threat-intel Trump administration unveils AI-supported clearinghouse for cyber vulnerabilities The Trump administration has launched Gold Eagle, a new AI-powered cybersecurity clearinghouse to rapidly identify, prioritize, and patch vulnerabilities across industry and critical infrastructure. This initiative, driv… The Record · Jul 15, 2026 Medium vulnerabilitiesaicybersecurity
threat-intel Trump’s DNI pick grilled about election security, voter fraud This article focuses on the confirmation hearing for Donald Trump’s nominee to be Director of National Intelligence, Jay Clayton. During the hearing, Clayton was pressed on his views regarding the 2020 election and past… The Record · Jul 15, 2026 Medium USfisaelectionnational security
threat-intel LAPD sidelines relationship with license-plate reader company Flock Safety The Los Angeles Police Department (LAPD) is pausing its relationship with Flock Safety, an ALPR camera company, due to concerns about data privacy, security, and control. The decision follows an inspector general’s audit… The Record · Jul 15, 2026 Medium alprsurveillanceprivacy
threat-intel New Webinar: Closing the Approval Gap in AI-Era Ad Tech This article discusses the ‘Approval Gap’ in ad tech, where approved marketing tags can lead to a cascade of third- and fourth-party scripts that security teams haven't vetted. AI is accelerating this issue by increasing… The Hacker News · Jul 15, 2026 Medium ad techprivacycompliance
threat-intel White House Launches AI-Driven ‘Gold Eagle’ Vulnerability Coordination Initiative The White House has launched Gold Eagle, a new initiative designed to streamline vulnerability detection and remediation across government and industry. This program leverages AI, specifically Anthropic's Mythos, to proa… SecurityWeek · Jul 15, 2026 Medium vulnerabilityaicybersecurity
threat-intel ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Jul 15, 2026 Medium phishingvulnerabilityemail
threat-intel Recent DShield SIEM Update, (Tue, Jul 14th) The DShield SIEM, a honeypot monitoring system, received a recent update incorporating new features and improved logging capabilities. Specifically, the system now collects TTY logs and integrates Suricata alerts, provid… SANS Internet Storm Center · Jul 15, 2026 Medium honeypotthreat-detectionlog-analysis
threat-intel Cribl Adds Agentic Detection Engineering & Boosts SecOps With CardinalOps Deal Cribl, a telemetry processing platform, has acquired CardinalOps to bolster its security operations capabilities. This acquisition will allow Cribl customers to map their existing detection rules and security controls to… Dark Reading · Jul 15, 2026 Medium mitre attckdetection engineeringsecurity operations
vulnerability Multiples vulnérabilités dans Mozilla Firefox (15 juillet 2026) Mozilla has announced multiple security vulnerabilities in Firefox, allowing attackers to bypass security policies and potentially cause unspecified security problems. These vulnerabilities require immediate patching to… CERT-FR · Jul 15, 2026 Medium CVE-2026-14906CVE-2026-15718CVE-2026-15719firefoxvulnerabilitysecurity
vulnerability Multiples vulnérabilités dans les produits Citrix (15 juillet 2026) Multiple vulnerabilities have been discovered in Citrix products, including potential elevation of privileges, data compromise, and policy bypass. These vulnerabilities affect various Citrix components, requiring immedia… CERT-FR · Jul 15, 2026 Medium CVE-2026-42491CVE-2026-53565CVE-2026-53566vulnerabilitycitrixendpoint
vulnerability Vulnérabilité dans Xen XAPI (15 juillet 2026) A security vulnerability has been identified in Xen XAPI, allowing attackers to bypass security policies. This could lead to unauthorized access and potential system compromise. The vulnerability is being addressed throu… CERT-FR · Jul 15, 2026 Medium CVE-2026-42491xenxapivulnerability
threat-intel Synopsys Finds No Evidence of Data Breach Following Bosch Hack Claims A cybercrime group claiming to have hacked Synopsys and Bosch is demanding a ransom for stolen data, but Synopsys denies the claims and has found no evidence of a data breach. Bosch declined to comment, offering a standa… SecurityWeek · Jul 14, 2026 Medium DEcybercrimeextortiondata breach
threat-intel Manage Vendor Risk in a Few Practical Steps This article emphasizes the importance of robust third-party risk management for organizations, arguing that simply building a program isn't enough. It stresses the need for ongoing exposure visibility, clear board overs… Dark Reading · Jul 14, 2026 Medium third-party riskvendor riskgovernance
threat-intel [Video] Where protection starts: Cisco Talos Intelligence Integrations Cisco Talos Intelligence Integrations is a new system designed to help security teams better understand and respond to increasingly complex cyberattacks. By continuously applying threat intelligence across Cisco’s securi… Cisco Talos · Jul 14, 2026 Medium threat-intelligencesecurityintegration
threat-intel Valarian Raises $50 Million for Sovereign Infrastructure Control Layer Valarian, a UK-based company focused on sovereign infrastructure control, has secured $50 million in Series A funding to bolster its platform, ACRA. ACRA is designed to provide a layer of control and governance for AI mo… SecurityWeek · Jul 14, 2026 Medium UKsovereigntydata-controlkubernetes
data-breach Hackers steal Lidl customer data from external service provider Lidl, a major European supermarket chain, suffered a data breach after attackers gained access to customer data stored by an external IT service provider. The stolen information included personal details like names, emai… The Record · Jul 13, 2026 Medium DEBENLdata breachcustomer dataretail
threat-intel Russian celebrity journalist Ksenia Sobchak says hackers accessed Telegram channels via email breach Russian journalist Ksenia Sobchak's Telegram channels were briefly taken over by hackers who published alleged private correspondence. The hackers, operating under the group Black Mirror, claimed to have stolen over 350G… The Record · Jul 13, 2026 Medium RUUKtelegramdata breachrussian
threat-intel Ghost Accounts Abuse GitHub API in Mass Recon Campaign Threat actors are systematically abusing GitHub's public API using a network of dormant ghost accounts to map organizations, repositories, and user accounts – a reconnaissance tactic that occasionally leads to data exfil… SecurityWeek · Jul 11, 2026 Medium CHINreconnaissancegithubapi
vulnerability Wireshark 4.6.7 Released, (Sat, Jul 11th) Wireshark, a widely used network protocol analyzer, released a security update addressing 12 vulnerabilities and 16 bugs. This update is crucial for maintaining network security and protecting against potential exploits. SANS Internet Storm Center · Jul 11, 2026 Medium wiresharkvulnerabilitynetwork analysis
vulnerability Friday Squid Blogging: “Squidbleed” Vulnerability A vulnerability, dubbed ‘Squidbleed,’ has been discovered in the Squid proxy server, allowing attackers to leak HTTP requests. This flaw stems from a flawed implementation of the HTTP/2 protocol, potentially exposing sen… Schneier on Security · Jul 10, 2026 Medium http2proxyvulnerability