Cyber Threat Brief
SHOW NOTES - 2026-06-18 STORIES COVERED * June 18, 2026 * Today: * Joomla Content Editor Plugin Zero-Day (CVE-2026-48907) [https://www.bleepingcomputer.com/news/security/cisa-orders-feds-to-patch-max-severity-joomla-plugin-flaw-by-friday/] [Critical Alerts] * FortiBleed: 73,000 Fortinet VPN Credentials Exposed [https://www.bleepingcomputer.com/news/security/fortibleed-leak-exposes-fortinet-vpn-credentials-for-73-000-devices/] [Critical Alerts] * Fortinet FortiSandbox Vulnerabilities Under Active Exploitation [https://cyberscoop.com/fortinet-fortisandbox-vulnerabilities-exploits/] [Critical Alerts] * Microsoft Defender Zero-Day RoguePlanet (CVE-2026-50656) [https://thehackernews.com/2026/06/microsoft-confirms-rogueplanet-defender_02022423645.html] [Critical Alerts] * INC Ransomware Reaches 800+ Victims Through Basic Tactics [https://www.darkreading.com/cyberattacks-data-breaches/inc-ransomware-thrives-by-mastering-the-basics] [Ransomware & Extortion] * DragonForce Ransomware Deploys Custom Backdoor Using Microsoft Teams Infrastructure [https://www.securityweek.com/microsoft-teams-relay-servers-abused-in-dragonforce-ransomware-attack/] [Ransomware & Extortion] * EdTech Sector Faces Escalating Ransomware and Data Breach Activity [https://databreaches.net/2026/06/17/cybercriminals-are-targeting-edtech-data-breaches-and-ransomware-attacks-on-the-rise/?pk_campaign=feed&pk_kwd=cybercriminals-are-targeting-edtech-data-breaches-and-ransomware-attacks-on-the-rise] [Ransomware & Extortion] * Mastra npm Supply Chain Attack Poisons 140+ Packages [https://www.microsoft.com/en-us/security/blog/2026/06/17/postinstall-payload-inside-mastra-npm-supply-chain-compromise/] [Business & Infrastructure Threats] * Account Takeover Attacks Rising Through Session Hijacking and MFA Bypass [https://www.bleepingcomputer.com/news/security/why-account-takeovers-are-rising-and-how-to-stop-them/] [Business & Infrastructure Threats] * CASB Blind Spot: QUIC Protocol Bypasses Web Traffic Inspection [https://isc.sans.edu/diary/rss/33084] [Business & Infrastructure Threats] * Crypto Clipper Malware Uses Tor and Worm-Like Propagation [https://www.microsoft.com/en-us/security/blog/2026/06/17/crypto-clipper-uses-tor-worm-like-propagation-for-persistence-control/] [Windows / AD Security] * Office Apps Experiencing Launch Issues After June Updates [https://www.bleepingcomputer.com/news/microsoft/microsoft-confirms-office-apps-launch-issues-after-june-updates/] [Windows / AD Security] * Interpol: Cyber Offenses Account for One-Third of Crime in Asia-Pacific [https://www.theregister.com/cyber-crime/2026/06/18/cyber-offenses-now-account-for-around-a-third-of-all-crime-across-asia-and-south-pacific/5257716] [General Security News] * Junior Hacker Uses Tailscale and OpenSSH for Backup Persistence [https://thehackernews.com/2026/06/junior-hacker-used-tailscale-and.html] [General Security News] * CVE-2026-48854: Elixir gRPC Unbounded Request Body Memory Exhaustion [https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-48854] [Vulnerability Disclosures] * Coordinated SSH Brute Force Attacks Over Three Months [https://isc.sans.edu/diary/rss/33086] [Vulnerability Disclosures] CVES REFERENCED CVE-2023-3519, CVE-2023-48788, CVE-2024-57727, CVE-2025-5777, CVE-2026-25089, CVE-2026-33825, CVE-2026-39808, CVE-2026-39813, CVE-2026-41091, CVE-2026-45498, CVE-2026-48854, CVE-2026-48907, CVE-2026-50656 INDICATORS OF COMPROMISE IP Addresses: 2.9.99.6 Read the full brief [https://carolinacleartech.com/brief/2026-06-18/]
90 jaksot
Kommentit
0Ole ensimmäinen kommentoija
Rekisteröidy nyt ja liity Cyber Threat Brief-yhteisöön!