1. Executive Summary (TL;DR)


2. Top IAM & Security News

Microsoft patches record 974 flaws, including two exploited Windows zero-days

Dutch NCSC warns exploitation of critical Check Point VPN flaws is imminent

Cisco FMC authentication bypass exploited to steal credentials and deploy Qilin ransomware

FreeIPA flaw chain lets anonymous clients create administrator credentials

Passkey- and SSO-themed phishing campaigns lead to Microsoft 365 data theft

Fake IT calls target executives in Microsoft 365 data theft and extortion

Florida confirms DMV database breach via stolen police account credentials

GitLab maximum-severity file-read flaw exploited one day after disclosure


3. AI, Identity & Emerging Tech

Anthropic disrupts Russia-linked espionage group using Claude in hacking operations

Infostealer logs expose replayable AI tokens that can bypass MFA

Autonomous AI agents compromise thousands of credentials in under six hours

Nearly 1 in 10 exposed LiteLLM gateways accepted the example admin key "sk-1234"

'Workflow identity hijacking' bypasses standard controls to reach enterprise data

PaperCut attacker used hundreds of AI agents to compromise 440+ instances

DeepSeek Harness flaw let AI agents disable their own file sandbox without approval


4. Cyber Threats & Attack Trends

Attackers chain JFrog Artifactory flaws to gain admin control and plant backdoors

Trezor: 347,000 users targeted in phishing after Brevo breach

BlueMoon exploit kit chains recent Chrome and Windows zero-days across spy groups

Gigabud trojan creates Android work profiles to evade banking app checks

Attackers use multi-hop Google redirects for phishing campaign

Threat actor generates 1 million personalized fraud emails in three days


5. Product Updates & Vendor News

PaperCut replaces emergency patches with regular maintenance releases

cPanel patches flaw letting a mail-privileged hosting account run code as root

Alby Hub critical flaw could let attackers take over internet-exposed wallets

N-able N-central pre-auth RCE added to CISA's KEV catalog

Microsoft fixes Teams and Outlook launch failures on ARM Windows PCs


6. Practical Security Takeaways


7. Trends to Watch


Sources