infosecfollow

daily plain-text briefing: security, markets, business, and pittsburgh

Frontier AI now writes working ransomware and falls to prompt injection through its own coding tools, while Adobe, Citrix, Google, and Apple ship a wall of critical patches.


Emerging Trends and Key Updates

Security

1. Vendor Patch Wave Hits Adobe, Citrix, Chrome, and Apple

Vulnerabilities and Exploits · [patch, vulnerability]

Latest developments: On July 1 Adobe fixed seven CVSS 10.0 flaws in ColdFusion and Campaign Classic that enable arbitrary code execution and privilege escalation, Citrix patched six NetScaler ADC and Gateway bugs including a new HTTP/2 Bomb denial-of-service and a CitrixBleed-style information disclosure flaw, Google closed 382 Chrome vulnerabilities with 15 rated critical, and Apple corrected dozens of holes across iOS, macOS, and Safari.

read more

The simultaneous releases cover code execution, privilege escalation, file reads, and information disclosure in software running across most enterprises. Administrators should apply the ColdFusion, Campaign Classic, NetScaler, Chrome, and Apple updates without delay.

Sources: BleepingComputer · SecurityWeek · SecurityWeek · SecurityWeek · ↑ top

2. AI Coding Tools and Agents Turned Against Users

AI Security · [ai, prompt-injection, vulnerability]

Latest developments: Cato AI Labs disclosed DuneSlide, paired Cursor flaws CVE-2026-50548 and CVE-2026-50549 rated 9.8 that let one ordinary-looking prompt escape the AI editor's sandbox and run any command with no click or approval, while Microsoft warned that a single poisoned Model Context Protocol tool description can make an AI agent quietly hand company data to an outsider, and Kaspersky detailed vulnerabilities and malicious skills in the OpenClaw agent.

read more

Developers running agentic AI editors and assistants face prompt injection and supply-chain-style abuse that leaves no alarm in a default setup. Teams should update Cursor, restrict agent permissions, and vet every MCP tool before trusting a workspace.

Sources: The Hacker News · The Hacker News · Securelist (Kaspersky) · ↑ top

3. Frontier AI Builds Ransomware and Phantom Domains

AI Security · [ai, ransomware, phishing]

Latest developments: Researchers documented the first working browser ransomware generated with DeepSeek, which abuses a legitimate Chromium API to encrypt files entirely inside the browser on both Windows and Android, while Palo Alto Networks' Unit 42 detailed phantom squatting, in which attackers buy the nonexistent web addresses that large language models hallucinate and host phishing pages and malware on them.

read more

Both techniques weaponize AI output directly, one turning a chatbot into a malware author and the other turning model hallucinations into a supply-chain and phishing vector. Defenders should treat AI-suggested domains as untrusted and watch browser processes for encryption behavior.

Sources: The Hacker News · The Hacker News · Unit 42 (Palo Alto) · ↑ top

4. Azure CLI Password Spray Compromises Microsoft Accounts

Cloud and Identity Security · [cloud, credential, breach]

Latest developments: Huntress reported an automated password-spray campaign that made more than 81 million login attempts against Microsoft's Azure command-line interface between June 12 and June 26, compromising at least 78 accounts, all traffic originating from an IPv6 range, 2a0a:d683::/32, controlled by hosting provider LSHIY LLC, AS32167.

read more

The high-volume campaign hunts weak and reused credentials to seize Azure identities and the cloud resources behind them. Administrators should enforce multifactor authentication, block legacy authentication, and alert on failed Azure CLI sign-ins from the flagged network.

Sources: The Hacker News · SecurityWeek · ↑ top

5. Progress Kemp LoadMaster Pre-Auth RCE Exploited

Vulnerabilities and Exploits · [vulnerability, rce, exploit]

Latest developments: eSentire's Threat Response Unit reported July 1 that it caught active exploitation attempts against CVE-2026-8037, a CVSS 9.6 operating-system command-injection flaw in Progress Kemp LoadMaster that gives attackers remote code execution before any authentication.

read more

LoadMaster is a widely deployed load balancer, and the pre-auth bug lets unauthenticated attackers run commands directly on the appliance. Operators should apply Progress's fixed release immediately and inspect exposed instances for compromise.

Sources: The Hacker News · ↑ top

6. Japanese Insurer, Brewer, and Telecom Disclose Breaches

Data Breaches · [breach]

Latest developments: The Record reported July 1 that the Tokyo arm of insurer Aflac, brewer Sapporo, motor manufacturer Nidec, and telecom KDDI each recently notified the public of data breaches, marking a cluster of incidents at major Japanese companies.

read more

The disclosures span insurance, brewing, manufacturing, and telecommunications, exposing customer and corporate records at four large firms. Affected individuals should watch for fraud and phishing that reference these brands.

Sources: The Record · ↑ top

Business and Politics

Fed Signals Inflation Focus as Rate-Hike Bets Build

Latest developments: Federal Reserve Chair Kevin Warsh stressed the central bank's political independence and a focus on inflation on July 1, dodging questions on a July rate decision as traders priced in hike expectations that lifted Treasury yields and pulled the Nasdaq lower.

read more

Under new Chair Kevin Warsh, the Federal Reserve has tilted its message toward fighting inflation, and markets now weigh the prospect of a rate increase rather than a cut, a shift that pushed Treasury yields higher and dragged technology stocks down to open the third quarter.

Sources: WSJ Markets · WSJ Markets · ↑ top

Pittsburgh

Weather

This Afternoon: Sunny, high 98F.

Tonight: Mostly Clear, low 75F.

Thursday: Sunny, high 100F.

Business

Kroger to Keep Giant Eagle Name and Pittsburgh Base

Latest developments: Kroger's July 1 agreement will keep the Giant Eagle name, Pittsburgh headquarters, and perks loyalty program intact, covering 197 supermarkets and 11 standalone pharmacies across northern Ohio, western Pennsylvania, West Virginia, Maryland, and Indiana.

read more

Kroger agreed to buy Pittsburgh-based Giant Eagle for $1.65 billion in cash and assumed liabilities, and Kroger Chief Executive Greg Foran said the region's most recognizable grocer will retain its name, its headquarters, and its customer-loyalty program under the deal.

Sources: KDKA · WPXI · ↑ top

JetBlue Marks 20 Years at Pittsburgh International

Latest developments: The Allegheny County Airport Authority and JetBlue celebrated the airline's 20th anniversary of service at Pittsburgh International Airport on July 1.

read more

JetBlue and the Allegheny County Airport Authority marked two decades since the low-cost carrier's first flights from Pittsburgh International Airport, a milestone the authority touted as a sign of the airport's recovering route map.

Sources: WPXI · ↑ top

Southern Airways Fights for Bradford-Pittsburgh Route

Latest developments: Southern Airways Express warned July 1 that a rival's jet proposal to take over the Bradford-to-Pittsburgh route would hurt community members who rely on the affordable flights.

read more

Southern Airways Express, which flies small aircraft on subsidized rural routes, is battling to keep its Bradford-to-Pittsburgh service, arguing that losing it to a competitor's jet bid would strand McKean County travelers who depend on cheap connections to Pittsburgh.

Sources: WPXI · ↑ top

Around Town

Extreme Heat Warning Through Friday

Latest developments: The National Weather Service upgraded the region to an Extreme Heat Warning for much of Western Pennsylvania on July 1, with heat index values climbing above 105 degrees through Friday and into the Fourth of July weekend.

read more

Dangerous heat has settled over the Pittsburgh area, with afternoon heat index readings topping 100 to 105 degrees through Friday and overnight lows holding in the 70s, leaving little relief before the holiday weekend.

Sources: WTAE · WPXI · ↑ top

Parkway Closure to Strain Browns Hill Road

Latest developments: WTAE reported July 1 that the already-congested Browns Hill Road and Homestead Grays Bridge work zones will grow busier during the coming 25-day Parkway East closure.

read more

Residents have raised concerns that the Parkway East detour—routed by PennDOT through Wilkinsburg, Point Breeze, and Oakland—will overload nearby Browns Hill Road and the ongoing Homestead Grays Bridge construction, a high-traffic corridor already prone to backups.

Sources: WTAE · ↑ top

PennWest Overhauls Degree Programs

Latest developments: PennWest University announced July 1 a redesign of its degree and program offerings, centering the changes on career preparation and workforce development.

read more

PennWest University, the western Pennsylvania institution formed from the California, Clarion, and Edinboro campuses, announced changes to its degree and program lineup built around career preparation and workforce development.

Sources: WPXI · ↑ top

Events

Pittsburgh Symphony Budget Jumps to $42 Million

Latest developments: A Post-Gazette analysis July 1 explained the Pittsburgh Symphony Orchestra's budget rose $7 million to $42 million, driven largely by its expanding live film-music programming.

read more

The Pittsburgh Symphony Orchestra's annual budget grew by $7 million to $42 million, and a Post-Gazette analysis tied much of the increase to the orchestra's growing slate of concerts that score films live at Heinz Hall.

Sources: Post-Gazette Music · ↑ top

July Gallery Openings: Monet and Not Approved Comics

Latest developments: NEXTpittsburgh published its July gallery guide July 1, listing new openings across the city.

read more

NEXTpittsburgh's monthly gallery roundup spotlights July openings across Pittsburgh, among them a summer evening with Monet, a bodies-in-motion show, a 100-moments exhibition, and a profusion of Not Approved Comics.

Sources: NEXTpittsburgh Events · ↑ top

Fourth of July Fireworks Around Pittsburgh

Latest developments: The Post-Gazette published a July 1 guide to where to watch Fourth of July fireworks across the Pittsburgh region ahead of the Saturday, July 4 holiday.

read more

The Post-Gazette rounded up Fourth of July fireworks displays around the Pittsburgh area for the Saturday, July 4 holiday, a guide to venues and viewing spots across the city and suburbs.

Sources: Pittsburgh Post-Gazette · ↑ top

Sports

Pirates (43-43)

Tue Jun 30 · Pirates 0 · Phillies 8 · Final

Sánchez fans 9 in 7 innings, becomes 1st starter to reach 10 wins in 8-0 victory over Pirates

Up Next · Pirates @ Phillies · Wed Jul 1, 6:40 PM

Around the Teams

Pitching Woes Give Pirates Their Worst Month

Latest developments: The Post-Gazette's June report card July 1 graded the Pirates' worst month of the season, pinning it on teamwide pitching struggles even as the bats stayed hot.

read more

Pittsburgh Pirates beat writers marked June as the club's worst month, blaming rotation and bullpen breakdowns behind ace Paul Skenes, while Bryan Reynolds carried the offense and rookie Esmerlyn Valdez homered in four straight games.

Sources: Post-Gazette Pirates · ↑ top

Team USA

Pulisic Lands on Liverpool's Transfer Shortlist

Latest developments: ESPN's Transfer Talk reported July 1 that United States attacker Christian Pulisic sits on a six-man Liverpool shortlist and could return to the Premier League, as the USMNT prepares to face Bosnia and Herzegovina in the World Cup round of 32.

read more

AC Milan and U.S. men's national team forward Christian Pulisic has emerged among six names on Liverpool's transfer shortlist, ESPN reported, a potential Premier League homecoming surfacing just as Pulisic leads the United States into its home-soil World Cup knockout match.

Sources: ESPN Soccer · ↑ top

Reading

Markets

weekly average, change vs prior week

S&P 500     7,401.90  ▼ -0.7%
Dow        52,029.51  ▲ +0.7%
Nasdaq     25,633.34  ▼ -1.9%
WTI crude      70.35  ▼ -6.8%
EUR/USD       1.1381  ▼ -1.0%
GBP/USD       1.3201  ▼ -0.6%
USD/JPY       161.78  ▲ +0.4%