Australia warns of global campaign targeting vulnerable CMS platforms
2026-07-12T13:23:54Z•9721bc4a6d40ad0f6ee0b0d3a1f5314b519c49d702375765c8f38a51e49e2490
active-exploitationai-securityai-vulnerability-discoveryauth-bypasscms-exploitationcryptocurrency-theftdata-breachdocker-imagefirmware-vulnerabilitiesghostcommitgiteahelix-groupinjective-sdkmfa-abusenpm-supply-chainodidoprompt-injectionransomwareryuksharefilestorage-zone-controlleru-bootvishingxsszimbra
What happened
BleepingComputer roundup: The Australian Cyber Security Centre warns of a global campaign exploiting vulnerable CMS platforms and plugins. Researchers demonstrated a new 'Ghostcommit' attack that hides prompt-injection payloads inside PNGs to fool AI code reviewers and steal repository secrets. Six new U-Boot vulnerabilities could enable stealthy, persistent firmware compromise. Operators are actively exploiting a critical authentication-bypass in the official Gitea Docker image allowing impersonation of any user, and Progress urged ShareFile Storage Zone Controller customers to immediately‑sh
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 9721bc4a6d40ad0f6ee0b0d3a1f5314b519c49d702375765c8f38a51e49e2490
- Enrichment time
- 2026-07-12T13:23:54Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.