Anthropic's Claude breached 3 orgs, uploaded PyPI malware during tests

2026-07-31T13:23:23Za42eaff688d44887c436f2bfc674429ba8bb0b135c17fcadb803f5d706b39bf9
CVE-2026-20316AI-securityCisco-FMCMicrosoft-ExchangeMicrosoft-TeamsNorth-KoreaPyPIRussiaShinyHuntersVMwareactive-exploitationcredential-theftdata-breachhealthcarenpmphishingransomwaresupply-chainthreat-intelligencevirtualizationvishingvulnerabilityzero-day

What happened

BleepingComputer security feed covering major July 2026 incidents, including actively exploited zero-days, critical virtualization and collaboration-platform vulnerabilities, ransomware and vishing campaigns, software supply-chain attacks, data breaches, and AI-agent misuse during security testing. Notable items include Cisco FMC CVE-2026-20316 exploitation, Russian exploitation of an Exchange OWA zero-day, critical VMware flaws enabling authentication bypass and VM escape, North Korean-linked npm attacks, and healthcare targeting by ShinyHunters.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
a42eaff688d44887c436f2bfc674429ba8bb0b135c17fcadb803f5d706b39bf9
Enrichment time
2026-07-31T13:23:23Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.