Data & infrastructure
-
BlueHammer reaches ransomware exposure
CISA’s ransomware link for Microsoft Defender’s BlueHammer flaw changes the operational framing from routine patching to endpoint privilege and containment.
-
Aflac Japan breach exposes portal risk
Aflac says unauthorised access to systems linked to its Japan business exposed policy, personal, and bank account information.
-
GitHub advisory surge strains vulnerability pipeline
GitHub says its Advisory Database is processing record vulnerability volume, exposing pressure on the systems behind dependency alerts and open source risk.
-
AirDrop and Quick Share flaws expose proximity risk
Researchers found six vulnerabilities in AirDrop and Quick Share protocols, bringing proximity file sharing into managed-device and executive-risk planning.
-
Barracuda tracks phishing beyond passwords
Barracuda’s June Email Threat Radar shows phishing moving deeper into session tokens, OAuth flows, device-code lures, split-click evasion, and malware delivery.
-
Aikido buys Root for open source patching
Belgian security company Aikido has acquired Root, adding technology for backported open source fixes as dependency risk moves deeper into developer workflows.
-
Cequence puts agents inside API security
Cequence Platform 9.0 adds an AI assistant and MCP server, bringing agent-operated workflows into API security, compliance evidence, and control changes.
-
Oracle E-Business Suite flaw exploited
Reported exploitation of a critical Oracle E-Business Suite flaw has put patch latency, payment workflows, and internet-exposed enterprise applications back under scrutiny.
-
SimpleHelp flaw exposes managed access risk
Exploitation of a SimpleHelp authentication bypass shows how remote management tooling can become a privileged route into endpoints, cloud credentials, developer systems, and customers.
-
Langflow attacks expose AI workflow risk
Observed exploitation of Langflow vulnerabilities shows how self-hosted AI workflow tools can expose API keys, cloud secrets, and agent infrastructure before governance catches up.




