📡 Tech & Security Digest — 2026-07-01
Curated from Hacker News, security blogs, and tech publications.
BleepingComputer
- NAIC says public data stolen in ShinyHunters’ PeopleSoft breach — The National Association of Insurance Commissioners (NAIC) says the ShinyHunters extortion group stole only publicly available data, outdated logs, an…
- CISA: Windows BlueHammer flaw now exploited by ransomware gangs — CISA confirmed on Monday that ransomware gangs are now exploiting a Microsoft Defender privilege escalation vulnerability, dubbed BlueHammer, that has…
- Nissan discloses employee data breach linked to Oracle zero-day attacks — Nissan is warning that it suffered a data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft vulnerabili…
- Adobe patches seven max severity ColdFusion, Campaign flaws — Adobe has released security patches for seven maximum-severity vulnerabilities in the ColdFusion web app development platform and the Campaign Classic…
Hacker News
- 6 years and 360 patches to clean all instances of strnpy out of the Linux kernel (55 pts)
- RF hacking my cloud-controlled ceiling fan (58 pts)
- ArXiv’s Next Chapter (106 pts)
- Google’s New reCAPTCHA Wants Your Camera Access and 21 Points of Your Hand (66 pts)
- I ported Kubernetes to the browser (261 pts)
- Claude Code is steganographically marking requests (1979 pts)
- Claude Sonnet 5 (1117 pts)
Krebs on Security
- Who Runs the Ransomware Group ‘The Gentlemen?’ — A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of…
The Hacker News
- Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access — An unknown threat actor exploited a recently disclosed high-severity security flaw impacting Cisco Catalyst SD-WAN as a zero-day at least two months b…
- Gamaredon Expands Ukraine Attacks with New Malware and Cloud Service Abuse — A Russian advanced persistent threat (APT) group has continued to evolve and expand its malware arsenal as part of its ongoing cyber onslaught against…
- Attackers Exploit SimpleHelp CVE-2026-48558 to Deploy TaskWeaver and Djinn Stealer — An unknown threat actor has been observed exploiting a recently disclosed maximum-severity security flaw in SimpleHelp to deliver two previously unrep…
- Oracle E-Business Suite Flaw CVE-2026-46817 Actively Exploited in the Wild — A critical security flaw impacting Oracle E-Business Suite has come under active exploitation in the wild, according to Defused Cyber.
The vulnerabil…
- ⚡ Weekly Recap: Linux Kernel Flaws, AI Malware Tricks, Turla Backdoor, Infostealers and More — This week was a reminder that attackers do not always need big tricks. One small mistake, one old access path, one missed patch, and suddenly the door…
- New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets — DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published a working exploit walkthrough&nb…
- Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service — Citrix on Tuesday released security updates to address multiple flaws in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Ga…
- Langflow RCE Exploited to Deploy Monero Miner on Exposed AI App Endpoints — Threat actors are continuing to exploit a critical Langflow vulnerability as part of fresh attacks designed to deliver a Monero cryptocurrency miner. …
- Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth — A critical vulnerability in Progress Kemp LoadMaster can let an unauthenticated attacker execute arbitrary commands as root on the appliance by sendin…
- Apple Patches 30+ iOS, macOS, Safari Flaws, Including AI-Discovered WebKit Bugs — Apple on Monday released security updates for iOS, macOS, and the Safari web browser to address over three dozen flaws, including four vulnerabilities…