data-breach AI music platform Suno hits bum note as 55M users exposed in data breach, claims infosec expert An AI music platform, Suno, experienced a data breach exposing 55 million user accounts. Security expert claims the breach highlights vulnerabilities in the platform's security practices. The incident underscores the gro… The Register · Jul 21, 2026 Medium data breachaisecurity
threat-intel Captive Portal Detection, (Tue, Jul 21st) This article details how operating systems and browsers detect captive portals – the splash screens that appear when connecting to public Wi-Fi networks. Instead of intercepting old non-TLS homepages, these systems now… SANS Internet Storm Center · Jul 21, 2026 Medium captive portalwifinetwork detection
threat-intel Taiwan to slow mobile data during national resilience drills Taiwan is conducting a national resilience drill to simulate communication disruptions, primarily targeting mobile data services, to prepare its citizens for potential network outages during emergencies, especially in th… The Record · Jul 21, 2026 Info TWresiliencecommunicationsdisruption
vulnerability Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities Zimbra has released patches to address nine security vulnerabilities, including a critical SNMP command injection flaw and several XSS vulnerabilities. These fixes are vital to mitigate potential code execution and email… The Hacker News · Jul 21, 2026 Medium CVE-2026-50055snmpxsscommand-injection
threat-intel A new extortion cocktail: office printers, small ransoms, and BitLocker Two separate incidents – one in Colombia and another in Mexico – highlight a concerning trend of attackers leveraging misconfigured systems and built-in Microsoft tools to deploy BitLocker encryption and demand ransom pa… Securelist · Jul 21, 2026 High COMXransomwarebitlockerrdp
threat-intel Choose Wisely: AI-Generated Coding Risk Varies, A Lot A Secure Code Warrior study revealed that AI-generated code introduces a significant number of vulnerabilities – an average of 15 per codebase – but the risk varies greatly depending on the development framework used. Th… Dark Reading · Jul 21, 2026 Medium aicodevulnerability
threat-intel Intel fortifies Foundry with an actual customer: Fortinet This article covers a range of cybersecurity and technology news, including AMD's challenge to Nvidia's AI compute platform, a Russian phishing campaign mimicking Signal support, and a security acquisition by EQT in the… The Register · Jul 21, 2026 Medium vulnerabilityphishingransomware
threat-intel Empirical Security Raises $25 Million in Series A Funding Cybersecurity startup Empirical secured $25 million in Series A funding to bolster its AI-powered threat prediction and risk management solutions. The company, founded by former Kenna Security executives, aims to address… SecurityWeek · Jul 21, 2026 Info aivulnerabilityrisk management
threat-intel SecurityWeek Launches Critical Impact Awards to Recognize Excellence in Industrial Cybersecurity SecurityWeek is launching a new award program, the Critical Impact Awards, designed to recognize genuine achievements and contributions in industrial cybersecurity, moving away from traditional, commercially influenced a… SecurityWeek · Jul 21, 2026 Info industrial cybersecurityawardsrecognition
threat-intel Kenya probes hack of president's website after bitcoin ransom demand Kenya’s presidential website was hacked, with attackers demanding a ransom of five bitcoins in exchange for not releasing sensitive information. The incident follows a previous coordinated attack in November 2025, highli… The Record · Jul 21, 2026 Medium KEcyberattackransomwaregovernment
vulnerability Siemens Opcenter X Siemens Opcenter X versions prior to V2604 contain a critical authentication bypass vulnerability, allowing an unauthenticated attacker to gain full unauthorized access to the application. Siemens has released a new vers… CISA Advisories · Jul 21, 2026 Critical CVE-2026-56451DEauthenticationjwtcwe-347
vulnerability Rockwell Automation 1734 POINT I/O Rockwell Automation’s 1734 POINT I/O module is vulnerable to a denial-of-service attack due to improper handling of crafted CIP messages, potentially causing a system fault and requiring a restart. CISA urges organizatio… CISA Advisories · Jul 21, 2026 Medium CVE-2026-10573USvulnerabilitydenial-of-servicecontrol systems
vulnerability Rockwell Automation ThinManager Rockwell Automation has issued a security advisory regarding a path traversal vulnerability in its ThinManager software. This vulnerability allows an authenticated attacker to write arbitrary files to restricted system d… CISA Advisories · Jul 21, 2026 Critical CVE-2026-11917path traversalicsindustrial control systems
threat-intel Siemens SIDIS Secured SmartPlug Siemens SIDIS Secured SmartPlug versions prior to V7.26.0310 are affected by multiple vulnerabilities stemming from components like OpenSSL, OpenSSH, and libarchive. These vulnerabilities include side-channel attacks, in… CISA Advisories · Jul 21, 2026 High CVE-2022-23303CVE-2019-9494CVE-2022-23304vulnerabilitysupply-chainopen ssl
vulnerability Rockwell Automation FactoryTalk Services Platform Rockwell Automation has issued a security advisory regarding a vulnerability in its FactoryTalk Services Platform (FTSP) version 6.60. An attacker could impersonate an authorized user by bypassing JWT signature validatio… CISA Advisories · Jul 21, 2026 High CVE-2026-10714vulnerabilityftpcisa
vulnerability Tycon Systems TPDIN-Monitor-WEB2 Tycon Systems TPDIN-Monitor-WEB2 versions 2.3.9 are vulnerable to a critical authentication bypass flaw, allowing unauthenticated remote attackers to gain full administrative access to the device. This could lead to disr… CISA Advisories · Jul 21, 2026 Critical CVE-2026-61884CVE-2026-55985authentication bypasscwe-288cwe-312
vulnerability Siemens IAM Client Siemens has identified a critical unquoted search path vulnerability in its IAM Client SDK, potentially allowing an authenticated local attacker to escalate privileges. Multiple Siemens products, including COMOS, Designc… CISA Advisories · Jul 21, 2026 Critical CVE-2025-40945cwe-426unquoted search pathiam client
vulnerability Rockwell Automation Studio 5000 Logix Designer Rockwell Automation has issued security advisories regarding multiple vulnerabilities in Studio 5000 Logix Designer, primarily due to path traversal and unquoted search path issues. These vulnerabilities could allow a lo… CISA Advisories · Jul 21, 2026 High CVE-2026-9108CVE-2026-9127CVE-2026-9128path traversalunquoted search pathremote code execution
vulnerability Rockwell Automation 1718-AENTR/1719-AENTR Rockwell Automation has issued a security advisory regarding a denial-of-service vulnerability in its 1718-AENTR and 1719-AENTR products. Exploitation could lead to a denial-of-service condition, requiring a power cycle… CISA Advisories · Jul 21, 2026 High CVE-2026-9140USdenial-of-servicecontrol systemsrockwell automation
vulnerability Siemens RUGGEDCOM APE1808 with Palo Alto Networks Virtual NGFW Palo Alto Networks has identified vulnerabilities in PAN-OS software affecting Siemens RUGGEDCOM APE1808 devices when used with their Virtual NGFW solution. These vulnerabilities include cross-site scripting, privilege e… CISA Advisories · Jul 21, 2026 High CVE-2026-0266CVE-2026-0272CVE-2026-0273GEvulnerabilityindustrial control systemscybersecurity