A Hacker Claims 35 GB of Accenture Source Code. The Company discloses the data breach

2026-07-08T20:51:45Z284fad95bc8c6547cb392263c13180dc1b1b47855b934eaf601bde0a085c2d5a
CISA-KEVCVE-2026-11405CVE-2026-20896CVE-2026-48282active-exploitationadobe-coldfusionai-generated-malwareandroid-spywarearmored-likhocloud-securitycredentials-exposeddata-breachgiteajanuscapekvm-escapemalware-as-a-serviceredwingsource-code-theftsupply-chaintelegramtenda-backdoorvm-escape

What happened

Multiple high-impact incidents and active-exploitation vulnerabilities were reported: an alleged 35 GB Accenture data theft (source code, keys, Azure credentials) is being offered for sale; a critical Gitea Docker authentication-bypass (CVE-2026-20896, CVSS 9.8) is under active exploitation exposing repositories and secrets; Adobe ColdFusion RCE (CVE-2026-48282) is being exploited in the wild and was added to CISA's KEV catalog along with other web component flaws (Joomlack Page Builder, Langflow, JoomShaper SP Page Builder). CERT/CC disclosed an unpatched hidden backdoor in multiple Tenda Rou

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
284fad95bc8c6547cb392263c13180dc1b1b47855b934eaf601bde0a085c2d5a
Enrichment time
2026-07-08T20:51:45Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.