Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-22 08:00 PDT
- New InfraTrust report reveals infrastructure flaws admins should patch first
BleepingComputer • 2026-07-22 07:15 • www.bleepingcomputer.com
Eclypsium has launched InfraTrust, a new infrastructure cybersecurity knowledge base and monthly InfraTrust Pulse report designed to help organizations prioritize vulnerabilities affecting infrastructure, firmware, networking, and edge devices. […]
https://www.bleepingcomputer.com/news/security/new-infratrust-report-reveals-infrastructure-flaws-admins-should-patch-first/ - Adobe Chrome extension flaw let sites access private WhatsApp chats
BleepingComputer • 2026-07-22 06:22 • www.bleepingcomputer.com
The Adobe Acrobat extension for Chrome could be used to access conversations and data rendered in WhatsApp Web without any form of authentication. […]
https://www.bleepingcomputer.com/news/security/adobe-chrome-extension-flaw-let-sites-access-private-whatsapp-chats/ - Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication
The Hacker News • 2026-07-22 05:36 • thehackernews.com
A high-severity security flaw impacting open-source developer platform Windmill has come under active exploitation in the wild, per VulnCheck.The vulnerability in question is CVE-2026-29059 (CVSS score: 7.5), a case of unauthenticated path traversal impacting Windmill’s “get_log_file” endpoint (“/api/w/{workspace}/jobs_u/get_log_file/{filename}”).
“The filename parameter is concatenated into
https://thehackernews.com/2026/07/hackers-exploit-windmill-flaw-to-read.html - The Fastest Path to AI Adoption Runs Through Security
The Hacker News • 2026-07-22 04:58 • thehackernews.com
Security leaders who build fast, visible paths to AI adoption are becoming the most valued partners in their organizations. AI governance done right gives security teams the visibility they need, employees the tools they want, and CISOs the strategic influence they have earned.According to McKinsey’s State of AI report, 76 percent of employees now use AI in some capacity at work, up from 55
https://thehackernews.com/2026/07/the-fastest-path-to-ai-adoption-runs.html - CISA orders urgent action on actively exploited Langflow RCE flaw
BleepingComputer • 2026-07-22 04:43 • www.bleepingcomputer.com
The Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday ordered U.S. government agencies to prioritize patching an actively exploited vulnerability in the Langflow visual framework for building AI agents. […]
https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-actively-exploited-langflow-rce-flaw/ - OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark
The Hacker News • 2026-07-22 04:30 • thehackernews.com
OpenAI on Tuesday said a combination of its artificial intelligence (AI) models, including GPT-5.6 Sol and an “even more capable pre-release model,” was behind the security incident that targeted Hugging Face’s production infrastructure last week.The AI company said the models were operating with “reduced cyber refusals for evaluation purposes” that might otherwise limit their ability to
https://thehackernews.com/2026/07/openai-says-its-own-ai-models-escaped.html - Why Modern SOCs Need Multi-Layered Detections
The Hacker News • 2026-07-22 04:25 • thehackernews.com
The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today, AI-equipped attackers are simply outpacing defenses. Most intrusions now bypass endpoint and malware-based detection entirely.The CrowdStrike Global Threat Report estimates around 79% of attacks are malware-free, as threat actors rely on
https://thehackernews.com/2026/07/why-modern-socs-need-multi-layered.html - Stop renting storage space — this lifetime 2TB plan is yours for $59
BleepingComputer • 2026-07-22 04:09 • www.bleepingcomputer.com
Cloud storage costs tend to creep up over time, since most services charge monthly or annually for as long as you use them. FileJump’s Lifetime Plan skips that model entirely, offering 2TB of cloud storage for a single payment of $59 (MSRP $467). […]
https://www.bleepingcomputer.com/news/security/stop-renting-storage-space-this-lifetime-2tb-plan-is-yours-for-59/ - First-Person Identity Theft Story
Schneier on Security • 2026-07-22 04:02 • www.schneier.comHarrowing story of an identity theft victim.
Yes, the person made a mistake—they gave the scammer a two-factor authentication code that allowed the scammer to take over their email address. But the real story here is how, for many of us, the security of most of our accounts hangs on the security of our email accounts.
https://www.schneier.com/blog/archives/2026/07/first-person-identity-theft-story.html
- Microsoft to stop Exchange 2016 / 2019 security updates in October
BleepingComputer • 2026-07-22 03:44 • www.bleepingcomputer.com
Microsoft has reminded customers that it will stop shipping security updates for Exchange 2016 and 2019 through the Extended Security Update (ESU) program in October. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-2016-and-2019-esu-program-ends-in-october/
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
