This daily summary highlights critical updates and new threats impacting organizations. The Clop ransomware group's exploitation of a zero-day vulnerability in PTC software (CVE-2026-12569) has been confirmed, leading to significant data exfiltration from major companies like General Electric and Shell. Medusa ransomware continues its widespread impact, with an updated advisory detailing new tactics, techniques, and procedures (TTPs), including exploitation of vulnerabilities in ConnectWise ScreenConnect and Fortinet FortiClient EMS. Defenders should review the latest MITRE ATT&CK techniques and hunting hints provided.
In cloud security, thousands of AWS keys, many with full administrative privileges, remain active and publicly exposed, posing a severe risk of account takeover and data theft. Apollo Global Management disclosed a data breach resulting from a social engineering campaign, underscoring the persistent threat of human-targeted attacks. An Italian school software firm, Spaggiari, has been targeted by the 'xpl0itrs' group, with a claim of 6.1 terabytes of data stolen, potentially impacting over 3,000 schools.
Finally, a sophisticated supply-chain attack targeting the Rust programming language ecosystem has been attributed to North Korean state-sponsored actors. The attack involved compromising a maintainer's account on crates.io to distribute malicious versions of popular libraries. Microsoft has also issued a clarification regarding CVE-2026-69836 in Entra ID, stating it was not actively exploited in the wild, though its technical severity remains high.
Help others stay informed about cybersecurity threats
Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.
Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.
Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.