ICYMI: 2026-07-17
Latest Headlines
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code
OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests
Seven Malicious Vite npm Packages Use Blockchain C2 to Deliver a RAT
New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft
Fake Coding Tests Deliver OtterCookie-Aligned Malware Hidden in SVG Flag Images
E.U. Orders Google to Open Android Mic, Camera and Screen to Rival AI Assistants
The Race to Field Military Autonomy Is On, Can Trusted Information Infrastructure Keep Pace?
Armenia Detains Russian Tourist on U.S. Warrant for REvil Hacker, Lawyers Say Wrong Man
ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV
San Francisco Demands Apple and Google Delete AI ‘Nudify’ Apps From App Stores
In Other News: Iran Tracks US Military Phones, CrashStealer macOS Malware, CVD Blueprint
Podcast: Broken Governance, Agentic AI, and the MindStone Agent Exclusive
Beacon Security Raises $13 Million for Security Data Platform
Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday
Cyberattack Disrupts Operations of Japanese Frozen Food Giant Nichirei
Fresh SharePoint Vulnerability Exploited Soon After Disclosure
Coca-Cola Suspends US Fairlife Production Due to Ransomware Attack
OpenSSL “HollowByte” Vulnerability Lets Hackers Crash Servers With Just 11 Bytes
Ransomware Attack on Coca-Cola-Owned Fairlife Halts Production Across the United States
EY Data Breach – Hackers Gain Access to IT Support System and Download Documents
PentestCode – New AI Agent That Automates Penetration Testing with 18 Specialized Tools
New Windows LegacyHive 0-Day Vulnerability Allows Hackers to Gain Admin Access
AWS Cost Explorer Bug Shows Trillion-Dollar Billing Estimates
New ClickLock macOS Stealer Kills Every App to Force Password Entry
CISA Warns of Microsoft SharePoint Code Execution Vulnerability Exploited in Attacks
Top 10 Best Identity Threat Detection and Response (ITDR) Solutions in 2026
Multiple TP-Link Cameras Vulnerability Allows Hackers to Launch MitM Attacks
HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload
Ernst & Young discloses data breach after support system hack
Inside the Search for “Clean” Residential Proxies for Carding
New Windows LegacyHive zero-day gives hackers admin privileges
Windows Server 2022 reach end of mainstream support in 90 days
US charges two over laundering $43 million from investment fraud
CISA urges immediate action on actively exploited Fortinet flaws
– MTZ