vulnerability Critical Adobe ColdFusion Vulnerability Exploited in Attacks A critical vulnerability in Adobe ColdFusion, tracked as CVE-2026-48282, has been actively exploited by threat actors shortly after its public disclosure. Adobe released a patch on June 30th, but attackers were observed… SecurityWeek · Jul 7, 2026 Critical CVE-2026-48282vulnerabilitypath traversalcode execution
threat-intel Iran-Linked Hackers Using Modular C&C Framework in Cyberattacks An Iran-linked APT group, known as Cavern Manticore, is utilizing a sophisticated, AI-assisted modular command-and-control framework to target organizations in Israel, particularly government entities and IT providers. T… SecurityWeek · Jul 7, 2026 High ILaptcommand and controllateral movement
vulnerability Siemens Mendix Studio Pro Siemens has issued an advisory regarding a critical file parsing vulnerability in Mendix Studio Pro. Versions prior to V10.24.21 and V11.6.7 are susceptible to code execution if a user opens and runs a maliciously crafte… CISA Advisories · Jul 7, 2026 Critical CVE-2026-48192code-injectionindustrial-control-systemics
vulnerability Hitachi Energy e-mesh EMS Hitachi Energy has identified a buffer overflow vulnerability within its e-mesh EMS product versions 4.1.6, 4.4.2, and 4.7.0, stemming from a flaw in the NGINX Plus and NGINX Open Source modules. Exploitation could lead… CISA Advisories · Jul 7, 2026 High CVE-2026-42945buffer overflownginxubuntu
vulnerability Digi International PortServer TS, Digi One SP IA Digi International has issued a security advisory regarding critical vulnerabilities (CVE-2026-12948) in its PortServer TS, Digi One SP, Digi One SP IA, and Digi One IA devices. These vulnerabilities allow an unauthentic… CISA Advisories · Jul 7, 2026 High CVE-2026-12352CVE-2026-12948xsscveweb-management
vulnerability Hydro-Québec Le Circuit Electrique charging station backend Hydro-Québec has addressed vulnerabilities in its Le Circuit Electrique charging station backend, preventing potential privilege escalation and denial-of-service attacks. The issues stemmed from a lack of proper authenti… CISA Advisories · Jul 7, 2026 Medium CVE-2026-20744CVE-2026-42952CVE-2026-44383CAcwe-284cwe-307cwe-613
threat-intel Labcenter Proteus 9 CISA has issued an advisory regarding critical vulnerabilities in Labcenter Proteus 9, a software used in critical infrastructure sectors such as communications, defense industrial base, and energy. These vulnerabilities… CISA Advisories · Jul 7, 2026 High CVE-2026-42953CVE-2026-49033CVE-2026-42958vulnerabilityremote code executioncritical infrastructure
vulnerability Hitachi Energy PROMOD V Hitachi Energy has identified an insecure HTTP transmission vulnerability in its PROMOD V product versions. This vulnerability, stemming from a lack of HTTPS support on the Digipede server, could allow attackers to inter… CISA Advisories · Jul 7, 2026 High CVE-2026-10763WOhttpvulnerabilitycybersecurity
threat-intel CISO Conversations: Tarah Wheeler, Cybersecurity Leader, Thought Leader and Original Thinker This article profiles Tarah Wheeler, CISO at TPO Group and previously holding leadership roles at Red Queen Technologies and EFF. It highlights her unique background, blending her passion for social science and writing w… SecurityWeek · Jul 7, 2026 Medium CHRUNOsocial sciencehuman behaviorpolicy
threat-intel Siemens SINEC OS Siemens has released a security advisory regarding multiple vulnerabilities within its SINEC OS and related products, including the RUGGEDCOM RST2428P. These vulnerabilities, ranging from stack-based buffer overflows to… CISA Advisories · Jul 7, 2026 High CVE-2025-1352CVE-2025-1376CVE-2025-6052vulnerabilitybuffer overflowpath traversal
threat-intel What Changes When Your Software Supply Chain Includes AI Writing Your Code? The increasing use of AI tools in software development is significantly altering the landscape of software supply chain security. Traditionally, security focused on the code a team directly wrote, but now, AI-generated c… The Hacker News · Jul 7, 2026 Medium aisoftware supply chainautomation
threat-intel Google Is Suing Chinese Scammers Who Are Using Gemini Google is taking legal action against a Chinese group, Outsider Enterprise, who were leveraging Google's Gemini AI to create sophisticated phishing campaigns. The group utilized Telegram to offer ‘phishing-as-a-service,’… Schneier on Security · Jul 7, 2026 Medium CNphishingaigemini
threat-intel Threat landscape for industrial automation systems. Q1 2026 In Q1 2026, the effectiveness of blocking malicious objects on industrial control systems (ICS) decreased significantly, reaching 19.6%, a three-year low. Growth in blocked threats was most pronounced in Southern Europe… Securelist · Jul 7, 2026 Medium UNRUSOicsindustrial control systemsmalware
threat-intel UAT-7810 continues building ORB networks using new malware Cisco Talos Intelligence has identified UAT-7810, a China-nexus APT group, continuing to develop and deploy malware as part of its Operational Relay Box (ORB) network. The group is actively creating new malware variants,… Cisco Talos · Jul 7, 2026 High CVE-2020-22653CVE-2020-22658CVE-2023-25717CHaptmalwarechina
threat-intel Linux Kernel Vulnerability Allows VM Escape on Intel and AMD Systems A long-standing Linux kernel vulnerability, dubbed Januscape (CVE-2026-53359), has been discovered that allows attackers to escape virtual machines and gain root access on the underlying host. This flaw, dormant for 16 y… SecurityWeek · Jul 7, 2026 Critical CVE-2026-53359linuxkernelvm
threat-intel Keyfactor Scores $1 Billion+ Investment for AI, Post-Quantum Security Keyfactor, a cybersecurity firm specializing in cryptographic security and machine identity management, has secured over $1 billion in investment to bolster its growth and address the increasing need for post-quantum cry… SecurityWeek · Jul 7, 2026 Medium machine identitiespost-quantumcryptography
threat-intel Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities A China-aligned threat actor cluster, tracked as UNC5174 and linked to ShadowPad, has been exploiting vulnerabilities in Roundcube webmail software at U.S. and Canadian universities. The campaign leverages CVE-2024-42009… The Hacker News · Jul 7, 2026 High CVE-2024-42009CVE-2025-49113CHUSCAroundcubexsscve-2024-42009
vulnerability CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware The CERT Coordination Center has issued a warning about a hidden backdoor embedded in Tenda router firmware. This vulnerability, tracked as CVE-2026-11405, allows attackers to bypass password verification and gain full a… The Hacker News · Jul 7, 2026 High CVE-2026-11405routerbackdoorfirmware
threat-intel BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA BeyondTrust has released patches to address critical security vulnerabilities in its Remote Support and Privileged Remote Access products. These flaws, if exploited, could allow unauthenticated attackers to gain unauthor… The Hacker News · Jul 7, 2026 Critical CVE-2026-40138CVE-2026-40139CVE-2026-40140vulnerabilityauthenticationremote access
threat-intel ISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th) The SANS Internet Storm Center’s latest Stormcast highlighted a significant increase in malicious activity targeting industrial control systems (ICS) and operational technology (OT) environments. The report indicated a s… SANS Internet Storm Center · Jul 7, 2026 High icsotvulnerability