vulnerability Rockwell Automation 1734 POINT I/O Rockwell Automation’s 1734 POINT I/O module is vulnerable to a denial-of-service attack due to improper handling of crafted CIP messages, potentially causing a system fault and requiring a restart. CISA urges organizatio… CISA Advisories · Jul 21, 2026 Medium CVE-2026-10573USvulnerabilitydenial-of-servicecontrol systems
threat-intel MIT to Become Hotbed of AI Video Surveillance MIT is investing heavily in a massive AI-powered surveillance system, deploying over 500 cameras across campus and surrounding areas. These cameras will collect detailed data on individuals and objects, including facial… Schneier on Security · Jul 21, 2026 Medium surveillancefacial-recognitionprivacy
threat-intel Coinbase Cartel menace Caterpillar Coinbase Cartel, a ransomware group, is attempting to intimidate Caterpillar with a threat to leak information to the press if the company doesn't respond. They are using a tactic of creating a countdown and threatening… ZATAZ · Jul 21, 2026 Medium ransomwareextortioncybercrime
threat-intel Une usurpation cible les services communication An impersonation campaign is targeting businesses by mimicking Damien Bancal and ZATAZ to gain access to internal contacts and initiate a social engineering operation. The attacker uses a fabricated email chain to map ou… ZATAZ · Jul 21, 2026 Medium FRsocial_engineeringimpersonationcybercrime
data-breach Clover Health Investments Discloses Data Breach Clover Health Investments suffered a data breach due to a social engineering attack targeting employee accounts. The attackers gained access to member and broker data, but did not reach sensitive corporate financial syst… SecurityWeek · Jul 21, 2026 Medium USdata breachsocial engineeringhealthcare
threat-intel Attackers pummel critical WordPress vuln to create all sorts of mischief This article covers a range of cybersecurity and technology news, including a vulnerability exploited to create mischief, a Russian phishing campaign mimicking Signal support, and a significant acquisition in the cyberse… The Register · Jul 20, 2026 Medium CVE-2026-63030CVE-2026-60137vulnerabilityphishingransomware
threat-intel Remediating Vulnerabilities With LLMs: Inside Ivanti's Automation Push Ivanti is leveraging large language models (LLMs) to automate vulnerability remediation and discovery, a project initially sparked by the surprising effectiveness of the Claude 4.6 model. Daniel Spicer, Ivanti’s CSO, des… Dark Reading · Jul 20, 2026 Medium CVE-2026-10520llmvulnerabilityautomation
threat-intel Scammers impersonate FBI on social media, prey on crime victims Scammers are impersonating the FBI on social media to trick victims, particularly those involved in crime, into divulging sensitive information. This tactic is part of a broader trend of online fraud and disinformation c… The Register · Jul 20, 2026 Medium CHsocial engineeringphishingfraud
threat-intel Flock Safety kills acoustic system designed to detect 'human distress' Flock Safety has scrapped its acoustic gunshot detection system, initially designed to identify ‘human distress’ through audio analysis. The decision follows significant privacy concerns raised by the Electronic Frontier… The Record · Jul 20, 2026 Medium surveillanceprivacycivil liberties
threat-intel 25 Years After Code Red: What the Worm Era Can Teach Us About AI Security Twenty-five years after the Code Red worm, a pivotal moment in cybersecurity history, experts are drawing parallels to the current rush towards AI adoption. The article highlights how Code Red exploited a widespread, oft… Dark Reading · Jul 20, 2026 Medium CHaisecurityvulnerability
threat-intel Malicious cloud customers can bring down the power grid This article covers a range of cybersecurity and technology news, including a report on Russian phishing attacks posing as Signal support, a Microsoft SharePoint vulnerability, and a broader discussion about the evolving… The Register · Jul 20, 2026 Medium IRphishingvulnerabilityransomware
threat-intel More than 1,000 domains illegally streaming World Cup games seized, DOJ says The Department of Justice, in collaboration with Homeland Security Investigations, has seized over 1,000 domains illegally streaming the World Cup. This operation targets a cyber gang, Los Ciberinfiltrados, involved in d… The Record · Jul 20, 2026 Medium BUPEARcybercrimepiracystreaming
threat-intel Neo Emerges From Stealth With $100M to Control and Secure Enterprise AI Software Neo, a cybersecurity startup led by former SentinelOne executives, has raised $100 million to provide enterprises with a control layer for AI software, addressing the growing concern of AI agents embedded in various appl… SecurityWeek · Jul 20, 2026 Medium aiagenticcybersecurity
threat-intel Cybersecurity Keeps Events 'Uneventful' This article discusses the importance of proactive digital threat intelligence in securing major events. It highlights that threats often emerge long before physical security measures are in place, frequently originating… Dark Reading · Jul 20, 2026 Medium digital intelligenceevent securitythreat hunting
threat-intel New Index Tracks Material Breaches — And Refuses to Add Up the Losses Richard Bird, a former cybersecurity executive, has launched The Hacker in a Hoodie (HIH) Index, a project tracking disclosed material cyber incidents. The index compiles data from SEC filings and news reports, grading t… SecurityWeek · Jul 20, 2026 Medium cybersecuritydata breachloss reporting
threat-intel On Flock License Plate Tracking Cameras A writer was mistakenly identified and tracked by Flock license plate cameras, leading to an arrest. The issue stemmed from Flock’s AI system flagging vehicles with similar alphanumeric plate structures, even when the fu… Schneier on Security · Jul 20, 2026 Medium USsurveillanceprivacylicense plate
threat-intel Capital One Open Sources AI-Powered ‘VulnHunter’ Security Tool Capital One has released its internally developed AI-powered security tool, ‘VulnHunter,’ as open source to address the issue of overwhelming vulnerability scans and improve software supply chain security. The tool proac… SecurityWeek · Jul 20, 2026 Medium vulnerabilityaiopen source
vulnerability Multiples vulnérabilités dans Mattermost Server (20 juillet 2026) Multiple vulnerabilities have been discovered in Mattermost Server, requiring users to update to a patched version to mitigate potential security issues. The exact nature of these vulnerabilities is not specified by the… CERT-FR · Jul 20, 2026 Medium mattermostvulnerabilitysecurity update
threat-intel Scans for Hikvision Intelligent Security API, (Sun, Jul 19th) Hikvision cameras are being targeted by widespread scans due to a newly exposed REST API, the OPEN Intelligent Security API (ISAPI). This API allows remote control of camera settings and provides a simple way to identify… SANS Internet Storm Center · Jul 19, 2026 Medium iothikvisionreconnaissance
threat-intel Google’s Gemini lets strangers send messages from your locked Android phone Google’s Gemini AI assistant on Android 16 devices has a vulnerability that allows unauthorized users to send SMS and WhatsApp messages from a locked phone. This is achieved through a specific multi-touch gesture when Ge… Graham Cluley · Jul 17, 2026 Medium androidgeminilock screen