Last week’s cybersecurity coverage highlighted active exploitation of critical flaws in products from Microsoft, Citrix, SonicWall, Atlassian, Dell, Fortinet, and NVIDIA, alongside major incidents involving Matchboil, BPFDoor, FortiBleed, and Flax Typhoon. The roundup also covered phishing campaigns targeting YouTubers and shoppers, data breaches at Denmark’s Central Population Register and ASOS, and new AI-related security concerns from Google, Anthropic, OpenAI, and Apple. #MATCHBOIL #BPFDoor #FortiBleed #FlaxTyphoon #CitrixNetScaler #ExchangeServer #SMA1000 #DataCenter #DellSystemUpdate #NVIDIA #ASOS #CPR #ShinyHunters #YouTube
Keypoints
- Attackers are exploiting newly patched flaws in Citrix NetScaler, Atlassian Data Center, Dell System Update, SonicWall SMA 1000, and Microsoft Exchange Server.
- Researchers tracked malware and intrusions including MATCHBOIL, BPFDoor, FortiBleed, and Flax Typhoon-linked tools.
- Phishing campaigns targeted YouTube creators with fake sponsorships and shoppers with fraudulent discount offers.
- Major data incidents affected Denmark’s Central Population Register and ASOS, exposing sensitive personal information.
- AI security issues surfaced across Google, Anthropic, OpenAI, Apple, and Wikimedia, including abusive automation and model misuse.