Data & infrastructure
-
Microsoft patches exploited AD FS and SharePoint flaws
Microsoft’s July security update includes exploited vulnerabilities affecting Active Directory Federation Services and SharePoint Server.
-
SonicWall warns SMA flaws are exploited
SonicWall says two SMA 1000 vulnerabilities are being actively exploited and is urging customers to upgrade, investigate, and reset credentials where needed.
-
UK expands public-sector vulnerability monitoring
UK Government Security says its Vulnerability Monitoring Service now covers more than 6,000 public-sector organisations and has expanded active scanning.
-
UK adds cyber risks to national register
The UK has added cyber attacks on data, water, and police infrastructure to the National Risk Register, alongside digital resilience failure after CrowdStrike.
-
Microsoft Kerberos change creates outage risk
Microsoft’s July 2026 Windows updates remove Audit mode for Kerberos RC4 hardening, raising authentication failure risk in legacy-dependent environments.
-
Progress ShareFile shutdown exposes hybrid risk
Progress told ShareFile Storage Zone Controller customers to shut down affected servers while it investigated a credible external security threat.
-
UK regulators begin cloud provider oversight
AWS, Google Cloud, Microsoft, and Oracle are the first critical third parties brought under direct UK financial-sector resilience oversight.
-
Lidl breach exposes supplier data risk
Lidl customer notices in Belgium and the Netherlands say attackers stole online shop customer data from a separately stored file at an IT service provider.
-
NCSC warns on Russian router targeting
The NCSC and allied agencies say Russian FSB-linked actors are exploiting weakly configured routers and network devices across critical sectors.
-
Databarracks expands resilience services
Databarracks’ acquisition of Acumen extends its business continuity capabilities as cyber recovery, crisis planning, and operational resilience continue to converge.







