Weekly Brief

SOC Minute Weekly

This episode explores a range of actively exploited vulnerabilities, including significant remote-code-execution issues across software, email, and cloud services, highlighting the rising threats targeting AI environments.

Weekly Episode
Duration
29:03
Stories
16 stories
Published
Watch on YouTube

About this episode

This episode explores a range of actively exploited vulnerabilities, including significant remote-code-execution issues across software, email, and cloud services, highlighting the rising threats targeting AI environments.

This episode brings together the week’s most relevant cybersecurity stories and their operational context for defenders.

Play the episode, then review the stories and chapter list for the reporting and topics covered.

Stories covered this week

Chapters

  1. Opening
  2. New Windows LegacyHive zero-day exploit grants admin privileges
  3. Critical NGINX Vulnerability Risks Worker Crashes and Remote Code Execution
  4. Critical SharePoint RCE CVE-2026-50522 Actively Exploited
  5. CISA urgent patch order for exploited Langflow RCE vulnerability
  6. Critical Bing Image Flaw Allows SVGs to Execute Commands as SYSTEM
  7. Hackers Abuse ViPNet Updates to Target Russian Government Agencies
  8. Russian Intelligence Hacks IP Cameras to Monitor NATO & Ukraine Military Movements
  9. Russian Hackers Exploit Zimbra Zero-Click Flaw for Email Theft
  10. Hackers Hijack Hotel Wi-Fi DNS to Steal Microsoft 365 Accounts
  11. Fake Notepad++ Plugin Delivers MATCHBOIL.V2 in UAC-0099 Attacks
  12. Fake Claude app promoted via Bing ads spreads SectopRAT malware
  13. Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak
  14. NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
  15. Upbound Hack Led to $13M in Fraudulent Acima Leases
  16. OpenAI Confirms AI Models Escaped Sandbox and Targeted Hugging Face
  17. JadePuffer ransomware now targets AI model data with EncForge malware
  18. Closing