‼️ Two Windows zero-days are being exploited in the wild.
Microsoft patched them alongside a record 974 vulnerabilities. Both flaws can let authorized attackers elevate privileges locally to SYSTEM, and CISA has added them to its KEV catalog.
Read: https://t.co/xb5srFgHbX
‼️ WARNING - Attackers are exploiting a Chrome V8 zero-day.
CVE-2026-85046 allows arbitrary code execution inside the browser sandbox via a crafted HTML page. Google fixed it in Chrome 152.0.7977.82/.83.
How the V8 type confusion works: https://t.co/oi8DcrCAQG
Isolation is a key #CIFortify defense strategy. Our new guidance w/@FBI & partners helps orgs plan effective comms during changes in service availability to limit impact + reduce panic while aligning w/security & containment efforts. Read here 👉 https://t.co/BLmTJjzJRQ
⚠️ Fake software installers disable Windows Update and weaken Microsoft Defender.
The active campaign has compromised organizations across seven sectors. Each download keeps the same filename but changes the payload hash.
Inside the attack chain: https://t.co/2zO8Jao3Tz
Cybersecurity is more than technical controls.
Understanding frameworks, standards, controls & regulations is essential for effective GRC.
NIST • ISO 27001 • CIS Controls • PCI DSS • COBIT • GDPR
#Cybersecurity#GRC#InfoSec#RiskManagement
🚨 TerminalFix turns a fake Cloudflare CAPTCHA into a reverse tunnel inside the victim’s network.
Microsoft says the ClickFix variant tricks users into running PowerShell, then deploys a backdoor that can route traffic to other hosts visible from the infected machine.
Read: https://t.co/2gKovT76S9
⚠️ Aurora ransomware operators gave Cursor AI credentials or an existing route into victim networks.
The agent handled exploitation tasks against 10 targets, including network scanning, privilege checks, NTLM relay attempts, and certificate attacks.
Read: https://t.co/CLQItINyfw
🛡️ We added 2 PaperCut NG/MF vulnerabilities to our KEV Catalog: CVE-2026-81578, a missing authentication for critical function vulnerability, and CVE-2026-82078, an unsafe reflection vulnerability. Visit https://t.co/myxOwap1Tf & apply mitigations to protect your org.
🔥 FBI shuts down Chinese hacking platforms tied to intrusions at NASA, the Fed, and U.S. Senate.
QScan exploited vulnerable IoT devices, while QTRouter hid attack traffic behind compromised devices, commercial proxies, and VPSs.
How it worked: https://t.co/MDk69PGdnw
‼️ A critical Keycloak flaw could let attackers take over any account.
CVE-2026-18963 lets an unauthenticated attacker reset a user’s password without the emailed action token, including for admin accounts.
Read more: https://t.co/AW9mFGSX4U
🚨 Four Critical Flaws Under Active Exploitation:
• macOS CVE-2026-65400
• SharePoint CVE-2026-55040
• vCenter CVE-2026-59310
• Microsoft IKE CVE-2026-33824
Reported attacks include Monero mining, persistent access, and Babuk-derived ransomware.
Read: https://t.co/O6WRpXB4Di