vulnerability Toptech Systems RCU II+ and Multiload II+ Toptech Systems has issued a vulnerability notice regarding RCU II+ and Multiload II+ devices, exposing a critical unauthenticated service that allows for full system control. Exploitation is not currently possible remot… CISA Advisories · Jul 30, 2026 High CVE-2026-12562vulnerabilitycontrol systemsauthentication
threat-intel Open Source Software: Security Principles and Practices The CISA released guidance on securing open source software (OSS) usage across various systems, including critical infrastructure. This guidance focuses on a comprehensive approach to OSS risk management, covering everyt… CISA Advisories · Jul 30, 2026 Info open sourceossvulnerability
threat-intel Cyber extortionists steal data from UK Department for Education Cybercriminals, identifying as ExfilSquad, have stolen data from the UK Department for Education and the Police National Legal Database, potentially exposing names, email addresses, and contact details of over 600,000 in… The Record · Jul 30, 2026 High UKransomwaredata breachcybercrime
vulnerability Rockwell Automation CompactLogix 5380 ControlLogix 5580 / 1756-EN4TR Communications Module A vulnerability exists in Rockwell Automation's CompactLogix, ControlLogix, and GuardLogix communication modules (specifically the 1756-EN4TR module) due to improper certificate revocation handling. An attacker could exp… CISA Advisories · Jul 30, 2026 High CVE-2026-9636certificate revocationcip securityindustrial control systems
threat-intel Mitsubishi Electric CC-Link IE TSN Communication Protocol A critical vulnerability (CVE-2026-13584) exists in the CC-Link IE TSN communication protocol used by Mitsubishi Electric industrial controllers. Attackers with network access can manipulate communication data by sending… CISA Advisories · Jul 30, 2026 Critical CVE-2026-13584cc-linkindustrial control systemsvulnerability
threat-intel o6 Automation open62541 Multiple vulnerabilities have been identified in o6 Automation open62541, a control system software, potentially allowing for denial of service, arbitrary code execution, and information disclosure. These vulnerabilities… CISA Advisories · Jul 30, 2026 Critical CVE-2026-63362CVE-2026-65423CVE-2026-63035vulnerabilitycontrol-systemcisa
vulnerability Johnson Controls OpenBlue Employee Johnson Controls has released a security advisory (JCI-PSA-2026-09) addressing critical vulnerabilities in its OpenBlue Employee system. These vulnerabilities – including stored XSS, HTML injection, and file upload flaws… CISA Advisories · Jul 30, 2026 High CVE-2026-21662CVE-2026-34495CVE-2026-34497vulnerabilityxsshtml injection
vulnerability MikroTik RouterOS A critical vulnerability (CVE-2026-14227) exists in MikroTik RouterOS, allowing an attacker with low-privilege API access to extract the router's WireGuard private key and decrypt VPN traffic. This could enable full VPN… CISA Advisories · Jul 30, 2026 Critical CVE-2026-14227LVvulnerabilitywireguardcve-2026-14227
threat-intel Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents Microsoft Copilot for Word has a vulnerability that allows hidden instructions within a Word document to be copied into new documents and then re-introduced during subsequent Copilot drafting sessions. This allows an att… The Hacker News · Jul 30, 2026 High prompt injectionai securitycopilot
threat-intel Planity visée par une vente présumée de données piratées A hacker is offering a database allegedly containing information on nearly a million people linked to Planity, a platform connecting users with beauty and wellness professionals. Planity acts as an intermediary, facilita… ZATAZ · Jul 30, 2026 Medium data breachphishingdata leak
threat-intel The Network Has Become the Control Plane for AI Security As AI adoption explodes and fundamentally changes how network traffic flows, traditional firewalls are struggling to keep pace. Check Point has introduced an AI Network Firewall, designed to move beyond simple traffic in… The Hacker News · Jul 30, 2026 High aifirewallnetwork security
threat-intel Semiconductor Firm Analog Devices Discloses Data Breach Analog Devices suffered a data breach in June, with an external investigation revealing unauthorized access to systems. While the company claims the incident didn't disrupt operations and no data was leaked, a separate g… SecurityWeek · Jul 30, 2026 Medium data breachcybersecuritydata theft
threat-intel Should You Use AI for a Task? Here’s a Simple Way to Decide This article argues that while AI can assist with many writing tasks – akin to using a forklift at work – it shouldn’t replace the mental exercise of crafting arguments and developing critical thinking skills, which is m… Schneier on Security · Jul 30, 2026 Medium aiwritingcritical-thinking
data-breach OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia A Chinese-speaking threat actor has been deploying two backdoors, OctLurk and SilkLurk, targeting government organizations and critical infrastructure in Central Asia since January 2025. These backdoors, along with assoc… Securelist · Jul 30, 2026 High
threat-intel Voiture connectée : quelles données guident l’entretien ? This article discusses the increasing collection of data by connected vehicles, particularly regarding climate control systems, and how this data can be used to predict maintenance needs. However, it also highlights the… ZATAZ · Jul 30, 2026 Medium data-privacyconnected-carsvehicle-security
threat-intel Hackers Exploit AnySign4PC via Hacked Korean Sites to Install Backdoors Without Prompts A state-sponsored threat group, potentially linked to Lazarus and operating between 2025 and 2026, exploited vulnerabilities in AnySign4PC, a certificate-based electronic signature software, to install backdoors on targe… The Hacker News · Jul 30, 2026 High CVE-2020-7882SOwatering holebuffer overflowremote code execution
threat-intel SilverFox Targets Japanese Manufacturer with 3-Driver BYOVD Chain and ValleyRAT The Chinese cybercrime group Silver Fox is targeting Japanese manufacturers using a sophisticated Bring Your Own Vulnerable Driver (BYOVD) attack chain to deploy ValleyRAT, a Gh0st RAT variant. They utilize a layered app… The Hacker News · Jul 30, 2026 High SOCHbyovddll side-loadingntdll unhooking
threat-intel Russian spies take their half-click email attack from Zimbra to Outlook Russian intelligence operatives are leveraging a phishing campaign mimicking Signal support to trick users into revealing sensitive information. This tactic has expanded beyond Zimbra to now target Outlook users, highlig… The Register · Jul 30, 2026 High CVE-2026-42897RUCHphishingsocial engineeringrussian threat actor
threat-intel ExfilSquad expose des données CRM municipales A new extortion group, ExfilSquad, claims to possess a significant amount of sensitive data from municipal services and CRM platforms, including data from Houston, Atlanta, and Microsoft. They’ve released sample data, pr… ZATAZ · Jul 30, 2026 High UNcrmdata breachexfiltration
threat-intel Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks A Chinese-speaking threat actor, operating under the aliases knaithe and KnYuan, is leveraging AI to conduct autonomous cyberattacks. Using the Hermes Agent framework and DeepSeek, they autonomously identified and exploi… Palo Alto Unit 42 · Jul 30, 2026 High CVE-2026-33017CVE-2026-21858CVE-2025-68613CNaiautonomousvulnerability