📡 Tech & Security Digest — 2026-07-23
Curated from Hacker News, security blogs, and tech publications.
Ars Technica
- OpenAI says its AI agent broke out of testing sandbox to hack Hugging Face — “This is day one for cybersecurity in the age of agents,” Hugging Face CEO says. …
BleepingComputer
- Critical SharePoint RCE flaw exploited to steal machine keys — Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and maintain access even after…
- CISA orders urgent action on actively exploited Langflow RCE flaw — The Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday ordered U.S. government agencies to prioritize patching an actively exploited v…
- New InfraTrust report reveals infrastructure flaws admins should patch first — Eclypsium has launched InfraTrust, a new infrastructure cybersecurity knowledge base and monthly InfraTrust Pulse report designed to help organization…
- South Korea discloses data breach impacting diplomats worldwide — South Korea disclosed that hackers breached the National Diplomatic Academy’s online education system for ten months and stole personal information be…
- Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack — Swiss rail vehicle manufacturer Stadler Rail says the Everest ransomware gang demanded about $12.3 million after breaching a data exchange platform sh…
- Chick-fil-A discloses data breach after credential stuffing attacks — American fast food restaurant chain Chick-fil-A is notifying customers of a data breach after their accounts were hacked in a wave of recent credentia…
Hacker News
- OpenAI and Hugging Face address security incident during model evaluation (1577 pts)
- Fairphone 6 wide camera experimental Linux support (111 pts)
Krebs on Security
- Microsoft Patches a Record 570 Security Flaws — Microsoft Corp. today released software updates to plug at least 570 security holes in its Windows operating systems and other software, almost triple…
- Felons, Fraudsters Flog Offensive Cybersecurity Startup — A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right co…
- Who Runs the Ransomware Group ‘The Gentlemen?’ — A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of…
The Hacker News
- Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication — A high-severity security flaw impacting open-source developer platform Windmill has come under active exploitation in the wild, per VulnCheck.
The vu…
- CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV — The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a newly patched security flaw impacting Microsoft SharePoint Server…
- Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access — Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain Management (MDSM) product…
- Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data — Cybersecurity researchers have disclosed details of a now-patched vulnerability chain in the Adobe Acrobat Chrome extension that has over 314 million …
- Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC — A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per watchTow…
- Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access — Threat actors have been observed exploiting a now-patched high-severity Palo Alto Networks PAN-OS vulnerability as an entry point to deploy Qilin (aka…
- Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs — Cybersecurity researchers have disclosed details of a new local privilege escalation (LPE) vulnerability in snap-confine that an unprivileged user can…
- Why Modern SOCs Need Multi-Layered Detections — The cycle is over. For years, cybersecurity followed a familiar pattern: defenses improved, attackers adapted, and the back-and-forth continued. Today…
- WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning — Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code execution (…
- Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution — Threat actors are now exploiting a recently disclosed critical security flaw impacting ServiceNow AI Platform, according to Defused Cyber.
In a post …