A destructive wiper attack attributed to the Iran-linked Handala group caused global disruptions at medical technology firm Stryker by abusing its Microsoft Intune platform to wipe over 200,000 devices. This incident highlights a week marked by significant supply chain and extortion attacks, with the ShinyHunters group claiming major data breaches at Canadian outsourcer Telus Digital and security firm Aura.com. Other key events include a supply-chain attack on the AppsFlyer SDK, a phishing-induced breach at Starbucks, and new critical vulnerabilities disclosed for OneUptime and end-of-life D-Link routers. The cybersecurity landscape was also shaped by policy, as a new CA/Browser Forum mandate reduces TLS certificate lifespans to 200 days, forcing organizations toward automated certificate management.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.