Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available

25/07/2026 0 Comments 0 tags

Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s JSON library for Java. In affected Spring Boot applications, a malicious JSON request can execute

DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payouts

25/07/2026 0 Comments 0 tags

The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and manage various aspects related to

Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCE

25/07/2026 0 Comments 0 tags

Threat actors linked to the Cl0p (aka Chubby Scorpius, FIN11, Graceful Spider, and Lace Tempest) ransomware campaign are exploiting flaws in internet-exposed PTC Windmill and FlexPLM deployments as part of

CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijacking

25/07/2026 0 Comments 0 tags

For years, phishing campaigns targeting financial institutions followed the same playbook. Victims were tricked into entering usernames and passwords, attackers collected the credentials, and accounts were compromised later when an

Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git

25/07/2026 0 Comments 0 tags

Security researcher Yuhang Wu at depthfirst has published a working proof-of-concept (PoC) exploit that executes commands as git on an unpatched self-managed GitLab 18.11.3 server. An ordinary authenticated user triggers

BlueNoroff Zoom Phishing Kit Profiles Crypto Wallets Before Malware Delivery

24/07/2026 0 Comments 0 tags

The North Korean threat actors behind the ClickFix-style campaigns that employ typosquatted Zoom and Microsoft Teams domains have been found to operate an active phishing kit to impersonate the videoconferencing

Certighost Exploit Lets Low-Privileged Active Directory Users Impersonate a Domain Controller

24/07/2026 0 Comments 0 tags

Researchers H0j3n and Aniq Fakhrul published a working exploit on July 24 that lets a low-privileged Active Directory user obtain a certificate for a Domain Controller and authenticate as that

Golden Chickens Resurfaces With Four New Malware Families and Modular Implants

24/07/2026 0 Comments 0 tags

The threat actors behind the Golden Chickens malware-as-a-service (MaaS) ecosystem have resurfaced with four new malware families, indicating that the operators are showing no signs of stopping despite extensive public

Hacker Runs Hermes AI Agent Unattended for Post-Exploitation at Thai Finance Ministry

24/07/2026 0 Comments 0 tags

Someone installed a popular AI assistant on a rented server, switched off the setting that makes it ask permission before running risky commands, and pointed it at Thailand’s Ministry of

Seeing AI Agents Is Not Enough. Security Teams Must Enforce What They Can Do

24/07/2026 0 Comments 0 tags

AI agent security is moving through a familiar maturity curve: adoption, then visibility, and finally, control. But what we’ve collectively discovered is that enforcing least privilege for AI agents is