Group: BrainCipher | Website: robroy.com | Country: US | Details: [AI generated] Rob Roy Industries, operating through robroy.com, is a US-based manufacturer specializing in electrical conduit systems and enclosures. The company produces PVC-coated steel conduit, fiberglass conduit, and industrial enclosures used in corrosive and hazardous environments. Headquarte (ransomware.live/BrainCipher)

    [5] [RANSOMWARE] BrainCipher leaked iac-intl.com  Victim: iac-intl.com | Group: BrainCipher | Website: iac-intl.com | Country: US | Details: [AI generated] N/A (ransomware.live/BrainCipher)

    [5] [RANSOMWARE] qilin leaked Inter Power Engineering  Victim: Inter Power Engineering | Group: qilin | Website: www.interpower-engrg.com | Country: AE | Details: N/A (ransomware.live/qilin)

    [5] [RANSOMWARE] payload leaked The commune of Castries  Victim: The commune of Castries | Group: payload | Website: castries.fr | Country: FR | Details: The commune of Castries is a picturesque, historic town in the south of France, renowned for its majestic 17th-century château and unique aqueduct. The city’s official website (castries.fr) provides visitors and locals with the latest news, cultural event schedules, and tourism information. Addition (ransomware.live/payload)

    [5] [RANSOMWARE] settra leaked wtlawllp.co.uk  Victim: wtlawllp.co.uk | Group: settra | Website: wtlawllp.co.uk | Country: GB | Details: WT Law LLP: Internal Documents of a UK Law Firm PROLOGUE Inside: full credit reports with data from … (ransomware.live/settra)

    [5] [RANSOMWARE] settra leaked gvfsinc.com  Victim: gvfsinc.com | Group: settra | Website: gvfsinc.com | Country: US | Details: GREEN VALLEY: SELF-LEASE SCHEME How a California agricultural distributor pays rent to companies con… (ransomware.live/settra)

    [5] [RANSOMWARE] settra leaked bergdemo.com  Victim: bergdemo.com | Group: settra | Website: bergdemo.com | Country: DE | Details: Berg / Crushing Corporation of America: Demolition on Federal Money PROLOGUE In our possession are i… (ransomware.live/settra)

    [5] [RANSOMWARE] qilin leaked Sintax  Victim: Sintax | Group: qilin | Website: www.sintax.be | Country: BE | Details: N/A (ransomware.live/qilin)

    [5] [RANSOMWARE] qilin leaked Sun Dolphin Boats  Victim: Sun Dolphin Boats | Group: qilin | Website: www.sundolphin.com | Country: US | Details: N/A (ransomware.live/qilin)

    [5] [RANSOMWARE] qilin leaked Bronken’s Dist  Victim: Bronken’s Dist | Group: qilin | Website: www.bronkens.com | Details: N/A (ransomware.live/qilin)

    [5] [RANSOMWARE] qilin leaked Alan F Burke  Victim: Alan F Burke | Group: qilin | Website: www.alanburkecpa.com | Country: US | Details: N/A (ransomware.live/qilin)

    [5] [RANSOMWARE] qilin leaked Hum & Jacoby  Victim: Hum & Jacoby | Group: qilin | Website: www.hhjcpas.com | Country: US | Details: N/A (ransomware.live/qilin)

    [5] [RANSOMWARE] AiLock leaked Pinturas Prisa  Victim: Pinturas Prisa | Group: AiLock | Country: MX | Details: Pinturas PRISA is a Mexican company from the state of Jalisco with nearly 80 years of history, specializing in the production of high-quality paints and coatings for industrial sectors (automotive, woodworking, manufacturing) and retail customers. (ransomware.live/AiLock)

    [5] [RANSOMWARE] CRPxO leaked Creative Smiles Pediatric Dentistry  Victim: Creative Smiles Pediatric Dentistry | Group: CRPxO | Website: creativesmilesprosper.com | Country: US | Details: Sector: Pediatric Dentistry | Data leaked: 2.5 GB (ransomware.live/CRPxO)

    [5] [RANSOMWARE] CRPxO leaked AMHWA Biopharm Co., Ltd.  Victim: AMHWA Biopharm Co., Ltd. | Group: CRPxO | Website: amhwabio.com | Country: CN | Details: Sector: Biopharmaceutical | Data leaked: 37.0 GB (ransomware.live/CRPxO)

    [5] [RANSOMWARE] CRPxO leaked SF Smile Doctor  Victim: SF Smile Doctor | Group: CRPxO | Website: sfsmiledoctor.com | Country: US | Details: Sector: Medical | Data leaked: 100.0 GB (ransomware.live/CRPxO)

    [5] [RANSOMWARE] CRPxO leaked Bishop Arts Dental PLLC  Victim: Bishop Arts Dental PLLC | Group: CRPxO | Website: bishopartsdental.com | Country: US | Details: Sector: Medical | Data leaked: 24.6 GB (ransomware.live/CRPxO)

    [5] [RANSOMWARE] CRPxO leaked Top Notch Dentistry of Dallas  Victim: Top Notch Dentistry of Dallas | Group: CRPxO | Website: topnotchdentistryofdallas.com | Country: US | Details: Sector: Medical | Data leaked: 2.0 GB (ransomware.live/CRPxO)

    [5] [RANSOMWARE] CRPxO leaked Benjamin H. Wang DDS Inc.  Victim: Benjamin H. Wang DDS Inc. | Group: CRPxO | Country: US | Details: Sector: Medical | Data leaked: 1.2 GB (ransomware.live/CRPxO)

    [5] [RANSOMWARE] qilin leaked Peligro Sports  Victim: Peligro Sports | Group: qilin | Website: www.peligrosportsnyc.com | Country: US | Details: N/A (ransomware.live/qilin)

    Companion full HTML report: Download full HTML report

    SUMMARY

    Total new items: 65  Critical: 0  KEV: 0  Ransomware victims today: 0

    Sources: BleepingComputer, TheHackerNews, SecurityWeek, HelpNetSecurity, KrebsOnSecurity, CISA KEV, ransomware.live

  • Cybersecurity Intelligence Report  09 July 2026


    Cybersecurity Intelligence Report  9 July 2026

    Cybersecurity Intelligence Report  9 July 2026
    Generated: 2026-07-09 03:02 UTC

    CRITICAL SECTION

    • [11] CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV (TheHackerNews)  CVE-2026-48282
      The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.

      The vulnerabilities are listed below –

      CVE-2026-48282 (CVSS score: 10.0) – A path traversal vulnerability in Adobe ColdFusion that could lead to arbitrary code execution in the context of the

    • [10] CISA orders feds to prioritize patching Langflow auth bypass flaw (BleepingComputer)
      The U.S. Cybersecurity and Infrastructure Security Agency (CISA) gave federal agencies until Friday to patch an actively exploited vulnerability in the Langflow visual framework for building AI agents. […]

    CISA KEV (last 14 days)

    No CISA KEV items in the collector output.

    RANSOMWARE VICTIMS (today)

    qilin: [RANSOMWARE] qilin leaked S.J. Louis

    krybit: [RANSOMWARE] krybit leaked xuerong.com, [RANSOMWARE] krybit leaked shelby.com.mx

    akira: [RANSOMWARE] akira leaked Wade's Dairy

    nightspire: [RANSOMWARE] nightspire leaked PCCC Realty LLC

    pear: [RANSOMWARE] pear leaked Tostrud & Temp, S.C.

    chaos: [RANSOMWARE] chaos leaked opportune.com, [RANSOMWARE] chaos leaked corepharma.com

    spacebears: [RANSOMWARE] spacebears leaked Biessse

    NEWS

    • [8] Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS (TheHackerNews)
      Ubiquiti has shipped updates to address multiple critical security flaws impacting UniFi Connect, UniFi Talk, UniFi Access, UniFi Protect, and UniFi OS that could result in privilege escalation and arbitrary command execution.

      The list of vulnerabilities is as follows –

      CVE-2026-50746 (CVSS score: 10.0) – An improper access control vulnerability in UniFi Connect Application that an attacker

    • [6] CISA orders feds to patch max severity ColdFusion flaw by Friday (BleepingComputer)
      The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered government agencies to patch an actively exploited maximum-severity flaw in the Adobe ColdFusion commercial web app development platform by Friday. […]
    • [6] Accenture Confirms Data Breach After Hacker Claims Source Code Theft (SecurityWeek)
      <p>The professional services giant says it contained the incident, remediated its source, and experienced no operational or service delivery impact.</p>
      <p>The post <a href="https://www.securityweek.com/accenture-confirms-data-breach-after-hacker-claims-source-code-theft/">Accenture Confirms Data Breach After Hacker Claims Source Code Theft</a> appeared first on <a href="https://www.securityweek.com">SecurityWeek</a>.</p>
    • [6] Accenture acknowledges security incident following 35GB data theft claim (HelpNetSecurity)
      <p>Accenture appears to have suffered a data breach, the extent of which is currently unknown. On Monday, a threat actor going by the handle &#8220;888&#8221; posted on the cybercrime forum PwnForums, claiming to have breached the technology consulting company and stolen &#8220;just over 35gb of source codes&#8221; in July 2026. They claim to have exfiltrated source code, RSA keys, SSH keys, Azure personal access tokens, Azure Storage access keys, and configuration files, which they are &#8230;
    • [6] Felons, Fraudsters Flog Offensive Cybersecurity Startup (KrebsOnSecurity)
      A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theorists and convicted felons whose most recent ventures included fake intelligence companies and a now-defunct AI-based lobbying platform they operated under assumed names.
    • [5] Mount Royal University confirms breach as hackers claim attack (BleepingComputer)
      Mount Royal University in Calgary says hackers stole and then deleted data from its file storage systems after breaching the university's network. […]
    • [5] Attackers using Langflow flaw for credential harvesting (CVE-2026-55255) (HelpNetSecurity)
      <p>The US Cybersecurity and Infrastructure Security Agency (CISA) is warning about yet another Langflow vulnerability (CVE-2026-55255) leveraged by attackers in the wild. The flaw was added to the agency&#8217;s Known Exploited Vulnerabilities catalog on Tuesday, July 7, nearly two weeks after the Sysdig Threat Research Team observed it being actively targeted. CVE-2026-55255 exploited Langflow is an open-source visual framework for building AI agents and workflows, widely used by individual dev
    • [5] [RANSOMWARE] qilin leaked S.J. Louis (ransomware.live/qilin)
      Victim: S.J. Louis | Group: qilin | Website: www.sjlouis.com | Country: BR | Details: N/A
    • [5] [RANSOMWARE] krybit leaked xuerong.com (ransomware.live/krybit)
      Victim: xuerong.com | Group: krybit | Website: xuerong.com | Country: CN | Details: Shanghai Xuerong Biotechnology Co., Ltd. (上海雪榕生物科技股份有限公司), formerly known as Shanghai Gaoron…
    • [5] [RANSOMWARE] krybit leaked shelby.com.mx (ransomware.live/krybit)
      Victim: shelby.com.mx | Group: krybit | Website: shelby.com.mx | Country: MX | Details: Shelby Manufacturing de México, S.A. de C.V. is a Mexican maquiladora company specializing in the manufacturing of sewi…
    • [5] [RANSOMWARE] akira leaked Wade's Dairy (ransomware.live/akira)
      Victim: Wade's Dairy | Group: akira | Country: GB | Details: A family-owned business for over a century, Wade's Dairy has been a staple in the Connecticut c
      ommunity.

      We will upload corporate data soon. Detailed employee personal information (name, DOB, SSN, DL,
      height, weight, race, sex, eyes and hair color, tattoo information, emails, phones and so on),
      pr

    • [5] [RANSOMWARE] nightspire leaked PCCC Realty LLC (ransomware.live/nightspire)
      Victim: PCCC Realty LLC | Group: nightspire | Country: US | Details: Data is not available now.
    • [5] [RANSOMWARE] pear leaked Tostrud & Temp, S.C. (ransomware.live/pear)
      Victim: Tostrud & Temp, S.C. | Group: pear | Website: tntcpas.com | Country: US | Details: Full service CPA firm serving La Crosse
    • [5] [RANSOMWARE] chaos leaked opportune.com (ransomware.live/chaos)
      Victim: opportune.com | Group: chaos | Website: www.zoominfo.com/c/opportune-llp/147440067 | Country: US | Details: DATA EXPOSURE: Opportune LLP – Full Operational Transparency

      We are officially announcing that our security team has successfully breached the internal network of Opportune LLP. As of this moment, we are in possession of the entire Opportune internal data environment—an massive archive containi…

    • [5] [RANSOMWARE] chaos leaked corepharma.com (ransomware.live/chaos)
      Victim: corepharma.com | Group: chaos | Website: www.zoominfo.com/c/corepharma-llc/30217761 | Country: US | Details: DATA EXPOSURE: CorePharma – Full GMP & Regulatory Compromise

      We are officially announcing that our security team has successfully breached the internal network of CorePharma. We are currently in possession of a comprehensive archive of the company’s internal operations, including sensitive regu…

    • [5] [RANSOMWARE] spacebears leaked Biessse (ransomware.live/spacebears)
      Victim: Biessse | Group: spacebears | Website: www.biessseworld.com | Country: IT | Details: The BiesSse group, which has been operating on the global market for over 40 years, specializes in the production and conversion of highly performing technical adhesive tapes. The BiesSse Tape production plant covers a surface area of over 11,000 sq.mt. and is equipped with modern and advanced insta

    SUMMARY

    Total new items: 47

    Critical items: 2

    Ransomware victims reported today: 9

    Top CVEs to patch urgently: CVE-2026-48282, CVE-2026-50746, CVE-2026-55255, CVE-2026-43499

  • Cybersecurity Daily  08 July 2026

    Cybersecurity Daily  08 July 2026

    Collected: 2026-07-08T04:00:49.771611

    CRITICAL SECTION

    CISA KEV (last 14 days)

    CVE-2026-48908  [CISA KEV] CVE-2026-48908: JoomShaper SP Page Builder Unrestricted Upload of File with Dangerous Type Vulnerability – JoomShaper SP Page Builder (Score: 6)

    CVE-2026-55255  [CISA KEV] CVE-2026-55255: Langflow Authorization Bypass Through User-Controlled Key Vulnerability – Langflow Langflow (Score: 6)

    CVE-2026-56290  [CISA KEV] CVE-2026-56290: Joomlack Page Builder Improper Access Control Vulnerability – Joomlack Page Builder (Score: 6)

    CVE-2026-48282  [CISA KEV] CVE-2026-48282: Adobe ColdFusion Path Traversal Vulnerability – Adobe ColdFusion (Score: 6)

    RANSOMWARE VICTIMS (today)

    Booba Project: URA Group

    incransom: Aesthetic Surgical Images

    thegentlemen: LogiQuip, Mercado Libre, Shamrock Holdings Inc., Medic Rescue, Virginia Historical Society, Quanterm Logistics Sdn Bhd, Spedidam, hiddeenn, Arabia Falcon Insurance Company SAOG, Ce Ratp Comite D entreprise Ratp, Keifert, Kosmos, EBNY Development, Tonnies Group, Automovil Supply S.A, Excel Cell Electronic, CSIR Structural Engineering Research Centre, Jump Solutions Inc, MBT Energy, Pro-Tech Technology, Technical Solutions Group

    cmdorganization: Mount Royal University

    AiLock: Studio Sardano, Richmont Graduate University

    krybit: seprec.gob.bo

    qilin: Lechner Massivhaus GmbH, COP® Vertriebs-GmbH Zentrale, Next Clinics, Accelirate

    interlock: YMCA of Western North Carolina

    akira: RISE Architecture, Chisholm Persson & Ball, Excalibur Rentals, Edge Solutions | Stone Ridge Payments

    medusalocker: Forces

    dragonforce: hive360.com, amplesurveyor.com

    bravox: PB Fiduciaire SA

    play: Preneed Funeral Programs, Kevin Bao Lenguyen, United Infrastructure

    payoutsking: Welldyne, C****p

    NEWS

    [8] What Changes When Your Software Supply Chain Includes AI Writing Your Code?  Software supply chain security was hard enough. Then AI joined the build pipeline.

    For five years, "software supply chain security" meant one question: what's in your code? Which open-source packages, which versions, which transitive dependencies three layers deep that nobody chose on purpose?

    SolarWinds, Log4Shell, and XZ Utils all taught the same lesson: the risk lives less in the code a

    [8] Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities  A suspected China-aligned threat activity cluster has been observed exploiting Roundcube webmail software belonging to physics and engineering departments of U.S. and Canadian universities as part of a new campaign.

    The activity involves the exploitation of now-patched, critical security flaws in the open-source email solution, such as CVE-2024-42009 (CVSS score: 9.3), to siphon credentials,

    [8] CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware  Several versions of firmware released by Chinese network device manufacturer Tenda have been found to embed an undocumented authentication backdoor that enables administrative access to the devices' web management interfaces, the CERT Coordination Center (CERT/CC) warned Monday.

    "An attacker can exploit this vulnerability, tracked as CVE-2026-11405, to bypass the password verification process

    [8] BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA  BeyondTrust has released updates to address two critical security flaws affecting Remote Support (RS) and Privileged Remote Access (PRA) products that, if successfully exploited, could allow unauthenticated attackers to take control of susceptible devices.

    The vulnerabilities are listed below –

    CVE-2026-40138 (CVSS score: 9.2) – A pre-authentication vulnerability exists in the

    [6] Accenture confirms breach after hacker offers stolen data for sale  IT services giant Accenture has confirmed it suffered a security breach after a threat actor claimed to have stolen 35 GB of source code and other data from the company. […]

    [5] Chinese hackers develop LONGLEASH malware to expand ORB network  Chinese hackers tracked as 'UAT-7810' are actively evolving their malware to expand their Operational Relay Box (ORB) network by compromising internet-facing networking devices, primarily unpatched Ruckus routers. […]

    [5] Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots  A critical flaw in Google's Dialogflow CX could have let an attacker with edit rights on one Code Block-enabled agent compromise other Code Block-enabled agents in the same Google Cloud project.

    From there, they could read live conversations, steal the data users shared, and make the bots send attacker-written messages, including requests to re-enter a password.

    Security firm Varonis found it

    [5] Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants  Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could result in cross-tenant compromise.

    The one-click vulnerability has been codenamed WriteOut by the Sand Security Research team.

    "An outsider could go from having no access to taking over any Writer AI

    Companion HTML report: Download report (HTML)

  • Cybersecurity Intelligence Report — 05 July 2026

    CRITICAL SECTION

    [16] BlueHammer Vulnerability Exploited in Ransomware Attacks (SecurityWeek) — CVE-2026-33825

  • Cybersecurity Intelligence Report — 2026-07-04

    Cybersecurity Intelligence Report — 2026-07-04

    Collected: 2026-07-04T04:13:31.019776

    CRITICAL SECTION

    • [10] In Other News: Canadian Hacker Jailed, Open Source Zero-Days, Two Sentenced for ATM Jackpotting (SecurityWeek)

      Noteworthy stories that might have slipped under the radar: Anonymous-linked Canadian hacker jailed, researcher drops zero-days in open source projects, Venezuelans sentenced in the US over ATM jackpotting.

      The post In Other News: Canadian Hacker Jailed, Open Source Zero-Days, Two Sentenced for ATM Jackpotting appeared first on Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution appeared first on SecurityWeek.

    • [5] Google, FBI Disrupt NetNut Residential Proxy Network Powered by Millions of Devices (SecurityWeek)

      NetNut rented access to millions of compromised devices, allowing cybercriminals and nation-state actors to mask their identities during attacks.

      The post Google, FBI Disrupt NetNut Residential Proxy Network Powered by Millions of Devices appeared first on SecurityWeek.

    • [5] Organizations struggle to prioritize known cyber risks (HelpNetSecurity)

      Organizations collect more cyber risk data than ever, with many still struggling to build a unified view of their exposure. The latest State of Threat Management report from Filigran found that security teams continue to work across disconnected tools, leaving important context spread across multiple systems. Cloud infrastructure, on-premises environments, third-party services, vulnerability scanners, threat intelligence feeds, and attack surface management platforms all generate information

    SUMMARY

    • Total new items: 31
    • Critical count: 1
    • Ransomware groups active: 11
    • Top CVEs to patch: CVE-2026-46242

    Sources: BleepingComputer, TheHackerNews, SecurityWeek, HelpNetSecurity, KrebsOnSecurity, CISA KEV, ransomware.live

    Companion HTML report: Full report

  • Cybersecurity Daily — 2026-07-03

    Companion HTML report (ZIP): Download detailed report

    CRITICAL SECTION

    NEWS

    SUMMARY

    Total new items: 57; Critical: 2; Ransomware victims today: 19.

    Full HTML report (ZIP)

  • Cybersecurity Daily — 2026-07-02

    CRITICAL SECTION

    • [11] Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic (TheHackerNews)
      Adobe has released patches for multiple maximum-severity security flaws impacting Adobe ColdFusion and Adobe Campaign Classic.

      The ColdFusion updates “resolves critical and important vulnerabilities that could lead to arbitrary code execution, privilege escalation, arbitrary file system read, and s…

    CISA KEV (Known Exploited Vulnerabilities)

    CVE Vendor/Product Score Required Action
    CVE-2026-45659 Vendor/Product: see source 6 Microsoft SharePoint Server Deserialization of Untrusted Data Vulnerability – Microsoft SharePoint Server. Required action: Apply mitigations in accordance with vendor instructions, ensuring complianc

    RANSOMWARE VICTIMS (DLS Monitoring)

    No new ransomware victims reported today.

    NEWS SECTION

    SUMMARY

    Total new items: 117. Critical count: 1. Ransomware groups active: 12. Top CVEs to patch urgently: CVE-2026-8037, CVE-2026-45659, CVE-2026-50548, CVE-2026-50549, CVE-2026-8451.

    Sources: BleepingComputer, TheHackerNews, SecurityWeek, HelpNetSecurity, KrebsOnSecurity, CISA KEV, ransomware.live

    Companion HTML report: Download report (HTML)

  • Cybersecurity Intelligence Report – 01 July 2026

    CRITICAL SECTION

    Automated summary. Full companion report attached.

    Companion report: Companion HTML report

  • Cybersecurity Intelligence Report – 29 June 2026

    CRITICAL

    No critical items in this collection period.

    CISA KEV (last 14 days)

    No CISA KEV items in this collection period.

    RANSOMWARE VICTIMS (DLS)

    stormous: Official Statement: Protecting palatineschool.org Infrastructure, maglificioliliana.com UPDATE-FULL DATA DUMP FREE PART1, lorenzoni-store.com UPDATE-FULL DATA DUMP FREE PART1, montechiaro-store.com UPDATE-FULL DATA DUMP FREE PART1, impulso-store.com UPDATE-FULL DATA DUMP FREE PART1, higuchi-inc.co.jp, HIGUCHI USA, INC, eogb.co.uk, eshacloudqa.com, monoprix.tn

    threeam: acemacon.org

    PrinzEugen: Driving School Software

    qilin: 1-800-dentist, Transcore

    settra: canopybrands.us, conduril.pt, hmcfarms.com, doosan.com, tmscentral.com, va-glass.com, pchome.com.tw, dystar.com, qdi.com, turbodata.com

    krybit: ford.mx

    thegentlemen: Thyssenkrupp Marine Systems (TKMS) GmbH / Atlas Elektronik

    cmdorganization: Fidelity Security Group

    Redact: Hologic, FCCI Insurance Group

    NEWS

    No news items with score ≥5.

    SUMMARY

    Total new items: 32

    Critical count: 0

    Ransomware victims today: 30

    Top CVEs to patch urgently: None listed in this run.

    Sources: BleepingComputer, TheHackerNews, SecurityWeek, HelpNetSecurity, KrebsOnSecurity, CISA KEV, ransomware.live

    Companion HTML report: https://liberpulse.com/wp-content/uploads/2026/06/cyber_report_latest-5.html

  • Cybersecurity Intelligence Report – 29 June 2026

    CRITICAL

    No critical items in this collection period.

    CISA KEV (last 14 days)

    No CISA KEV items in this collection period.

    RANSOMWARE VICTIMS (DLS)

    stormous: Official Statement: Protecting palatineschool.org Infrastructure, maglificioliliana.com UPDATE-FULL DATA DUMP FREE PART1, lorenzoni-store.com UPDATE-FULL DATA DUMP FREE PART1, montechiaro-store.com UPDATE-FULL DATA DUMP FREE PART1, impulso-store.com UPDATE-FULL DATA DUMP FREE PART1, higuchi-inc.co.jp, HIGUCHI USA, INC, eogb.co.uk, eshacloudqa.com, monoprix.tn

    threeam: acemacon.org

    PrinzEugen: Driving School Software

    qilin: 1-800-dentist, Transcore

    settra: canopybrands.us, conduril.pt, hmcfarms.com, doosan.com, tmscentral.com, va-glass.com, pchome.com.tw, dystar.com, qdi.com, turbodata.com

    krybit: ford.mx

    thegentlemen: Thyssenkrupp Marine Systems (TKMS) GmbH / Atlas Elektronik

    cmdorganization: Fidelity Security Group

    Redact: Hologic, FCCI Insurance Group

    NEWS

    No news items with score ≥5.

    SUMMARY

    Total new items: 32

    Critical count: 0

    Ransomware victims today: 30

    Top CVEs to patch urgently: None listed in this run.

    Sources: BleepingComputer, TheHackerNews, SecurityWeek, HelpNetSecurity, KrebsOnSecurity, CISA KEV, ransomware.live

    Companion HTML report: https://liberpulse.com/wp-content/uploads/2026/06/cyber_report_latest-5.html