Data & infrastructure
-
SharePoint flaw moves into ransomware attacks
CISA has changed the status of an already exploited SharePoint Server vulnerability to confirm its use in ransomware campaigns, raising the consequence for organisations still running vulnerable on-premises systems.
-
Cisco VPN flaw crashes exposed firewalls
Cisco says attackers are actively exploiting a flaw in ASA and FTD remote-access services that can force vulnerable firewalls to reload, with fixed software available and no workaround.
-
DeadLock ransomware builds resilience around extortion
DeadLock has concentrated more than half of its claimed victims in Europe while using decentralised communications and leak infrastructure intended to make parts of its extortion operation harder to disrupt.
-
Poisoned logs can redirect privileged AI agents
DEF CON research shows how attacker-controlled information inside trusted operational systems can influence AI agents that have permission to change cloud and security environments.
-
Ransomware exploits SonicWall remote-access flaws
CISA says two previously exploited SonicWall SMA1000 vulnerabilities are now associated with ransomware activity, escalating weaknesses in infrastructure that controls privileged remote access.
-
EU expands IRIS² for defence resilience
The EU has expanded the planned IRIS² constellation to 348 satellites and accelerated deployment, adding capacity aimed at defence, security, emergency services, and sovereign government communications.
-
EU expands IRIS² for defence resilience
The EU has expanded the planned IRIS² constellation to 348 satellites and accelerated deployment, adding capacity aimed at defence, security, emergency services, and sovereign government communications.
-
LoadMaster flaw enters exploited catalogue
CISA has added critical LoadMaster command-injection flaw CVE-2026-8037 to its exploited-vulnerability catalogue, advancing the evidence beyond the unsuccessful attack attempts reported earlier this summer.
-
Zbtlink suspends sales after router backdoor report
Zbtlink has suspended sales and withdrawn affected software after researchers found a remotely controllable function across at least 20 router models, while the manufacturer disputes that it was intended for unauthorised access.
-
macOS Screen Sharing flaw bypasses authentication
Apple has patched a Screen Sharing authentication flaw as independent research describes a deeper pre-authentication route capable of reaching remote code execution on exposed, unpatched Macs.




