These news items are automatically aggregated from industry sources and are not individually reviewed. Any inaccuracies are unintentional —
let us know and we'll correct or remove it.
Researchers at Socket and Rescana have linked 108 malicious packages and browser extensions across npm, Packagist, Go modules, and the Chrome Web Store to a North Korean supply chain campaign called PolinRider, active since December 2025 and still expanding. The threat actors compromise maintainer accounts, hide payloads behind whitespace padding, and rewrite Git history so malicious commits look old and trustworthy. For any team pulling open source dependencies into a build pipeline, this is a live reminder that dependency trust is not a one-time check.
CVE-2026-61447, published on 11 July with a maximum CVSS score of 10.0, lets an attacker use prompt injection to make PraisonAI’s CodeAgent execute arbitrary Python on the host, because the code it generates runs with no AST validation, no import restrictions, and no sandbox. It is the latest in a run of critical PraisonAI vulnerabilities in 2026, following a May authentication bypass that was scanned within four hours of disclosure. For any business running agent frameworks in production, this is what the gap between AI agent hype and AI agent security engineering actually looks like.
The Gentlemen ransomware gang posted Spanish multinational and NATO contractor Indra Group to its dark web leak site on 30 June, giving the company roughly 236 hours before threatening to publish allegedly stolen data. Indra confirmed a ransomware incident limited to one subsidiary and says core services were never affected, but no data samples have surfaced publicly to confirm what, if anything, was taken. The Gentlemen have claimed more than 300 victims in the first half of 2026 alone, second only to Qilin, and remote access infrastructure keeps being the door they use to get in.
Zimbra shipped version 10.1.19 on July 7 to fix a stored cross-site scripting flaw in its Classic Web Client, one that lets a specially crafted email run malicious code the moment a recipient opens it, no click or attachment required. The bug was reported by Google’s Threat Analysis Group, the team that typically surfaces flaws already being used by well-resourced attackers. Zimbra remains a common self-hosted alternative to Microsoft 365 for European public bodies and SMEs on cost or sovereignty grounds, which makes patching this one a priority, not a backlog item.
AWS has expanded its DevOps Agent with two new preview capabilities, Release Readiness Review and Autonomous Release Testing, that move AI evaluation earlier in the pipeline: assessing every code change against organisational standards and generating change-specific test plans before it reaches production. AWS is explicit about the problem it is solving, AI coding assistants have made writing code fast while human review and release validation have become the bottleneck. For teams already drowning in AI-generated pull requests, this is a preview of what pipeline gatekeeping looks like next.
SP Page Builder, Page Builder CK, iCagenda, and Balbooa Forms were all added to CISA’s Known Exploited Vulnerabilities catalog between July 2 and July 10, and every single one shares the same root cause: an unauthenticated file upload endpoint that lets an attacker drop a PHP web shell and run it with no login at all. Three of the four carry a maximum CVSS score of 10.0. If your Joomla site runs any third-party extension you have not audited recently, this is the week to check.
The Unsafe ransomware group listed Deutsche Bank on its dark web leak site, publishing what it claims are employee database extracts, password hashes, and physical addresses. Deutsche Bank says its own network was never touched, the actual point of entry was a third-party company running a marketing and incentive platform for its sales partners. The distinction matters legally, but it matters far less to the employees whose data is now circulating, and it is precisely the scenario the EU’s DORA regulation was written to prevent.
JetBrains disclosed three vulnerabilities on July 10, a critical 9.6-severity code execution flaw in IntelliJ IDEA triggered through project workspace handling, plus an arbitrary file access bug and a stored XSS flaw in TeamCity’s Perforce integration and cloud profile page. None of these live on a server you patch during a maintenance window, they live on developer laptops and CI infrastructure, which is exactly the class of asset most patch programmes still overlook.
Progress Software emailed ShareFile customers on July 10 instructing them to immediately power down their on-premises Storage Zone Controller servers over what it called a credible external security threat, then disabled cloud access to those accounts as a precaution. The company has not said whether a new zero-day is involved, only months after two chainable flaws in the same product allowed unauthenticated remote code execution. Any organisation running Storage Zone Controller, in Europe or anywhere else, needs to treat this as urgent until Progress says otherwise.
A threat actor known as 888 claims to have exfiltrated 35GB of data from an Accenture Azure DevOps repository, including source code, RSA and SSH keys, Azure personal access tokens, and storage account keys. Accenture confirmed the incident on July 7 and says it has remediated the source, but has not detailed the exfiltration scope. With Accenture running technology delivery for a huge share of Europe’s largest enterprises, the incident is a reminder that the credentials sitting inside your repositories are often worth more to an attacker than the code itself.
This site uses cookies. By continuing to use this website, you agree to their use.
We’ll help you resolve your infrastructure challenges
Our team of experts is ready to help you with your infrastructure challenges. We’ll give you honest and personal treatment. Get in touch to learn more.