A curated dispatch from GajShield

The GajShield Gazette

Lead story

SharePoint RCE CVE-2026-45659 Added to CISA KEV After Active Exploitation

CISA’s addition of CVE-2026-45659 to its Known Exploited Vulnerabilities catalogue confirms that attackers are actively exploiting the Microsoft SharePoint flaw in real environments. The vulnerability affects on-premises SharePoint Server 2016, SharePoint Server 2019, and S…

Also today
Jul 03, 2026

ST Engineering iDirect iQ-Series Terminals

CISA’s advisory on ST Engineering iDirect iQ-Series satellite terminals highlights the operational risk created when device-management interfaces expose sensitive inform…

In brief

ToddyCat-Linked Umbrij Malware Abuses OAuth to Access Gmail via Google API

The Umbrij malware linked to the ToddyCat threat group demonstrates how attackers can abuse legitimate OAuth authorization processes to gai…

Jul 03, 2026

What the Numbers Say About FIFA 2026 Cyber Risk

The cyber activity surrounding the FIFA World Cup 2026 shows how attackers prepare fraud infrastructure months before a major global event …

Jul 01, 2026

Malicious PyPI packages give hackers control of Telegram bot servers

The discovery of malicious PyPI packages targeting Telegram bot developers highlights the growing risk of installing unofficial forks of po…

Jul 01, 2026

Adobe patches seven max severity ColdFusion, Campaign flaws

Adobe’s release of emergency security updates for ColdFusion and Campaign Classic highlights the risk posed by critical vulnerabilities in …

Jul 01, 2026

Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service

Citrix’s disclosure of six vulnerabilities in NetScaler ADC and NetScaler Gateway highlights the continuing security risks associated with …

Jul 01, 2026

Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts

The large-scale Azure CLI password-spraying campaign demonstrates how incomplete multifactor authentication and Conditional Access policies…

Jul 01, 2026

Nissan discloses employee data breach linked to Oracle zero-day attacks

Here is a short customer-facing comment:The Nissan employee data breach highlights the risk created by zero-day vulnerabilities in widely u…

Jun 30, 2026

Oracle E-Business Suite Flaw CVE-2026-46817 Actively Exploited in the Wild

The active exploitation of CVE-2026-46817 in Oracle E-Business Suite highlights the risk posed by unauthenticated vulnerabilities in critic…

Jun 30, 2026

Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth

The critical vulnerability in Progress Kemp LoadMaster highlights the risks created when management APIs are exposed on internet-facing net…

Jun 30, 2026

Healthtech firm Xolis suffers data breach impacting 1.4 million people

The Xsolis data breach demonstrates how a successful phishing attack against one healthcare technology provider can expose sensitive inform…

Jun 24, 2026

LastPass confirms data breach in Klue supply chain attack

The LastPass breach linked to the Klue supply-chain attack demonstrates how stolen OAuth tokens can allow attackers to access enterprise cl…

Jun 24, 2026