Weekly Brief

SOC Minute Weekly

Emergency Windows fixes and actively exploited control planes lead into risks across development tooling, identity, critical infrastructure, mobile devices, and trusted cloud services. The episode connects those incidents through access validation, evidence preservation, and defensive context.

Weekly Episode
Duration
28:48
Stories
28 stories
Published
Watch on YouTube

About this episode

Emergency Windows fixes and actively exploited control planes lead into risks across development tooling, identity, critical infrastructure, mobile devices, and trusted cloud services. The episode connects those incidents through access validation, evidence preservation, and defensive context.

This episode brings together the week’s most relevant cybersecurity stories and their operational context for defenders.

Play the episode, then review the stories and chapter list for the reporting and topics covered.

Stories covered this week

Chapters

  1. Opening
  2. Microsoft Issues Emergency Windows Updates for RDS Failures
  3. CISA Adds Cisco Secure Email Gateway SQLi to Known Exploited Vulnerabilities
  4. Dutch NCSC Warns of Imminent Exploitation of Critical Check Point VPN Flaws
  5. Critical Check Point Flaw Allows Root Privilege Code Execution
  6. CISA Alerts on Ransomware Exploiting Critical VMware vCenter Flaw
  7. Critical ScreenConnect Flaw Now Actively Exploited in Real Attacks
  8. Critical Issabel Framework Flaw Enables Unauthenticated OS Command Execution
  9. CISA Adds Two Actively Exploited Linux Kernel Vulnerabilities to KEV Catalog
  10. Critical RCE Flaw in Unbound DNSSEC Validator Fixed in 1.26.1
  11. Critical Vulnerabilities Discovered in mySCADA myPRO Manager
  12. Critical Authentication Flaw in Mitsubishi Electric GX Works3 and Motion Control
  13. Red Heron Exploits Gitea RCE to Compromise 13 Organizations Globally
  14. Hackers Target Exposed Vite Servers to Steal AWS and Azure Secrets
  15. Attacker Hijacks AI Coding Assistant, Spreads Malware Across 100 Repos
  16. Brevo Supply-Chain Attack Injected Malicious Scripts on Customer Sites
  17. Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts
  18. Florida DMV Database Breached via Stolen Police Credentials
  19. KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials
  20. CenterPoint Energy Confirms Customer Data Stolen in Cyberattack
  21. Gyazo Server Vulnerability Leads to Theft of 23.6 Million User Records
  22. Russian Hackers Use AI to Rebuild Malware Faster After Detection
  23. Hackers Exploit Tencent App Flaw to Deploy GrayRabbit Malware
  24. Iranian Hackers Deploy Telegram-Controlled Malware Against Dissidents
  25. Transparent Tribe Deploys New Rust Backdoor Targeting South Asia
  26. New RatHat Android Malware Uses AI for Automated Device Control
  27. RatHat Android Malware Exploits ADB to Maintain Shell Access
  28. 3BB Attacker Leveraged MeshCentral Backdoor for Root Access
  29. CISA Guidance on Using Cyber Decoys to Enhance Detection and Response
  30. Closing