
Hello all,
For the next two weeks, I am on vacation, or holiday as it is known on the right-side of the pond. I’m still dutifully scouring the internet for pertinent news and information, but my commentaries will be a bit more limited than usual so that I may unplug to some degree.
Headline NEWS:
- Oracle Corporation has apparently been playing around with AI vulnerability detection. This past week they unveiled a stunning patch release that plugged 1,449 vulnerabilities, addressing 1,235 Common Vulnerabilities and Exposures (CVEs). If you have paid support, get to patching quickly. Threat actors are already exploiting some of the items that were addressed by Oracle.
- ServiceNow AI Platform has a critical remote code (RCE) vulnerability that allows for escape from their sandbox. As of Friday, exploitation has been detected, although the vendor has not publicly acknowledged that yet. Patch immediately if you use this.
In Ransomware, Malware, and Vulnerabilities News:
- World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent is a stunning break-out event by Open AI’s GPT-5.6 Sol and another unreleased agent, they escaped their sandboxed environment and went on to break into Hugging Face. The agents identified that Hugging Face likely contained the answers that they were tasked with finding. So, they broke out, found a path to the internet, then chained stolen credentials and vulnerabilities to successfully create an exploit to break into their target to steal the needed information to complete their task. Absolutely stunning and frightening.
In Other News Events of Note and Interest:
- Microsoft is acting like a crack dealer. Redmon is drying up the supply of free crack, oops I mean AI, and is continuing to remove features that once were included, and is putting them behind a paywall. This time it is the Deep Research function that has been pushed over the wall. If you want to retain the functionality, you’ll need to pull out your wad of cash and fork over enough for a Premium license.
Musings
Work never stops; it will always be there. Don’t forget to pause and smell the flowers every now and then. It is vital. So, I sign off for now.

Keep the shields up!
Viscount Jan Broucinek
Red Dot Security News
Headline NEWS
- Oracle July 2026 Critical Patch Update Addresses 1235 CVEs
- Oracle drops 1,449 security patches like it’s the new normal
- Critical ServiceNow code execution flaw now exploited in attacks
Ransomware, Malware, and Vulnerabilities News
- Good News, Government News, and Interesting
- Updated Cyber Threat Actor Naming System
- US and allies warn of Russian critical infrastructure attacks
- US government says Iran-linked hackers are disrupting American water and energy providers
- Police dismantle Kratos phishing platform, arrest developer
- German authorities lead takedown of Kratos phishing platform
- Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA
- Vulnerabilities and Exploits
- Critical SharePoint RCE flaw exploited to steal machine keys
- Microsoft 365 calendars become spy drop boxes in HOLLOWGRAPH campaign
- CISA orders urgent action on actively exploited Langflow RCE flaw
- LG’s changelog confirms its monitor app installs bloatware on Windows 11, exposing Microsoft’s long-standing problem
- LG to Remove Unwanted Monitor Pop-Ups, Following Nudge From Microsoft
- Microsoft intervenes after LG gets caught installing McAfee adware onto Windows 11 PCs via their monitors
- MetaMask code was open to a North Korea-linked contractor for a month before Consensys halted releases
- Windows LegacyHive zero-day flaw gets free, unofficial patches
- Update now: 7-Zip fixes RCE flaw exploitable with malicious archives
- RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS
- Linux kernel team publishes 432 CVEs in two days
- This iPhone app patches a hidden alarm flaw in millions of cars
- Windows 11 and Server 2025 Exposed to High-Severity Brokering File System Vulnerability
- Attackers exploit critical Check Point flaw to take over firewall management
- Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts
- Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available
- Phishing, Malware, and Similar
- Email threat landscape: Q2 2026 trends and insights
- HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050
- Scam centres growing ‘exponentially’ despite Myanmar crackdown
- Microsoft admits SMS and voice MFA can’t stop AI attacks, mandates passkeys in Entra by February 2027
- New msaRAT malware uses Chrome, Edge browsers to route C2 traffic
- New Dolphin X malware uses AI to rank high-value targets
- Fake Claude app promoted by Bing ads pushes SectopRAT malware
- Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks
- Golden Chickens Resurfaces With Four New Malware Families and Modular Implants
- New HTTP/2 Flaw Lets Unauthenticated Attackers Crash Servers With Memory Exhaustion Attacks
- Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executable
- Breaches, Leaks, and Ransomware
- JadePuffer agentic attacks now target AI model data with ransomware
- JADEPUFFER evolves: The agentic threat actor deploys ransomware built to destroy AI models
- Surge in ransomware hacks deepens divide over whether to pay
- Ernst & Young discloses data breach after support system hack
- Ernst & Young Data Breach Affects Personal, Financial Information
- World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent
- Abbott probes two cyber incidents amid extortion claims
- Estée Lauder discloses data breach via Oracle E-Business flaw
- Critical Palo Alto VPN bug now exploited by Qilin ransomware gang
- AI music generator Suno breach affects 55M users, per Have I Been Pwned
- Clover Health Investments Discloses Data Breach
- Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies
- Swiss rail giant Stadler rejects $12.3M ransom demand after cyberattack
- Chick-fil-A says some customers’ information exposed in data breach
- Chick-fil-A discloses data breach after credential stuffing attacks
- Australian energy provider Origin says data breach exposes client data
- Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife
- Clop ransomware targets Windchill, FlexPLM in data theft attacks
- Ransomware Attacks Targeting Universities on the Rise
- OnTrac notifies customers of data breach after network hack
Other News Events of Note and Interest
- Cool Tool: Rufus alternate Ventoy improves upon one of Windows 11’s system requirements
- The new cyber threat: young, western and reckless
- Android backups count toward your 15GB Google storage limit now – how to check your settings
- Google Adds Selfie Video Recovery for Users Locked Out of Their Accounts
- ‘VPNs are lawful technical tools,’ says EU Court in landmark Anne Frank copyright ruling
- Passkeys are great, but no one tells you about the catch until it’s too late
- AliExpress hit with $629 million EU fine over sales of illegal, counterfeit products
- Anthropic’s Claude Fable 5 access plans change from July 20: Here’s what’s new
- An AWS billing bug sent users estimated charges of up to $2.5 trillion
- Google Workspace Updates: New refinement capabilities allow custom editing with Help me write in Gmail
- Quantum internet leaves the lab with first real-world entanglement over busy telecom fiber
- X relaunches a rebuilt Android app after year-long effort
- Cloudflare Internal DNS is now generally available
- France becomes first European Union country to ban social media for kids under 15
- Tennessee puts Instagram’s addictive design on trial as Meta faces a seven-week jury fight
- Science Corporation’s vision-restoring chip wins EU approval
- AI, LLM’s, and Skynet
- OpenAI and Hugging Face partner to address security incident during model evaluation
- OpenAI’s models broke containment and cyberattacked Hugging Face
- OpenAI’s accidental cyberattack against Hugging Face is science fiction that happened
- OpenAI makes ChatGPT Health available to all US users
- US judge approves Anthropic’s $1.5 billion settlement of copyright lawsuit
- Google expands Gemini lineup with cheaper models and new Mythos rival
- Sanctification Is Slow, and AI Can’t Do It For You
- Microsoft, Nvidia, Meta, and Palantir’s Message to DC
- Microsoft
- Free Copilot is turning into a demo as Microsoft shifts real features to paid tiers
- Windows 11 July preview update brings a batch of new features and fixes
- Windows 11 Version 26H2 Ships as an Enablement Package With No New Features Over 25H2
- Microsoft Entra ID enhances security of branded sign-ins
- Microsoft making a new feature mandatory requirement for Windows KMS activation
- Some tools and techniques for hardening Windows Server
- The Microsoft Agent Framework Harness is now released
- Microsoft working to fix Exchange Online mailbox quarantine issue
- I replaced Windows troubleshooting menus with these 5 PowerShell commands
- New Microsoft Certified: Multi-Agent AI Solutions Expert Certification
