vulnerability Meta Paid $78,000 Bounty for Vulnerability Exposing Customer Support Data A security researcher discovered a critical vulnerability in Meta's Horizon Managed Solutions platform, allowing an attacker to access sensitive customer support data and manipulate support workflows. Meta patched the is… SecurityWeek · Jul 21, 2026 High idroraccess controlbug bounty
threat-intel Attackers pummel critical WordPress vuln to create all sorts of mischief This article covers a range of cybersecurity and technology news, including a vulnerability exploited to create mischief, a Russian phishing campaign mimicking Signal support, and a significant acquisition in the cyberse… The Register · Jul 20, 2026 Medium CVE-2026-63030CVE-2026-60137vulnerabilityphishingransomware
threat-intel Scammers impersonate FBI on social media, prey on crime victims Scammers are impersonating the FBI on social media to trick victims, particularly those involved in crime, into divulging sensitive information. This tactic is part of a broader trend of online fraud and disinformation c… The Register · Jul 20, 2026 Medium CHsocial engineeringphishingfraud
threat-intel 25 Years After Code Red: What the Worm Era Can Teach Us About AI Security Twenty-five years after the Code Red worm, a pivotal moment in cybersecurity history, experts are drawing parallels to the current rush towards AI adoption. The article highlights how Code Red exploited a widespread, oft… Dark Reading · Jul 20, 2026 Medium CHaisecurityvulnerability
threat-intel CISOs Feel the Heat Over AI Risk CISOs are facing increased pressure and job insecurity due to the rapid and often chaotic adoption of AI within companies. A recent Splunk survey revealed that 26% of top security executives are considering leaving their… Dark Reading · Jul 20, 2026 High aicybersecurityrisk
threat-intel India says allegedly leaked nuclear plant files pose no safety risk A cybercrime group, World Leaks (formerly Hunters International ransomware), has allegedly leaked thousands of files related to India's Kudankulam Nuclear Power Plant, claiming they originated from a breach involving Rel… The Record · Jul 20, 2026 High INcybercrimedata breachnuclear
threat-intel Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software Neo, a cybersecurity startup led by former SentinelOne executives, has raised $100 million to provide enterprises with a control layer for AI software, addressing the growing concern of AI agents embedded in various appl… SecurityWeek · Jul 20, 2026 Medium aiagenticcybersecurity
threat-intel Hugging Face Hacked in Autonomous AI Attack Hugging Face, a popular AI collaboration platform, suffered a data breach orchestrated by an autonomous AI agent. The attackers exploited vulnerabilities within their data processing pipeline to gain unauthorized access… SecurityWeek · Jul 20, 2026 High aiautonomousattack
threat-intel World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent Hugging Face, a leading AI model repository, was hacked by an autonomous AI agent system. The attacker gained access to internal datasets and credentials, moving laterally across several clusters. While public-facing mod… The Hacker News · Jul 20, 2026 High CHaiautonomous agentsecurity
vulnerability Multiples vulnérabilités dans WordPress (20 juillet 2026) Multiple vulnerabilities have been discovered in WordPress, allowing attackers to execute arbitrary code remotely and bypass security policies. The CERT-FR has a public proof of concept demonstrating the impact. Users of… CERT-FR · Jul 20, 2026 High CVE-2026-60137CVE-2026-63030wordpressvulnerabilitysql injection
vulnerability New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code A critical vulnerability (RCE) exists in WordPress core versions 6.9 through 6.9.4 and 7.0 through 7.0.1, allowing unauthenticated attackers to execute code via a batch request. While no CVE has been assigned yet, WordPr… The Hacker News · Jul 17, 2026 Critical wordpressrcevulnerability
supply-chain E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI Assistants The European Commission has ordered Google to allow rival AI assistants on Android to access device features like the microphone, camera, and screen, effectively dismantling Google's control over these functionalities. T… The Hacker News · Jul 17, 2026 High aiandroiddata-sharing
threat-intel Beacon Security Raises $13 Million for Security Data Platform Beacon Security, a cybersecurity startup founded by IDF veterans, has secured $13 million in seed funding to bolster its security data platform. The platform aims to provide context and visibility for AI-powered security… SecurityWeek · Jul 17, 2026 Info aisecuritydata
threat-intel Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation Senator Ron Wyden is urging the Trump administration to push back against Canadian legislation that could force U.S. tech companies to create backdoors and share user data, potentially compromising U.S. national security… The Record · Jul 16, 2026 High CAUSsurveillanceprivacyencryption
threat-intel AI Data Centers Are Being Built Faster Than They Can Be Secured A Lava Labs report highlights significant security risks associated with the rapid growth of AI data centers, arguing that these new facilities are being built without adequately addressing the unique vulnerabilities ste… SecurityWeek · Jul 16, 2026 High aidata centersecurity
threat-intel Scattered Spider hackers sentenced to 5.5 years over £29 million Transport for London hack Two members of the Scattered Spider cybercrime group, Thalha Jubair and Owen Flowers, have been sentenced to over five years in prison for their role in a 2024 attack against Transport for London (TfL). The attack caused… The Record · Jul 16, 2026 High UNcybercrimeransomwaredata breach
threat-intel Smashing Security podcast #476: Remote-control rickshaws and rogue book marketers This episode of Smashing Security explores a series of unusual events, primarily focusing on a deep dive into a massive leak of internal communications from the Conti ransomware gang. The podcast details how the chats, f… Graham Cluley · Jul 16, 2026 Medium INransomwareremote-controle-rickshaw
threat-intel OpenAI’s GPT-Red Automates Prompt Injection Testing to Harden GPT-5.6 Sol OpenAI has developed GPT-Red, an automated red-teaming model, to proactively identify and mitigate prompt injection vulnerabilities in its large language models, particularly GPT-5.6 Sol. This model, trained through self… The Hacker News · Jul 16, 2026 High prompt injectionred teamingai security
threat-intel Police Disrupt a €140M Cyber Fraud Ring in Spain Spanish police disrupted a €140 million cyber fraud ring operating across multiple countries, involving over 70 individuals and a complex network of money laundering. The operation involved sophisticated techniques like… Dark Reading · Jul 16, 2026 High SPPOPAcybercrimefraudmoney laundering
threat-intel Is 'Tech-xit' Imminent? UK Steps Up Sovereignty Push Amid AI Strife The UK is intensifying its push for tech sovereignty, driven by concerns over reliance on US tech companies, particularly in the rapidly developing field of AI. Recent restrictions on AI models from Anthropic and OpenAI… Dark Reading · Jul 15, 2026 High UKUSCHtech-sovereigntyaicybersecurity