Edizione del 07.07.2026
Teen Arrested for Bandai Channel Attack That Canceled 46,000 Subscriptions
Japanese police arrested a 15-year-old high school student from Saitama Prefecture for allegedly carrying out a sustained cyberattack against Bandai Channel, the anime streaming service operated by Bandai Namco Filmworks. Investigators said the suspect exploited a server-side flaw, analyzed network traffic, and used a custom malicious program reportedly developed with assistance from ChatGPT to gain unauthorized backend access, cancel 46,812 member registrations, and collect member data including email addresses and nicknames.
The attack disrupted Bandai Channel in November 2025 and forced the company to suspend the service for more than a month while it repaired systems, refunded subscribers, and implemented stronger security measures before restoring operations in December. Police said the teenager continued the activity after being blocked by repeatedly changing IP addresses, and later identified him through communication record analysis; the suspect reportedly admitted the allegations and said he acted out of technical curiosity rather than any grudge, while the company said it had not confirmed any public leak of personal data or secondary fraud.
The attack disrupted Bandai Channel in November 2025 and forced the company to suspend the service for more than a month while it repaired systems, refunded subscribers, and implemented stronger security measures before restoring operations in December. Police said the teenager continued the activity after being blocked by repeatedly changing IP addresses, and later identified him through communication record analysis; the suspect reportedly admitted the allegations and said he acted out of technical curiosity rather than any grudge, while the company said it had not confirmed any public leak of personal data or secondary fraud.
OpenSSH 10.4 fixes multiple flaws and adds optional post-quantum signatures
OpenSSH has released version 10.4 with eight security fixes affecting both client and server components, including
The release introduces experimental support for a composite post-quantum signature scheme combining ML-DSA 44 with Ed25519, available only when explicitly enabled and configured. OpenSSH also hardened protocol handling by disconnecting peers that send non-KEX messages during post-authentication rekeying and made seccomp sandbox initialization failures fatal on Linux. Maintainers warned that some changes may break existing deployments, including mixed-case output from
sftp, scp, sshd, ssh, ssh-agent, and cryptographic verification logic. The update addresses path traversal-style and file redirection issues that could let a malicious server write files outside intended locations, a pre-authentication denial-of-service condition in sshd, a client-side use-after-free bug, and gaps in authentication delay enforcement. The release also replaces the wildcard matcher with an NFA-based implementation to remove exponential worst-case behavior.The release introduces experimental support for a composite post-quantum signature scheme combining ML-DSA 44 with Ed25519, available only when explicitly enabled and configured. OpenSSH also hardened protocol handling by disconnecting peers that send non-KEX messages during post-authentication rekeying and made seccomp sandbox initialization failures fatal on Linux. Maintainers warned that some changes may break existing deployments, including mixed-case output from
sshd -G, stricter transport-layer behavior, and the new sandbox failure handling.France to End Certification of Non-Quantum-Safe Encryption Products
France's cybersecurity agency, ANSSI, said it will stop certifying security products that lack post-quantum or quantum-resistant encryption beginning in 2027. Because ANSSI certification is required for products used by French government agencies and critical infrastructure operators, the policy will effectively force a phaseout of older encryption technologies across those sectors.
ANSSI official Samih Souissi said the move is intended to accelerate France's transition to quantum-safe cryptography as concerns grow over future attacks against current encryption standards. The agency also signaled a broader market shift by urging businesses to prioritize purchasing quantum-safe products by 2030, extending pressure beyond the public sector and regulated operators.
ANSSI official Samih Souissi said the move is intended to accelerate France's transition to quantum-safe cryptography as concerns grow over future attacks against current encryption standards. The agency also signaled a broader market shift by urging businesses to prioritize purchasing quantum-safe products by 2030, extending pressure beyond the public sector and regulated operators.
Adobe ColdFusion RDS File-Write Flaw Faces Active Exploitation
Adobe ColdFusion is facing active exploitation of CVE-2026-48282, a maximum-severity flaw tied to RDS arbitrary file write that can be abused without privileges on unpatched servers. The Canadian Centre for Cyber Security warned that open-source reporting indicates in-the-wild attacks, while Adobe has issued security updates and urged administrators to patch immediately because of the high risk of compromise. Affected releases include ColdFusion 2025.9, 2023.20, and earlier, and internet scanning data from Shadowserver shows nearly 800 ColdFusion instances exposed online, though the number still vulnerable is unclear.
Separate reporting on CVE-2026-48276 highlights a closely related ColdFusion attack path in which an unauthenticated attacker uploads a malicious CFML payload through an unrestricted file-upload weakness, writes a web shell into a web-accessible location, and then triggers it with an HTTP request to gain code execution. That issue was described as critical with a CVSS v3.1 score reflecting full impact to confidentiality, integrity, and availability, and its documented root causes included poor filename and extension validation and storing uploads under the web root. Public detection content has also appeared for CVE-2026-48282, underscoring defender focus on identifying exposed and unpatched ColdFusion systems.
Separate reporting on CVE-2026-48276 highlights a closely related ColdFusion attack path in which an unauthenticated attacker uploads a malicious CFML payload through an unrestricted file-upload weakness, writes a web shell into a web-accessible location, and then triggers it with an HTTP request to gain code execution. That issue was described as critical with a CVSS v3.1 score reflecting full impact to confidentiality, integrity, and availability, and its documented root causes included poor filename and extension validation and storing uploads under the web root. Public detection content has also appeared for CVE-2026-48282, underscoring defender focus on identifying exposed and unpatched ColdFusion systems.
Multiple Open Source Projects Disclose High-Impact RCE, Injection, and Traversal Flaws
Several open source projects disclosed serious vulnerabilities affecting developer and infrastructure tooling, including remote code execution, SQL injection, server-side request forgery, prompt-driven query injection, and path traversal. Coder Workspace Agent patched
Additional disclosures affected AI and package-management components. Langroid fixed a prompt-injection-driven flaw in
GHSA-QRWJ-VH9X-GW5V, a cross-agent SSRF flaw that let an authenticated attacker controlling one workspace agent abuse HTTP 307/308 redirects to replay privileged requests to another agent, enabling cross-tenant file access, file writes, and command execution; fixes were released in versions v2.34.4, v2.33.10, v2.32.9, and v2.29.19 ESR. Coolify disclosed a critical authenticated command injection issue tied to unsafe handling of deployment fields such as dockerfilelocation, allowing RCE and secrets exposure through deployment logs, while OpenRemote fixed GHSA-cgfv-jrfp-2r7v, an authenticated SQL injection bug in datapoint crosstab export that could expose other tenants’ data, Keycloak configuration, and encrypted credentials.Additional disclosures affected AI and package-management components. Langroid fixed a prompt-injection-driven flaw in
Neo4jChatAgent that executed LLM-generated Cypher without validation, allowing unauthorized graph operations and possible OS-level impact when dangerous Neo4j procedures were enabled; the issue was resolved in version 0.65.5 with new safety controls that were also extended to ArangoChatAgent. pnpm also reported a path traversal weakness in configDependencies processing from pnpm-lock.yaml, where a malicious repository could force symlink creation outside nodemodules/.pnpm-config even with --ignore-scripts, creating a filesystem write primitive within or potentially beyond the project directory.Alibaba Bans Claude Code Over Alleged Hidden China-Detection Logic
Alibaba has ordered employees to stop using Anthropic’s Claude Code for work and reportedly directed them to remove other Anthropic products, classifying the software as high risk over alleged security vulnerabilities and backdoor concerns. Internal guidance said the ban would take effect on July 10, with staff told to switch to Alibaba’s internal Qoder platform instead. The move followed claims that Claude Code contained concealed environment-detection logic that checked proxy settings and system time zones against lists associated with Chinese companies including Alibaba, Baidu, ByteDance, Ant Group, and Moonshot AI.
The allegations originated from a June 30 Reddit reverse-engineering post that said the logic had been present since Claude Code version
The allegations originated from a June 30 Reddit reverse-engineering post that said the logic had been present since Claude Code version
2.1.91 and encoded detection results through subtle changes to internal system prompts rather than explicit telemetry, making monitoring difficult. Anthropic had not publicly confirmed the issue in full, but an engineer reportedly said the mechanism was an experiment aimed at preventing reseller abuse, unauthorized access, and model distillation, and that the code was removed on July 1. The dispute comes amid broader tensions between the companies after Anthropic accused operators linked to Alibaba’s Qwen lab of using fraudulent accounts in a large-scale model distillation effort.Google and FBI Disrupt NetNut Residential Proxy Network Used by Malware Operators
Google said it disrupted NetNut—also known as Popa—a large residential proxy network that investigators linked to malware delivery, command-and-control activity, and efforts by cybercriminal and espionage actors to mask their origin IP addresses while accessing victim environments. Working with the FBI, Lumen, and other partners, Google disabled accounts and services allegedly used by the operation, shared technical intelligence on NetNut SDKs and backend infrastructure, and used Google Play Protect against apps that incorporated the NetNut SDK. Google estimated the network relied on at least 2 million devices and said 316 threat clusters used suspected NetNut exit nodes during a single week in June.
The coordinated action also included FBI seizures of NetNut-associated domains, a move that parent company Alarum Technologies said disrupted part of the service and could materially affect operations and financial results if the outage persists. Google said the operation significantly degraded the network and cut its available device pool by millions, describing the move as part of a broader campaign against malicious proxy providers after an earlier action against IPIDEA. The disruption is being viewed as a blow not only to a botnet-linked service but also to the broader supply of residential proxy infrastructure relied on by multiple threat actors.
The coordinated action also included FBI seizures of NetNut-associated domains, a move that parent company Alarum Technologies said disrupted part of the service and could materially affect operations and financial results if the outage persists. Google said the operation significantly degraded the network and cut its available device pool by millions, describing the move as part of a broader campaign against malicious proxy providers after an earlier action against IPIDEA. The disruption is being viewed as a blow not only to a botnet-linked service but also to the broader supply of residential proxy infrastructure relied on by multiple threat actors.