Data & infrastructure
-
Adobe patches critical Commerce authorisation flaw
Adobe has fixed a critical unauthenticated authorisation vulnerability in Commerce and Magento Open Source that can allow privilege escalation without administrator access or user interaction.
-
Dutch NCSC confirms macOS Screen Sharing attacks
The Dutch NCSC has observed attackers exploiting CVE-2026-65400 against internet-reachable Macs, gaining root access and installing cryptomining software.
-
VMware vCenter flaw moves into active exploitation
Incident responders have linked successful compromises across 47 countries to the critical VMware vCenter flaw CVE-2026-59310, only days after Broadcom disclosed and patched it.
-
Guest access campaign targets Salesforce and ServiceNow
Researchers are tracking a campaign extracting information from exposed Salesforce and ServiceNow portals through legitimate guest-access mechanisms rather than vulnerabilities in either SaaS platform.
-
SharePoint exploitation follows public PoC
Honeypots recorded attempts to exploit a patched SharePoint authentication bypass shortly after public PoC code appeared, while a second flaw completes an unauthenticated remote-code-execution chain.
-
NCSC sets out resilient private 5G priorities
The NCSC is seeking industry input on private 5G systems designed to continue operating through infrastructure failures and cyber incidents, with identity, recovery, and monitoring among its priorities.
-
Guardsix acquires Logmanager in European security deal
Denmark’s Guardsix is acquiring Czech security company Logmanager, combining log management with SIEM, NDR, and SOAR capabilities in a platform focused on European customers and data residency.
-
Terabit DDoS attacks surge across Cloudflare
Cloudflare says hyper-volumetric DDoS attacks rose sharply in the first half of 2026, with attacks exceeding 1 Tbps becoming substantially more common across its network.
-
LexisNexis incident exposes hosting dependency
LexisNexis disconnected three customer-facing services after detecting unusual activity on servers hosted and managed by a third party, disrupting due-diligence, monitoring, and data-feed products.
-
N-central attacks develop into ransomware campaign
Microsoft has linked Storm-1175 to a new ransomware strain deployed during the N-central attack cycle, while assessing — rather than confirming — CVE-2026-18577 as the likely entry route.









