View Ridge Security
Back to Cyber HoseVulnerabilities & CVEs

GhostLock: 15-year-old Linux flaw enables root on most distros

🚨 ACTIVE EXPLOITS & INCIDENTS

  • CISA orders feds to prioritize patching Langflow auth bypass flawBleepingComputer CISA has mandated federal agencies to urgently patch an actively exploited authentication bypass vulnerability in Langflow, a visual AI agent framework. Exploitation enables unauthorized access, increasing risk in AI deployment environments.
  • CISA orders feds to patch max severity ColdFusion flaw by FridayBleepingComputer A critical, actively exploited Adobe ColdFusion vulnerability (CVE-2026-48282, CVSS 10.0) allows arbitrary code execution via path traversal. Federal agencies must patch immediately to prevent remote compromise of web app infrastructure.
  • China-Linked UAT-7810 Expands ORB Network With New LONGLEASH MalwareThe Hacker News Chinese APT UAT-7810 is actively evolving its ORB network malware, LONGLEASH, targeting internet-facing networking devices to maintain persistence and expand their relay infrastructure. Cisco Talos links this to ongoing espionage campaigns since mid-2025.

🔓 VULNERABILITIES & CVEs

📋 VENDOR BULLETINS & ADVISORIES

  • Risky Bulletin: DHS IG investigates forced CISA reassignmentsRisky Business News DHS Inspector General is investigating forced personnel reassignments within CISA, raising concerns about agency stability amid critical vulnerability response efforts. The bulletin also notes new vulnerabilities impacting Hoymiles solar panel systems, which could be disabled remotely.

🕵️ THREAT RESEARCH & DEEP DIVES

  • My Stack Simulator, (Wed, Jul 8th)SANS ISC A technical primer on stack memory management illustrating how function calls and returns are handled via last-in-first-out (LIFO) stacks. Useful for understanding stack-based exploits and mitigations in memory corruption attacks.

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check