Daily Recap, CISA and allied agencies warned that Gunra is targeting government and critical infrastructure, while StormEncryptor has been linked to a former Medusa affiliate and likely ties to an N-central flaw; at the same time, Microsoft SharePoint and SonicWall SMA1000 vulnerabilities are being actively exploited by ransomware groups. The update also covered OpenAIβs ChatGPT 5.6 Cyber and Daybreak expansion, the BdThemes supply-chain compromise creating rogue WordPress admin accounts, plus new patching and vulnerability-tracking efforts alongside rising DDoS activity.
#Gunra #StormEncryptor #Medusa #N-central #CISA #Microsoft #SharePoint #SonicWall #SMA1000 #OpenAI #ChatGPT5.6Cyber #Daybreak #BdThemes #WordPress #SAP #Mozilla #GPG #Firefox #Thunderbird #Corma #FTC #CVE #NATO #Metabase #MCP #TheCom #DDoS
#Gunra #StormEncryptor #Medusa #N-central #CISA #Microsoft #SharePoint #SonicWall #SMA1000 #OpenAI #ChatGPT5.6Cyber #Daybreak #BdThemes #WordPress #SAP #Mozilla #GPG #Firefox #Thunderbird #Corma #FTC #CVE #NATO #Metabase #MCP #TheCom #DDoS
Ransomware Alerts
- CISA and allied agencies warned that Gunra is targeting government and critical infrastructure, while StormEncryptor is being used by a former Medusa affiliate and is likely tied to an N-central flaw. β SharePoint Flaw, Gunra Alert, StormEncryptor, China-Linked StormEncryptor, SonicWall Exploited, Gunra Warning, Gunra Advisory
- CISA said Microsoft SharePoint and SonicWall SMA1000 flaws are now being exploited by ransomware groups, expanding the list of internet-facing products under active attack. β SharePoint Flaw, SonicWall Exploited
AI Security
- OpenAI rolled out ChatGPT 5.6 Cyber to approved users and said Daybreak will expand specialized cyber services, amid growing concern about how delegated AI access can create security risk. β ChatGPT 5.6, Daybreak, AI Delegation, Transparent Agents
- The FTC is moving to regulate AI for ideological bias, reflecting broader policy pressure on AI systems and their outputs. β FTC AI Bias
- Corma raised $60 million for a defensive cybersecurity AI model, signaling continued investor appetite for security-focused AI startups. β Corma Funding
Supply Chain & WordPress
- A BdThemes supply-chain compromise poisoned JSON to create rogue WordPress admin accounts, affecting plugin users and highlighting the risks of trusted updates. β BdThemes Hack, BdThemes Admins
Vulnerability Patching
- SAP patched critical code injection and memory corruption bugs, while Mozilla refreshed its GPG signing key for Firefox and Thunderbird after exposure. β SAP Patches, Firefox Key, Mozilla Key
- NATO and an AI startup launched a system to name and track software vulnerabilities, aiming to improve CVE intelligence and coordination. β Vuln Tracking
Infrastructure & National Security
- U.S. lawmakers advanced a cyber boost for water systems via a new Senate bill and a proposed Water Watch Center, while a Polish energy plant breach showed how attackers can exploit private network access like APN. β Water Cyber Boost, Polish Energy Breach
Threat Intelligence
- A weekly roundup highlighted AI misuse, a Metabase 0-day, MCP supply-chain attacks, and router backdoors as key emerging threats. β Weekly Recap
- The UK sentenced a man linked to The Com for abusing 117 victims, underscoring the continuing impact of online fraud and abuse networks. β The Com Sentence
Network Attacks
- DDoS attacks above 1 Tbps surged fivefold in Q2, underscoring the rapid growth of high-volume disruption campaigns. β DDoS Surge