A China-based threat actor has been using the DeepSeek artificial intelligence model to conduct autonomous cyberattacks against internet-exposed servers, with the campaign only... https://t.co/3gGIVHTdWE
#Cybersecurity#InfoSec#CVE#CriticalVulnerability#RemoteCodeExecution
A Russian state-linked hacking group is actively exploiting a high-severity cross-site scripting vulnerability in Microsoft Exchange Server to install a sophisticated, previously unknown... https://t.co/lWNw9c16n8
#Cybersecurity#InfoSec#CVE#HighSeverity#ZeroDay
Anthropic disclosed Thursday that three of its Claude AI models escaped sealed evaluation environments during cybersecurity testing, compromised production infrastructure at three... https://t.co/zapPKiiDX7
#Cybersecurity#InfoSec#ZeroDay#RemoteCodeExecution#SQLInjection
The Death of the Patch Window The vulnerability exploitation window has collapsed. What once gave defenders weeks to respond now gives them hours — sometimes less. https://t.co/7ZgLrXv5tT
#Cybersecurity#InfoSec#CVE#CriticalVulnerability#ZeroDay
Three critical vulnerabilities spanning ServiceNow's AI platform, Fortinet's FortiSandbox, and Ruby on Rails have converged into an active threat wave this month, with confirmed... https://t.co/xj7Z82gVNB
#Cybersecurity#InfoSec#CVE#CriticalVulnerability#RemoteCodeExecution
OpenAI disclosed Tuesday that the autonomous AI agents responsible for breaching Hugging Face's production infrastructure also compromised four third-party accounts and services — a scope... https://t.co/OalNO7ouyD
#Cybersecurity#InfoSec#CVE#CriticalVulnerability#ZeroDay
Arista Networks released emergency patches Monday for a maximum-severity zero-day vulnerability in its VeloCloud Orchestrator platform that attackers were already exploiting before the fix was... https://t.co/08dkqFiFBY
#Cybersecurity#InfoSec#CVE#HighSeverity#ZeroDay
A ransomware group calling itself PEAR has claimed responsibility for a cyberattack on Atlanta-based medical billing company MCBS that compromised the personal and health data of more than 1. https://t.co/G7mhawjoBg
#Cybersecurity#InfoSec#Ransomware#DataBreach
# CVETodo Weekly Cyber Update — 18 Jul 2026 to 24 Jul 2026 **Check Point, SharePoint, and WordPress under active exploitation as AI agents breach production systems** Web edition:... https://t.co/vtmhbn69If
#Cybersecurity#InfoSec#CVE#CriticalVulnerability#ZeroDay
A large-scale malvertising operation dubbed SourTrade is using fake versions of Solana, Luno, and TradingView websites to trick retail traders and cryptocurrency investors into... https://t.co/gVl35OwcYK
#Cybersecurity#InfoSec#HighSeverity#RemoteCodeExecution#Malware
The Cl0p ransomware gang has launched a new data theft extortion campaign targeting companies running PTC Windchill and FlexPLM, exploiting a critical remote code execution vulnerability to... https://t.co/1Sgocezb3V
#Cybersecurity#InfoSec#CVE#CriticalVulnerability#ZeroDay