⤷ Title: Fake Braintree NuGet Package Skims Credit Cards and Steals Merchant API Keys
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 14:00:11 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Braintree.Net #Credit Card Skimmer #DependencyInjector.Core #NuGet #Socket #supply chain attack #typosquat
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 14:00:11 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Braintree.Net #Credit Card Skimmer #DependencyInjector.Core #NuGet #Socket #supply chain attack #typosquat
Daily CyberSecurity
Fake Braintree NuGet Package Skims Credit Cards and Steals Merchant API Keys
At a Glance Malware family Braintree.Net typosquat, a multi-stage .NET implant with a companion harvester (DependencyInjector.Core) Threat actor Unattributed; financially motivated (suspected) Tar…
⤷ Title: Pulse Security Debuts Operational Management Platform Built for Security Leaders
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:35:23 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:35:23 +0000
════════════════════════
⌗ Tags: #Press Release
Daily CyberSecurity
Pulse Security Debuts Operational Management Platform Built for Security Leaders
San Francisco, United States, 15th July 2026, CyberNewswire
⤷ Title: CVE-2026-53412: CVSS 9.8 Zoom Vulnerability Allows Unauthenticated Account Takeover
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:33:31 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #privilege escalation #windows #Zoom
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:33:31 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #privilege escalation #windows #Zoom
Daily CyberSecurity
CVE-2026-53412: CVSS 9.8 Zoom Vulnerability Allows Unauthenticated Account Takeover
TL;DR Zoom has patched four flaws across its Windows products. The most severe Zoom vulnerability, CVE-2026-53412 (CVSS 9.8), allows an unauthenticated user to perform an account takeover over the…
⤷ Title: Clubfoot Wolf Hits Russian Firms With NetSupport Manager
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:16:09 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BI.ZONE #Clubfoot Wolf #LNK malware #NetSupport Manager #phishing #Remote Access Tool #Russian companies
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:16:09 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BI.ZONE #Clubfoot Wolf #LNK malware #NetSupport Manager #phishing #Remote Access Tool #Russian companies
Daily CyberSecurity
Clubfoot Wolf Hits Russian Firms With NetSupport Manager
At a glance Actor / group Clubfoot Wolf (cluster tracked by BI.ZONE) Activity type Phishing that deploys NetSupport Manager for remote access Targets / victims Russian firms across eight sectors; …
⤷ Title: JetBrains Fixes CVSS 10 YouTrack Authentication Bypass and Five More Flaws in IntelliJ IDEA and TeamCity
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:02:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #IntelliJ IDEA #JetBrains #TeamCity #YouTrack
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:02:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #IntelliJ IDEA #JetBrains #TeamCity #YouTrack
Daily CyberSecurity
JetBrains Fixes CVSS 10 YouTrack Authentication Bypass and Five More Flaws in IntelliJ IDEA and TeamCity
TL;DR JetBrains has patched six JetBrains vulnerabilities across YouTrack, IntelliJ IDEA, and TeamCity. The most severe, CVE-2026-62422 (CVSS 10.0), allows an authentication bypass in YouTrack via…
⤷ Title: Insignary Launches Clarity On-Demand: SBOMs, No Annual Commitment Required
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:00:12 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 13:00:12 +0000
════════════════════════
⌗ Tags: #Press Release
Daily CyberSecurity
Insignary Launches Clarity On-Demand: SBOMs, No Annual Commitment Required
Toronto, Canada, 15th July 2026, CyberNewswire
⤷ Title: Four Critical Coolify Vulnerabilities Allow Remote Code Execution and Cross-Team Server Access
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 12:59:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Coolify #CVE_2026_34037 #CVE_2026_34047 #CVE_2026_34048 #CVE_2026_57498 #IDOR #privilege escalation #Remote Code Execution #Self_Hosted
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 12:59:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Coolify #CVE_2026_34037 #CVE_2026_34047 #CVE_2026_34048 #CVE_2026_57498 #IDOR #privilege escalation #Remote Code Execution #Self_Hosted
Daily CyberSecurity
Four Critical Coolify Vulnerabilities Allow Remote Code Execution and Cross-Team Server Access
TL;DR Four critical Coolify vulnerabilities now have patches. Three score CVSS 9.9, and they let low-privileged members reach remote code execution as root. The maintainers fixed them across sever…
⤷ Title: Cursor Zero-Day Vulnerability Remains Unpatched After Seven Months
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 09:51:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Coding Assistant #Cursor #Mindgard #Vulnerability #zero_day
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 09:51:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Coding Assistant #Cursor #Mindgard #Vulnerability #zero_day
Daily CyberSecurity
Cursor Zero-Day Vulnerability Remains Unpatched After Seven Months
The renowned cybersecurity firm Mindgard recently published an expose detailing a high-severity zero-day vulnerability harboring within Cursor, the prominent artificial intelligence coding assista…
⤷ Title: Google Images Turns 25: AI Personalization and Nano Banana Generation Arrive in Search
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 09:42:10 +0000
════════════════════════
⌗ Tags: #Technology #AI Overviews #Google Images #google search #Nano Banana #SEO
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 09:42:10 +0000
════════════════════════
⌗ Tags: #Technology #AI Overviews #Google Images #google search #Nano Banana #SEO
Daily CyberSecurity
Google Images Turns 25: AI Personalization and Nano Banana Generation Arrive in Search
Google Images, born in July 2001, has officially reached its 25th anniversary. To celebrate the milestone, Google announced a sweeping refresh of the service that changed how humanity browses the …
⤷ Title: CrySome RAT Spread Through Fake Freight Rate Confirmation Phishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 08:30:03 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #Credential Theft #CrySome RAT #phishing attack #Remote Access Trojan #WinDefCtl
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 08:30:03 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #Credential Theft #CrySome RAT #phishing attack #Remote Access Trojan #WinDefCtl
Daily CyberSecurity
CrySome RAT Spread Through Fake Freight Rate Confirmation Phishing
Malware family CrySome RAT, a .NET remote access trojan Threat actor Not named; no confirmed attribution Target / victims Windows users in freight and logistics roles (single triaged incident) Del…
⤷ Title: RedWing Android Malware Rents Out Spyware and Bank Theft on Telegram
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 08:11:06 +0000
════════════════════════
⌗ Tags: #Malware #Android Spyware #Banking Trojan #Malware_as_a_Service #Overlay Attack #RedWing Android malware #Telegram malware #Zimperium
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 08:11:06 +0000
════════════════════════
⌗ Tags: #Malware #Android Spyware #Banking Trojan #Malware_as_a_Service #Overlay Attack #RedWing Android malware #Telegram malware #Zimperium
Daily CyberSecurity
RedWing Android Malware Rents Out Spyware and Bank Theft on Telegram
Malware family RedWing (Android spyware/RAT; suspected new variant of Oblivion) Threat actor Unnamed operators; suspected Russian-nexus, not confirmed Target / victims Mobile banking, crypto, and …
⤷ Title: CVE-2026-10577: CVSS 10 Access Control Vulnerability Hits Rockwell Automation 1715 Redundant I/O Modules
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 07:32:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Control #ICS #OT Security #Rockwell Automation
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 07:32:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Control #ICS #OT Security #Rockwell Automation
Daily CyberSecurity
CVE-2026-10577: CVSS 10 Access Control Vulnerability Hits Rockwell Automation 1715 Redundant I/O Modules
TL;DR A maximum-severity Rockwell Automation vulnerability, CVE-2026-10577, affects the 1715 Redundant I/O EtherNet/IP adapter (1715-AENTR). The access control flaw scores 10.0 on both CVSS 3.1 an…
⤷ Title: Malicious Go Module Exposes a 222-Repository GitHub Lure Network
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 07:11:10 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #GitHub lure network #malicious Go module #Operation Muck and Load #Socket #Software Supply Chain #Vidar Infostealer
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 07:11:10 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #GitHub lure network #malicious Go module #Operation Muck and Load #Socket #Software Supply Chain #Vidar Infostealer
Daily CyberSecurity
Malicious Go Module Exposes a 222-Repository GitHub Lure Network
Actor / group Unnamed actor tracked as “Operation Muck and Load”; overlaps with the ischhfd83 cluster Activity type Software supply-chain lures and Windows malware staging Targets / vi…
⤷ Title: GodDamn Ransomware Rebrands Beast and Uses a Malicious Signed Driver to Disable Defenses
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 06:11:12 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Beast Ransomware #BYOVD #GodDamn Ransomware #Hyadina #Malicious Kernel Driver #mimikatz #Monster Ransomware #PoisonX #Symantec
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 06:11:12 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Beast Ransomware #BYOVD #GodDamn Ransomware #Hyadina #Malicious Kernel Driver #mimikatz #Monster Ransomware #PoisonX #Symantec
Daily CyberSecurity
GodDamn Ransomware Rebrands Beast and Uses a Malicious Signed Driver to Disable Defenses
At a Glance Malware family GodDamn ransomware (rebrand of Beast, formerly Monster) Threat actor Hyadina, a ransomware-as-a-service developer tracked by Symantec Target / victims Enterprise Windows…
⤷ Title: Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
Daily CyberSecurity
Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
TL;DR Notepad++ v8.9.7 fixes five security flaws in the popular Windows editor. Technical details and proof-of-concept exploit code for all five Notepad++ vulnerabilities are public in the project…
⤷ Title: Chrome 150 Security Update Fixes 15 Flaws, Including Two Critical Use-After-Free Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:45:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #chrome #google #use after free #V8
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:45:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #chrome #google #use after free #V8
Daily CyberSecurity
Chrome 150 Security Update Fixes 15 Flaws, Including Two Critical Use-After-Free Bugs
TL;DR Google has shipped a Chrome security update that raises the Stable channel to 150.0.7871.124/.125 on Windows and Mac, and 150.0.7871.124 on Linux. The release fixes 15 security flaws, includ…
⤷ Title: Passkey Phishing Campaign Uses Vishing Calls to Hijack Microsoft Entra Accounts
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:10:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #data extortion #Microsoft Entra #O_UNC_066 #Okta #Passkey Phishing #Phishing Kit #Pink #Vishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:10:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #data extortion #Microsoft Entra #O_UNC_066 #Okta #Passkey Phishing #Phishing Kit #Pink #Vishing
Daily CyberSecurity
Passkey Phishing Campaign Uses Vishing Calls to Hijack Microsoft Entra Accounts
At a Glance Actor O-UNC-066 (Okta); tracked as CL-CRI-1147 / “Pink” by Palo Alto Unit 42; linked to The Com Activity type Vishing plus passkey-enrollment phishing, leading to account t…
⤷ Title: CISA Warns Three SharePoint Server Vulnerabilities Are Exploited in the Wild, Urges Hardening
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:05:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #KEV #Microsoft #Sharepoint
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:05:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #KEV #Microsoft #Sharepoint
Daily CyberSecurity
CISA Warns Three SharePoint Server Vulnerabilities Are Exploited in the Wild, Urges Hardening
TL;DR CISA has confirmed active exploitation of three SharePoint vulnerabilities: CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164. Threat actors chain them to gain access to on-premises SharePo…
⤷ Title: Node.js Backdoor Hides Its C2 on the TON Blockchain
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:10:15 +0000
════════════════════════
⌗ Tags: #Malware #EtherHiding #LevelBlue #LNK malware #NodeJS Backdoor #phishing #TON Blockchain #TonRAT
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:10:15 +0000
════════════════════════
⌗ Tags: #Malware #EtherHiding #LevelBlue #LNK malware #NodeJS Backdoor #phishing #TON Blockchain #TonRAT
Daily CyberSecurity
Node.js Backdoor Hides Its C2 on the TON Blockchain
At a glance Malware family Node.js backdoor (tracked as “TonRAT” by some researchers) Threat actor Unattributed; no named group Target / victims Hospitality sector; hotel staff Deliver…
⤷ Title: CVE-2026-15409: SonicWall SMA1000 SSRF Vulnerability (CVSS 10.0) Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:00:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #code_injection #SMA1000 #SonicWall #ssrf
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:00:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #code_injection #SMA1000 #SonicWall #ssrf
Daily CyberSecurity
CVE-2026-15409: SonicWall SMA1000 SSRF Vulnerability (CVSS 10.0) Exploited in the Wild
TL;DR SonicWall has released hotfixes for two actively exploited flaws in SMA1000 secure access appliances. The SonicWall SMA1000 SSRF vulnerability, tracked as CVE-2026-15409, carries a maximum C…
⤷ Title: LegacyHive: Exploit Code and Full Details Publicly Disclosed for Unpatched Windows Privilege Escalation Flaw
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 23:46:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #LegacyHive #Nightmare_Eclipse #privilege escalation #windows #zero_day
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 23:46:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #LegacyHive #Nightmare_Eclipse #privilege escalation #windows #zero_day
Daily CyberSecurity
LegacyHive: Exploit Code and Full Details Publicly Disclosed for Unpatched Windows Privilege Escalation Flaw
TL;DR A researcher known as Nightmare-Eclipse has published details and proof-of-concept code for LegacyHive, a Windows User Profile Service privilege escalation flaw. The LegacyHive exploit abuse…