# SANS Stormcast Tuesday, July 21st, 2026: More Wordpress Details; HOLLOWGRAPH MSFT Calendar Abuse; Gitea Vulnerability (#) Page: https://stenobird.com/podcast/sans-internet-storm-center-s-daily-network-security-news-podcast-7764184/sans-stormcast-tuesday-july-21st-2026-more-wordpress-details-hollowgraph-msft-calendar-abuse-gitea-vulnerability Text version: https://stenobird.com/podcast/sans-internet-storm-center-s-daily-network-security-news-podcast-7764184/sans-stormcast-tuesday-july-21st-2026-more-wordpress-details-hollowgraph-msft-calendar-abuse-gitea-vulnerability.md Podcast: [SANS Internet Storm Center's Daily Network Security News Podcast](https://stenobird.com/podcast/sans-internet-storm-center-s-daily-network-security-news-podcast-7764184) Published: 2026-07-20T22:05:00+00:00 Episode link: https://mp3.sans.edu/sans-stormcast-tuesday-july-21st-2026-more-wordpress-details-hollowgraph-msft-calendar-abuse-gitea-vulnerability Audio file: https://traffic.libsyn.com/secure/securitypodcast/10016.mp3?dest-id=448030 Processing state: not_requested JSON: https://stenobird.com/v1/public/podcasts/sans-internet-storm-center-s-daily-network-security-news-podcast-7764184/episodes/sans-stormcast-tuesday-july-21st-2026-more-wordpress-details-hollowgraph-msft-calendar-abuse-gitea-vulnerability Duration seconds: 516 ## Resource SANS Stormcast Tuesday, July 21st, 2026: More Wordpress Details; HOLLOWGRAPH MSFT Calendar Abuse; Gitea Vulnerability WordPress Exploitation Underway (CVE-2026-63030) https://isc.sans.edu/diary/WordPress%20Exploitation%20Underway%20%28CVE-2026-63030%29/33168 HOLLOWGRAPH: Turning Microsoft 365 Calendars into Covert Command-and-Control Channels https://www.group-ib.com/blog/hollowgraph-microsoft-365/ Gitea Vulnerablity CVE-2026-58443 https://github.com/go-gitea/gitea/security/advisories/GHSA-xxjv-752h-3vp2 My Upcoming Classes https://www.sans.org/profiles/dr-johannes-ullrich keywords: calendar; microsoft; o365; gitea; wordpress; exploitation; ## Actions - request_transcript: `POST https://stenobird.com/v1/public/podcasts/sans-internet-storm-center-s-daily-network-security-news-podcast-7764184/episodes/sans-stormcast-tuesday-july-21st-2026-more-wordpress-details-hollowgraph-msft-calendar-abuse-gitea-vulnerability/transcription-requests` — Idempotently request low-priority transcript generation for this episode. - read_markdown: `GET https://stenobird.com/podcast/sans-internet-storm-center-s-daily-network-security-news-podcast-7764184/sans-stormcast-tuesday-july-21st-2026-more-wordpress-details-hollowgraph-msft-calendar-abuse-gitea-vulnerability.md` — Read the agent-friendly Markdown representation of this episode resource. A page view does not enqueue transcription. Agents should invoke `request_transcript` explicitly when they need this episode processed. ## Transcript Full transcripts are not published on public pages unless there is a clear rights basis.