Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-29 17:00 PDT
- Russian hackers exploit Exchange OWA zero-day for long-term mailbox access
BleepingComputer • 2026-07-29 16:44 • www.bleepingcomputer.com
The Russian state-sponsored hacking group Laundry Bear, also known as Void Blizzard, is exploiting an Exchange Outlook Web Access vulnerability in email campaigns to deliver a sophisticated backdoor called OWAReaper. […]
https://www.bleepingcomputer.com/news/security/russian-hackers-exploit-exchange-owa-zero-day-for-long-term-mailbox-access/ - Smashing Security podcast #478: This job interview could destroy your company
Graham Cluley • 2026-07-29 16:09 • grahamcluley.com
You’ve been headhunted for a great job in cryptocurrency. All you have to do is complete a short online assessment – with your webcam on, of course, so they can verify who you really are. Which is ironic, because the person recruiting you doesn’t exist. And North Korean hackers using this trick have already made off with $643 million in crypto this year alone.Meanwhile, researchers at UC San Diego have discovered that 2.2 million cars across the United States can be unlocked or immobilised by anyone with a bit of Bluetooth kit – thanks to one aftermarket car alarm that made a truly specta…
https://grahamcluley.com/smashing-security-podcast-478/ - Anthropic confirms Claude is down worldwide
BleepingComputer • 2026-07-29 14:39 • www.bleepingcomputer.com
Claude is down for some users, with Anthropic confirming elevated errors across multiple AI models. The disruption is causing requests to fail with a “529 Overloaded” message, including in Claude and tools that rely on its API. […]
https://www.bleepingcomputer.com/news/artificial-intelligence/anthropic-confirms-claude-is-down-worldwide/ - Cisco warns of FMC static credential flaw exploited in zero-day attacks
BleepingComputer • 2026-07-29 14:35 • www.bleepingcomputer.com
Cisco is warning that a high-severity Secure Firewall Management Center (FMC) static credential vulnerability, tracked as CVE-2026-20316, was actively exploited in zero-day attacks to gain unauthorized access to vulnerable devices. […]
https://www.bleepingcomputer.com/news/security/cisco-warns-of-fmc-static-credential-flaw-exploited-in-zero-day-attacks/ - Critical Rails Flaw Could Let Unauthenticated Attackers Read Server Files via Image Uploads
The Hacker News • 2026-07-29 11:10 • thehackernews.com
Ruby on Rails has released fixes for a critical Active Storage vulnerability that could let unauthenticated attackers read arbitrary files from application servers through crafted image uploads.Tracked as CVE-2026-66066 (CVSS score: 9.5), the flaw can expose the Rails process environment and secrets such as secret_key_base, the Rails master key, database passwords, cloud storage credentials,
https://thehackernews.com/2026/07/critical-rails-flaw-could-let.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
