Issue #207 - July 13, 2026
- Jul 13
- 2 min read
2-Click Cursor Exploit Enables Dev Environment Takeover
Source: Dark Reading
Researchers found that Cursor AI could be abused through disguised links that install malicious MCP servers inside a developer environment. The attack chain relies on ordinary-looking clicks and limited warning visibility, creating a path to steal source code, secrets, or run commands with the developer’s privileges.
GigaWiper Lets Threat Actors Choose Their Own Destructive Attack
Source: Dark Reading
GigaWiper combines backdoor access with modular destructive payloads, including disk wiping, fake ransomware, and system sabotage. Researchers say the malware lets attackers conduct reconnaissance, maintain control, and decide when to trigger disruption, making early detection of command traffic and pre-destruction behavior especially important.
Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown
Source: BleepingComputer
Progress confirmed that a high-severity ShareFile Storage Zone Controller zero-day prompted its emergency shutdown of affected customer-managed servers. The flaw allows authenticated administrators to read files, write attacker-controlled content, and enumerate server file systems. Progress says patches are available and reports no confirmed customer breach.
iCagenda and Balbooa Forms Joomla Flaws Reportedly Exploited as Zero-Days
Source: The Hacker News
CISA added two critical Joomla extension vulnerabilities to its Known Exploited Vulnerabilities catalog after reports of zero-day exploitation. The iCagenda and Balbooa Forms flaws allow unauthenticated file uploads that can lead to PHP code execution, web shells, and full site compromise if administrators do not patch quickly.
Centers Laboratory Data Breach Affects 540,000 Individuals
Source: SecurityWeek
Centers Laboratory disclosed a healthcare data breach affecting 540,000 people after the WorldLeaks extortion group claimed it stole 720 GB of data. The incident highlights continued pressure on healthcare service providers, where sensitive patient information and operational dependency make breach response, notification, and vendor oversight especially critical.



