
Microsoft Working on Patch for 'RoguePlanet' Zero-Day
Microsoft has acknowledged the RoguePlanet zero-day exploit and is working on a high-quality patch to resolve the vulnerability.
SecurityWeek
Attackers abuse Google Ads, GitLab, and Claude to deliver malware
Researchers tracked a seven-week campaign that leveraged trusted platforms and AI-generated trust to trick users into executing malicious commands and exposing enterprise credentials.
CSO Online
Fileless Phantom Stealer Targets Browser Credentials
In addition to executing entirely in memory, the malware's infection chain incorporates other anti-analysis techniques designed to evade detection.
Dark Reading
Rockwell Automation Patches Vulnerabilities in ICS Controllers and Software
Rockwell Automation informed customers that patches are available for several vulnerabilities affecting its ICS controllers and software.
SecurityWeek
Infostealers Turn Millions of Devices Into Credential Theft Machines
Modern infostealers don't just steal passwords—they harvest the digital identities and context that enable attackers to blend in as legitimate users.
SecurityWeek
M365 Copilot SearchLeak: Your prompt injection attack surface just got bigger
Although not the first of its kind, researchers’ POC attack against Microsoft’s M365 Copilot Enterprise underscores parameter-to-prompt (P2P) injections as a potentially broad threat.
CSO OnlinePolice raid malware network tied to Russia's Evil Corp hacker group
https://therecord.media/socgholish-botnet-disrupted
Police raid malware network tied to Russia's Evil Corp hacker group
An international operation targeted the SocGholish botnet, which has been linked to the Russia-based cybercrime group Evil Corp.
NIST NCCoE OT Security Series: Operational Technology Backup Quick Start Guide
https://content.govdelivery.com/accounts/USNIST/bulletins/41b289eNIST NCCoE OT Security Series: Operational Technology Backup Quick Start Guide
National Institute of Standards and Technology (NIST)
OceanLotus: From external espionage to domestic targeting
ESET researchers show how OceanLotus, a Vietnam-aligned APT group, has put an increasing focus on domestic espionage between 2024 and 2026.

Prevent Team Friction from Turning into Dysfunction
The strongest teams don’t succeed because they avoid conflict—they succeed because they understand how teammates process information, communicate under pressure, and approach decisions differently. Drawing on a redesign of Harvard Business School’s FIELD Global Immersion program, the authors argue that “interpersonal competence” is a learnable capability that helps teams anticipate and navigate cognitive differences before they become performance problems. After introducing training and tools designed to build that capability, the number of student teams requiring faculty intervention for serious collaboration breakdowns fell from 45 to one.
Harvard Business Review