1. Microsoft released a record 622 patches for its July Patch Tuesday, including two zero-day vulnerabilities currently under active exploitation (The Hacker News).
2. CISA issued a warning regarding three actively exploited vulnerabilities in internet-exposed on-premises SharePoint Server instances (Bleeping Computer).
3. SonicWall confirmed active exploitation of two zero-day vulnerabilities in its SMA 1000 series appliances, including one allowing arbitrary command execution (The Hacker News).
4. Zoom patched a critical vulnerability tracked as CVE-2026-53412 that could allow unauthenticated attackers to perform account takeovers (The Hacker News).
5. A cyberattack on Nichirei Logistics Group in Japan disrupted supply chains for major companies including KFC (The Record).
6. Spanish police dismantled a cyber fraud ring responsible for 140 million euros in damages (Dark Reading).
7. Dutch authorities arrested members of an international investment fraud scheme that stole over 100 million euros (Bleeping Computer).
8. US federal prosecutors charged three Russian nationals for operating a bulletproof hosting service linked to ransomware attacks causing 62 million dollars in damages (Bleeping Computer).
9. 23andMe reached an 18 million dollar settlement with 42 state attorneys general following a massive data breach (The Record).
10. Researchers identified a supply-chain attack where malicious AsyncAPI npm packages were used to distribute credential-stealing malware (Bleeping Computer).
11. A security flaw in the Cursor code editor allows malicious repositories to trigger arbitrary code execution on Windows systems (The Hacker News).
12. The OkoBot malware framework was discovered targeting hardware wallet users by injecting phishing requests into legitimate desktop applications (The Hacker News).
13. A Russian-speaking threat actor known as bandcampro was observed abusing the Google Gemini CLI tool to operate a botnet (Bleeping Computer).
14. Researchers disclosed the TuxBot v3 Evolution botnet framework, which shows evidence of being developed with the assistance of large language models (The Hacker News).
15. Mozilla released security updates for Firefox to address two critical vulnerabilities for which exploit code is publicly available (The Hacker News).
Be First to Comment