infosecfollow

daily plain-text briefing: security, markets, business, and pittsburgh

Attackers turned widely deployed web software and aging consumer hardware into harvesting infrastructure as a Gravity SMTP WordPress flaw bled secrets and the AryStinger botnet swallowed thousands of D-Link routers.


Emerging Trends and Key Updates

Security

1. systemd 261 Adds Software TPM

Vulnerabilities and Exploits · [linux, patch]

Latest developments: The systemd 261 release ships a software TPM, adds an IMDS cloud-metadata subsystem whose systemd-imdsd daemon exposes a local Varlink API, and carries process state through kexec reboots.

read more

Linux distributions that run systemd as their init system gain TPM-backed security features without dedicated hardware; administrators tracking systemd should plan to adopt the 261 update.

Sources: Help Net Security · ↑ top

2. AryStinger Router Botnet

Ransomware and Cybercrime · [botnet, malware]

Latest developments: BleepingComputer detailed AryStinger, a previously undocumented botnet that has compromised more than 4,000 outdated routers worldwide, many of them D-Link models, and turned them into proxies for malicious traffic.

read more

AryStinger preys on end-of-life routers that owners no longer patch; operators of aging D-Link gear should replace or update the devices to keep them out of the proxy network.

Sources: BleepingComputer · ↑ top

3. Japan's AI Ko Anti-Scam Officer

Fraud and Scams · [fraud, scam]

Latest developments: Frank on Fraud reported that police in Osaka created AI Ko, a synthetic, calm-voiced officer who walks residents through the digital arrest scam spreading across Japan.

read more

The digital arrest scam has fraudsters posing as authorities to frighten victims into paying; Osaka police built AI Ko to teach residents to recognize the con before they fall for it.

Sources: Frank on Fraud · ↑ top

4. Gravity SMTP Plugin Flaw Exploited

Vulnerabilities and Exploits · [vulnerability, exploit, wordpress]

Latest developments: Threat actors began actively exploiting CVE-2026-4020, an information-disclosure flaw in the Gravity SMTP WordPress plugin installed on roughly 100,000 sites, to extract configuration data, API keys, secrets, and OAuth tokens.

read more

The medium-severity bug, rated CVSS 5.3, lets unauthenticated attackers pull sensitive data from affected sites; administrators running Gravity SMTP should apply the patched release at once.

Sources: The Hacker News · ↑ top

Business and Politics

Iran Pauses U.S. Talks as Oil Climbs on Doubts

Latest developments: Iran paused the Switzerland negotiations after Trump's strike threat, and oil prices rose in early Asian trade as traders doubted the interim deal would hold.

read more

Vice President JD Vance and senior Iranian officials opened formal talks Sunday near Lake Lucerne over Tehran's nuclear program and the interim accord meant to end the war, while Trump threatened from afar to strike Iran over its backing of Hezbollah in Lebanon.

Sources: WSJ Markets · FT World · WSJ World News · ↑ top

Starmer Set to Name Resignation Timetable

Latest developments: Allies now expect Keir Starmer to set out a departure timetable within days, clearing the path for Andy Burnham to replace him.

read more

Starmer's Labour premiership crumbled after Burnham's by-election win, and the prime minister spent the weekend at Chequers weighing his exit with his wife, Victoria; his departure would give Britain its seventh premier in a decade and raise fresh worries over gilts.

Sources: FT World · FT World · ↑ top

Pittsburgh

Weather

Tonight: Mostly Cloudy then Chance Showers And Thunderstorms, low 62F.

Monday: Showers And Thunderstorms then Chance Showers And Thunderstorms, high 77F.

Monday Night: Showers And Thunderstorms then Mostly Cloudy, low 59F.

Business

Shilo Ranch Lists in Butler County

Latest developments: Shilo Ranch, a 340-acre sporting estate at 399 Cornetti Road near Petrolia in Butler County, hit the market with a 17,000-square-foot residence at its center.

read more

Pittsburgh Magazine featured the listing of Shilo Ranch, a luxury sporting retreat spanning more than 340 acres of rolling countryside in rural Butler County, anchored by a 17,000-square-foot home.

Sources: Pittsburgh Magazine · ↑ top

Around Town

Millvale Holds Pride Celebration

Latest developments: Millvale filled its streets this weekend with drag performers, live bands, and pay-what-you-want haircuts for a Pride Month gathering.

read more

Community members gathered in Millvale to watch drag shows and bands, make crafts, and visit local businesses; vendor Caron Spriggs-Bethea said such events help people feel less alone.

Sources: WPXI · ↑ top

Sports

Pirates (39-39)

Sat Jun 20 · Pirates 1 · Rockies 2 · Final

McCarthy hits leadoff inside-the-park homer off Skenes in Rockies' 2-1 win over Pirates

Sun Jun 21 · Pirates 8 · Rockies 6 · Final

Gonzalez and Reynolds homer as the Pirates hold off the Rockies 8-6

Up Next · Mariners @ Pirates · Tue Jun 23, 6:40 PM

Around the Teams

Cherington Explains the Bart Trade

Latest developments: Pirates general manager Ben Cherington laid out his reasoning for dealing catcher Joey Bart to the Braves and updated the standing of prospect Konnor Griffin, plus Oneil Cruz and Endy Rodriguez.

read more

In a Post-Gazette interview, Cherington walked through the Bart-for-Hunter Stratton deal that added bullpen depth and cleared the Pirates' catching logjam, and gave a status report on top prospect Konnor Griffin.

Sources: Post-Gazette Pirates · ↑ top

Jared Jones Takes a Liner Off His Elbow

Latest developments: Pirates starter Jared Jones left Sunday's game in the third inning after a line drive struck his surgically repaired right pitching elbow.

read more

The Post-Gazette reported Jones, recently back from elbow surgery, exited the Colorado finale after the comebacker hit his throwing arm, a scary moment as the Pirates avoided a sweep by the Rockies.

Sources: Post-Gazette Pirates · ↑ top

Team USA

Special Olympics USA Games Open

Latest developments: The 2026 Special Olympics USA Games kicked off June 20 in Minneapolis with nearly 3,000 athletes from all 50 states.

read more

The weeklong Games gather thousands of Team USA athletes across multiple sports in Minneapolis, with ESPN carrying live coverage and updates.

Sources: ESPN Olympics · ↑ top

ESPN Makes the Case for the USMNT

Latest developments: ESPN argues the U.S. men's national team, fresh off topping Group D as a World Cup co-host, has earned reason to dream of a deep run.

read more

With the 2026 World Cup spread across the United States, Canada, and Mexico, ESPN writes that this U.S. squad carries a different feel its players and observers can sense heading into the knockout rounds.

Sources: ESPN Soccer · ↑ top

Reading

Markets

weekly average, change vs prior week

S&P 500     7,483.56  ▲ +1.6%
Dow        51,586.04  ▲ +1.8%
Nasdaq     26,297.74  ▲ +2.5%
WTI crude      79.01  ▼ -11.8%
EUR/USD       1.1555  ▲ +0.1%
GBP/USD       1.3359  = -0.0%
USD/JPY       160.50  ▲ +0.1%