WordPress Plugin Backdoor Sends Site and Administrator Details to Attacker C2

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 A critical supply chain backdoor in the Advanced Responsive Video Embedder WordPress plugin, which can give unauthenticated attackers complete administrator access. The malicious version, 10.8.7, affects a …

Critical Gitea Vulnerability Allows Attackers to Execute Malicious Code Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 A critical vulnerability in Gitea, identified as CVE-2026-60004, could enable attackers to execute arbitrary shell commands on vulnerable servers. This issue affects Gitea versions 1.17 through 1.27.0 …

Bank of Baroda Data Breach – Hackers Gained Access Via Employee Email Account

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 Bank of Baroda has confirmed a cybersecurity incident in which attackers gained unauthorized access to an employee’s email account, exposing internal communications and potentially sensitive information, raising …

Malicious npm Packages Deploy Cross-Platform RAT Targeting Alibaba Developers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 A cluster of malicious npm packages has been used to deliver a cross-platform remote access trojan against developers who use Alibaba-related tools. The campaign hides its harmful …

Hackers Are Hiding Commands in Emails to Trick the AI Systems Protecting You

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 Attackers are beginning to hide malicious instructions inside ordinary emails, documents, calendar invites, and online advertisements. The goal is not always to fool a person. Instead, the …

OpenAI Open-Sources Codex Security CLI for Finding, Validating, and Fixing Security Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 OpenAI has open-sourced Codex Security, a command-line tool and TypeScript SDK designed to help developers find, validate, and fix security vulnerabilities in their codebases. The release marks …

First-Ever Fully Autonomous AI Cyberattack Exploits 0-Day Flaws to Infiltrate Hugging Face

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 29, 2026 Between July 9 and July 13, 2026, security researchers documented what is being called the first fully autonomous AI agent cyberattack to chain zero-day flaws across multiple …

Claude Mythos Preview Discovers Cryptographic Weaknesses That Human Experts Missed for Years

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 28, 2026 Anthropic researchers using Claude Mythos Preview have uncovered mathematical flaws in major cryptographic algorithms that human experts failed to spot for years. The AI found improved attacks …

JetBrains Urging Customers to Patch Critical TeamCity Flaw that Enables OS Command Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

July 28, 2026 JetBrains has urgently released security updates for a critical vulnerability in TeamCity On-Premises that could allow remote attackers to bypass authentication and execute arbitrary operating system commands. …

Top 10 Phishing Kits Used by Hackers to Launch Cyberattacks (July 20-26, 2026)

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Top 10 Phishing Kits Used by Hackers to Launch Cyberattacks (July 20-26, 2026) Global phishing-as-a-service (PhaaS) activity surged to 7,295 tracked uploads during the week of July 20-26, 2026, driven …