🚨 CISA KEV 1[−]
12 Jul KEVSecurity Affairs newsletter Round 585 by Pierluigi Paganini – INTERNATIONAL EDITIONA new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. U.S. CISA adds iCagenda and B…SECURITYAFFAIRS.COM
🐛 COMMON VULNERABILITIES AND EXPOSURES 4[−]
12 JulCVE-2026-15308 Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarationsInformation published.MSRC.MICROSOFT.COM
12 JulCVE-2026-59871 node-tar: Process crash via PAX numeric path type confusionInformation published.MSRC.MICROSOFT.COM
12 JulCVE-2026-59873 node-tar: Decompression/parse DoS via unlimited inputInformation published.MSRC.MICROSOFT.COM
12 JulCVE-2026-59874 node-tar: Negative tar entry size causes infinite loop in archive replaceInformation published.MSRC.MICROSOFT.COM
⚠️ VULNERABILITY DISCLOSURE 2[−]
12 JulWeek in review: Accenture data breach, great open-source cybersecurity toolsHere’s an overview of some of last week’s most interesting news, articles, interviews and videos: Securing the inbox: Where identity, brand and security meet Getting a verified logo to appear next to your email has traditionally meant having to work with two separate entities. Yo…HELPNETSECURITY.COM
12 JulKR: Military targeted in nearly 19,000 cyberattack attempts in 2025: lawmakerChae Yun-hwan reports: Cyberattack attempts against the South Korean military reached nearly 19,000 last year, marking the highest figure in five years, a lawmaker said Sunday. The military was targeted in 18,951 cyberattack attempts in 2025, compared with 11,700 in 2021, 9,115 i…DATABREACHES.NET
📋 SECURITY BULLETINS 1[−]
12 JulDebian 13.6 security update patches over a hundred advisories in trixieMost PCs still run with a UEFI Secure Boot certificate authority, installed by default since 2013, that has now expired. That certificate signed the bootloaders letting machines start with Secure Boot turned on. Its expiry sits at the center of the sixth update to Debian 13, code…HELPNETSECURITY.COM
🔥 INCIDENT REPORTING 1[−]
12 JulRyuk Ransomware Member Pleads Guilty Over Attacks on U.S. OrganizationsAn alleged Ryuk ransomware member pleaded guilty in the U.S. for helping deploy attacks on American companies and faces up to 15 years in prison. Armenian national Karen Serobovich Vardanyan (34) pleaded guilty in the U.S. for his role in Ryuk ransomware attacks targeting America…SECURITYAFFAIRS.COM
🌐 CYBER THREAT LANDSCAPE 2[−]
12 JulRedHook Android malware now uses Wireless ADB for shell accessA new version of the RedHook Android malware abuses the Android Wireless Debugging (Wireless ADB) mechanism in a novel way to gain shell-level privileges without requiring a computer connection. [...]BLEEPINGCOMPUTER.COM
12 JulSECURITY AFFAIRS MALWARE NEWSLETTER ROUND 105Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Novel Java-Based QuimaRAT Targets Windows, macOS, and Linux Vibe Coded Extortion: Avalon’s Path from Legal Lure to …SECURITYAFFAIRS.COM
📰 CYBERSECURITY BRIEFINGS 1[−]
12 JulSpace after quantum.This week on T-Minus: Space-Cyber Briefing: we look at how the space sector is preparing itself for quantum computing. While practical quantum computing has long seemed just over the horizon, governments and commercial space operators alike are now actively preparing for the day …THECYBERWIRE.COM
🎙️ PODCASTS 1[−]
12 JulPreparing space for Q-day.As the world prepares itself for quantum computing, governments and private space enterprises alike are looking to get ahead of the technology and manage the rapidly-accelerating risks. In this week’s episode, host Maria Varmazis sits down with Eddy Zervigon, CEO of Quantum XC…THECYBERWIRE.COM
📡 INFOSEC NEWS 3[−]
12 JulProgress Told ShareFile Customers to Pull the Plug on Their Servers. Here’s What We Know.Progress urged ShareFile Storage Zone customers to shut down internet-facing servers immediately over a credible security threat under investigation. Progress Software sent an urgent email to ShareFile customers the evening of July 10 with a subject line that left no room for amb…SECURITYAFFAIRS.COM
12 JulClaude Fable 5 stays free for paid users until July 19 as Anthropic buys more timeAnthropic has just extended access to Claude Fable 5 for paid subscribers until July 19, giving you another week to keep using the most powerful model. [...]BLEEPINGCOMPUTER.COM
12 JulOpenAI temporarily relaxes GPT-5.6 Sol usage limitsOpenAI is temporarily relaxing GPT-5.6 Sol usage after demand for the company's most powerful model surged over the past 48 hours. [...]BLEEPINGCOMPUTER.COM