top of page
Untitled design.png

Weekly INK

Each week we compile an advisory on the latest threats, trends and newsworthy topics from the cyber security industry affecting small and medium enterprises. Join our subscribers below and help us prevent cybersecurity breaches.

watermark4.png

Issue #207 - July 13, 2026

  • Jul 13
  • 2 min read

2-Click Cursor Exploit Enables Dev Environment Takeover

Source: Dark Reading

Researchers found that Cursor AI could be abused through disguised links that install malicious MCP servers inside a developer environment. The attack chain relies on ordinary-looking clicks and limited warning visibility, creating a path to steal source code, secrets, or run commands with the developer’s privileges.




GigaWiper Lets Threat Actors Choose Their Own Destructive Attack

Source: Dark Reading

GigaWiper combines backdoor access with modular destructive payloads, including disk wiping, fake ransomware, and system sabotage. Researchers say the malware lets attackers conduct reconnaissance, maintain control, and decide when to trigger disruption, making early detection of command traffic and pre-destruction behavior especially important.




Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown

Source: BleepingComputer

Progress confirmed that a high-severity ShareFile Storage Zone Controller zero-day prompted its emergency shutdown of affected customer-managed servers. The flaw allows authenticated administrators to read files, write attacker-controlled content, and enumerate server file systems. Progress says patches are available and reports no confirmed customer breach.




iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days

Source: The Hacker News

CISA added two critical Joomla extension vulnerabilities to its Known Exploited Vulnerabilities catalog after reports of zero-day exploitation. The iCagenda and Balbooa Forms flaws allow unauthenticated file uploads that can lead to PHP code execution, web shells, and full site compromise if administrators do not patch quickly.




Centers Laboratory Data Breach Affects 540,000 Individuals

Source: SecurityWeek

Centers Laboratory disclosed a healthcare data breach affecting 540,000 people after the WorldLeaks extortion group claimed it stole 720 GB of data. The incident highlights continued pressure on healthcare service providers, where sensitive patient information and operational dependency make breach response, notification, and vendor oversight especially critical.




 
 

Help us Prevent Breaches.

We will never share or sell your information. Unsubscribe at any time.

Email: *

Received.

bottom of page