Show Notes - 2026-07-07
Stories Covered
July 7, 2026Today:Oracle E-Business Suite Remote Code Execution (CVE-2026-46817) [Critical Alerts]Linux Kernel KVM Guest-to-Host Escape (CVE-2026-53359) [Critical Alerts]Citrix NetScaler Memory Disclosure Under Active Exploitation (CVE-2026-8451) [Critical Alerts]Progress Kemp LoadMaster OS Command Injection (CVE-2026-8037) [Critical Alerts]Linux Bad Epoll Privilege Escalation (CVE-2026-46242) [Critical Alerts]Langflow Unauthenticated RCE (CVE-2025-3248) [Critical Alerts]JadePuffer: First Fully Autonomous LLM-Driven Ransomware [Ransomware & Extortion]Ransomware Incidents This Week [Ransomware & Extortion]Aflac Japan Data Breach [Ransomware & Extortion]BeyondTrust Remote Support and PRA Critical Auth Bypass Flaws (CVE-2026-40138, CVE-2026-40139) [Business & Infrastructure Threats]Gitea Docker Authentication Bypass Under Probing (CVE-2026-20896) [Business & Infrastructure Threats]NetNut/Popa Residential Proxy Botnet Disrupted [Business & Infrastructure Threats]Navigate360 Anonymous Tip System Breach - Three Months Without Notification [Business & Infrastructure Threats]China-Nexus Threat Actors Target Universities via Roundcube Exploits [Business & Infrastructure Threats]China-Nexus Hackers Target Indian Taxpayers with DcRAT [Business & Infrastructure Threats]North Korean PolinRider Supply Chain Campaign Targets Developers [Business & Infrastructure Threats]Veil#Drop Framework Delivers PureLog Stealer via Blogspot [Business & Infrastructure Threats]ChocoPoC RAT Targets Vulnerability Researchers via Fake GitHub PoCs [Business & Infrastructure Threats]UAT-7810 ORB Network Infrastructure [IOCs & Detection]Cavern Manticore: Iran-Linked Modular C2 Framework Targets Israel [Windows / AD Security]Browser-Native Ransomware Technique Using Chrome File System Access API [General Security News]AI Coding Agents Fail Shell Command Injection Tests [General Security News]LLM Phantom Squatting Exploited for Phishing [General Security News]WhatsApp Usernames Raise Impersonation Concerns [General Security News]19-Year-Old Scattered Spider Suspect Extradited to U.S. [General Security News]Tenda Router Hidden Admin Backdoor (CVE-2026-11405) [General Security News]Alberta Centurion Project Sued Over Alleged Data Breach [General Security News]Linux Kernel CVEs [Vulnerability Disclosures]Roundcube CVEs [Vulnerability Disclosures]Microsoft Security Update Guide CVEs [Vulnerability Disclosures]BeyondTrust Additional Vulnerabilities [Vulnerability Disclosures]CVEs Referenced
CVE-2024-12356, CVE-2024-42009, CVE-2025-2492, CVE-2025-3248, CVE-2025-49113, CVE-2026-10536, CVE-2026-11405, CVE-2026-12480, CVE-2026-14647, CVE-2026-1731, CVE-2026-20896, CVE-2026-40138, CVE-2026-40139, CVE-2026-40140, CVE-2026-40141, CVE-2026-43284, CVE-2026-43500, CVE-2026-46242, CVE-2026-46316, CVE-2026-46817, CVE-2026-53359, CVE-2026-54886, CVE-2026-54891, CVE-2026-55952, CVE-2026-8037, CVE-2026-8286, CVE-2026-8451, CVE-2026-8458, CVE-2026-8924, CVE-2026-8926, CVE-2026-8932, CVE-2026-9080, CVE-2026-9545
Indicators of Compromise
c2ab9adaba93ff094b8f3fc37d906014d870582039d276b7bd03e6fd583d8a15
127.0.0.0, 159.26.98.241, 223.26.63.40, 204.194.48.250, 194.233.92.26, 217.15.160.247, 217.15.164.147, 95.182.100.231