Lotus Wiper Malware Disrupts Venezuelan Energy Sector
PremiumNew destructive wiper targeting energy utilities; review backups and incident response playbooks.
§The archiveMon · Wed · FriM · W · F
Every dispatch we've sent. AI-curated, human-reviewed, from 50+ cybersecurity sources.
Follow on LinkedInBrowse by topic
New destructive wiper targeting energy utilities; review backups and incident response playbooks.
External tooling compromise allowed unauthorized access; assess third-party risk and tighten vendor controls.
Zero-Day in Microsoft Defender exploited to access SAM and NTLM hashes; patch available. Review Windows security posture and apply the patch promptly.
SD-WAN vulnerabilities being exploited; patch cadence and network segmentation remain critical.
Multiple healthcare providers disclosed breaches affecting hundreds of thousands; reinforces need for identity controls and data segregation.
Third-party AI tool context access enabled a breach; emphasize third-party risk, credential hygiene, and cloud access reviews.
North Korean-linked actors exploited DeFi infrastructure to steal $290M in a high-profile crypto heist; organizations should review cross-chain and bridge trust controls.
Legacy FTP exposure persists; organizations urged to decommission or secure gateways.
Edge update breaks right-click paste in Teams; workaround and patch ETA provided by vendor.
Remote code execution CVE-2026-34197 exploited in the wild; upgrade and rotate credentials advised.
Unauthenticated command execution demonstrated; patch recommended and mitigations outlined.
Critical Webex Services flaw allows impersonation; immediately apply vendor patches and enforce least-privilege access.
McGraw Hill confirms a breach affecting 13.5M users; review Salesforce exposure, implement credential hygiene, and monitor for extortion chatter.
Autovista faced ransomware impacting automotive data operations; assess backups, isolate affected systems, and strengthen access controls.
Microsoft released patches for SharePoint and 168 additional flaws, with one actively exploited in the wild; prioritize patch deployment and verification.
Adobe fixed 55 vulnerabilities across 11 products; critical ColdFusion flaws flagged as high risk for exploitation. Prioritize updates in coordinated patch cycles.
Europe's largest gym chain confirms a data breach exposing member data. Immediate actions include password resets and monitoring for fraud.
A cluster of 108 malicious Chrome extensions communicates with a shared C2 to steal data and inject ads/JS on pages. Mitigation includes extension reviews and disabling suspicious add-ons.
Microsoft released a massive April 2026 Patch Tuesday with 168 fixes, including an actively exploited SharePoint zero-day. Remediation prioritizes active exploits and affected services.
Adobe fixed 55 vulnerabilities across 11 products; critical ColdFusion flaws flagged as high risk for exploitation. Prioritize updates in coordinated patch cycles.
Get these articles delivered to your inbox.
Subscribe free