threat-intel Gold Eagle Clearinghouse Targets Security Gap, But How Is Unclear The White House launched Gold Eagle, a voluntary initiative aimed at coordinating vulnerability response across critical infrastructure sectors, leveraging AI to accelerate the patching process. However, the initiative i… Dark Reading · Jul 17, 2026 Medium vulnerabilityaicybersecurity
threat-intel Zelensky appoints Ukraine's acting security service chief as acting defense minister Volodymyr Zelensky has appointed Yevhenii Khmara, a former head of Ukraine's SBU and a veteran of long-range strike operations, as Ukraine's acting defense minister following a government reshuffle and widespread protest… The Record · Jul 17, 2026 Info UAukrainedefenseintelligence
threat-intel Podcast: Broken Governance, Agentic AI, and the MindStone Agent Exclusive This SecurityWeek podcast explores the evolving challenges of cybersecurity governance, particularly highlighting the increasing role of AI agents in incident response. The discussion centers around a new open-source AI… SecurityWeek · Jul 17, 2026 Medium aicybersecurityincident response
threat-intel Google Bets 'Agentic Defense' Strategy Can Outpace Attackers Google is implementing an ‘agentic defense’ strategy, leveraging its acquisition of Wiz to automate threat detection and response in a rapidly evolving cybersecurity landscape. This involves deploying AI-powered agents a… Dark Reading · Jul 17, 2026 High UNCHaicloud securitygraph analysis
supply-chain E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI Assistants The European Commission has ordered Google to allow rival AI assistants on Android to access device features like the microphone, camera, and screen, effectively dismantling Google's control over these functionalities. T… The Hacker News · Jul 17, 2026 High aiandroiddata-sharing
threat-intel Beacon Security Raises $13 Million for Security Data Platform Beacon Security, a cybersecurity startup founded by IDF veterans, has secured $13 million in seed funding to bolster its security data platform. The platform aims to provide context and visibility for AI-powered security… SecurityWeek · Jul 17, 2026 Info aisecuritydata
threat-intel The Race to Field Military Autonomy Is On, Can Trusted Information Infrastructure Keep Pace? The Western military is rapidly accelerating its investment in autonomous systems, driven by significant funding and strategic initiatives across the U.S., UK, and NATO. However, the key challenge lies in establishing a… The Hacker News · Jul 17, 2026 High USUKNAautonomous systemsinformation sharingcybersecurity
threat-intel Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday The Department of War has temporarily paused the mandatory third-party assessment requirement for CMMC Phase 2, citing concerns about the capacity of the assessor ecosystem and the potential for CMMC to price small and m… SecurityWeek · Jul 17, 2026 High cmmccybersecuritycompliance
threat-intel Details of Alan Turing’s Voice Encryption System A recently discovered collection of Alan Turing's wartime notes details his ‘Delilah’ voice encryption system, a project he developed during World War II. This project represents a significant historical find in the fiel… Schneier on Security · Jul 17, 2026 Info cryptographyhistoryvoice encryption
threat-intel Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong Man A Russian tourist, Aleksandr Yuryevich Ermakov, is being held in Armenia on a U.S. extradition warrant, despite his lawyers arguing he is the wrong man. The U.S. seeks Aleksandr Gennadievich Ermakov, a Russian national p… The Hacker News · Jul 17, 2026 High AUUSRUransomwareextraditionidentity-error
threat-intel Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy A collaborative research effort between Palo Alto Networks and Siemens has uncovered a critical, chained exploit within the Siemens ROX II operational technology (OT) switches. The vulnerability chain consists of three z… Palo Alto Unit 42 · Jul 17, 2026 Critical CVE-2025-40948CVE-2025-40947CVE-2025-40949otvulnerabilitycommand-injection
threat-intel Cyberattack Disrupts Operations of Japanese Frozen Food Giant Nichirei A cyberattack disrupted operations at Nichirei, a major Japanese frozen food producer, impacting its logistics, warehousing, and shipping services. The company disconnected systems as a precaution, and is investigating a… SecurityWeek · Jul 17, 2026 Medium JPcyberattackdata-breachransomware
threat-intel ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files ACR Stealer, an infostealer active since 2024, is leveraging deceptive lures – primarily mimicking Claude AI assistant pages and fake CAPTCHAs – to steal browser credentials, Microsoft 365 files, and sensitive documents.… The Hacker News · Jul 17, 2026 High infostealerdeceptive lureransomware
threat-intel New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage A previously undocumented Go-based malware, GoSerpent, has been actively targeting government and diplomatic entities in Southeast Asia since 2021, with a renewed surge in activity in 2026. Developed by the threat actor… The Hacker News · Jul 17, 2026 High BAAPmalwareespionagedata theft
supply-chain Risk Ledger Raises $32 Million in Series B Funding Risk Ledger, a UK-based supply chain security firm, secured $32.3 million in Series B funding to expand its network and enhance its AI-powered risk intelligence platform. This investment will allow them to grow their use… SecurityWeek · Jul 17, 2026 Info GBsupply chaincybersecurityrisk management
vulnerability Fresh SharePoint Vulnerability Exploited Soon After Disclosure A critical remote code execution vulnerability in Microsoft SharePoint has been actively exploited by threat actors shortly after its disclosure. Microsoft has released patches to address the issue, but CISA has added it… SecurityWeek · Jul 17, 2026 Critical CVE-2026-58644CVE-2026-56164CVE-2026-55040rcesharepointvulnerability
vulnerability CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV CISA has added a critical, actively exploited vulnerability in Microsoft SharePoint Server to its KEV list, forcing federal agencies to address it immediately. This zero-day flaw, CVE-2026-58644, allows for remote code e… The Hacker News · Jul 17, 2026 Critical CVE-2026-58644sharepointvulnerabilitydeserialization
threat-intel Coca-Cola Suspends US Fairlife Production Due to Ransomware Attack Coca-Cola has temporarily halted Fairlife production in the US due to a ransomware attack that compromised production systems. The company is investigating the scope of the incident and working with cybersecurity experts… SecurityWeek · Jul 17, 2026 Medium ransomwarecyberattackproduction
vulnerability ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th) The ISC Stormcast highlighted a significant vulnerability in the latest version of Apache Log4j, potentially allowing attackers to execute arbitrary code through a specially crafted log message. This vulnerability, along… SANS Internet Storm Center · Jul 17, 2026 Critical log4jjndivulnerability
threat-intel Multiples vulnérabilités dans le noyau Linux de SUSE (17 juillet 2026) Multiple vulnerabilities have been discovered in the SUSE Linux kernel. These vulnerabilities can lead to privilege escalation, denial of service, and data confidentiality breaches. The affected products range from deskt… CERT-FR · Jul 17, 2026 High CVE-2023-53995CVE-2025-68324CVE-2025-71089vulnerabilitylinuxsecurity