OpenAI Launches ‘Presence’: Enterprise AI Agent Platform That Connects to Your Internal Systems
Summary OpenAI officially launched “Presence” on July 22, 2026 — an enterprise-grade platform for deploying trusted voice and chat AI agents connected directly to a company’s internal systems, policies, and…
Kimi K3 AI Finds 19 Redis Zero-Days in 90 Minutes — Redis Rushes Seven-Version Patch Release
Summary In one of the most striking demonstrations of AI-assisted vulnerability research to date, agents built on Moonshot AI’s Kimi K3 model reportedly discovered 19 zero-day vulnerabilities in Redis —…
ChatGPT AgentForger: One Phishing Link Deploys a Rogue AI Agent Inside Your Enterprise
Summary Zenity Labs has disclosed “AgentForger,” a critical cross-site request forgery vulnerability in OpenAI’s ChatGPT Workspace Agents that allowed a single manipulated link to silently create and deploy a fully…
NSA and Partners Issue Advisory on Russian ‘Laundry Bear’ Zimbra Zero-Click Campaign Hitting Critical Sectors
Summary The NSA, CISA, and allied intelligence agencies have issued a joint advisory warning that Russian state-sponsored threat actor TA488 — tracked as Void Blizzard and “Laundry Bear” — has…
Clop Ransomware Pivots to Industrial Software — PTC Windchill and FlexPLM Under Active Attack
Summary The Clop ransomware gang has shifted tactics, now targeting internet-exposed instances of PTC Windchill and FlexPLM by exploiting a critical improper input validation vulnerability (CVE-2026-12569). Windchill is a widely…
FBI/CISA Advisory: Iranian-Affiliated APTs Now Targeting Siemens, Schneider, and Rockwell PLCs Across U.S. Critical Infrastructure
On July 22, 2026, a joint advisory from the FBI, CISA, NSA, EPA, DOE, U.S. Cyber Command (CNMF), and the Department of the Treasury expanded a prior April 2026 warning…
White House Launches ‘Gold Eagle’: AI-Driven Vulnerability Clearinghouse for U.S. Critical Infrastructure
The White House has launched “Gold Eagle,” a new AI-driven cybersecurity vulnerability coordination initiative stemming from President Trump’s Executive Order 14409, “Promoting Advanced Artificial Intelligence Innovation and Security,” signed June…
KDDI Zero-Day Breach Exposes 12 Million Email Credentials Across Six Japanese ISPs
Japanese telecommunications giant KDDI has confirmed that a zero-day vulnerability in third-party email platform software was exploited on May 16, 2026, resulting in unauthorized access to approximately 12.23 million email…
Palo Alto GlobalProtect Auth Bypass (CVE-2026-0257) Is Now a Qilin Ransomware Entry Point
A high-severity authentication bypass vulnerability in Palo Alto Networks PAN-OS — CVE-2026-0257 — has been confirmed as an active initial access vector for Qilin ransomware affiliates. The flaw affects the…
Microsoft’s July 2026 Patch Tuesday Fixes Record 570+ CVEs — AI Is Fueling a Patch Tsunami
Microsoft’s July 2026 Patch Tuesday is being called the largest in the company’s history, addressing between 569 and 622 Common Vulnerabilities and Exposures (CVEs) depending on the analysis source. The…
