1. Executive Summary (TL;DR)


2. Top IAM & Security News

Microsoft Patches 398 Flaws Including Actively Exploited Windows Kernel Driver Zero-Day

Max-Severity SAP Commerce Cloud Flaw Under Active Exploitation Days After Patch

Attackers Exploit SharePoint Authentication Bypass After Public PoC Release

Global Exploitation of VMware vCenter Vulnerability Grants Persistent Remote Access

macOS Screen Sharing Authentication Bypass Exploited to Deploy Monero Miner

Gunra Ransomware Exploits Fortinet Flaws and Bypasses MFA

RingCentral Data Breach Likely Impacts 1.6 Million

France Investigates Tax Authority Breach After Stolen Identity Used


3. AI, Identity & Emerging Tech

Reasoning-API Flaw Lets Weaker AI Models Recover Secrets From OpenAI, Anthropic, and Google

Malicious MCP Servers Split Instructions to Steal Secrets From AI Coding Agents

'GhostJacking' Highlights Identity Governance Gaps in AI Agents

Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development

NIST Looks to AI to Manage the AI-Driven Vulnerability Surge


4. Cyber Threats & Attack Trends

RecruitTrap Campaign Uses Browser-in-the-Browser and Real-Time MFA Relay

Chrome DevTools Technique Enables Authenticated Session Hijacking on Windows

Long-Running 'City-Forum' Campaign Targets Salesforce and ServiceNow Tenants

WindRelay Android Malware Turns Phones Into NFC Relays for Payment Fraud

New Mirai Variant Adds Credential Sniffing for Default Access Credentials

Google Workspace Attack Chain Rethought Around Stolen OAuth Tokens


5. Product Updates & Vendor News

Cyera to Acquire Oasis Security in $1B Move Toward AI Agent Control

OpenAI Launches GPT-5.6-Cyber for Vulnerability Research and Exploit Development

Google Cloud Sets Post-Quantum Cryptography Roadmap With 2029 Readiness Goal

Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Accidental Exposure

Anthropic Details Plans to Watermark Claude's AI-Generated Text


6. Practical Security Takeaways


7. Trends to Watch


Sources