threat-intel SonicWall Issues Urgent SMA Patch Warning for Two Zero-Day Exploits SonicWall has issued an urgent patch warning due to two newly exploited zero-day vulnerabilities in its SMA1000 secure remote access appliances. Threat actors are actively leveraging these flaws, and CISA has added them… SecurityWeek · Jul 15, 2026 Critical CVE-2026-15409CVE-2026-15410zero-dayssrfcode_injection
threat-intel ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th) The ISC Stormcast highlighted a significant increase in malicious email campaigns targeting financial institutions, leveraging sophisticated phishing techniques and exploiting vulnerabilities in legacy systems. The threa… SANS Internet Storm Center · Jul 15, 2026 Medium phishingvulnerabilityemail
threat-intel Recent DShield SIEM Update, (Tue, Jul 14th) The DShield SIEM, a honeypot monitoring system, received a recent update incorporating new features and improved logging capabilities. Specifically, the system now collects TTY logs and integrates Suricata alerts, provid… SANS Internet Storm Center · Jul 15, 2026 Medium honeypotthreat-detectionlog-analysis
threat-intel Cribl Adds Agentic Detection Engineering & Boosts SecOps With CardinalOps Deal Cribl, a telemetry processing platform, has acquired CardinalOps to bolster its security operations capabilities. This acquisition will allow Cribl customers to map their existing detection rules and security controls to… Dark Reading · Jul 15, 2026 Medium mitre attckdetection engineeringsecurity operations
vulnerability Multiples vulnérabilités dans Mozilla Firefox (15 juillet 2026) Mozilla has announced multiple security vulnerabilities in Firefox, allowing attackers to bypass security policies and potentially cause unspecified security problems. These vulnerabilities require immediate patching to… CERT-FR · Jul 15, 2026 Medium CVE-2026-14906CVE-2026-15718CVE-2026-15719firefoxvulnerabilitysecurity
vulnerability Vulnérabilité dans Xen XAPI (15 juillet 2026) A security vulnerability has been identified in Xen XAPI, allowing attackers to bypass security policies. This could lead to unauthorized access and potential system compromise. The vulnerability is being addressed throu… CERT-FR · Jul 15, 2026 Medium CVE-2026-42491xenxapivulnerability
vulnerability Vulnérabilité dans Tenable Nessus Agent (15 juillet 2026) A critical vulnerability has been identified in Tenable Nessus Agent, allowing attackers to execute arbitrary code remotely and bypass security policies. This flaw, CVE-2026-15265, affects older versions of the agent and… CERT-FR · Jul 15, 2026 Critical CVE-2026-15265vulnerabilityremote code executionsecurity policy
vulnerability Multiples vulnérabilités dans les produits Citrix (15 juillet 2026) Multiple vulnerabilities have been discovered in Citrix products, including potential elevation of privileges, data compromise, and policy bypass. These vulnerabilities affect various Citrix components, requiring immedia… CERT-FR · Jul 15, 2026 Medium CVE-2026-42491CVE-2026-53565CVE-2026-53566vulnerabilitycitrixendpoint
vulnerability Multiples vulnérabilités dans Progress LoadMaster (15 juillet 2026) A security bulletin from CERT-FR details multiple vulnerabilities in Progress LoadMaster, allowing attackers to execute arbitrary code remotely and bypass security policies. These flaws affect various versions of the sof… CERT-FR · Jul 15, 2026 Critical CVE-2026-8037CVE-2026-33691vulnerabilityprogressloadmaster
threat-intel Records Are Made to Be Broken: Patch Tuesday Raises Triage Stakes Microsoft's July 2026 Patch Tuesday update is the largest in the program's history, containing 622 unique CVEs, including three zero-day vulnerabilities. The sheer volume of updates presents a significant prioritization… Dark Reading · Jul 14, 2026 High CVE-2026-56155CVE-2026-56164CVE-2026-50661patch-tuesdayzero-dayvulnerability
vulnerability Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities Microsoft released its July 2026 security update, containing 622 vulnerabilities, with 57 classified as critical. Several of these, including those affecting Active Directory Federation Services, SharePoint Server, and v… Cisco Talos · Jul 14, 2026 High CVE-2026-56155CVE-2026-56164CVE-2026-50370vulnerabilityrceeop
threat-intel Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack Microsoft released its largest Patch Tuesday update to date, encompassing 622 security updates, with two of these fixes already being actively exploited by attackers. These vulnerabilities, affecting SharePoint Server an… The Hacker News · Jul 14, 2026 High CVE-2026-56164CVE-2026-56155CVE-2026-50661zero-dayprivilege escalationremote code execution
threat-intel 6 GHz Wi-Fi Flaws Could Disrupt Critical Systems Researchers at Pennsylvania State University and Idaho National Laboratory have identified significant security vulnerabilities within 6 GHz Wi-Fi Automated Frequency Coordination (AFC) systems. These flaws could allow a… Dark Reading · Jul 14, 2026 High 6ghzwi-fispoofing
threat-intel US unseals indictment against alleged operators of Russian bulletproof hosting service The U.S. government has unsealed an indictment against three Russians linked to a Russian-based bulletproof hosting service, Media Land and ML Cloud, which provided infrastructure and tech support to cybercriminal groups… The Record · Jul 14, 2026 High USRUNLbulletproof hostingcybercrimeransomware
vulnerability Microsoft Patches a Record 570 Security Flaws Microsoft released a record 570 security updates for its Windows operating systems and other software, nearly triple the number from last month's Patch Tuesday. The surge in updates is largely due to the increasing use o… Krebs on Security · Jul 14, 2026 High CVE-2026-56155CVE-2026-56164CVE-2026-50661patch tuesdayzero-dayvulnerability
vulnerability Microsoft Patch Tuesday July 2026 - The AI Acopolypse is Here , (Tue, Jul 14th) Microsoft's July Patch Tuesday release includes a massive 622 vulnerabilities, with a significant number already exploited. Many of these vulnerabilities affect products like Edge and SharePoint, and a notable one – a B… SANS Internet Storm Center · Jul 14, 2026 High CVE-2026-56155CVE-2026-56164CVE-2026-50661patch tuesdayvulnerabilitymicrosoft
vulnerability Microsoft Patches Record 622 Vulnerabilities, Including Two Exploited Zero-Days Microsoft released a record-breaking 622 security patches this Patch Tuesday, including two actively exploited zero-day vulnerabilities in Active Directory and SharePoint Server. These flaws allow attackers to escalate p… SecurityWeek · Jul 14, 2026 High CVE-2026-56155CVE-2026-56164CVE-2026-50661zero-daypatch tuesdayvulnerability
threat-intel Synopsys Finds No Evidence of Data Breach Following Bosch Hack Claims A cybercrime group claiming to have hacked Synopsys and Bosch is demanding a ransom for stolen data, but Synopsys denies the claims and has found no evidence of a data breach. Bosch declined to comment, offering a standa… SecurityWeek · Jul 14, 2026 Medium DEcybercrimeextortiondata breach
vulnerability SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify Data SAP has released security updates to address a critical vulnerability (CVSS 9.9) in its NetWeaver ABAP system, allowing attackers to potentially access or modify data. Two other critical vulnerabilities related to Appro… The Hacker News · Jul 14, 2026 Critical CVE-2026-44747CVE-2026-27690CVE-2026-44761sapabapoauth
threat-intel Manage Vendor Risk in a Few Practical Steps This article emphasizes the importance of robust third-party risk management for organizations, arguing that simply building a program isn't enough. It stresses the need for ongoing exposure visibility, clear board overs… Dark Reading · Jul 14, 2026 Medium third-party riskvendor riskgovernance