Threats & Security News

the latest cybersecurity threat alerts and industry happenings

Zoom Patches Zero-Click Code Execution Vulnerability Article Link: https://www.securityweek.com/zoom-patches-zero-click-code-execution-vulnerability/ What does this mean for me? New Microsoft Defender ‘ShieldBreak’ Zero-Day Grants

Cyberattacks on water systems expand to 12 states as South Dakota, Georgia announce incidents Article Link: https://therecord.media/iran-cyberattacks-water-treatment What does this mean

CMMC Phase 2 Is on Pause. Your Obligation to Secure Federal Data Isn’t. Article Link: https://frsecure.com/blog/cmmc-phase-2-pause/ ClaudeBleed Reopened: Browser Extensions Can

Fake IT bods on Microsoft Teams coax workers into installing malware Article Link: https://www.theregister.com/cyber-crime/2026/07/07/fake-it-bods-on-microsoft-teams-coax-workers-into-installing-malware/5267610 Phishing poses as big-brand job interview to

SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation Article Link: https://thehackernews.com/2026/07/sharepoint-rce-cve-2026-45659-added-to.html ‘Djinn’ Stealer Targets Cloud, AI Credentials Article Link:

SimpleHelp Bug Lets Hackers Create Rogue Remote Support Accounts Article Link: https://www.bleepingcomputer.com/news/security/simplehelp-bug-lets-hackers-create-rogue-remote-support-accounts/ New macOS ClickFix Attack Silently Mounts DMGs to Push

FortiBleed Leak Exposes Fortinet VPN Credentials for 73,000 Devices Article Link: https://www.bleepingcomputer.com/news/security/fortibleed-leak-exposes-fortinet-vpn-credentials-for-73-000-devices/ SQL Server 2025 AI Features Can Be Abused to

Oracle PeopleSoft Servers Hacked in ShinyHunters Data Theft Attacks Article Link: https://www.bleepingcomputer.com/news/security/oracle-peoplesoft-servers-hacked-in-shinyhunters-data-theft-attacks/ Agentjacking Attack Tricks AI Coding Agents Into Running Malicious

CISA Warns of Active Attacks Exploiting Android, Linux Bugs Article Link: https://www.bleepingcomputer.com/news/security/cisa-warns-of-active-attacks-exploiting-android-linux-bugs/ Google DoubleClick Abused in New Malspam Campaign to Deliver

Do You Want to Shore Up Your Defenses?

We're opening our first round of threat hunting engagements to 100 organizations. Sign up or join the wait list here.