Security briefing: November 2025
ID: ce42d938-87de-5813-8334-4bd719421c3f
STIX ID: report--ce42d938-87de-5813-8334-4bd719421c3f
Feed Name: Sysdig Blog
Sysdig’s November threat roundup highlights several high-risk, actively exploited issues: multiple runc container escape CVEs affecting many platforms, a decade-old Linux kernel vulnerability (CVE-2024-1086) confirmed as exploited in ransomware campaigns, the return and expansion of the Shai-Hulud worm affecting hundreds–thousands of npm packages and leaking credentials, large data breaches including Coupang (33.7M accounts) and a financial supply-chain incident at SitusAMC, plus a Microsoft Windows kernel zero-day being actively exploited. The report details Sysdig’s published technical analyses and detection rules and urges immediate patching, package cleanup, credential rotation, and proactive threat hunting.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
