X
Verizon DBIR 2026: Attackers Moving Faster than Remediation Efforts
Mark Anderson | Security | May 22, 2026

Euclid Security Newsletter

May 22, 2026 

Verizon DBIR 2026: Attackers Moving Faster than Remediation Efforts

Released on May 19th, the Verizon Data Breach Investigations Report (DBIR) provides an unparalleled diagnostic look at our digital defenses.

 

Security News

Microsoft 365 users targeted by new phishing threat that bypasses MFA

Microsoft 365 access tokens are being targeted by an emerging Phishing-as-a-Service (PhaaS) platform called Kali365, the FBI is warning.

Google accidentally exposed details of unfixed Chromium flaw

Google has accidentally leaked details about an unfixed issue in Chromium that keeps JavaScript running in the background even when the browser is closed, allowing remote code execution on the device.

Microsoft Defender vulnerabilities are being exploited in the wild

Five of the added vulnerabilities are quite old by vulnerability standards. Patches were released in 2008, 2009, and 2010. But the Microsoft Defender vulnerabilities are from this year. The first version of the Microsoft Defender Antimalware Platform with these vulnerabilities addressed is 4.18.26040.7.

GitHub Internal Repositories Breached via Malicious Nx Console VS Code Extension

GitHub confirmed that the breach of its internal repositories was the result of a compromise of an employee device involving a poisoned version of the Nx Console Microsoft Visual Studio Code (VS Code) extension.

Authorities dismantle First VPN, used by ransomware actors

First VPN, a virtual private network service marketed to cybercriminals, promising anonymity for its users, was taken offline on May 19 and 20 as part of Operation Saffron.

Drupal Patches Highly Critical Vulnerability Exposing Websites to Hacking

Drupal has patched a highly critical vulnerability that could allow threat actors to hack websites powered by the open source content management system (CMS).

 

Important Updates & Patches

Cisco Releases Critical Security Updates

Cisco has rolled out updates for a maximum-severity security flaw impacting Secure Workload that could allow an unauthenticated, remote attacker to access sensitive data.

Apple Releases Security Updates

Apple has released security updates for 25.5 for all operating systems and Safari.

 

Dan's Corner

Dark Web Dream Market Kingpin Arrested

Lesson one for aspiring dark web kingpins: don't have your laundered gold bars shipped to your home address.

 

An archive of Euclid Security Newsletters can be found on the support website.

Euclid Technology Solutions, LLC
540 Devall Drive, Suite 301
Auburn, AL 36832

P: 301-657-8089
E: support@euclidtechnology.com

Email sent to [EMAIL]

New Comment ...

Sort by: