#weeklyreport

2 posts · Last used 18d

Back to Timeline
BeyondMachines :verified: @beyondmachines1@infosec.exchange · Jul 27, 2026

State of (in)security - Week 30, 2026

During week 30 of 2026, cybersecurity monitoring recorded 7 advisories and 28 incidents/breaches affecting roughly 80 million individuals. The largest breach is Suno exposing 55.3 million users and AI training source code. Malware/ransomware and unauthorized access are the leading causes of incidents and healthcare and IT/software as the most-targeted industries.

Patch the actively exploited on-premises SharePoint (CVE-2026-50522), self-hosted ServiceNow, Fastjson 1.x Java apps, Oracle systems (July 2026 Critical Patch Update), and WordPress. Then update Firefox and Thunderbird and confirm your Adobe Acrobat Chrome extension is running version 26.5.2.3 or later. #cybersecurity #infosec #knowledge #weeklyreport https://beyondmachines.net/event_details/state-of-in-security-week-30-2026-w-0-e-b-i/gD2P6Ple2L

0
0
0
BeyondMachines :verified: @beyondmachines1@infosec.exchange · Jul 20, 2026

State of (in)security - Week 29, 2026

During the week of July 13–20, 2026, there were 21 security advisories (including actively exploited flaws in SharePoint, Fortinet, and SonicWall, plus Microsoft's record 570-vulnerability Patch Tuesday) and 31 incidents affecting roughly 977,000 individuals. Unauthorized access is the leading cause and healthcare by far the hardest-hit industry.

Patch these right away: Microsoft (Windows, Office, and on-premise SharePoint Server), Chrome and other Chromium browsers, Firefox, FortiSandbox, SonicWall SMA1000, self-hosted ServiceNow, Splunk Enterprise, and WordPress core. These are either actively exploited or have public exploit code. Also remove or block the vulnerable miniOrange WordPress plugin and the risky VS Code extensions (Live Server, Code Runner, Markdown Preview Enhanced), since those have no patches available yet. #cybersecurity #infosec #knowledge #weeklyreport https://beyondmachines.net/event_details/state-of-in-security-week-29-2026-s-u-m-0-m/gD2P6Ple2L

0
0
0
BeyondMachines :verified: @beyondmachines1@infosec.exchange · Jul 06, 2026

State of (in)security - Week 27, 2026

During week 27 of 2026 (June 29–July 6), cybersecurity activity rose to 17 advisories and 28 incidents affecting roughly 6.6 million people, led by the 4.38 million-record Aflac Japan breach. Unauthorized access, ransomware, and software-vulnerability exploits drive most incidents. Most impacted industries are healthcare, government, and financ. The week saw reports of exploitation of critical flaws in Oracle E-Business Suite, SharePoint, and SimpleHelp RMM, and mass patches from Adobe, Apple, Google, and others. We also see the first reported end-to-end ransomware attack executed by an AI agent (JadePuffer).

Patch your Chrome and Chromium based browsers. Iit's trivial to do: the browser updates itself when you close and reopen it, and all your tabs come back. Then focus on patching key flaws in phpBB, WebSphere, JetBrains, OpenWrt routers, Kemp LoadMaster. #cybersecurity #infosec #knowledge #weeklyreport https://beyondmachines.net/event_details/state-of-in-security-week-27-2026-u-v-8-z-8/gD2P6Ple2L

0
0
0
BeyondMachines :verified: @beyondmachines1@infosec.exchange · Jun 29, 2026

State of (in)security - Week 26, 2026

During week 26 of 2026, security teams tracked 12 advisories (including five active exploits affecting Cisco, Ubiquiti, Lantronix, PTC Windchill, and a WordPress SMTP plugin) and 20 incidents. Breaches affect roughly 16 million individuals, driven largely by KDDI's potential leak of 14 million email credentials. The incidents skew heavily toward healthcare and were caused mainly by software vulnerability exploits, malware/ransomware, phishing, and third-party/supply-chain compromises (e.g., LastPass, Polymarket, Tata Electronics).

This week's lesson is publicly accessible services. Gravity SMTP plugin for WordPress, Webmin and self hosted mail server on Synology all have critical issues. Flaws won't stop appearing, just make sure to follow them regularly. #cybersecurity #infosec #knowledge #weeklyreport https://beyondmachines.net/event_details/state-of-in-security-week-26-2026-p-v-u-2-0/gD2P6Ple2L

0
0
0

You've seen all posts