China espionage dwell 1 year, Microsoft 200 patches, Cisco SD-WAN actively exploited
ID: b553903d-d34f-5efc-ae63-6dd10f8071a3
STIX ID: report--b553903d-d34f-5efc-ae63-6dd10f8071a3
Feed Name: defend.network – Daily Threat Briefings
High-risk briefing: China-linked UNC6508 conducted a year-long intrusion into North American medical, military, and academic research networks via compromised REDCap servers to harvest credentials and exfiltrate sensitive research and emails; concurrently, multiple high-severity vulnerabilities were actively exploited (including Cisco SD‑WAN vManage CVE-2026-20262 zero-day and a Microsoft 365 Copilot ‘SearchLeak’ chain), Microsoft released a record patch volume, and researchers observed North Korean actors weaponizing developer tools — collectively indicating ongoing nation-state espionage, active exploitation, and elevated risk requiring immediate patching, credential rotations, and network segmentation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
