OpenAI's Daybreak combines GPT-5.5 and Codex Security with trusted workflows to help defenders find and fix vulnerabilities faster. It's a direct play for the cybersecurity market.
cybersecurityFriday, July 17
OpenAI and Microsoft duel on AI security tools
Two big AI players launched security products today, signaling the defensive AI arms race is accelerating. Meanwhile, a critical WordPress flaw demands immediate patching.
AI security tools
OpenAI and Microsoft both shipped AI-powered security tools today, taking different approaches to the same problem.
Microsoft's Project Perception reportedly uses multiple models to identify enterprise vulnerabilities at lower cost, positioning it as a competitor to Anthropic's Mythos.
Capital One open-sourced VulnHunter, an AI code security tool with agentic reasoning, as a defensive response to AI-powered attacks.
Critical WordPress flaw
A severe unauthenticated RCE vulnerability in WordPress core hit the headlines, with patches already out.
The wp2shell vulnerability (CVE-2026-63030) allows unauthenticated remote code execution on WordPress core, affecting all 6.9 and 7.0 sites until the emergency patch.

Rapid7's analysis confirms the CVSS score of 7.5, but notes the GitHub advisory rates it as Critical. The flaw is especially dangerous because no plugins are required.
Also today15
European Password Manager Shares Origins and Updates with State-Certified Russian Firmwww.occrp.org
FBI arrests man accused of using Steam games to drain victims’ crypto walletstechcrunch.com
Unlocking The AI Stack: From LLMs To Agentic Systems – A Technical Deep Dive + Video - Undercode Testingundercodetesting.com
My-Hunting-Methodology-/My Bug Hunting Methodology.md at main · wadgamaraldeen/My-Hunting-Methodology-github.com
Agentic AI Security: Defending Against Prompt Injection and Tool Misusemachinelearningmastery.com
Why Execution Will Decide the Future of Messaging Trustwww.thefastmode.com
Honeypot Live Streamhoneypotlive.cc
This is a live telemetry dashboard from an SSH honeypot used for security research, threat intelligence, and education. It displays observed data from inbound connections including source IPs, usernames, passwords, commands, and client fingerprints. The content notes that source
CISA Adds FortiSandbox Bugs to KEV Catalogwww.databreachtoday.com
Agencies Have Until Sunday to Patch Two Critical Command Injection Flaws CISA added two critical FortiSandbox command injection vulnerabilities to its Known Exploited Vulnerabilities catalog after evidence of active attacks. Experts warn that unauthenticated remote code execution
AI Takes On the Cyclospora Outbreakwww.databreachtoday.com
Labs Use AI to Speed Testing as Experts Explore Broader Public Health Potential It's been the most explosive U.S. public health crisis so far this summer: An outbreak of extreme intestinal illness caused by Cyclospora is sickening thousands of people across dozens of states. Expe
What Does the Latest Development from China's Moonshot AI Mean for Competitors?www.chinatechnews.com
Chinese artificial intelligence startup Moonshot AI has officially released its next-generation flagship model, the Kimi K3, an elite 2.8-trillion-parameter system... What Does the Latest Development from China's Moonshot AI Mean for Competitors? comes via ChinaTechNews.com .
Abbott investigates two separate cyber incidents, says no operations affectedkfgo.com
By Padmanabhan Ananthan July 17 (Reuters) - Abbott Laboratories is investigating two cyber incidents involving unauthorized access to some internal sy...
To Ben Lamm, extinction is just an engineering problemwww.nextgov.com
Colossal Biosciences CEO Ben Lamm explains how ancient DNA, AI and CRISPR are helping scientists pursue de-extinction.
AI Tool Revolutionizes Automated Penetration Testingcyberwebspider.com
Discover how PentestCode, a new AI tool, automates penetration testing with 18 specialized tools. Learn more now.
Critical WordPress Flaw Allows Code Executioncyberwebspider.com
A significant WordPress vulnerability allows code execution. Learn how to protect your site and update now.
DoD plans CMMC listening sessions as questions swirl around reviewfederalnewsnetwork.com
The CMMC review could lead to "everything from an overhaul, to small tweaks here and there,” DoD CIO Kirsten Davies said after the review team's first meeting.
More roundups today
wellness roundupvolufiline, Blue Zones, and burnout
sustainability roundupAnimation gets its own green certification
open source roundupOpen source AI hits a capability milestone
real estate roundupHousing market pain deepens across the U.S.
memoir roundupMemoir as lens on body, music, and loss
literature roundup