News
-
Endpoint security PoCs expose privileged attack surface
Public proof-of-concept exploits targeting CrowdStrike Falcon and Avast, alongside a separate Nvidia memory-corruption disclosure, are drawing attention to vulnerabilities inside highly privileged endpoint components.
-
Rogue ScreenConnect clients propagate malicious scripts
Huntress has observed modified ScreenConnect clients deploying malicious scripts and propagating the same activity to newly connected systems, while ConnectWise separately prepares a file-transfer fix.
-
BigBear steals Microsoft 365 sessions at scale
CloudSEK says a phishing-as-a-service operation has used adversary-in-the-middle infrastructure to collect Microsoft 365 credentials and authenticated-session cookies across hundreds of organisations.
-
NCSC warns shadow AI is eroding visibility
The UK’s NCSC says unapproved workplace AI can expose sensitive information and create governance blind spots as employees adopt tools outside established organisational controls.
-
Boston Scientific recovery leaves NHS backlog
Boston Scientific has restarted most manufacturing and European distribution after its cyberattack, but NHS customers still face queued orders and intermittent product availability.
-
OpenAI sends EU report on wiki incident
The European Commission has confirmed receiving an OpenAI incident report over autonomous-agent activity on a German programming wiki, moving the episode into formal EU oversight.
-
Teams impersonation moves beyond email fraud
Belgian authorities and Microsoft are warning about Microsoft Teams impersonation attacks that turn trusted collaboration workflows into routes for payment fraud and remote enterprise compromise.
-
Germany plans cyberdome in sabotage response
Germany is preparing a broader critical-infrastructure defence package spanning cyber intrusion, drones, and physical sabotage as authorities respond to growing concern over hybrid threats.
-
Trezor breach expands over retained records
Trezor says its ShipMonk breach now affects about 81,000 customers after historical records that should have been deleted remained in the logistics provider’s systems.
-
NetScaler bypass draws exploitation attempts
Exploit attempts against a critical NetScaler authentication bypass are being observed after public proof-of-concept code appeared, increasing pressure on operators still running vulnerable appliances.










