Security Affairs newsletter Round 585 by Pierluigi Paganini – INTERNATIONAL EDITION

2026-07-12T08:51:41Z23e40b12c3b9e8c20a88431fb11805cd0e90c02361d2299a900affec8e1b9c92
Balbooa FormsBinarlyBlackCatCISAGigaWiperGitHubGo malwareGodDamnINTERPOLKnown Exploited VulnerabilitiesPoisonXQilinU-BootZimbracyber-crime statisticsiCagendalaw enforcementransomwaresecure bootsigned driverstored XSSsupply chain

What happened

Security Affairs roundup: multiple high-impact disclosures and law-enforcement actions. CISA added iCagenda and Balbooa Forms vulnerabilities to its Known Exploited Vulnerabilities catalog. Binarly disclosed six U-Boot vulnerabilities — including two that enable code execution during boot image verification — affecting many embedded devices and undermining secure boot. Zimbra released 10.1.19 to fix a critical stored XSS in the Classic Web Client. Ransomnews reports 9,291 confirmed ransomware incidents since 2018 (Qilin leading in 2026). Researchers uncovered 222 GitHub repositories pushing a恶

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
23e40b12c3b9e8c20a88431fb11805cd0e90c02361d2299a900affec8e1b9c92
Enrichment time
2026-07-12T08:51:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.