SecurityTicks

JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077)

JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077) 2026-07-28 at 14:04 By Zeljka Zorz JetBrains has fixed a critical vulnerability (CVE-2026-63077) affecting TeamCity On-Premises and is urging admins to upgrade self-hosted servers as soon as possible. “For those who are unable to do so, we have released a security patch plugin,” noted Daniel Gallo, […]

JetBrains fixes critical unauthenticated RCE in TeamCity On-Premises (CVE-2026-63077) Read More »

VERITAS project could change the way scientists secure AI

VERITAS project could change the way scientists secure AI 2026-07-28 at 14:02 By Sinisa Markovic The AI models, datasets, and automated systems researchers depend on can be compromised in ways conventional cybersecurity tools aren’t designed to detect. A new project called VERITAS (VERified Infrastructure for Trustworthy AI in Science) aims to close that gap by

VERITAS project could change the way scientists secure AI Read More »

Act Security Emerges from Stealth to Fight the Patch Problem

Act Security Emerges from Stealth to Fight the Patch Problem 2026-07-28 at 14:00 By Kevin Townsend Act Security tackles the spiraling patch problem caused by AI’s ability to find new vulnerabilities in existing cloud environments. The post Act Security Emerges from Stealth to Fight the Patch Problem appeared first on SecurityWeek. This article is an

Act Security Emerges from Stealth to Fight the Patch Problem Read More »

Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker

Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker 2026-07-28 at 14:00 By Kevin Townsend Tal Kollander’s history divides neatly into two halves: first as an active hacker and then as the block that stops hacks. The post Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker appeared first on SecurityWeek.

Hacker Conversations: Tal Kollander’s Journey From Black Hat to Hack Blocker Read More »

Hush Security Raises $30 Million for AI Agent Governance

Hush Security Raises $30 Million for AI Agent Governance 2026-07-28 at 13:17 By Ionut Arghire The startup will invest in expanding engineering and sales teams, accelerating ecosystem support, and expanding corporate partnerships. The post Hush Security Raises $30 Million for AI Agent Governance appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Hush Security Raises $30 Million for AI Agent Governance Read More »

IMF warns Brazil’s stablecoin activity outpaces traditional capital flows

IMF warns Brazil’s stablecoin activity outpaces traditional capital flows 2026-07-28 at 13:09 By Cointelegraph by Helen Partz The IMF said Brazil’s stablecoin market has expanded rapidly since 2017, with cross-border crypto flows growing faster than traditional capital flows. This article is an excerpt from Cointelegraph.com News View Original Source

IMF warns Brazil’s stablecoin activity outpaces traditional capital flows Read More »

Ondo shifts from layer-1 blockchain plan to offchain execution network

Ondo shifts from layer-1 blockchain plan to offchain execution network 2026-07-28 at 13:07 By Cointelegraph by Bryan O’Shea The new system marks an apparent departure from the institution-focused layer-1 blockchain Ondo announced in 2025. This article is an excerpt from Cointelegraph.com News View Original Source

Ondo shifts from layer-1 blockchain plan to offchain execution network Read More »

Grafana Assistant expands with AI agents for investigations, automation, and observability

Grafana Assistant expands with AI agents for investigations, automation, and observability 2026-07-28 at 13:06 By Industry News Grafana Labs has announced the general availability of six AI capabilities, extending Grafana Assistant into an agentic operations layer that detects, investigates, and remediates production issues. The releases include Grafana Assistant Investigations, Grafana Assistant Workspace, Grafana Assistant Automations,

Grafana Assistant expands with AI agents for investigations, automation, and observability Read More »

AWS to retire Shield Advanced L7 automatic mitigation on January 1, 2027

AWS to retire Shield Advanced L7 automatic mitigation on January 1, 2027 2026-07-28 at 12:23 By Anamarija Pogorelec AWS Shield Advanced, a managed service that protects applications from external threats, is adding the Anti-DDoS managed rule group, designed for application-layer (L7) DDoS protection, to eligible web access control lists (ACLs) in Count mode. The addition

AWS to retire Shield Advanced L7 automatic mitigation on January 1, 2027 Read More »

Lido upgrade aims to slash Ethereum’s validator count by one-third

Lido upgrade aims to slash Ethereum’s validator count by one-third 2026-07-28 at 12:14 By Cointelegraph by Helen Partz Lido launched Curated Module v2, an upgrade that could reduce Ethereum’s validator count by one-third by consolidating validators and introducing new operator rules. This article is an excerpt from Cointelegraph.com News View Original Source

Lido upgrade aims to slash Ethereum’s validator count by one-third Read More »

Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit

Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit 2026-07-28 at 12:12 By STAR Labs has published a Linux kernel exploit that turns an ordinary local user into root on the CentOS Stream 9 build it targeted. The flaw, tracked as CVE-2026-53264 (CVSS score: 7.8), is a use-after-free race in the kernel’s network

Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit Read More »

Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In

Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In 2026-07-28 at 12:12 By JetBrains is urging customers of on-premise versions of TeamCity to update to the latest version following the discovery of a critical security issue that could result in arbitrary code execution. The vulnerability, assigned CVE-2026-63077 (CVSS score: 9.8), affects all

Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In Read More »

Coca-Cola confirms hackers stole data in Fairlife ransomware attack

Coca-Cola confirms hackers stole data in Fairlife ransomware attack 2026-07-28 at 12:01 By Sinisa Markovic Coca-Cola has confirmed that the ransomware attack on its dairy subsidiary Fairlife involved the theft of company data, weeks after the incident temporarily halted production at its US facilities. Fairlife is a Coca-Cola-owned dairy brand that makes ultra-filtered milk and

Coca-Cola confirms hackers stole data in Fairlife ransomware attack Read More »

Google Adopts New Threat Actor Naming System

Google Adopts New Threat Actor Naming System 2026-07-28 at 11:42 By Ionut Arghire The new two-word naming convention uses a memorable term utilized in public reporting and a cluster-categorization word. The post Google Adopts New Threat Actor Naming System appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Google Adopts New Threat Actor Naming System Read More »

Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost

Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost 2026-07-28 at 10:53 By Microsoft has launched its first cybersecurity-specific model inside MDASH, its multi-model vulnerability identification and remediation harness. The company says MDASH, using MAI-Cyber-1-Flash and GPT-5.4, scored 95.95% on CyberGym. It also claims the configuration costs 50% less than

Microsoft Says New Cybersecurity AI Model Helps MDASH Hit 95.95% at Half the Cost Read More »

Apple faces lawsuit over alleged $1.8M Bitcoin wallet app losses

Apple faces lawsuit over alleged $1.8M Bitcoin wallet app losses 2026-07-28 at 10:40 By Cointelegraph by Helen Partz Three users allege a fake Sparrow Wallet app on Apple’s App Store drained their Bitcoin holdings, with losses totaling more than $1.8 million. This article is an excerpt from Cointelegraph.com News View Original Source

Apple faces lawsuit over alleged $1.8M Bitcoin wallet app losses Read More »

Unpatched Fastjson Vulnerability Exploited in Attacks

Unpatched Fastjson Vulnerability Exploited in Attacks 2026-07-28 at 10:27 By Ionut Arghire The critical remote code execution bug can be exploited without authentication, under the library’s stock default configurations. The post Unpatched Fastjson Vulnerability Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Unpatched Fastjson Vulnerability Exploited in Attacks Read More »

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day 2026-07-28 at 09:40 By Ionut Arghire Impacting on-premises deployments, the OS command injection allows attackers to access privileged internal functionality. The post Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical Arista VeloCloud Orchestrator Vulnerability Exploited as Zero-Day Read More »

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw 2026-07-28 at 09:21 By A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-16812 (CVSS score: 10.0), is a case of operating system command injection that could pave the way for arbitrary

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw Read More »

Scroll to Top