Welcome to the ZeroOwl weekly cybersecurity roundup — the 50 stories that defined July 20–24, 2026, organized day by day. This week saw Cl0p exploit a PTC Windchill zero-day for a global data-theft campaign, Russian LAUNDRY BEAR breach Zimbra with an email-zero-day, and Paidwork expose 23 million users in a security incident. No markdown.
No instructions, notes, or comments.
Critical Zimbra SNMP Vulnerability Allows Malicious Command Execution Apple Fixes Hide My Email Bug Exposing Real Email Addresses Meta IDOR Flaws Let Attackers Access Customer Support Cases Microsoft Device Code Flow Abuse Enables Skipping MFA and Hacking Accounts ASUS Router Flaw Facilitates MITM Attacks Executing Arbitrary Commands 16 Attackers Linked to Iran Exploit Trusted Access for Espionage and Disruption Iran-linked hackers gain access through trusted routes, exposing operational technology systems.
Friday, July 24, 2026 (20 stories) Hackers Employ Fake Claude Desktop Ads on Bing to Deliver SectopRAT to 29 Organizations New WARDEN Stealer Targets 330+ Apps and 200 Crypto Extensions on Windows Golden Chickens TAG-195 Launches TinyEgg and ChonkyChicken Modular Malware Venom Spider Debuts the TinyEgg and ChonkyChicken Modular Malware Families SharedRoot Sandbox Escape by Claude Cowork Exposes Mac Files and Cloud Credentials Vercel Fixes Nine Next.js Flaws, Including Two Critical Auth-Bypass and SSRF Bugs - A path-traversal vulnerability exists in IntelliJ IDEA, allowing for code execution on a crafted open.












