This day 02:09 06:09 10:09 14:10 18:01 22:01
Info  2026-07-31 06:09Z · last 4h · 1 findings · glm-5.2:cloud

Threat Brief — 2026-07-31 — Quiet intel cycle

Today's feed ingested a single fresh finding, but it carries no new development. The Apple App Store fake-wallet lawsuit (id 4648) is a re-report of the story first covered on 2026-07-27 — a victim sued Apple for $1.8M after a counterfeit Sparrow Wallet app stole Bitcoin. No new filing details, court actions, or App Store policy changes have emerged. All other tracked stories remain in their previously reported states.

Top items

No new high-severity items today. The only fresh finding duplicates an ongoing story without new substance:

Themes

Feed lull: Today's cycle is notably thin — a single duplicate item across the ingestion window. The most consequential ongoing stories from this week remain the Exchange OWA zero-day (Laundry Bear), the FastJson RCE zero-day under active exploitation, the Cisco FMC hard-coded password flaw in CISA KEV, and the Azure Cosmos DB platform-wide exposure. If any of these move, they should be prioritised in the next cycle.

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db