Ticker feed
A critical flaw in N-able's Passportal password manager allowed any website — including ones with malicious ads — to silently steal a user's entire password vault. Researcher James Arnott of Bay Area Labs discovered on July 8 that Passportal's browser extension trusted messages from any source without verification, handing over access tokens to anyone who asked.
Those tokens unlock everything: stored credentials, one-time passwords, and with a 100-day refresh token, persistent access long after the initial breach. N-able patched the issue the next day, but the core problem remains — Passportal still decrypts passwords on its own servers rather than locally, leaving users exposed to future attacks.
With roughly 2,500 MSPs using the product, a single compromised account could cascade across dozens of client organizations.
Source: Dark Reading
A critical flaw in N-able's Passportal password manager allowed any website — including ones with malicious ads — to silently steal a user's entire password vault. Researcher James Arnott of Bay Area Labs discovered on July 8 that Passportal's browser extension trusted messages from any source without verification, handing over access tokens to anyone who asked.
Those tokens unlock everything: stored credentials, one-time passwords, and with a 100-day refresh token, persistent access long after the initial breach. N-able patched the issue the next day, but the core problem remains — Passportal still decrypts passwords on its own servers rather than locally, leaving users exposed to future attacks.
With roughly 2,500 MSPs using the product, a single compromised account could cascade across dozens of client organizations.
Source: Dark Reading
A cybercrime group called BlackFile is actively targeting major financial firms, law firms, and rating agencies — and it's not slowing down. Researchers at Google Threat Intelligence Group say the group hits an average of 1.5 new victims daily, with malicious infrastructure spotted targeting Blackstone, Bain Capital, Moody's, CME, and Apollo.
BlackFile runs four extortion brands — Redact, Pink, Helix, and Falcon — using voice-phishing and IT impersonation to gain access. Demands typically start around $3 million but get negotiated below $1 million. Some recent victims have received threatening messages and have even been swatted (a tactic where false emergency calls are used). Mandiant has responded to over two dozen confirmed breaches since January.
Source: CyberScoop
A cybercrime group called BlackFile is actively targeting major financial firms, law firms, and rating agencies — and it's not slowing down. Researchers at Google Threat Intelligence Group say the group hits an average of 1.5 new victims daily, with malicious infrastructure spotted targeting Blackstone, Bain Capital, Moody's, CME, and Apollo.
BlackFile runs four extortion brands — Redact, Pink, Helix, and Falcon — using voice-phishing and IT impersonation to gain access. Demands typically start around $3 million but get negotiated below $1 million. Some recent victims have received threatening messages and have even been swatted (a tactic where false emergency calls are used). Mandiant has responded to over two dozen confirmed breaches since January.
Source: CyberScoop
A Somerset NHS worker accessed up to 200 patient records without permission between August 2017 and October 2023, sharing screenshots of medical information with their partner. The breach at Musgrove Park Hospital included sensitive data — demographic details, A&E visits, and appointment records — and even led to a patient being contacted using a phone number taken from hospital files.
The worker resigned before facing disciplinary action and received only a police caution, with officers concluding the actions weren't malicious. Victims are furious. "She violated families, vulnerable people," one told the BBC. Privacy campaigners are now calling for automatic NHS App notifications whenever patient records are viewed.
Source: BBC News
A Somerset NHS worker accessed up to 200 patient records without permission between August 2017 and October 2023, sharing screenshots of medical information with their partner. The breach at Musgrove Park Hospital included sensitive data — demographic details, A&E visits, and appointment records — and even led to a patient being contacted using a phone number taken from hospital files.
The worker resigned before facing disciplinary action and received only a police caution, with officers concluding the actions weren't malicious. Victims are furious. "She violated families, vulnerable people," one told the BBC. Privacy campaigners are now calling for automatic NHS App notifications whenever patient records are viewed.
Source: BBC News
The Clop cybercrime group is at it again — this time exploiting a zero-day vulnerability in PTC's Windchill and FlexPLM software, tools widely used in manufacturing, aerospace, and automotive industries. The group began sending extortion emails to victims in mid-July, claiming it stole data from dozens of organizations, potentially including GE, Philips, and Shell.
PTC disclosed the flaw (CVE-2026-12569) on June 17, but companies were likely compromised weeks earlier. Clop deployed a custom web shell purpose-built for Windchill, enabling rapid credential theft and data exfiltration with minimal detection. Toast and Zebra confirmed intrusions but say impacts were limited. The fallout is still unfolding.
Source: CyberScoop
The Clop cybercrime group is at it again — this time exploiting a zero-day vulnerability in PTC's Windchill and FlexPLM software, tools widely used in manufacturing, aerospace, and automotive industries. The group began sending extortion emails to victims in mid-July, claiming it stole data from dozens of organizations, potentially including GE, Philips, and Shell.
PTC disclosed the flaw (CVE-2026-12569) on June 17, but companies were likely compromised weeks earlier. Clop deployed a custom web shell purpose-built for Windchill, enabling rapid credential theft and data exfiltration with minimal detection. Toast and Zebra confirmed intrusions but say impacts were limited. The fallout is still unfolding.
Source: CyberScoop
The Cl0p ransomware gang has publicly named more than 40 organizations it claims to have breached through a vulnerability in PTC's Windchill and FlexPLM platforms. The flaw, CVE-2026-12569, allows unauthenticated remote code execution and was added to CISA's KEV catalog in June after active exploitation began.
High-profile alleged victims include Shell, Philips, Fiserv, Zebra Technologies, Ingersoll Rand, and Apple lens supplier Largan Precision. GE was listed but has been removed from C10p's website— possibly signaling ransom negotiations. Stolen data ranges from 1 GB to several terabytes per organization, covering databases, engineering blueprints, and corporate documents. None of the named companies have confirmed a significant breach.
Source: SecurityWeek
The Cl0p ransomware gang has publicly named more than 40 organizations it claims to have breached through a vulnerability in PTC's Windchill and FlexPLM platforms. The flaw, CVE-2026-12569, allows unauthenticated remote code execution and was added to CISA's KEV catalog in June after active exploitation began.
High-profile alleged victims include Shell, Philips, Fiserv, Zebra Technologies, Ingersoll Rand, and Apple lens supplier Largan Precision. GE was listed but has been removed from C10p's website— possibly signaling ransom negotiations. Stolen data ranges from 1 GB to several terabytes per organization, covering databases, engineering blueprints, and corporate documents. None of the named companies have confirmed a significant breach.
Source: SecurityWeek
A Gambit Security report has revealed one of the most detailed real-world cases of AI being weaponized inside an active ransomware operation. A suspected affiliate of The Gentlemen ransomware-as-a-service group used Anthropic's Claude Code to breach VPN appliances, steal domain credentials, and exfiltrate SQL databases across at least eight organizations — including an Australian energy utility and a Mauritius financial firm.
The attacker used Claude Sonnet 4.6, an older, less-restricted model, interactively refining commands based on live output. Claude executed a sophisticated LDAP pass-back attack, created hidden backdoor VPN accounts, and ranked databases by business value before dumping them. At one point, Claude accidentally knocked a firewall offline, then logged: "Yeah, I screwed up."
This marks a clear shift — AI isn't just drafting phishing emails anymore. It's running live attacks.
Source: Cybersecurity News
A Gambit Security report has revealed one of the most detailed real-world cases of AI being weaponized inside an active ransomware operation. A suspected affiliate of The Gentlemen ransomware-as-a-service group used Anthropic's Claude Code to breach VPN appliances, steal domain credentials, and exfiltrate SQL databases across at least eight organizations — including an Australian energy utility and a Mauritius financial firm.
The attacker used Claude Sonnet 4.6, an older, less-restricted model, interactively refining commands based on live output. Claude executed a sophisticated LDAP pass-back attack, created hidden backdoor VPN accounts, and ranked databases by business value before dumping them. At one point, Claude accidentally knocked a firewall offline, then logged: "Yeah, I screwed up."
This marks a clear shift — AI isn't just drafting phishing emails anymore. It's running live attacks.
Source: Cybersecurity News
U.S. agencies including the NSA, CISA, FBI, and the Energy and Environmental Protection Agency issued a joint warning Wednesday about hackers using AI-generated scripts to attack critical infrastructure — water, food, energy, chemical, and manufacturing sectors.
The attackers are targeting Siemens S7 Series programmable logic controllers, using AI to rapidly develop exploitation tools that once required significant technical skill. The agencies called it an "active threat," not a theoretical one. Attacks could disrupt industrial processes, trigger safety incidents, or expose sensitive data.
Experts flagged this as the first known CISA advisory explicitly citing AI-generated scripts targeting operational technology systems.
Source: CyberScoop
U.S. agencies including the NSA, CISA, FBI, and the Energy and Environmental Protection Agency issued a joint warning Wednesday about hackers using AI-generated scripts to attack critical infrastructure — water, food, energy, chemical, and manufacturing sectors.
The attackers are targeting Siemens S7 Series programmable logic controllers, using AI to rapidly develop exploitation tools that once required significant technical skill. The agencies called it an "active threat," not a theoretical one. Attacks could disrupt industrial processes, trigger safety incidents, or expose sensitive data.
Experts flagged this as the first known CISA advisory explicitly citing AI-generated scripts targeting operational technology systems.
Source: CyberScoop
Taiwan's Ministry of Digital Affairs says the attack on government agencies began on 20 July, and Israeli firm Dream, which detected the intrusion, calls it a first-of-a-kind breach. Attackers used open-source AI agents — OpenClaw and Hermes — to build what Dream calls an autonomous hacking tool, one that behaved like a coordinated cyber team.
It compromised at least 85 government accounts, extracted more than 2,500 personnel records, then expanded to Taiwan's nuclear safety agency and at least seven energy companies. Not everyone is sold on the autonomy: Semgrep's Cris Thomas points out that someone still picked the target and set the objective — "it's not totally 100% autonomous."
While Taiwanese officials stopped short of blaming China, Dream said the use of Simplified Chinese in internal communications meant a high probability the operator was connected to China. China's Taiwan Affairs Office did not respond to a request for comment.
MDA says the attack combined manual operations with AI agents, that sources, methods and scope have been fully investigated, and that affected units have completed their handling. New protective guidelines and strengthened monitoring are now in place.
Source: The Guardian
Taiwan's Ministry of Digital Affairs says the attack on government agencies began on 20 July, and Israeli firm Dream, which detected the intrusion, calls it a first-of-a-kind breach. Attackers used open-source AI agents — OpenClaw and Hermes — to build what Dream calls an autonomous hacking tool, one that behaved like a coordinated cyber team.
It compromised at least 85 government accounts, extracted more than 2,500 personnel records, then expanded to Taiwan's nuclear safety agency and at least seven energy companies. Not everyone is sold on the autonomy: Semgrep's Cris Thomas points out that someone still picked the target and set the objective — "it's not totally 100% autonomous."
While Taiwanese officials stopped short of blaming China, Dream said the use of Simplified Chinese in internal communications meant a high probability the operator was connected to China. China's Taiwan Affairs Office did not respond to a request for comment.
MDA says the attack combined manual operations with AI agents, that sources, methods and scope have been fully investigated, and that affected units have completed their handling. New protective guidelines and strengthened monitoring are now in place.
Source: The Guardian
A supply chain attack that exposed more than 2,000 organizations traces back to a compromised Trivy build — not LiteLLM, as initially reported. SOCRadar identified 2,188 organizations with attributable records and found 95% had their data collected before March 24, when the two poisoned LiteLLM releases appeared on PyPI for just 40 minutes.
The real damage started March 19, when TeamPCP force-pushed malicious commits to 76 of 77 trivy-action version tags, using access it had kept after an incomplete credential rotation — Aqua Security's own systems were never breached. Their Shai-Hulud worm harvested credentials, tokens, and API keys, then used stolen developer secrets to spread itself across accessible packages.
It all falls under CVE-2026-33634 — 8.8 high on CVSS v3.1, 9.4 critical on v4.0 — covering Trivy v0.69.4, trivy-action 0.0.1 through 0.34.2, setup-trivy 0.2.0 through 0.2.6, LiteLLM 1.82.7 to 1.82.8, and telnyx-python 4.87.1 to 4.87.2. CISA added it to KEV on March 26, with an April 9 deadline.
Six CI/CD platforms were hit — GitHub Actions, GitLab CI, Jenkins, Bitbucket, CircleCI, and Buildkite — with Germany, Brazil, and France most affected. Stolen data is already up for sale on Telegram.
Source: SecurityWeek
A supply chain attack that exposed more than 2,000 organizations traces back to a compromised Trivy build — not LiteLLM, as initially reported. SOCRadar identified 2,188 organizations with attributable records and found 95% had their data collected before March 24, when the two poisoned LiteLLM releases appeared on PyPI for just 40 minutes.
The real damage started March 19, when TeamPCP force-pushed malicious commits to 76 of 77 trivy-action version tags, using access it had kept after an incomplete credential rotation — Aqua Security's own systems were never breached. Their Shai-Hulud worm harvested credentials, tokens, and API keys, then used stolen developer secrets to spread itself across accessible packages.
It all falls under CVE-2026-33634 — 8.8 high on CVSS v3.1, 9.4 critical on v4.0 — covering Trivy v0.69.4, trivy-action 0.0.1 through 0.34.2, setup-trivy 0.2.0 through 0.2.6, LiteLLM 1.82.7 to 1.82.8, and telnyx-python 4.87.1 to 4.87.2. CISA added it to KEV on March 26, with an April 9 deadline.
Six CI/CD platforms were hit — GitHub Actions, GitLab CI, Jenkins, Bitbucket, CircleCI, and Buildkite — with Germany, Brazil, and France most affected. Stolen data is already up for sale on Telegram.
Source: SecurityWeek
Six US and South Korean agencies, including CISA, the FBI, the NSA, and Korea's National Police Agency, issued joint advisory AA26-222A on Monday, August 10, about Gunra, a ransomware gang that emerged in spring 2025 and has been hitting critical infrastructure worldwide. Built on leaked Conti source code, it added a Dark Web affiliate program in early 2026.
The FBI observed Gunra exploiting two Fortinet authentication bypass flaws — CVE-2024-55591 (CVSS 9.8, critical) and CVE-2025-24472 (8.1, high) — to gain initial access. Both affect FortiOS 7.0.0–7.0.16 and FortiProxy 7.0.0–7.0.19 and 7.2.0–7.2.12, and both have been in CISA's KEV catalog since early 2025, with deadlines that expired in January and April that year.
Attackers also hijacked VPN sessions, stole cookies, and modified authentication processing files on the corporate VDI portal server so that one Gunra-designated one-time password value always succeeded, leaving every login looking legitimate to the identity provider. Backups at both the primary data center and the disaster recovery site were deleted before encryption.
The advisory does carry a recovery route for Linux victims. Breakglass Intelligence found that Gunra's Linux build seeds its random number generator with srand(time(NULL)) — the system clock in seconds when encryption began — allowing the key to be reconstructed from the encrypted files' timestamps. Rebooting, overwriting, or wiping the system destroys that option.
Victims span healthcare, finance, manufacturing, transportation, and government, from South Korea and Brazil to Spain, Australia, and North America. Agencies urge upgrading FortiOS to 7.0.17 or later and FortiProxy to 7.0.20 or 7.2.13, maintaining immutable backups in physically separate locations, and network segmentation.
Source: Dark Reading
Six US and South Korean agencies, including CISA, the FBI, the NSA, and Korea's National Police Agency, issued joint advisory AA26-222A on Monday, August 10, about Gunra, a ransomware gang that emerged in spring 2025 and has been hitting critical infrastructure worldwide. Built on leaked Conti source code, it added a Dark Web affiliate program in early 2026.
The FBI observed Gunra exploiting two Fortinet authentication bypass flaws — CVE-2024-55591 (CVSS 9.8, critical) and CVE-2025-24472 (8.1, high) — to gain initial access. Both affect FortiOS 7.0.0–7.0.16 and FortiProxy 7.0.0–7.0.19 and 7.2.0–7.2.12, and both have been in CISA's KEV catalog since early 2025, with deadlines that expired in January and April that year.
Attackers also hijacked VPN sessions, stole cookies, and modified authentication processing files on the corporate VDI portal server so that one Gunra-designated one-time password value always succeeded, leaving every login looking legitimate to the identity provider. Backups at both the primary data center and the disaster recovery site were deleted before encryption.
The advisory does carry a recovery route for Linux victims. Breakglass Intelligence found that Gunra's Linux build seeds its random number generator with srand(time(NULL)) — the system clock in seconds when encryption began — allowing the key to be reconstructed from the encrypted files' timestamps. Rebooting, overwriting, or wiping the system destroys that option.
Victims span healthcare, finance, manufacturing, transportation, and government, from South Korea and Brazil to Spain, Australia, and North America. Agencies urge upgrading FortiOS to 7.0.17 or later and FortiProxy to 7.0.20 or 7.2.13, maintaining immutable backups in physically separate locations, and network segmentation.
Source: Dark Reading