Cybersecurity Headlines — July 22, 2026
- Cybersecurity jobs available right now: July 21, 2026 — Help Net Security
- Estée Lauder discloses data breach via Oracle E-Business flaw — BleepingComputer
- Hugging Face Latest Company Dealing With AI Cyberattacks — pymnts.com
- SEBI fines CDSL, two former executives over 2022 malware attack lapses — BusinessLine
- Sebi imposes Rs 1 crore penalty on CDSL over 2022 malware attack — The Times of India
- ServiceNow pre-auth RCE exploited in the wild (CVE-2026-6875) — Help Net Security
- Researchers Build WordPress Exploit Using OpenAI’s GPT — Infosecurity Magazine
- 5 Myths About the Five Eyes — The Diplomat
- ⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More — Internet
- Hacker wipes Romania’s land registry database — Risky.biz
From the Trenches
As a cybersecurity practitioner, I’ve been keeping an eye on recent developments that should keep me up at night. The first interesting story that caught my attention is the data breach disclosed by Estée Lauder via Oracle E-Business flaw. This highlights how even large companies with seemingly robust security measures can be vulnerable to exploitation through third-party software vulnerabilities. It’s a stark reminder for organizations to conduct thorough vulnerability assessments and patch management.
The second story that resonated with me is the ServiceNow pre-auth RCE exploited in the wild (CVE-2026-6875). As a practitioner, I’ve seen firsthand how quickly exploits can spread across the internet. This particular exploit takes advantage of a pre-authentication remote code execution vulnerability in ServiceNow, making it a high-priority target for attackers. It’s essential for organizations using ServiceNow to patch this vulnerability as soon as possible.
🔧 Patch Priority: CVE-2026-6875 should be patched immediately due to its potential for widespread exploitation.
Compiled daily. Stay patched, stay vigilant.