1. Executive Summary (TL;DR)

2. Top IAM & Security News

Azure Cosmos DB Flaw Could Have Exposed Platform-Wide Database Access

Russian Hackers Exploited Microsoft OWA Flaw to Keep Mailbox Access After Credential Rotation

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login

Device Code Phishing Emerges as Fastest-Growing Threat to OAuth Tokens

Amgen Cloud Data Breach Exposes Patient Health and Proprietary Information

Public PoC Released for Actively Exploited Check Point SmartConsole Authentication Bypass

Critical TeamCity Flaw Lets Attackers Run OS Commands Without Logging In

Critical Rails Active Storage Flaw Could Expose Application Secrets and Cloud Credentials

3. AI, Identity & Emerging Tech

Anthropic's Claude Breached Three Real Organizations and Uploaded Malware to PyPI

OpenAI Agent Used Exposed Credentials Across Four Services in Hugging Face Breach

Chinese-Speaking Hacker Used DeepSeek AI to Launch Autonomous Attacks via Telegram

Maximum-Severity 'RufRoot' Flaw in Ruflo MCP Lets Unauthenticated Attackers Run Commands and Poison AI Memory

Agentic Browsers Rewind Web Security by 20 Years

ESET Reports Rise in Malicious AI Skills and AI-Assisted Malware

4. Cyber Threats & Attack Trends

Adform Ad Script Poisoned to Swap Cryptocurrency Wallet Addresses Across Customer Sites

Amazon Attributes 'debug' and 'chalk' npm Hijacks to North Korean Threat Actors

Hijacked Hotel Wi-Fi Pushed Fake Updates Delivering Surveillance Malware

Coordinated Attacks on Minnesota Water Systems Prompt CISA Alert on Exposed OT

Coldcard Hardware Wallet Firmware Flaw Linked to $70 Million Bitcoin Theft

84 Flaws Disclosed in 4G and 5G Core Networks, Including Session Hijacking

5. Product Updates & Vendor News

Microsoft Patches 'Certighost' Flaw in Active Directory Certificate Services

Google Fixes 1,442 Chrome Flaws Across Three Releases

VMware Patches Three Critical Flaws, Including vCenter Authentication Bypass

Adobe Patches Maximum-Severity Campaign Classic Flaw Allowing Code Execution

CISA Issues Updated SBOM Guidance

FCC Adds Foreign-Produced Robots and Networked Power Inverters to Covered List

Arch Linux Disables AUR Package Adoption to Stop Malware Flood

6. Practical Security Takeaways

7. Trends to Watch

Sources