Data Breaches
Craneware Discloses Data Theft Affecting US Hospital Finance Software
A financial-software provider serving thousands of US hospitals confirms significant data theft — sector-advisory coverage this week.
Data Breaches
A financial-software provider serving thousands of US hospitals confirms significant data theft — sector-advisory coverage this week.
Vulnerabilities
A ServiceNow AI Platform sandbox escape under active attack — defender teams accelerate patch verification this week.
Threat Intelligence
A novel Microsoft 365 calendar-abuse malware framework — defender detection-engineering review this week.
Data Breaches
Hugging Face's autonomous-agent breach gets user-action guidance — and a Chinese open-weight model, GLM 5.2, reportedly powered the attack while frontier LLMs failed to help defenders.
Data Breaches
Another Oracle EBS customer disclosure lands: Estée Lauder confirms the theft of employees' personal, financial, and health data from its Oracle E-Business Suite HR system, closing one of the last gaps in the 2025 Oracle zero-day cycle.
Supply Chain Attack
Ecosystem supply-chain compromises now extend to RubyGems — three malicious gems built to skip CI runners and land on developer machines make this week's defender inventory work a Ruby-dependency audit.
Vulnerabilities
A critical NGINX flaw with remote-unauthenticated attack surface — defender verification across NGINX and NGINX Plus deployments this week.
Data Breaches
A first-of-its-kind AI-agent breach hits the world's largest AI model repository — defender posture and AI-supply-chain review are the week's practical takeaways for organizations that depend on Hugging Face-hosted models, datasets, and Spaces.
Vulnerabilities
wp2shell moves from disclosure to active exploitation — defender teams and hosting providers accelerate verification this week.
Vulnerabilities
WordPress ships the 7.0.2 patch pairing wp2shell with a fresh SQL-injection CVE — defender teams and hosting providers apply immediately this weekend.
Artificial Intelligence (AI)
A counterintuitive defensive prompt-injection research beat — defender review for AI-web-agent deployments this weekend.
Threat Intelligence
A second SonicWall SMA attribution lands — Volexity names UTA0533 alongside the Dark Reading INC Ransomware framing this weekend.