Hacker Conversations: Jesse McGraw (GhostExodus), From Blackhat Hacker to Redemption

2026-07-13T19:24:34Z83a82c390d9cd69d8220297e80c71586b93056e32ce9083de223934ad726516a
api-abusebalbooa-formscenters-laboratoryclient-secretdata-breachespionageextortionghost-accountsgithubicagendaincident-responsejoomlamass-reconoauthrabbitmqransomwarerceremote-code-executionrussiasanctionssecurity-updatesharefilestorage-zone-controllerworldleakszimbra

What happened

Multiple high-impact security incidents and vulnerabilities reported: a RabbitMQ flaw allows unauthenticated attackers to obtain the broker's OAuth client secret and potentially take control of brokers; Zimbra patched a critical remote code execution vulnerability where malicious code in crafted emails executes when opened; Balbooa Forms and iCagenda Joomla extension flaws are being actively exploited for RCE. Progress advised customers to manually shut down ShareFile Storage Zone Controllers amid a credible security threat. Separately, the WorldLeaks extortion group claims a 720 GB data theft

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
83a82c390d9cd69d8220297e80c71586b93056e32ce9083de223934ad726516a
Enrichment time
2026-07-13T19:24:34Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Hacker Conversations: Jesse McGraw (GhostExodus), From Blackhat Hacker to Redemption · Baitaphish