================================================================ INFOSECFOLLOW -- security, markets, business, pittsburgh Monday, July 13, 2026 - 9:06 AM EDT ================================================================ The European Union and United Kingdom impose their first joint cyber sanctions on Russian GRU officers as Zimbra and RabbitMQ rush critical patches and attackers weaponize AI to map corporate networks. CONTENTS: Emerging Trends and Key Updates | Security | Business and Politics | Pittsburgh | Sports | Reading | Markets EMERGING TRENDS AND KEY UPDATES ---------------------------------------------------------------- * [TREND] The EU and UK imposed their first joint cyber sanctions on Russian GRU officers over a yearslong spying and sabotage campaign against European governments and critical infrastructure. see: EU and UK Sanction Russian GRU Officers * [TREND] Attackers keep weaponizing OAuth, spoofing client IDs so Microsoft Entra ID never logs their probing while a RabbitMQ flaw hands the broker's secret to anonymous requests. see: Spoofed OAuth Client IDs Evade Entra ID Logs; RabbitMQ Broker Takeover Flaw * [TREND] An unknown threat actor deployed a vibe-coded, suspected AI-generated PowerShell script to find the domain controller and enumerate an entire Active Directory. see: AI-Generated PowerShell Maps Active Directory * [UPDATE (new)] Zimbra shipped a fix for a critical stored cross-site-scripting flaw in its Classic Web Client that runs attacker code when a victim opens a crafted email. see: Zimbra Patches Critical Code Execution Flaw * [TREND] The AI arms race spills into court and hardware as Meta patents all-day emotion tracking, Apple sues OpenAI over trade secrets, and Zitron dissects the memory-chip crisis. see: Meta Patent for All-Day Emotion-Tracking AI; Apple Sues OpenAI, Apple's Real Problem; Premium: The Hater's Guide To The Memory Crisis * [TREND] Local safety nets wobble as Allegheny County hunts for a new jail warden and a funding gap threatens the free Alle-Kiski shuttle serving Harrison and Tarentum. see: Allegheny County Jail Seeks New Warden; Funding Gap Threatens Alle-Kiski Shuttle SECURITY ---------------------------------------------------------------- 1. EU AND UK SANCTION RUSSIAN GRU OFFICERS Nation-State Activity · [apt, policy, sanctions] Latest developments: The European Union and United Kingdom on July 13, 2026 imposed their first joint cyber sanctions package, targeting dozens of Russian GRU intelligence officers and entities accused of running a yearslong spying and sabotage network against European governments and critical infrastructure. The measures freeze assets and bar travel for individuals the EU ties to attacks and sabotage across Europe, arriving days after a US-led advisory warned of Russian state hackers breaching critical-infrastructure routers. Operators should apply the joint router-hardening guidance. - BleepingComputer: https://www.bleepingcomputer.com/news/security/eu-and-uk-hit-russia-with-first-joint-cyber-sanctions-package/ - SecurityWeek: https://www.securityweek.com/eu-targets-russian-intelligence-officers-accused-of-running-a-yearslong-cyber-spying-campaign/ 2. RABBITMQ BROKER TAKEOVER FLAW Vulnerabilities and Exploits · [vulnerability, patch] Latest developments: SecurityWeek reported July 13, 2026 that a newly disclosed RabbitMQ vulnerability lets unauthenticated attackers retrieve the message broker's confidential OAuth client secret and seize full control of the broker. RabbitMQ is a widely deployed open-source message broker that underpins enterprise application queues, and the flaw exposes its OAuth client secret to anonymous requests. Administrators should apply the fixed release and rotate the exposed secret. - SecurityWeek: https://www.securityweek.com/rabbitmq-vulnerability-threatens-enterprise-systems/ 3. ZIMBRA PATCHES CRITICAL CODE EXECUTION FLAW Vulnerabilities and Exploits · [vulnerability, patch, xss] Latest developments: Zimbra shipped a fix on July 13, 2026 for the critical stored cross-site-scripting flaw in its Classic Web Client that runs attacker code when a victim opens a crafted email, closing a hole disclosed July 10 that still carries no CVE identifier. Zimbra Collaboration's Classic Web Client executes malicious scripts embedded in crafted emails the moment a recipient opens them, exposing user sessions. Administrators should install the patched version immediately. - SecurityWeek: https://www.securityweek.com/zimbra-patches-critical-code-execution-vulnerability/ 4. SPOOFED OAUTH CLIENT IDS EVADE ENTRA ID LOGS Vulnerabilities and Exploits · [identity, evasion] Latest developments: Help Net Security reported July 13, 2026 that attackers running account enumeration against Microsoft cloud tenants now spoof the OAuth client_id so Microsoft Entra ID records an unfamiliar application ID, keeping their probing out of sign-in telemetry. The technique exploits how Entra ID logs unrecognized application identifiers, letting operators confirm valid accounts without tripping the usual monitoring. Defenders should treat unfamiliar application IDs in sign-in logs as suspect. - Help Net Security: https://www.helpnetsecurity.com/2026/07/13/entra-id-oauth-client-id-spoofing/ 5. AI-GENERATED POWERSHELL MAPS ACTIVE DIRECTORY AI Security · [ai, powershell] Latest developments: The Hacker News reported July 13, 2026 that an unknown threat actor used a vibe-coded, suspected AI-generated PowerShell script to locate the domain controller and enumerate users, computers, and domains, then exported an AD_Report.html to gauge its own success. The script performed full Active Directory reconnaissance and wrote its results to disk, showing attackers leaning on large language models to assemble tooling on the fly. Defenders should watch for anomalous PowerShell enumeration and unexpected report artifacts. - The Hacker News: https://thehackernews.com/2026/07/attacker-uses-suspected-ai-generated.html 6. META PATENT FOR ALL-DAY EMOTION-TRACKING AI Surveillance and Privacy · [privacy, surveillance, ai] Latest developments: The Hacker News reported July 13, 2026 that Meta filed a patent application for an AI that listens to a user's voice all day, infers emotion from how they sound, and keeps a timestamped log tied to location, activity, and phone use. The filing describes always-on audio capture that pins each emotional read to the moment, place, and context, raising fresh biometric-surveillance concerns. It remains a patent application rather than a shipped product. - The Hacker News: https://thehackernews.com/2026/07/meta-files-patent-for-ai-that-can.html BUSINESS AND POLITICS ---------------------------------------------------------------- * U.S. Vows to Seize Strait of Hormuz Latest developments: The United States struck fresh Iranian targets after Tehran rejected the demand to reopen the strait, President Trump said Washington will take over the waterway and bill Iran for the service, and OPEC further cut its 2026 oil-demand growth forecast. The United States and Iran each claim control of the Strait of Hormuz—the channel carrying roughly a fifth of the world's oil—after a weekend of strikes across the Middle East, and Brent crude climbed while gold fell more than 1% Monday, July 13, on revived inflation fears. - WSJ World News: https://www.wsj.com/world/middle-east/u-s-strikes-new-targets-after-iran-rejects-demand-to-open-hormuz-b1f167d0 - FT World: https://www.ft.com/content/c5beec47-ba53-412e-910e-6b9ab2f3238d - WSJ US Business: https://www.wsj.com/business/energy-oil/opec-further-cuts-this-years-oil-demand-forecast-2a1b6c88?mod=pls_whats_news_us_business_f PITTSBURGH ---------------------------------------------------------------- Weather: Today: Sunny, high 89F. Tonight: Mostly Clear, low 68F. Tuesday: Sunny, high 94F. Business: * Kroger's Giant Eagle Purchase Draws Fire Latest developments: A Post-Gazette letter to the editor warned that Kroger's proposed purchase of Giant Eagle could deepen food deserts across the Pittsburgh region. Kroger, the Cincinnati supermarket chain, has moved to buy Pittsburgh-based Giant Eagle, and a Post-Gazette reader argued the combination could worsen food deserts in low-income neighborhoods that lean on the two chains' stores. - Pittsburgh Post-Gazette: https://www.post-gazette.com/local/2026/07/13/kroger-giant-eagle-food-desert/stories/202607130002 * Jeannette to Sell 20 Vacant Lots Latest developments: Jeannette approved a new vetting process and will offer roughly 20 city-owned vacant lots for sale, requiring would-be buyers to submit background and other information. The Westmoreland County city of Jeannette will sell about 20 vacant lots it owns, screening applicants under a newly approved process meant to keep the land out of the hands of problem buyers. - TribLive: https://triblive.com/local/westmoreland/jeannette-to-sell-about-20-vacant-lots-under-newly-approved-vetting-process/ Around town: * Funding Gap Threatens Alle-Kiski Shuttle Latest developments: A funding shortfall threatens the free community shuttle serving Harrison, Tarentum, and Brackenridge that residents use for groceries, the library, and the post office. Riders like Natrona resident Cindy Brashears depend on the free shuttle linking Harrison, Tarentum, and Brackenridge in the Alle-Kiski Valley, and its operators say lost funding could end the service. - TribLive: https://triblive.com/local/valley-news-dispatch/lack-of-funding-threatens-free-community-shuttle-in-harrison-tarentum-brackenridge/ * Allegheny County Jail Seeks New Warden Latest developments: Allegheny County opened a search for a new warden to lead its jail, and county leaders and activists said they are watching the process warily. The Allegheny County Jail begins a search for its next warden, tied to Trevor Wingard, and reform advocates want a voice in choosing the person who will run the downtown facility. - Pittsburgh Post-Gazette: https://www.post-gazette.com/news/social-services/2026/07/13/allegheny-county-jail-warden-trevor-wingard-1/stories/202607130001 SPORTS ---------------------------------------------------------------- Pirates (50-47) Sun Jul 12 · Brewers 5 · Pirates 14 · Final Skenes wins 2nd straight start after 9-game winless slide, Pirates rout Brewers 14-5 with 10-run 4th https://plaintextsports.com/mlb/2026-07-12/mil-pit Up Next · Pirates @ Guardians · Fri Jul 17, 7:10 PM https://plaintextsports.com/mlb/2026-07-17/pit-cle READING ---------------------------------------------------------------- * Cal Newport -- Why Reading Matters Responding to Rose Horowitch's Atlantic essay 'The End of Reading Is Here,' Newport makes the case that sustained, deep reading remains essential to serious thinking even as digital attention fragments. https://calnewport.com/why-reading-matters/ * Stratechery -- Apple Sues OpenAI, Apple's Real Problem Ben Thompson reads Apple's trade-secret suit against OpenAI, centered on a single guilty employee, as lashing out, and argues Apple's deeper trouble is its weak standing in artificial intelligence. https://stratechery.com/2026/apple-sues-openai-apples-real-problem/ * Ed Zitron -- Premium: The Hater's Guide To The Memory Crisis In his premium newsletter, Zitron delivers a caustic, detailed dissection of the memory-chip crisis and the pricing mania gripping the tech industry. https://www.wheresyoured.at/premium-the-haters-guide-to-the-memory-crisis/ MARKETS (weekly average, change vs prior week) ---------------------------------------------------------------- S&P 500 7,528.60 ▲ +1.0% Dow 52,690.77 ▲ +0.7% Nasdaq 26,059.80 ▲ +0.8% WTI crude 71.20 ▲ +2.7% EUR/USD 1.1428 ▲ +0.2% GBP/USD 1.3382 ▲ +0.9% USD/JPY 162.16 ▲ +0.1% ================================================================ Generated 2026-07-13 09:06 EDT. Sources: 24 security feeds; 9 Pittsburgh feeds; 4 Pittsburgh arts and events feeds; 6 Pittsburgh sports beat and podcast feeds; 4 Team USA feeds; the Wall Street Journal, the Economist, and the Financial Times; and Ed Zitron, Stratechery, Cal Newport. Markets from Yahoo Finance, weather from the NWS, scores from ESPN. Summaries are AI-generated from the linked reporting; verify at the sources. ================================================================