Monthly Threat Report June 2026
ID: c6e1cfee-9d50-5714-a0a1-aaba3daa9805
STIX ID: report--c6e1cfee-9d50-5714-a0a1-aaba3daa9805
Feed Name: Blog – Hornetsecurity – Next-Gen Microsoft 365 Security
- The Hornetsecurity monthly threat report summarizes May–June 2026 activity: Kali365 PhaaS is enabling large-scale device-code OAuth phishing (with observed IOCs), Anthropic’s Project Glasswing surfaced thousands of high/critical vulnerabilities creating a remediation backlog, CVE-2026-41089 (Windows Netlogon RCE, CVSS 9.8) is being actively exploited, NYC Health + Hospitals confirmed a 1.8M-person data breach including biometric data traced to a third-party vendor, and Foxconn reported a North American cyberattack with alleged 8TB exfiltration by the Nitrogen ransomware group; the report concludes with tactical recommendations (restrict device-code auth, urgent patching, vendor access audits, and SBOM/patching improvements).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
