Threats & incidents
-
Oracle PeopleSoft exploit exposes enterprise platforms
Oracle has issued an emergency alert for a critical PeopleSoft flaw after active exploitation linked to ShinyHunters, exposing risk in long-lived enterprise HR, finance, and education platforms.
-
NCSC warns state actors dominate critical attacks
The NCSC says hostile states are linked to around three-quarters of incidents affecting UK critical systems, placing resilience and accountability at the centre of national cyber policy.
-
Novo Nordisk incident tests pharma resilience
Novo Nordisk has confirmed unauthorised access to limited internal IT systems, with separate extortion claims increasing scrutiny of clinical data exposure, pharma resilience, and incident disclosure.
-
FortiSandbox reports need careful separation
Critical FortiSandbox vulnerabilities require urgent remediation, while public exploitation claims need to be separated from what Fortinet has confirmed.
-
LiteSpeed flaw exposes shared hosting tenants
Active exploitation of a LiteSpeed cPanel plugin flaw shows how shared hosting environments can turn tenant-level access into root-level operational exposure.
-
Splunk flaw reaches the telemetry layer
A critical Splunk Enterprise flaw shows how security monitoring platforms can become infrastructure risk when unauthenticated access reaches supporting data services.
-
Remote support trust breaks at login
A SimpleHelp authentication bypass affecting OIDC deployments shows how weak token validation can turn remote support access into privileged endpoint exposure.
-
Council of Europe probes data theft claims
The Council of Europe is investigating ShinyHunters’ claims of a large data theft involving internal records, with the scale and contents still unconfirmed.
-
Universities face a student-platform security reckoning
Recent exploitation activity and the Nottingham incident have renewed attention on student records platforms, where universities concentrate identity, finance, academic, alumni, and international-campus data.
-
Cisco SD-WAN flaw reaches exploited list
NHS England has warned that Cisco is aware of exploitation of a Catalyst SD-WAN vulnerability that can allow root-level command execution.









