Microsoft, VMware, Apple vulnerabilities actively exploited; CISA KEV additions demand immediate patching
ID: cd36bc3e-e727-5733-b60b-ba685f3cd1ba
STIX ID: report--cd36bc3e-e727-5733-b60b-ba685f3cd1ba
Feed Name: defend.network
A multi-source briefing reports several high-priority incidents: CISA added four actively exploited critical CVEs (Microsoft IKE, VMware vCenter, SharePoint, Apple macOS) with an urgent federal patching deadline; large-scale data breaches at CareCloud (≈3.7M patients) and Sakura Internet (≈1.36M accounts); a CameraSwarm campaign compromising over 14,500 Dahua IP cameras via credential and auth-bypass attacks; a faster Spectre side-channel leaking JWTs from Cloudflare Workers; and SilkParasite espionage targeting Central Asian governments with multiple new RAT families—recommended actions include immediate patching, credential rotation, network segmentation, and threat-hunting for IOCs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
