Microsoft Defender zero-day, FortiBleed exposes 73k devices, GitHub worm spreads
ID: 77d744b1-e0dc-53d0-9fbe-85f287e01689
STIX ID: report--77d744b1-e0dc-53d0-9fbe-85f287e01689
Feed Name: defend.network
TL;DR: Multiple high-risk incidents require urgent attention — a Microsoft Defender privilege-escalation zero-day (CVE-2026-50656) with a patch pending, a large-scale Fortinet credential leak (FortiBleed) actively used to access thousands of VPNs across ~200 countries, GitHub supply-chain worm variants compromising hundreds of packages, and malicious JetBrains plugins/Chrome extensions exfiltrating AI API keys; recommended actions include immediate FortiGate credential rotation and MFA, monitoring for lateral movement, auditing GitHub activity and IDE/browser extensions, and preparing to deploy the Defender patch when released.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
