⤷ Title: JADEPUFFER and the Arrival of Machine-Speed Extortion
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 03:18:46 GMT
════════════════════════
⌗ Tags: #ransomware #artificial_intelligence #hacking #cybersecurity #ai
════════════════════════
𐀪 Author: David SEHYEON Baek
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 03:18:46 GMT
════════════════════════
⌗ Tags: #ransomware #artificial_intelligence #hacking #cybersecurity #ai
Medium
JADEPUFFER and the Arrival of Machine-Speed Extortion
For as long as ransomware has existed as a category of threat, a person has sat somewhere in the chain. Someone chose the target, tested…
⤷ Title: Phishing Analysis Tools
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 03:42:40 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cyber_security_awareness #web_development #cybersecurity #infosec
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 03:42:40 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cyber_security_awareness #web_development #cybersecurity #infosec
Medium
Phishing Analysis Tools
When analyzing a suspicious or malicious email, your first goal is to collect key artifacts that can help determine its legitimacy and…
⤷ Title: CVE-2026-9770: Information Disclosure Vulnerability Exposes Admin Credentials on TP-Link Kasa Cameras
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 01:52:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Information Disclosure #IoT security #Kasa #TP_Link
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 01:52:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Information Disclosure #IoT security #Kasa #TP_Link
Daily CyberSecurity
CVE-2026-9770: Information Disclosure Vulnerability Exposes Admin Credentials on TP-Link Kasa Cameras
TL;DR TP-Link has patched two information disclosure flaws in Kasa EC70 v4 and EC71 v4 cameras. The more severe TP-Link Kasa vulnerability, CVE-2026-9770 (CVSS 8.6), stems from a hardcoded cryptog…
⤷ Title: CISA Adds FortiSandbox and SharePoint Flaws to KEV Catalog After Confirming Active Exploitation
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 01:40:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Actively Exploited #BOD 26_04 #CISA #CVE_2026_25089 #CVE_2026_39808 #CVE_2026_58644 #Fortinet #FortiSandbox #KEV Catalog #Microsoft SharePoint
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 17 Jul 2026 01:40:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Actively Exploited #BOD 26_04 #CISA #CVE_2026_25089 #CVE_2026_39808 #CVE_2026_58644 #Fortinet #FortiSandbox #KEV Catalog #Microsoft SharePoint
Daily CyberSecurity
CISA Adds FortiSandbox and SharePoint Flaws to KEV Catalog After Confirming Active Exploitation
TL;DR CISA added three vulnerabilities to its Known Exploited Vulnerabilities catalog on July 16, 2026. Two affect Fortinet FortiSandbox, and one affects Microsoft SharePoint. Federal agencies mus…
⤷ Title: 7-Zip Vulnerability CVE-2026-14266 Allows Remote Code Execution Through Crafted XZ Data
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 16:33:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #7_Zip #CVE_2026_14266 #Heap Buffer Overflow #patch management #Remote Code Execution #XZ #Zero Day Initiative
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 16:33:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #7_Zip #CVE_2026_14266 #Heap Buffer Overflow #patch management #Remote Code Execution #XZ #Zero Day Initiative
Daily CyberSecurity
7-Zip Vulnerability CVE-2026-14266 Allows Remote Code Execution Through Crafted XZ Data
TL;DR The Zero Day Initiative published advisory ZDI-26-444 on July 15, 2026. It covers a 7-Zip vulnerability tracked as CVE-2026-14266, scored CVSS 7.0, that can lead to remote code execution. Ve…
⤷ Title: Grok Build Goes Open Source for Community Audits but GitHub Issues and PRs Stay Closed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 15:08:11 +0000
════════════════════════
⌗ Tags: #Technology #Data Privacy #github #Grok Build #open_source #SpaceXAI
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 15:08:11 +0000
════════════════════════
⌗ Tags: #Technology #Data Privacy #github #Grok Build #open_source #SpaceXAI
Daily CyberSecurity
Grok Build Goes Open Source for Community Audits but GitHub Issues and PRs Stay Closed
Not long ago, the AI coding tool Grok Build triggered fierce community backlash for uploading developers’ complete repositories. Remarkably, SpaceXAI still has not admitted to collecting rep…
⤷ Title: CVE-2026-15378: Blind SSRF Flaw in Red Hat OpenShift AI
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 15:00:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_15378 #Kubernetes #OpenShift AI #red hat #Red Hat OpenShift AI #Server_Side Request Forgery #ssrf
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 15:00:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_15378 #Kubernetes #OpenShift AI #red hat #Red Hat OpenShift AI #Server_Side Request Forgery #ssrf
Daily CyberSecurity
CVE-2026-15378: Blind SSRF Flaw in Red Hat OpenShift AI
TL;DR Red Hat has flagged a critical flaw in Red Hat OpenShift AI. Tracked as CVE-2026-15378, it scores 9.3 on CVSS. The bug lets a remote attacker run a blind SSRF and read local files. No exploi…
⤷ Title: Microsoft Untangles Its Messy Windows Update Terminology: B Releases, Quality Updates, and More
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 14:08:17 +0000
════════════════════════
⌗ Tags: #Windows #Microsoft #Patch Tuesday #Windows 10 #Windows 11 #Windows Update
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 14:08:17 +0000
════════════════════════
⌗ Tags: #Windows #Microsoft #Patch Tuesday #Windows 10 #Windows 11 #Windows Update
Daily CyberSecurity
Microsoft Untangles Its Messy Windows Update Terminology: B Releases, Quality Updates, and More
Every month, Microsoft rolls out various Windows 10/11 updates in batches. These updates patch security vulnerabilities, fix functional bugs, add new features, or refresh system components. For no…
⤷ Title: Metabase Fixes CVE-2026-59827 and CVE-2026-59826 Remote Code Execution Flaws
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 14:03:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_59826 #CVE_2026_59827 #Deserialization #H2 Database #Metabase #rce #Remote Code Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 14:03:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_59826 #CVE_2026_59827 #Deserialization #H2 Database #Metabase #rce #Remote Code Execution
Daily CyberSecurity
Metabase Fixes CVE-2026-59827 and CVE-2026-59826 Remote Code Execution Flaws
TL;DR Metabase has patched three critical flaws in its H2 database handling. Two carry CVE IDs and enable Metabase remote code execution. CVE-2026-59827 scores 9.9 on CVSS, and CVE-2026-59826 scor…
⤷ Title: Apache IoTDB Patches Five Security Flaws, Upgrade to 2.0.10
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 13:00:01 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache IoTDB #CVE_2026_28564 #CVE_2026_40005 #CVE_2026_40006 #CVE_2026_40008 #CVE_2026_40009 #IoT security #Time_Series Database
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 13:00:01 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache IoTDB #CVE_2026_28564 #CVE_2026_40005 #CVE_2026_40006 #CVE_2026_40008 #CVE_2026_40009 #IoT security #Time_Series Database
Daily CyberSecurity
Apache IoTDB Patches Five Security Flaws, Upgrade to 2.0.10
TL;DR Apache has fixed five security flaws in Apache IoTDB, an industrial IoT time-series database. The Apache Software Foundation rated all five as “important.” The bugs range from pr…
⤷ Title: SonicWall SMA1000 CVE-2026-15409 (CVSS 10.0) RCE Exploited in the Wild as Public PoC Drops
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:49:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Actively Exploited #CVE_2026_15409 #CVE_2026_15410 #Remote Code Execution #SMA1000 #SonicWall #ssrf #zero_day
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:49:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Actively Exploited #CVE_2026_15409 #CVE_2026_15410 #Remote Code Execution #SMA1000 #SonicWall #ssrf #zero_day
Daily CyberSecurity
SonicWall SMA1000 CVE-2026-15409 (CVSS 10.0) RCE Exploited in the Wild as Public PoC Drops
TL;DR SonicWall patched a critical SonicWall SMA1000 vulnerability, CVE-2026-15409, on July 14, 2026. Attackers are exploiting it in the wild to reach remote code execution. A public proof-of-conc…
⤷ Title: Dell PowerFlex Manager Flaw CVE-2026-56688 Allows Root Command Execution
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:38:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_56688 #dell #Dell PowerFlex #os command injection #PowerFlex Manager #rce
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:38:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_56688 #dell #Dell PowerFlex #os command injection #PowerFlex Manager #rce
Daily CyberSecurity
Dell PowerFlex Manager Flaw CVE-2026-56688 Allows Root Command Execution
TL;DR Dell has patched a batch of flaws in PowerFlex Manager. The most severe, CVE-2026-56688, enables PowerFlex command execution as root. It carries a CVSS score of 9.1. So far, no public exploi…
⤷ Title: Microsoft Blocks the July 2026 Security Update on Dell Devices Over an Intel Driver Conflict
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:08:13 +0000
════════════════════════
⌗ Tags: #Windows #dell #intel #Microsoft #Windows 11 #Windows Update
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 12:08:13 +0000
════════════════════════
⌗ Tags: #Windows #dell #intel #Microsoft #Windows 11 #Windows Update
Daily CyberSecurity
Microsoft Blocks the July 2026 Security Update on Dell Devices Over an Intel Driver Conflict
This week, Microsoft began pushing the July 2026 monthly security update to all supported devices. Under normal circumstances, Windows 10/11 receives the update automatically and prompts users to …
⤷ Title: Elon Musk: X/Twitter Will Fully Open-Source Its Codebase for Public Review
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 09:55:19 +0000
════════════════════════
⌗ Tags: #Technology #Elon Musk #open_source #transparency #X/Twitter
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 09:55:19 +0000
════════════════════════
⌗ Tags: #Technology #Elon Musk #open_source #transparency #X/Twitter
Daily CyberSecurity
Elon Musk: X/Twitter Will Fully Open-Source Its Codebase for Public Review
As previously reported, SpaceXAI has already released Grok Build as open source to repair its collapsed community trust. Now, Elon Musk has revealed that X/Twitter will adopt an open-source model …
⤷ Title: Age of Empires CVE-2026-50663: High-Risk Lobby Bug Fixed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 09:12:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Age of Empires #CVE_2026_50663 #cybersecurity #Game Security #Microsoft
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 09:12:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Age of Empires #CVE_2026_50663 #cybersecurity #Game Security #Microsoft
Daily CyberSecurity
Age of Empires CVE-2026-50663: High-Risk Lobby Bug Fixed
Recently, security researcher @RDJGR revealed details of CVE-2026-50663 on social media. This flaw affects the classic strategy game, Age of Empires II: Definitive Edition. Surprisingly, exploitin…
⤷ Title: China and India Cyberespionage Converge on Pakistani Law Enforcement
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 08:03:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #Balochistan Police #Chinese Cyberespionage #Cobalt Strike #Pakistani Law Enforcement #PlugX #Remcos #SentinelLABS #ShadowPad #TAG_179
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 08:03:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #Balochistan Police #Chinese Cyberespionage #Cobalt Strike #Pakistani Law Enforcement #PlugX #Remcos #SentinelLABS #ShadowPad #TAG_179
Daily CyberSecurity
China and India Cyberespionage Converge on Pakistani Law Enforcement
At a Glance Actors Suspected China-nexus (PlugX, ShadowPad, Cobalt Strike) and India-nexus (Remcos; TAG-179) groups Activity type State-nexus cyberespionage; C2 intrusions; malware implanted in a …
⤷ Title: Albiriox Android Banking Trojan Spreads Through Fake UniCredit Rewards on Telegram
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 07:30:12 +0000
════════════════════════
⌗ Tags: #Malware #Accessibility Abuse #Albiriox #Android Banking Trojan #Android RAT #D3Lab #Fake Banking Rewards #On_Device Fraud #Telegram malware #UniCredit
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 07:30:12 +0000
════════════════════════
⌗ Tags: #Malware #Accessibility Abuse #Albiriox #Android Banking Trojan #Android RAT #D3Lab #Fake Banking Rewards #On_Device Fraud #Telegram malware #UniCredit
Daily CyberSecurity
Albiriox Android Banking Trojan Spreads Through Fake UniCredit Rewards on Telegram
At a Glance Malware family Albiriox (Android banking RAT, sold as Malware-as-a-Service), delivered by a UniCredit-branded dropper Threat actor Unattributed operator; Albiriox is sold on Russian-sp…
⤷ Title: Helix Data Extortion Group Emerges from BlackFile, ReliaQuest Reports
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 07:03:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BlackFile #data extortion #Device Code Phishing #Helix #ReliaQuest #Sharepoint #ShinyHunters #Vishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 07:03:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BlackFile #data extortion #Device Code Phishing #Helix #ReliaQuest #Sharepoint #ShinyHunters #Vishing
Daily CyberSecurity
Helix Data Extortion Group Emerges from BlackFile, ReliaQuest Reports
At a glance Actor / group Helix (suspected ties to BlackFile and ShinyHunters) Activity type Data extortion through identity-based intrusion Targets / victims Enterprises; high-visibility staff an…
⤷ Title: GigaWiper Backdoor Bundles Disk Wiping Malware and Fake Ransomware
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 06:03:10 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #Crucio ransomware #disk wiping malware #FlockWiper #GigaWiper #Microsoft Threat Intelligence #wiper malware
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 06:03:10 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #Crucio ransomware #disk wiping malware #FlockWiper #GigaWiper #Microsoft Threat Intelligence #wiper malware
Daily CyberSecurity
GigaWiper Backdoor Bundles Disk Wiping Malware and Fake Ransomware
At a glance Malware family GigaWiper (Golang backdoor; code ties to Crucio and FlockWiper) Threat actor Not publicly named by Microsoft; suspected single developer Target / victims Windows systems…
⤷ Title: CISA Adds Oracle E-Business Suite and KNX Flaws to KEV Catalog
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 02:31:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #CVE_2023_4346 #CVE_2026_46817 #KEV #KNX #Oracle E_Business Suite
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 02:31:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #CVE_2023_4346 #CVE_2026_46817 #KEV #KNX #Oracle E_Business Suite
Daily CyberSecurity
CISA Adds Oracle E-Business Suite and KNX Flaws to KEV Catalog
TL;DR The CISA KEV catalog gained two entries on July 15, 2026. The agency confirmed active exploitation of CVE-2026-46817 in Oracle E-Business Suite and CVE-2023-4346 in KNX building automation d…
⤷ Title: Splunk Fixes Three Splunk Enterprise Vulnerabilities Led by CVE-2026-20296 CSRF Flaw
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 02:11:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CSRF #CVE_2026_20296 #CVE_2026_20297 #CVE_2026_20298 #Splunk #Splunk Enterprise
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 02:11:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CSRF #CVE_2026_20296 #CVE_2026_20297 #CVE_2026_20298 #Splunk #Splunk Enterprise
Daily CyberSecurity
Splunk Fixes Three Splunk Enterprise Vulnerabilities Led by CVE-2026-20296 CSRF Flaw
TL;DR Splunk released patches on July 15, 2026 for three Splunk Enterprise vulnerabilities. The most serious, CVE-2026-20296, is a cross-site request forgery (CSRF) flaw that enables SPL execution…