ICYMI: 2026-07-01
Latest Headlines
Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters
19-Year-Old Scattered Spider Suspect Extradited to Face U.S. Hacking Charges
SEO-Poisoned Software Sites Abuse ScreenConnect to Deploy AsyncRAT
VEIL#DROP Malware Chain Uses Blogger Platform to Deliver PureLogs Stealer
Ousaban Banking Trojan Targets Iberian Bank Users with Fake PDF Lures
Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic
Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands
Progress Kemp LoadMaster Pre-Auth RCE Flaw Faces Active Exploitation Attempts
AI-Generated Browser Ransomware Abuses Chromium API on Windows and Android
2026 Cybersecurity Assessment: The Gap Between Awareness and Resilience
Microsoft Accelerates Post-Quantum Cryptography Shift to 2029
Phantom Squatting Uses AI-Hallucinated Domains for Phishing and Malware
Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export Controls
Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts
Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery
Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service
Claude Helped a Hacker Find a Way to Issue Tickets to Almost Every US Music Festival
Microsoft Adds New Teams Controls to Block Unauthorized AI Bots From Meetings
Adobe Patches Critical ColdFusion, Campaign Classic Vulnerabilities
Citrix Patches NetScaler Vulnerabilities, Including New ‘HTTP/2 Bomb’ Attack
Frontier AI: Six Questions Every Enterprise Should Ask Security Vendors
Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari
Dawnguard Raises $6.3 Million for Security Architecture Automation Platform
Indian Govt Halts Meta’s WhatsApp Usernames Rollout Over Fraud Concerns
Critical Cursor IDE RCE Vulnerabilities Enable Prompt Injection in Zero-Click
Turning Indicators into Intelligence in OpenCTI with Criminal IP
Massive Password Stealing Attack Targeting Microsoft 365 Users With 81 Million Login Attempts
Apple ‘Hide My Email’ Vulnerability Exposes Users’ Real Email Addresses
Multiple Fluentd Vulnerabilities Let Attackers Execution Arbitrary Code Remotely
A Weaponized Google Ad Install Malicious Claude Code to Hijack Entire macOS
Critical Multiple Adobe ColdFusion Vulnerabilities Enables Arbitrary Code Execution Attacks
FortiBleed credential-theft campaign linked to Lynx ransomware
Kubota says hackers had month-long access to network systems
New ChocoPoC malware targets researchers via trojanized PoC exploits
Hackers target Microsoft 365 accounts with 81 million login attempts
Over 900 Oracle E-Business instances exposed to ongoing attacks
Microsoft fixes GIF functionality in the Windows Emoji Panel
Amazon fined $2.25M for withholding evidence from fraud victims
– MTZ