💥 BREACHES & INCIDENTS
- Data Breach Hits Australian Energy Giant Origin, 2 Million Customer Records Stolen — SecurityWeek
Origin Energy confirmed a data breach exposing information of 2 million customers.- Applies to Origin Energy, one of Australia's largest electricity and gas retailers
- Hacker accessed names, addresses, birth dates, phone numbers, account info, partial payment and bank details
- Attack discovered July 22, 2026; investigation ongoing with external cybersecurity experts involved
- Hacker threatens to leak stolen data unless a ransom is paid
- No reported impact on production or critical operations
🕵️ RESEARCH & DEEP DIVES
- CVE-2026-46331 enables escape from Anthropic Claude Cowork local VM sandbox on macOS — accomplish.ai
An untrusted Claude Cowork session can escape its local VM sandbox to access the host macOS filesystem.- Applies to Anthropic Claude Cowork running locally on macOS with VM sandboxing
- Vulnerability CVE-2026-46331 in Linux kernel module act_pedit allows privilege escalation inside VM
- Attack chain exploits unprivileged user namespaces and autoloaded kernel modules to gain guest root
- Guest root accesses host filesystem mounted read-write at /mnt/.virtiofs-root, escaping sandbox
- Escape allows reading and writing any host files accessible by the user, including SSH keys and credentials
🔓 CVEs & KEV
- CVE-2026-16870 — CVSS 8.8 — Multiple Security Vulnerabilities in Snowflake libsnowflakeclient
- CVE-2026-66140 — CVSS 8.4 — Exim before 4.99.5 allows directory traversal to access files outside of the ...
- CVE-2026-66141 — CVSS 7.4 — Exim before 4.99.5 allows .forward privilege escalation because force_command...
- CVE-2026-66138 — CVSS 7.2 — In OpenStack Ironic Python Agent through 11.6.0, a project-scoped user with t...
- CVE-2026-54422 — CVSS 5.5 — In OpenStack Ironic Python Agent through 11.5.0, a malicious bootc container,...
- CVE-2026-66139 — CVSS 4.8 — OpenStack Zaqar through 22.0.0 allows authentication bypass via an EXTRA-SPEC...