๐จ Microsoft Patch Tuesday Fixes 167 Flaws & 2 Zero-Days
What happened: Microsoft released one of its largest updates ever, fixing 167 vulnerabilities, including two zero-days โ one actively exploited in the wild. The most critical is CVE-2026-32201, a SharePoint spoofing flaw that allows attackers to manipulate data and access sensitive information.
๐ 13.5 Million McGraw Hill Accounts Leaked in Data Breach
What happened: The ShinyHunters group leaked data from 13.5 million McGraw Hill users, reportedly due to a Salesforce misconfiguration. The breach exposed personal data and highlights ongoing risks tied to SaaS misconfigurations and weak cloud access controls.
๐ค Frontier AI Models Raise Concerns Over Offensive Capabilities
What happened: Policymakers and researchers are raising concerns over increasingly powerful AI systems capable of autonomous vulnerability discovery and exploit chaining. Discussions are underway around leveraging these capabilities defensively, while limiting misuse as models become more capable.
๐ต๏ธโโ๏ธ Operation PowerOFF Disrupts Global DDoS-for-Hire Networks
What happened: Law enforcement agencies identified 75,000 users of DDoS-for-hire services and seized 53 domains as part of Operation PowerOFF. The coordinated action significantly disrupts access to low-cost attack infrastructure used worldwide.