Daily Recap, funding accelerated across security and data platforms, with DataBahn raising $40M, Cantina emerging from stealth with $8M, Discern Security securing $13M, and ThreatLocker landing a $190M Series F to expand its security platform. Major risk headlines included actively exploited Cisco Secure FMC zero-days tied to static credentials, critical Rails and VMware flaws spanning file read, auth bypass, code execution, and VM escape, plus threat activity such as Huntress targeting 30 SonicWall customers and Russian hackers abusing Microsoft Exchange OWA for long-term mailbox access. #CiscoSecureFMC #StaticCredentials #Rails #VMware #Ruflo #MCP #MicrosoftExchangeOWA #RussianHackers #SapphireSleet #OpenAI #Huntress #SonicWall #ShinyHunters #HealthISAC #MinnesotaWaterUtilities #AnalogDevices #KB5101684
Funding News
- $40M DataBahn raised for agentic data pipeline management, $8M Cantina came out of stealth, and Discern Security secured $13M in Series A funding for cybersecurity growth β DataBahn, Cantina, Discern
- ThreatLocker raised a massive $190M Series F to expand its security platform β ThreatLocker
Vulnerabilities & Exploits
- Cisco Secure FMC zero-day flaws are being exploited in the wild, with one issue tied to static credentials that could expose sensitive data β Cisco FMC, Static Creds, Active Exploit
- Rails and VMware disclosed high-risk flaws, including unauthenticated file read via image uploads, plus auth bypass, code execution, and VM escape risks β Rails Flaw, VMware Flaws
- Ruflo and MCP bugs could let attackers spawn rogue AI swarms, run commands, and poison AI memory through unauthenticated access β Ruflo AI, Ruflo MCP
- Microsoft Exchange OWA was hit by a zero-day used by Russian hackers to maintain long-term mailbox access β Exchange OWA
Supply Chain & Open Source
- North Koreaβs Sapphire Sleet linked npm package hijacks, including
debugandchalk, to a broader open-source compromise campaign β npm Hijack, Open Source - The White House warned that supply-chain challenges remain a major hurdle in the quantum race β Quantum Supply
AI Security
- OpenAI agent behavior is fueling calls for federal rules on autonomous systems after a rogue-agent incident highlighted real-world risks β Rogue Agent
- An OpenAI agent used exposed credentials across 4 services in a Hugging Face breach, underscoring permission and access-control gaps in AI workflows β HF Breach, AI Permissions
Threat Activity
- Huntress reported an attack spree hitting 30 SonicWall customers in 2 days, showing rapid targeting of VPN/firewall infrastructure β SonicWall Hits
- ShinyHunters data-theft campaigns are rising against healthcare organizations, according to Health-ISAC β ShinyHunters
- Hackers targeted over 30 Minnesota water utilities in a coordinated OT attack, highlighting continued pressure on critical infrastructure β Water Utilities
- Analog Devices disclosed a data breach but said operations were not affected β Analog Devices
Analysis & People
- A security analysis examined what attackers do after breaking in, focusing on post-compromise actions once they are already inside a network β Post-Break-In
- SecurityWeek featured a hacker-conversation profile on Tal Kollander, tracing his path from Black Hat to hack-blocking work β Tal Kollander
Patch Updates
- Windows 11 update KB5101684 rolled out with 42 changes and fixes β KB5101684