Official intelligence summary

HAIJA INTEL REPORT

Generated 20/07/2026, 09:29. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources5
Tweets / X10
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

10 items
@h4x0r_dz avatar
h4x0r_dz @h4x0r_dz
18 Jul, 01:25 · core
0.52
RCE in WordPress Core WordPress 7.0.2 is now available. This security release addresses 1 critical and 1 high severity issue, including a REST API vulnerability that could lead to remote code execution. Update your sites now. https:// wp.me/pZhYe-5vp
@h4x0r_dz avatar
h4x0r_dz @h4x0r_dz
18 Jul, 01:02 · core
0.52
I reported a pre auth RCE in Wordpress - it can be exploited with no preconditions, patch your instances!
tweet media
@SentinelOne avatar
SentinelOne @SentinelOne
17 Jul, 23:53 · secondary
0.45
Law enforcement sanctioned Russian cybercriminals and bulletproof hosting providers, attackers trojanized popular remote user apps, and hundreds of fake GitHub repositories distributed infostealing malware. This is the Good, Bad & Ugly. GOOD - The EU and UK jointly
tweet mediatweet media
@_xpn_ avatar
_xpn_ @_xpn_
19 Jul, 12:54 · core
0.34
We have infosec buddy now Finally there is Kimi 3. I'm 7 levels deep, clarifying which evasion features I want to be added. And while it blocks before putting together a full sample, it helpfully tells me how to evade its own guardrails and build "Operation Long Night" This is go
tweet mediatweet media
@_xpn_ avatar
_xpn_ @_xpn_
19 Jul, 21:50 · core
0.28
Adam Chester reposted Caleb Gross @noperator · 11h 1 3 748
tweet mediatweet media
@Jhaddix avatar
Jhaddix @Jhaddix
17 Jul, 20:59 · core
0.28
Another preview of something we're cooking up... The Arcanum AI Security Stack Atlas!
tweet mediatweet media
@ShitSecure avatar
ShitSecure @ShitSecure
17 Jul, 21:21 · curator
0.27
Searchlight Cyber's research team has found a pre-authentication RCE in WordPress Core. affected versions: 6.9.0 - 6.9.4, 7.0.0 - 7.0.1 No preconditions, exploitable by an anonymous user on a stock install with no plugins. CVE-2026-63030/CVE-2026-60137 https:// wp2shell.com
tweet mediatweet media
@brutelogic avatar
brutelogic @brutelogic
17 Jul, 04:11 · secondary
0.25
Even CISA, the agency responsible for US cybersecurity, fell for it. A contractor left AWS GovCloud admin keys in a public GitHub repo named "importantAWStokens" for six months. Nine automated alerts ignored. Keys stayed valid 48 hours after the repo was taken down. hack2earn AWS
@vxunderground avatar
vxunderground @vxunderground
19 Jul, 21:28 · secondary
0.24
Have you ever accidentally lost 50,000 malwares? I downloaded 50,000 malwares and I don't know where it went. No, I'm serious, I actually have no idea where the malware went. I'm confused and scared. Have you seen my malware?
tweet mediatweet media
@_JohnHammond avatar
_JohnHammond @_JohnHammond
19 Jul, 06:14 · secondary
0.24
what if your minecraft mod intentionally finds malware Downloading Minecraft mods and accidentally infecting the family computer with malware is a male cannon event

Regular sources

5 items
1.00exploit · 19 Jul, 00:57seclists.org

User prompt injection (CSRF) of the llama-server's Web UI (llama.cpp)

Posted by Gabriel Corona on Jul 18 Hi, The Web UI of llama-server accepts a query parameter (?q=...) as an initial user message in a new conversation and auto-submits th…

1.00general · 18 Jul, 21:32bleepingcomputer.comRCE

Update now: 7-Zip fixes RCE flaw exploitable with malicious archives

7-Zip version 26.02 was released on June 25 to fix a remote code execution vulnerability that could allow attackers to execute malicious code by convincing users to open…

1.00general · 18 Jul, 19:22bleepingcomputer.comRCE

WordPress Core "wp2shell" RCE flaws get public exploits, patch now

Public exploits have been released for the critical "wp2shell" remote code execution vulnerabilities affecting WordPress Core, making it imperative that administrators p…

1.00exploit · 17 Jul, 22:02seclists.orgRCE

7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability

Posted by Alan Coopersmith on Jul 17 https://www.zerodayinitiative.com/advisories/ZDI-26-444/ advises:

0.89exploit · 18 Jul, 18:10seclists.org

OpenSSL "HollowByte" DoS via attacker-controlled memory allocation size in glibc

Posted by Jan Schaumann on Jul 18 Hi, https://sec.okta.com/articles/2026/06/openssl-hollowbtye-a-dos-hiding-in-11-bytes/ OpenSSL fixed it here:...