View Ridge Security
Back to Cyber HoseActive Exploits & Incidents

Nutex Health says attackers stole data in cyberattack

πŸ’₯ BREACHES & INCIDENTS

πŸ•΅οΈ RESEARCH & DEEP DIVES

πŸ“‹ ADVISORIES

  • Marimo Flaw Let Crafted Notebooks Execute MCP Commands in Edit Mode
    Marimo fixed a flaw that let crafted notebooks execute attacker-supplied MCP commands.

    • Marimo notebook users running versions before 0.23.15 were affected.
    • The code-injection flaw is tracked as CVE-2026-75149 and carries CVSS 8.7 under v4.
    • A crafted notebook can supply an attacker-controlled MCP server command through its configuration.
    • Opening the notebook in edit mode launches the command as a local subprocess before cells execute.
    • The attack requires victim interaction but does not require attacker authentication.
      πŸ“„ Source: osv.dev Β· πŸ“Ž Coverage: thehackernews.com Β· πŸ‘ via The Hacker News
  • Interpol operation arrests 58 in Black Axe-linked financial crime crackdown
    Interpol arrested 58 people in an operation targeting Black Axe-linked financial networks.

    • Operation Jackal IV targeted Black Axe and other Africa-based criminal groups across four continents.
    • Authorities identified 263 suspects and arrested 58 people, including 39 in South Africa.
    • Networks conducted business email compromise, romance and investment scams, money laundering, vehicle trafficking and sextortion.
    • Criminals used call centers, electronic wallets, shell companies, remittance services and social media coercion.
    • An Argentina-based Crime-as-a-Service network supplied website domains and laundering support to West African groups; investigators linked 196 people to it.
      πŸ“Ž Coverage: cyberscoop.com Β· πŸ‘ via CyberScoop
  • cisa-red-team-soc-assessments β€” CISA Advisories

  • πŸ“„ Source for Fake Microsoft SysScan Sites Push Antivirus Removal and Remote Access Scams β€” malwarebytes.com

  • πŸ“„ Source for Microsoft’s August 2026 updates fix 421 vulnerabilities, including one exploited flaw β€” msrc.microsoft.com

  • πŸ“„ Source for WhatsApp Adds Multiple Passkeys and Stronger Two-Step Verification β€” blog.whatsapp.com

πŸ”“ CVEs & KEV

  • CVE-2026-77998 β€” CVSS 10.0 β€” Joomla Extension - miniorange.com - Unauthenticated Authentication Bypass via...

  • CVE-2026-57863 β€” CVSS 8.7 β€” Crater Invoice 6.0.6 Path Traversal RCE via update/unzip endpointCrater Invoi...

  • CVE-2026-79655 β€” CVSS 7.8 β€” Sos: sos: path traversal in sos clean tar extraction via unvalidated symlink/...

  • CVE-2026-55525 β€” CVSS 7.5 β€” PraisonAI: SSRF via redirect-following in praisonaiagents web_crawlPraisonAI ...

  • CVE-2026-63076 β€” CVSS 7.5 β€” Invalid Pointer Dereference in CMP Server via Crafted protectionAlgIssue summ...

  • CVE-2026-63075 β€” CVSS 7.5 β€” QUIC ACK-only Packet Retention Can Cause Memory ExhaustionIssue summary: When...

  • CVE-2026-63072 β€” CVSS 7.5 β€” Heap Buffer Overflow in CMS Key UnwrappingIssue summary: OpenSSL CMS decrypti...

  • CVE-2026-54874 β€” CVSS 7.5 β€” Excessive Memory Use Buffering DTLS Records for a Future EpochIssue summary: ...

  • CVE-2026-18798 β€” CVSS 7.5 β€” QUIC Server May Trigger Double Free When Processing INITIAL PacketIssue summa...

  • CVE-2026-14457 β€” CVSS 7.5 β€” RPK Server Signature Algorithm Selection Can Dereference a Missing Certificat...

  • CVE-2026-55529 β€” CVSS 6.9 β€” PraisonAI: Origin validation bypass in MCP HTTP Stream transport allows brows...

Need help assessing your exposure?

Start with the free Posture Self-Check to see where you stand against the current threat landscape.

Free Posture Self-Check