Daily Cyber Threat Intel Brief — 2026-08-04
Generated: 2026-08-04 08:00:53 UTC
Executive summary
Priority technology watch items
- ### New Templates Added: `122` | CVEs Added: `49` | First-time contributions: `23` ### 🔥 Release Highlights 🔥 - [CVE-2026-63030] WordPress Core 6.9-7.0.1 - Pre-Auth Batch-Route Confusion (@slcyber, @mielverkerken, @pdteam, @flx-0x00) [critical] (kev) (vKEV) 🔥…
- Public RansomLook extortion-site listing claim. Group: dragonforce. Claimed victim/listing: Baicizhan. Description excerpt: Baicizhan is a language learning platform specializing in English instruction. It offers a wide range of tools and resources designed…
- Public RansomLook extortion-site listing claim. Group: dragonforce. Claimed victim/listing: TUI China. Description excerpt: An affiliate of TUI Group, the world's number one leisure tourism business, TUI China was established in late 2003 as the first joint…
- Overview On July 29, 2026, the Ruby on Rails project published a security advisory for CVE-2026-66066 , an arbitrary file read in Active Storage applications that use the Vips image processor with untrusted uploads. The affected Active Storage ranges are =…
Newly exploited vulnerabilities / CVE watch
Ransomware and extortion trend notes
Malware / infrastructure / abuse feed highlights
IOC highlights
| Type | Value | Context | Source |
| cve | `CVE-2026-44825` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-46442` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-48908` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-56290` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-56291` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-58455` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-60004` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-63030` | GitHub release: Nuclei Templates v10.4.7 - Release Notes | ProjectDiscovery Nuclei Templates Releases |
| cve | `CVE-2026-66066` | Rapid7 Analysis: KindaRails2Shell (CVE-2026-66066) | Rapid7 Blog |
| ipv4 | `7.2.3.2` | Rapid7 Analysis: KindaRails2Shell (CVE-2026-66066) | Rapid7 Blog |
| ipv4 | `8.0.5.1` | Rapid7 Analysis: KindaRails2Shell (CVE-2026-66066) | Rapid7 Blog |
| ipv4 | `8.1.3.1` | Rapid7 Analysis: KindaRails2Shell (CVE-2026-66066) | Rapid7 Blog |
| cve | `CVE-2026-18577` | N-able warns of N-central auth bypass flaw exploited in attacks | BleepingComputer Ransomware News |
| hash | `0dcc9c9da58815369da2f6a715a7654d` | URLhaus: malware_download URL observed (offline) | URLhaus Recent URLs |
| ipv4 | `107.172.235.200` | URLhaus: malware_download URL observed (offline) | URLhaus Recent URLs |
| cve | `CVE-2026-50416` | CVE-2026-50416 Win32k Information Disclosure Vulnerability | Microsoft Security Response Center RSS |
| cve | `CVE-2026-50493` | CVE-2026-50493 DirectX Graphics Kernel Elevation of Privilege Vulnerability | Microsoft Security Response Center RSS |
| ipv4 | `50.16.16.211` | Feodo Tracker: 1 recommended botnet C2 IPs listed | Feodo Tracker Recommended Blocklist |
| hash | `f6f65115ec051af06829450763071a69fb9c21c0` | RansomLook: PCL Holding claimed by ransomhouse | RansomLook Recent Listings |
| hash | `06f7d45e0c97a87e0473d0f5a3eab706044f22b1` | RansomLook: (DISCLOSED)Fidelity Services Group claimed by ransomhouse | RansomLook Recent Listings |