A curated dispatch from GajShield

The GajShield Gazette

Lead story
Also today
In brief

Ernst & Young discloses data breach after support system hack

The Ernst & Young data breach highlights how third-party support systems can become a serious source of sensitive data exposure.EY disclose…

Jul 18, 2026

OpenSSL HollowByte Flaw Could Freeze Server Memory with 11-Byte TLS Requests

The HollowByte OpenSSL flaw highlights how even small protocol-handling weaknesses can create serious availability risks for internet-facin…

Jul 18, 2026

Abbott Laboratories probes two cyber incidents amid extortion claims

The Abbott Laboratories cyber incident shows why healthcare and medical technology organizations remain high-value targets for attackers an…

Jul 18, 2026

New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code

The WP2Shell vulnerability in WordPress core is a serious reminder that website security risk does not come only from plugins and themes.Fo…

Jul 18, 2026

New Windows LegacyHive zero-day gives hackers admin privileges

The ACR Stealer campaign shows how ClickFix-style social engineering is becoming a reliable delivery method for credential theft and cloud-…

Jul 17, 2026

ACR Stealer Uses ClickFix Lures to Steal Browser Tokens and Microsoft 365 Files

The ACR Stealer campaign shows how ClickFix-style social engineering is becoming a reliable delivery method for credential theft and cloud-…

Jul 17, 2026

New TELEPUZ Malware Spreads via ClickFix to Steal Data and Run Commands

The TELEPUZ malware campaign shows how ClickFix-style social engineering is becoming one of the most effective ways to turn normal users in…

Jul 17, 2026

Coca-Cola says Fairlife ransomware attack halts US dairy production

The ransomware attack affecting Coca-Cola’s fairlife subsidiary highlights how cyber incidents can move beyond data theft and directly disr…

Jul 17, 2026

New ClickLock macOS malware traps users into revealing login password

The ClickLock macOS malware shows how attackers are increasingly using social engineering and system manipulation instead of relying only o…

Jul 17, 2026

CISA urges immediate action on actively exploited Fortinet flaws

CISA’s urgent warning on exploited Fortinet FortiSandbox vulnerabilities highlights a serious risk in systems that are supposed to help det…

Jul 17, 2026

n8n Token Exchange Flaw Could Let Attackers Log In as Users From Another Issuer

The n8n token-exchange vulnerability highlights a subtle but serious identity-security risk in enterprise workflow automation platforms.n8n…

Jul 16, 2026