INTEL_REPORT
The Hacker News · published 7/8/2026, 5:33:12 AM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities are listed below - CVE-2026-48282 (CVSS score: 10.0) - A path traversal vulnerability in Adobe ColdFusion that could lead to arbitrary code execution in the context of the CISA Adds 4 Active…
https://thehackernews.com/2026/07/cisa-adds-4-actively-exploited-adobe.html
sha256:1c636b05df2bdae759f40061a023ffb52c422e3f43eb1db63c281a215db87e32
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.
Neighborhood from the first linked indicator.
| CVE-2026-48908 |
| Open → |
| cve | CVE-2026-56290 | Open → |
| cve | CVE-2026-55200 | Open → |
| cve | CVE-2026-48282 | Open → |
| cve | CVE-2025-3248 | Open → |
| ip | 103.207.14.220 | Open → |
| domain | asset.uploadcustomicon | Open → |
| domain | mysites.guru | Open → |
| domain | bhup.php | Open → |
| cve | CVE-2026-0770 | Open → |
| cve | CVE-2026-21445 | Open → |
| cve | CVE-2026-5027 | Open → |