< ciso
brief />
Critical Java RCEs, AWS Updates, OpenAI Outage, and Cl0p Activity

Critical Java RCEs, AWS Updates, OpenAI Outage, and Cl0p Activity

Coverage: 24 Jul 2026 – 26 Jul 2026 (UTC)

< view all daily briefs >

Today's security developments span urgent Java deserialization and infrastructure flaws, fresh cloud capabilities, and several active intrusion campaigns. Critical advisories include a Fastjson 1.x remote code execution path without a patched release, a certificate enrollment bypass in Active Directory Certificate Services, and branch-wide fixes in Redis. Cloud providers rolled out security-minded updates and controls, while incident reporting highlighted targeted exploitation of enterprise apps, a global ChatGPT outage, and evolving phishing and supply-chain defenses.

Critical Vulnerabilities and Patch Guidance

A critical remote code execution flaw in Fastjson 1.x is being probed in the wild, with no fixed 1.x artifact available yet, according to The Hacker News. Tracked as CVE-2026-16723 and affecting versions 1.2.68 through 1.2.83, the issue can enable unauthenticated code execution in applications using Spring Boot fat-JARs when SafeMode is disabled. Reported mitigations include enabling SafeMode, using the 1.2.83_noneautotype artifact, and planning migration to Fastjson2, while organizations inventory dependencies and monitor for suspicious @type values, nested JAR references, and anomalous process or file activity.

Researchers disclosed a method dubbed Certighost that allows low-privileged Active Directory users to impersonate a Domain Controller by abusing AD CS enrollment behaviors, enabling DCSync and broader compromise; Microsoft addressed the issue (CVE-2026-54121, CVSS 8.8) in its July 14 update, per The Hacker News. The public proof-of-concept automates machine account creation or reuse, runs SMB/LDAP listeners, and relays challenges, producing credentials for DC impersonation. Microsoft’s fix adds stronger validation checks; administrators should install the patch on AD CS hosts and carefully evaluate any temporary mitigations that alter chase behavior.

Multiple Redis branches received security updates after authenticated RCE chains were published that abuse RESTORE and, in some cases, EVAL and Streams or RedisBloom TDigest loading, as reported by The Hacker News. Redis shipped fixes in 6.2.23, 7.2.15, 7.4.10, 8.2.8, 8.4.5, 8.6.5, and 8.8.1, addressing shared-ownership and loader faults that enabled memory corruption and arbitrary read/write. Guidance is to upgrade to fixed releases, revoke RESTORE for accounts that do not need it, and block untrusted access.

A public exploit targets self-managed GitLab instances that did not apply June 10 fixes, enabling an authenticated user to run commands as the git account by abusing two bugs in the Oj Ruby JSON parser and a crafted Jupyter notebook diff path, according to The Hacker News. GitLab addressed the chain in 18.10.8, 18.11.5, and 19.0.2, and the Oj gem fixed underlying issues in 3.17.3. Operators should upgrade affected instances and verify the running GitLab Webservice image version rather than relying on deployment tooling versions.

Eight high-severity vulnerabilities affecting NodeBB prior to 4.14.0—now patched in 4.14.2—could expose admin access, private messages, and protected content, with several issues in federation code and some requiring no account, per The Hacker News. NodeBB implemented staged fixes from May through July, including a rebuild of page text handling; administrators should upgrade core, themes, and plugins to incorporate template changes and close inconsistent authorization paths.

Cloud and Platform Changes

AWS added support for Apache Airflow 2.11.2 on Amazon Managed Workflows for Apache Airflow (MWAA), bringing security patches, dependency updates, and stability improvements across the webserver and task execution layers. Customers can create or upgrade environments through the console, aligning their deployments with upstream maintenance releases and reducing operational risk through managed updates.

AWS also enabled structured Amazon CloudWatch Logs for Lambda Managed Instances capacity providers, surfacing JSON-formatted events for instance launches, terminations, health checks, and errors. The logs, delivered by default where LMI is available, improve observability and troubleshooting for managed EC2 capacity used with Lambda functions, with standard CloudWatch charges applying.

AWS announced the availability of Claude Opus 5, positioned for advanced engineering and enterprise workflows with improved coding proficiency, dependable long-running agents, and deeper document reasoning. Customers can access the model via Amazon Bedrock—with zero data retention by default and AWS-managed governance features—or through the Claude Platform on AWS with ZDR available on request.

For AWS GovCloud (US) users, AWS highlighted new Kiro model options—Claude Opus 4.8 and Claude Sonnet 5—plus administrative visibility via usage dashboards, daily per-user CSV reports to S3, and optional prompt logging. All telemetry remains in the customer’s account, supporting licensing optimization and audit without additional charges beyond S3 storage.

In supply-chain security, BleepingComputer reports time-based defenses from GitHub and PyPI. Dependabot now applies a configurable 72-hour cooldown before adopting new package updates, while PyPI blocks adding files to releases older than 14 days—measures designed to narrow attacker windows for malicious updates or retroactive poisoning of trusted releases.

Separately, a global ChatGPT outage prevented chats and histories from loading for users across multiple regions; OpenAI is investigating, with updates tracked on its status page, according to BleepingComputer. Organizations reliant on the service are advised to plan temporary workarounds while remediation progresses.

Active Intrusions, Campaigns, and Disruption

Affiliates linked to the Cl0p ransomware operation are actively exploiting critical flaws in PTC Windchill and FlexPLM to gain unauthenticated remote code execution, deploy web shells, and exfiltrate engineering data, per The Hacker News. The campaign chains a FlexPLM WSDL exposure with a Windchill login servlet vulnerability (CVE-2026-12569), which has been added to CISA’s Known Exploited Vulnerabilities catalog; defenders are urged to apply vendor mitigations and monitor for published indicators of compromise.

A cross-site request forgery vulnerability in ChatGPT’s Workspace Agent Builder could deploy a rogue agent within a target organization via a crafted link if a logged-in user had relevant access and connectors, according to The Hacker News. The issue, named AgentForger, allowed published agents to attach connectors, run on schedules, and act immediately in Preview Mode; OpenAI addressed the flaw on June 8, 2026, and plans to deprecate the visual Builder by November 30, 2026, in favor of the Agents SDK.

A large malvertising operation dubbed SourTrade uses ServiceWorker and SharedWorker APIs to assemble malware in browser memory from session-tailored components, complicating detection and producing unique hashes, as reported by BleepingComputer. The campaign targets retail traders and cryptocurrency users with convincing, localized lures and shifts delivery techniques to evade scanners.

U.S. parcel delivery firm OnTrac disclosed a corporate network breach after detecting activity in late March; accessed files referenced customer names, though the full scope remains redacted in notifications, according to BleepingComputer. The company engaged a third party, reports no observed fraud or data publication, and is offering affected customers 12 months of credit monitoring and identity protection.

Threat intelligence on the DevMan ransomware-as-a-service ecosystem describes a centralized portal for payload building, victim management, revenue tracking, and affiliate governance, with a cross-platform locker and an 80–20 revenue split, per The Hacker News. The disclosure also references allegations involving a security company employee’s communications; the company acknowledges policy issues and ongoing investigation while disputing claims that criminal conduct is proven.

Sector Trends and Internet Infrastructure

Ransomware pressure on higher education rose 8% in the first half of 2026 versus the preceding six months, driven largely by The Gentlemen’s campaigns, which surged 275% against the education sector, according to Infosecurity Magazine. The report tallied 104 sector attacks globally with 36 confirmed ransomware incidents, higher median demands, and significant data theft claims, underscoring persistent operational risk for universities.

Insurance-focused phishing has evolved from static credential theft to real-time account hijacking managed through an InsureOTP kit with live dashboards and OTP handling, enabling attackers to act during the victim’s session, per The Hacker News. Operators leveraged sponsored ads and disposable hosting to rotate lures quickly, emphasizing the need for monitoring paid advertising abuse, ephemeral infrastructure, and authentication anomalies.

An analysis of BGP ORIGIN attribute handling shows widespread manipulation that resets ORIGIN to IGP and materially influences route selection, often advantaging providers that rewrite the attribute, according to Cloudflare. The study argues for reducing ORIGIN’s role in path selection or standardizing its treatment to restore fairness and predictability in routing.

In a law-enforcement outcome tied to large-scale account compromise, an Illinois resident received a 76-month sentence for phishing thousands of Snapchat users and trafficking access and illicit content, highlighting the consequences for perpetrators and buyers alike, as reported by BleepingComputer. The case demonstrates the overlap of social engineering, impersonation of legitimate services, and encrypted messaging in organized sextortion schemes.

Critical Java RCEs, AWS Updates, OpenAI Outage, and Cl0p Activity · CISO Brief