This week in cybersecurity, the Trump administration announced a major shift in U.S. policy with a new, more aggressive national cyber strategy focused on offensive operations and deregulation. Concurrently, Microsoft and Google scrambled to release emergency patches for multiple zero-day vulnerabilities under active exploitation, including critical flaws in Windows RRAS and the Chrome browser. Threat actors also remained highly active, with state-sponsored groups from China targeting defense contractors and Southeast Asian militaries, while an international takedown disrupted the 'Tycoon 2FA' phishing-as-a-service platform that enabled widespread MFA bypass attacks.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.