Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories

Android Spyware, PLC Attacks, AI Image Prompt Injection + 12 More Stories

Ravie LakshmananJul 23, 2026Hacking News / Cybersecurity News

Most of this week’s trouble came dressed as something useful.

A package stole data. A fake extension opened remote access. A safety app became spyware. An image gave hidden orders to an AI agent. Other threats hid in open systems, weak code, and normal network traffic.

The threats change every week. Subscribe, and we’ll alert you when each new ThreatsDay Bulletin is out.

The danger was easy to miss because it looked ordinary. Here is the full list:

  1. Support uploads face cutoff

    GitHub has announced an upcoming security change that may affect GitHub Enterprise Server (GHES) support bundle uploads. “Beginning August 18, 2026, GitHub will start rejecting command-line support bundle uploads from older GHES appliances that have not been updated with the required security patches,” GitHub said. “To avoid any disruption when submitting support bundles with ghe-support-bundle, ghe-cluster-support-bundle, or ghe-support-upload commands, please update your GHES instance to the latest patch release available for your current version line.” At minimum, the required patch versions are: 3.21.3, 3.20.5, 3.19.9, 3.18.12, and 3.17.18.

The common thread was not advanced hacking. It was borrowed trust. Each threat used something people already accept: an install, a permission, a familiar name, or a normal system feature.

That changes the job. The question is no longer only “Is this safe?” It is also “What can this do if it is not?” The smaller the action looks, the tighter its limits should be.

Source link

Comments

No comments yet. Why don’t you start the discussion?

Leave a Reply

Your email address will not be published. Required fields are marked *