Critical SharePoint RCE flaw exploited to steal machine keys
Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak
Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail Logs
404 Media reported Tuesday that a fix for the issue was deployed by Apple on July 3, 2026, after more than a year, when it was disclosed to the company by Tyler Murphy, co-founder of EasyOptOuts.
Hide My Email
Trump Orders Defense Contractors to Map Software, Suppliers Across Critical Supply Chains
New executive order calls for end-to-end visibility into defense supply chains, including software dependencies, foreign ownership and cyber-related supplier risks.
The post Trump Orders Defense Contractors to Map Software, Suppliers Across Critical Supply Chains appeared first on SecurityWeek.
Cisco Launches Low-Cost AI Models for Source Code Security
The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models.
The post Cisco Launches Low-Cost AI Models for Source Code Security appeared first on SecurityWeek.
Critical wp2shell WordPress flaws exploited to install webshells
AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code
Intezer, in research with Kodem Security, found that a request as ordinary as asking Kiro to summarize a page could end in remote code execution. AWS has patched the issue, and no CVE has been
Google Launches Gemini 3.5 Flash Cyber AI to Find and Fix Software Vulnerabilities
According to the tech giant, the model will be exclusively available to governments and trusted partners via CodeMender as part of a limited-access pilot
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
The vulnerability in question is CVE-2026-50522 (CVSS score: 9.8), a critical deserialization of untrusted data in Microsoft Office SharePoint that could allow an unauthorized attacker to execute code over a network. Microsoft credited DEVCORE
