================================================================ INFOSECFOLLOW -- security, markets, business, pittsburgh Monday, July 20, 2026 - 9:05 PM EDT ================================================================ Autonomous AI agents graduated to real intruders as one breached Hugging Face's production infrastructure while researchers escaped the sandboxes of four leading AI coding tools. CONTENTS: Emerging Trends and Key Updates | Security | Business and Politics | Pittsburgh | Sports | Reading | Markets EMERGING TRENDS AND KEY UPDATES ---------------------------------------------------------------- * [TREND] Autonomous AI agents flipped both ways as one hijacked via a malicious dataset breached Hugging Face while researchers escaped Cursor and Codex sandboxes to run host code. see: Autonomous AI Agent Breaches Hugging Face; AI Agents Weaponized Against Code and Models * [TREND] Attackers collapsed disclosure into mass exploitation, hammering WordPress core within three days of the WP2Shell writeup and running SonicWall SMA1000 appliances as zero-days for weeks. see: WP2Shell WordPress Core RCE Exploited; SonicWall SMA1000 Zero-Days Push Custom Malware * [TREND] Iran surfaced on two fronts as Group-IB tied HollowGraph to Iranian espionage while Israel flagged hidden centrifuges at Pickaxe Mountain amid nearly 100 U.S. troop injuries. see: HollowGraph Linked to Iranian Espionage; Iran War Grinds On as Israel Flags Hidden Centrifuges * [UPDATE (new)] Estée Lauder began notifying customers after hackers exploited an Oracle E-Business Suite flaw, part of a fresh wave of enterprise data-theft disclosures. see: Estée Lauder and Ernst & Young Breaches * [TREND] The Reading section debates AI's trajectory, from Ben Thompson on Chinese models to Ed Zitron's case for an OpenAI bubble. see: Who's Afraid of Chinese Models?; The OpenAI Bubble SECURITY ---------------------------------------------------------------- 1. AUTONOMOUS AI AGENT BREACHES HUGGING FACE AI Security · [ai, breach] Latest developments: Hugging Face disclosed that an autonomous AI agent system breached its production infrastructure through a malicious dataset, reaching a limited set of internal datasets and several service credentials before the company detected and contained the intrusion. Hugging Face, the largest open-source repository for machine-learning models and datasets, said an attacker weaponized a poisoned dataset to hijack an agent and pivot into internal systems; users should rotate exposed credentials and scrutinize untrusted datasets. - BleepingComputer: https://www.bleepingcomputer.com/news/security/hugging-face-breach-autonomous-ai-agent-system-internal-datasets-credentials/ - The Hacker News: https://thehackernews.com/2026/07/worlds-largest-ai-model-repository.html - SecurityWeek: https://www.securityweek.com/hugging-face-hacked-in-autonomous-ai-attack/ - Help Net Security: https://www.helpnetsecurity.com/2026/07/20/hugging-face-breached-by-autonomous-ai-agent/ 2. AI AGENTS WEAPONIZED AGAINST CODE AND MODELS AI Security · [ai, rce, ransomware] Latest developments: Researchers escaped the sandboxes of Cursor, Codex, Gemini CLI, and Antigravity by getting the agent to write files that trusted host tools later execute, drawing multiple CVEs and patches while Google downgraded two Antigravity findings, and the JadePuffer autonomous agent gained EncForge malware that encrypts AI training datasets, vector databases, and model checkpoints. Developers' AI coding assistants and the AI supply chain now form an active attack surface; the same session logs that exposed sandbox escapes also caught Russian-speaking actor bandcampro driving a botnet through Google's Gemini CLI, so teams should patch these tools and constrain what agents can write and run. - BleepingComputer: https://www.bleepingcomputer.com/news/security/cursor-codex-gemini-cli-antigravity-hit-by-sandbox-escapes/ - BleepingComputer: https://www.bleepingcomputer.com/news/security/jadepuffer-agentic-attacks-now-target-ai-model-data-with-ransomware/ - The Hacker News: https://thehackernews.com/2026/07/russian-speaking-hacker-uses-google.html 3. WP2SHELL WORDPRESS CORE RCE EXPLOITED Vulnerabilities and Exploits · [rce, exploit, patch] Latest developments: Attackers began chaining CVE-2026-60137 and CVE-2026-63030 against WordPress sites within three days of Searchlight Cyber's disclosure, and the SQL-injection-to-remote-code-execution flaw sitting in WordPress core itself drew CVE-2026-63030. WP2Shell lets an unauthenticated attacker run code on any unpatched WordPress site through a SQL injection in core, exposing millions of sites; administrators should confirm they run the patched releases immediately. - Dark Reading: https://www.darkreading.com/cyberattacks-data-breaches/wp2shell-millions-wordpress-sites-remote-takeover - SANS Internet Storm Center: https://isc.sans.edu/diary/rss/33168 - SecurityWeek: https://www.securityweek.com/wp2shell-wordpress-vulnerabilities-exploited-in-the-wild/ 4. HOLLOWGRAPH LINKED TO IRANIAN ESPIONAGE Nation-State Activity · [apt, espionage] Latest developments: Group-IB tied HollowGraph with high confidence to the modular Cavern backdoor framework and linked the calendar-hijacking campaign to Iranian espionage activity. HollowGraph turns a compromised Microsoft 365 calendar into a command channel, hiding tasking and stolen files in appointments dated to 2050 so activity blends into legitimate Microsoft Graph traffic; defenders should audit mailbox calendar automation and Graph API access. - Help Net Security: https://www.helpnetsecurity.com/2026/07/20/hollowgraph-malware-microsoft-365-calendar/ - The Hacker News: https://thehackernews.com/2026/07/hollowgraph-malware-hides-c2-and-stolen.html - BleepingComputer: https://www.bleepingcomputer.com/news/security/new-hollowgraph-malware-uses-microsoft-graph-for-stealthy-c2-comms/ 5. SONICWALL SMA1000 ZERO-DAYS PUSH CUSTOM MALWARE Vulnerabilities and Exploits · [zero-day, vpn, exploit] Latest developments: SonicWall and researchers confirmed the two SMA1000 flaws, CVE-2026-15409 and CVE-2026-15410, carried custom malware onto the VPN appliances during the weeks Volexity-tracked actor UTA0533 ran them as zero-days ahead of the patch. SonicWall's Secure Mobile Access 1000 series VPN appliances gave UTA0533 root and a foothold for bespoke implants; organizations running them should patch at once and hunt for signs of compromise. - BleepingComputer: https://www.bleepingcomputer.com/news/security/sonicwall-sma1000-flaws-exploited-as-zero-days-to-push-custom-malware/ - SecurityWeek: https://www.securityweek.com/sonicwall-zero-days-exploited-to-deliver-custom-malware-for-weeks-before-patch/ 6. ESTÉE LAUDER AND ERNST & YOUNG BREACHES Data Breaches · [breach, exploit] Latest developments: Estée Lauder began notifying customers after hackers exploited an Oracle E-Business Suite flaw in the human-resources systems the cosmetics company ran, and Ernst & Young started notifying people after thieves pulled names, addresses, Social Security numbers, and payment-card numbers from a third-party management platform. Two large enterprises traced fresh breaches to vulnerable back-office software, one an Oracle E-Business Suite flaw and one a compromised third-party platform; affected customers should watch for identity theft and card fraud. - BleepingComputer: https://www.bleepingcomputer.com/news/security/est-e-lauder-discloses-data-breach-via-oracle-e-business-flaw/ - SecurityWeek: https://www.securityweek.com/ernst-young-data-breach-affects-personal-financial-information/ BUSINESS AND POLITICS ---------------------------------------------------------------- * U.S. Slaps 50% Tariffs on Canadian Goods Latest developments: President Trump imposed an additional 50% tariff Monday on a wide range of Canadian goods, accusing Ottawa of unfair practices in autos, alcohol, and dairy. The measure covers most Canadian imports including wine and cheese while exempting energy and parts of the auto sector, and it threatens to reignite the North American trade war between the two neighbors. - WSJ World News: https://www.wsj.com/economy/trade/trump-imposes-additional-50-tariffs-on-certain-canadian-goods-5ab06a45 - FT World: https://www.ft.com/content/0b507e93-877f-4cf7-904b-639eb390c4bf?syn-25a6b1a6=1 * Iran War Grinds On as Israel Flags Hidden Centrifuges Latest developments: Israel believes Iran moved nuclear centrifuges into a fortified site called Pickaxe Mountain and Trump threatened to strike it, while the Pentagon said nearly 100 U.S. troops suffered injuries over the past two weeks. An Iranian missile struck housing units for U.S. troops at a base in Jordan, killing American service members, as U.S.-Iran fighting escalated and mediators pressed for a 10-day ceasefire; U.S. gasoline climbed back above $4 a gallon. - WSJ World News: https://www.wsj.com/world/middle-east/israel-believes-iran-moved-nuclear-centrifuges-into-pickaxe-mountain-d29d21c0 - FT World: https://www.ft.com/content/2e137205-df69-47a2-9674-2f4a9deec0d9?syn-25a6b1a6=1 - WSJ World News: https://www.wsj.com/world/middle-east/iran-missile-struck-housing-for-u-s-troops-at-jordan-base-9f5b8120 PITTSBURGH ---------------------------------------------------------------- Weather: Tonight: Mostly Cloudy, low 67F. Tuesday: Slight Chance Showers And Thunderstorms then Showers And Thunderstorms, high 82F. Tuesday Night: Showers And Thunderstorms then Slight Chance Showers And Thunderstorms, low 65F. Business: * 124 Townhomes Planned for Banksville Latest developments: Split Rock Real Estate Partners filed plans with the city of Pittsburgh for a 124-unit development on the shuttered Vincentian Marian Manor site. Split Rock Real Estate Partners has proposed Golden Horizons, 124 townhomes marketed to residents 55 and older with a community center, swimming pool, fitness center, and putting green, on the former Vincentian Marian Manor assisted-living property in Pittsburgh's Banksville neighborhood, which closed several years ago. - KDKA: https://www.cbsnews.com/pittsburgh/news/proposed-townhomes-banksville-vincentian-marian-manor/ * Fire Shutters Fujiya Ramen in Shadyside Latest developments: A fire caused significant damage and closed the restaurant until further notice, and the owners say they hope to rebuild. Fujiya Ramen, a popular restaurant in Pittsburgh's Shadyside neighborhood, closed after a fire caused significant damage to the building. - WTAE: https://www.wtae.com/article/fujiya-ramen-fire-pittsburgh-shadyside/73194378 Around town: * Transit Agency Softens Shaler Bus Cuts Latest developments: Pittsburgh Regional Transit proposed a compromise to preserve service on the Mount Royal Boulevard corridor after public outcry. Pittsburgh Regional Transit, which this spring proposed eliminating the Route 2 and P13 flyer along Mount Royal Boulevard in Shaler citing low ridership, now offers a compromise to keep buses running on the North Hills corridor after community leaders and riders objected. - KDKA: https://www.cbsnews.com/pittsburgh/news/pittsburgh-regional-transit-shaler-mount-royal-bus-routes/ * FDA Keeps Focus on Taylor Farms Lettuce Latest developments: The FDA said a Taylor Farms sample that tested positive for cyclospora was a false positive, then said Monday its investigation still converges on the company's shredded iceberg lettuce from central Mexico. The multistate cyclosporiasis outbreak, which has sickened 11 people in Allegheny County, still points to shredded iceberg lettuce from Taylor Farms locations in central Mexico, the Food and Drug Administration said, and the company's recall remains in place. - KDKA: https://www.cbsnews.com/pittsburgh/news/taylor-farms-lettuce-false-positive-cyclospora/ - Pittsburgh Post-Gazette: https://www.post-gazette.com/news/health/2026/07/20/lettuce-supplier-cyclospora-faulty-test-result/stories/202607200051 * Lyme Disease Cases Climb in Western Pennsylvania Latest developments: Cases are rising for a second straight year across western Pennsylvania, with Allegheny and Westmoreland counties among the hardest hit. Lyme disease and other tick-borne illnesses are increasing for a second consecutive year across western Pennsylvania, one of the country's most affected regions, according to Dr. Graham Snyder, UPMC's medical director of infection protection and hospital epidemiology. - KDKA: https://www.cbsnews.com/pittsburgh/news/lyme-disease-westmoreland-allegheny-county/ SPORTS ---------------------------------------------------------------- Pirates (52-48) Sun Jul 19 · Pirates 7 · Guardians 1 · Final Skenes strikes out 8 in 7 innings as Pirates roll to 7-1 win over Guardians https://plaintextsports.com/mlb/2026-07-19/pit-cle Mon Jul 20 · Pirates 5 · Yankees 8 · End 5th (in progress at last update) https://plaintextsports.com/mlb/2026-07-20/pit-nyy Up Next · Pirates @ Yankees · Tue Jul 21, 7:05 PM https://plaintextsports.com/mlb/2026-07-21/pit-nyy Around the Teams: * Bednar Returns to Face the Pirates Latest developments: The Post-Gazette caught up with former Pirates closer David Bednar, now with the New York Yankees, ahead of the Pirates-Yankees series. David Bednar, the Mars, Pennsylvania, native and former Pirates All-Star closer whom Don Kelly's club traded to the New York Yankees, told the Post-Gazette he is grateful for his time in Pittsburgh, IC Light and all, as he prepares to pitch against his old team. - Post-Gazette Pirates: https://www.post-gazette.com/sports/mlb/2026/07/20/mlb-pirates-yankees-david-bednar-don-kelly-yankees-trade-mars-wpial/stories/202607200053 * Prospect Murf Gray Reaches Altoona Latest developments: The Post-Gazette's MiLB Monday reported infielder Murf Gray, now a top-100 prospect, has been promoted to Double-A Altoona. Pirates prospect Murf Gray, who has climbed into baseball's top-100 rankings, has arrived with the Double-A Altoona Curve, the Post-Gazette noted in its minor-league roundup tracking the farm system's rising names. - Post-Gazette Pirates: https://www.post-gazette.com/sports/pirates/2026/07/20/milb-prospects-murf-gray-barco-termarr-navarro/stories/202607200029 READING ---------------------------------------------------------------- * Stratechery -- Who's Afraid of Chinese Models? Ben Thompson argues the leading U.S. AI labs will withstand competition from powerful Chinese open models, and that the United States should respond by enabling open-source American alternatives. https://stratechery.com/2026/whos-afraid-of-chinese-models/ * Ed Zitron -- The OpenAI Bubble Ed Zitron makes his case that OpenAI sits at the center of an unsustainable financial bubble in artificial intelligence. https://www.wheresyoured.at/the-openai-bubble/ * Cal Newport -- Why Reading Matters Cal Newport responds to Rose Horowitch's Atlantic article 'The End of Reading Is Here,' arguing that deep reading remains essential to serious thinking. https://calnewport.com/why-reading-matters/ MARKETS (weekly average, change vs prior week) ---------------------------------------------------------------- S&P 500 7,510.15 ▼ -0.2% Dow 52,341.11 ▼ -0.5% Nasdaq 25,857.30 ▼ -0.6% WTI crude 79.70 ▲ +11.9% EUR/USD 1.1430 ▲ +0.1% GBP/USD 1.3442 ▲ +0.4% USD/JPY 162.32 = +0.0% ================================================================ Generated 2026-07-20 21:05 EDT. Sources: 24 security feeds; 9 Pittsburgh feeds; 4 Pittsburgh arts and events feeds; 6 Pittsburgh sports beat and podcast feeds; 4 Team USA feeds; the Wall Street Journal, the Economist, and the Financial Times; and Ed Zitron, Stratechery, Cal Newport. Markets from Yahoo Finance, weather from the NWS, scores from ESPN. Summaries are AI-generated from the linked reporting; verify at the sources. ================================================================