logo

Critical RCEs and credential leaks: Microsoft SharePoint, CISA AWS exposure, MuddyWater espionage

ID: fbebe4eb-5c3e-50f7-824a-efde3c4fcf17

STIX ID: report--fbebe4eb-5c3e-50f7-824a-efde3c4fcf17

Feed Name: defend.network – Daily Threat Briefings

Threat Score
90/100

Date Published: 2026-05-27

Date Updated: 2026-05-27

...
...

This intelligence briefing reports several high-risk incidents: Microsoft patched a critical SharePoint RCE (CVE-2026-45659); a CISA contractor exposed AWS GovCloud credentials on GitHub; MuddyWater conducted a DLL side-loading espionage campaign across nine countries; the 'Megalodon' malware campaign pushed malicious commits to over 5,500 GitHub repositories to steal developer credentials; and a KnowledgeDeliver zero-day was exploited to install Godzilla web shells—immediate patching, credential rotation, and targeted threat-hunting are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.