logo

Monthly Threat Report July 2026

ID: 111cebe1-58fa-5f24-85f2-45b1bf750c53

STIX ID: report--111cebe1-58fa-5f24-85f2-45b1bf750c53

Feed Name: Blog – Hornetsecurity – Next-Gen Microsoft 365 Security

Threat Score
78/100

Date Published: 2026-07-20

Date Updated: 2026-07-25

Author: Security Lab

...
...

This Hornetsecurity monthly threat report (June/July 2026) outlines emergent AI-driven risks and active incidents: JadePuffer, an LLM-agent-run ransomware that exploited CVE-2025-3248 and CVE-2021-29441 to encrypt service configurations; a Meta verification phishing campaign that collects credentials, MFA codes, and identity documents for account takeover; Microsoft’s record Patch Tuesday including an actively exploited on-premises Exchange XSS (CVE-2026-42897); and publication of RFC 9989 (next-generation DMARC). The report includes technical attack chains, IOCs, and prioritized recommendations for patching, exposure management, user training, and DMARC readiness.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.