Breaking News – Cyber Threats (last 6h)
Generated: 2026-07-20 08:00 PDT
- An AI SOC Evaluation Guide for Security Leaders
BleepingComputer • 2026-07-20 07:01 • www.bleepingcomputer.com
Choosing an AI SOC platform requires understanding how it will perform in your own environment, not just during an evaluation. Prophet Security shares a practical framework for assessing AI SOC solutions, including how to validate accuracy, operating models, long-term reliability, and production readiness. […]
https://www.bleepingcomputer.com/news/security/an-ai-soc-evaluation-guide-for-security-leaders/ - ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More
The Hacker News • 2026-07-20 06:32 • thehackernews.com
A single request should not be able to do this much. But this week, small inputs led to code execution, memory loss, stolen keys, and disabled security tools.The paths were often simple: exposed systems, weak checks, old drivers, fake prompts, and public code used for malware delivery. Some bugs were new. Others were already being used before defenders had time to patch.
Here is the full
https://thehackernews.com/2026/07/weekly-recap-wordpress-rce-sonicwall-0.html - Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
The Hacker News • 2026-07-20 05:13 • thehackernews.com
At least one Russian intelligence service is systematically hijacking internet-connected security cameras across Europe and Ukraine, using the feeds to watch military transport routes, weapons shipments bound for Kyiv, and the locations of Ukrainian troops.That is the finding of a cybersecurity advisory published July 10 by the AIVD and MIVD, the Netherlands’ civilian and military intelligence
https://thehackernews.com/2026/07/russian-intelligence-hacks-ip-cameras.html - Hugging Face warns an autonomous AI agent hacked its network
BleepingComputer • 2026-07-20 04:56 • www.bleepingcomputer.com
The Hugging Face artificial intelligence repository disclosed that attackers gained access to internal datasets and credentials after breaching its production infrastructure using an autonomous AI agent system. […]
https://www.bleepingcomputer.com/news/security/hugging-face-breach-autonomous-ai-agent-system-internal-datasets-credentials/ - Mythos Didn't Break Your Security Program. Your Exposure Window Could.
The Hacker News • 2026-07-20 04:30 • thehackernews.com
The industry spent the initial months after Anthropic’s April 7 Mythos reveal focused on volume. How many new CVEs would Mythos add to an already overloaded pipeline? How quickly would the flood of AI-driven discovery overwhelm triage capabilities? How long would it take adversaries to weaponize Mythos findings at scale? Those questions were and remain valid. Yet they all stop short of
https://thehackernews.com/2026/07/mythos-didnt-break-your-security.html - On Flock License Plate Tracking Cameras
Schneier on Security • 2026-07-20 04:03 • www.schneier.comA recent story of a writer who was mistakenly identified, tracked, and arrested using data from Flock cameras has gone viral.
The New Jersey plates that were allegedly stolen from the LA dealer were 34 03 DTM, not 34 10 DTM. But when the police report was created and the plate was entered into Flock’s system, it was just recorded as 34 DTM. Just the five large characters, no little number in the middle. And Flock’s A…
https://www.schneier.com/blog/archives/2026/07/on-flock-license-plate-tracking-cameras.html - Microsoft confirms Windows Server Update Services sync delays
BleepingComputer • 2026-07-20 03:47 • www.bleepingcomputer.com
Microsoft is working to fix a known issue affecting Windows Server Update Services (WSUS) servers, which has caused synchronization problems for more than a week. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-working-to-fix-wsus-server-sync-delays-and-timeouts/ - Windows KB5121767 OOB update fixes shutdowns on some Dell PCs
BleepingComputer • 2026-07-20 03:06 • www.bleepingcomputer.com
Microsoft has released emergency updates to fix a known issue causing some Dell PCs to shut down after installing the July 2026 Windows 11 security updates. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-bug-causing-some-dell-pcs-to-shut-down/ - Critical ServiceNow code execution flaw now exploited in attacks
BleepingComputer • 2026-07-20 02:29 • www.bleepingcomputer.com
Attackers have begun exploiting a critical vulnerability (CVE-2026-6875) in the ServiceNow AI Platform, according to threat intelligence company Defused. […]
https://www.bleepingcomputer.com/news/security/critical-servicenow-code-execution-flaw-now-exploited-in-attacks/ - New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction
The Hacker News • 2026-07-20 02:10 • thehackernews.com
Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a heap-based buffer overflow in how the archiver processes XZ chunked data, and Trend Micro’s Zero Day Initiative (ZDI) detailed it on July 15. A fix shipped on June 25 in 7-Zip 26.02.The overflow lets an attacker “execute code in the context of the current process,” per the
https://thehackernews.com/2026/07/new-7-zip-vulnerability-could-let.html - Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs
The Hacker News • 2026-07-20 02:07 • thehackernews.com
A solo Russian-speaking threat actor known as “bandcampro” outsourced a chunk of their operations to Google’s open-source Gemini CLI artificial intelligence (AI) and commandeered a live botnet.The findings come from an analysis of 200 Gemini CLI session logs between March 19 and April 21, 2026, which found the threat actor using AI, among other things, to crack passwords, set up a residential
https://thehackernews.com/2026/07/russian-speaking-hacker-uses-google.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.
