July 21, 2026 APT42, an Iran-linked cyber espionage group, has expanded its phishing operations with AI-assisted research, convincing personas, and a more resilient version of its TAMECAT malware. The campaign …
Critical SharePoint Remote Code Execution Vulnerability Actively Exploited in the Wild
July 21, 2026 A newly disclosed vulnerability, tracked as CVE-2026-50522, is rattling enterprise IT teams as it allows unauthenticated attackers to remotely execute code on on-premises Microsoft SharePoint servers. The …
Top 10 Malware Used by Hackers Last Week to Launch Cyberattacks
Top 10 Malware’s used by Hackers Last Week to Launch Cyberattacks Cybercriminals continued to lean on a familiar arsenal of malware last week, with information stealers and remote access trojans …
Microsoft to Discontinue Podcasts Option on Copilot and to Delete Contents
July 21, 2026 Microsoft will retire the Podcasts feature in its consumer Copilot app on August 18, 2026, permanently removing access to both the creation tool and all previously generated …
AgentBaiting Campaign Uses 800 Fake AI Skills and MCP Servers to Deliver SmartLoader Malware
July 21, 2026 Malware operators are increasingly using tools built to extend artificial intelligence as a delivery route. A newly documented campaign called AgentBaiting uses fraudulent AI Skills and Model …
Hackers Hide Malware Commands in Outlook Events Dated 2050 and Use as C2 Channel
July 21, 2026 A newly identified malware component linked to the Project CAV3RN framework is abusing Microsoft Outlook calendar events scheduled for 2050 to conceal command-and-control (C2) traffic. The tool …
Agentic JADEPUFFER Exploits Langflow Flaw to Deploy ENCFORGE AI Ransomware
July 21, 2026 A ransomware campaign is now targeting the assets behind artificial intelligence systems. The threat actor known as JADEPUFFER has evolved from damaging databases to deploying ENCFORGE, a …
Healthcare Giant Abbott Investigating Cyber Incident Following ShinyHunters Claims
Abbott has confirmed that it is investigating a cyber incident involving unauthorized access to a limited number of internal systems used by its Cancer Diagnostics business. This follows claims associated …
SonicWall 0-day Vulnerabilities Exploited in the Wild to Deploy Custom Malware
July 21, 2026 Attackers actively exploited two zero-day vulnerabilities in SonicWall Secure Mobile Access (SMA) VPN appliances to gain root access and deploy custom malware. In early July 2026, the …
Microsoft Defender XDR Blind Spot Can Hide Public Connections Behind FourToSixMapping
July 21, 2026 Security teams relying on Microsoft Defender XDR’s DeviceNetworkEvents table for hunting and detection may be missing critical external network connections due to a lesser-known IP address classification …
