Here is the most recent Cybersecurity news for the past week:
🔑 LastPass Confirms Data Breach in Klue Supply Chain Attack
LastPass announced that hackers accessed customer data within its Salesforce environment after compromising OAuth tokens held by Klue, a third-party market intelligence platform. While primary product infrastructure and customer vault data remain fully secure, the breach exposed customer metadata, including names, phone numbers, and email addresses.
🛑 Massive ‘FortiBleed’ Operation Exposes 75,000 Fortinet VPN CredentialsSecurity researchers uncovered a massive, industrial-scale initial-access campaign dubbed “FortiBleed” that exposed verified plaintext administrative and SSL VPN credentials for nearly 75,000 internet-facing Fortinet FortiGate appliances worldwide.The attackers used automated infrastructure to aggregate data from previous breaches, infostealer logs, and brute-force attempts to achieve deep perimeter penetration across multiple global enterprise sectors.
🪟 Microsoft Acknowledges ‘RoguePlanet’ Windows Defender Zero-Day
Microsoft officially acknowledged a publicly disclosed local privilege escalation zero-day vulnerability tracked as CVE-2026-50656. Leaked by security researcher Nightmare Eclipse under the moniker “RoguePlanet,” the flaw leverages a race condition within Microsoft Defender on fully patched Windows 10 and 11 endpoints, allowing local threat actors to successfully spawn command prompts with full SYSTEM-level privileges.
https://www.securityweek.com/microsoft-working-on-patch-for-rogueplanet-zero-day/
📷 Kodak Investigates Data Breach Following ShinyHunters Extortion ThreatThe Eastman Kodak Company confirmed it is investigating a cybersecurity incident after the ShinyHunters extortion syndicate listed the firm on its dark web leak site.The threat actors claim to have exfiltrated over 2.2 million corporate records and customer personally identifiable information (PII). Kodak has stated that the incident was limited in scope, successfully contained, and presents no current threat to operational environments.
💬 WhatsApp Phishing Campaign Spreads Remote Management TrojansMalicious actors are actively targeting WhatsApp Web and Desktop users with a global phishing campaign designed to compromise corporate PCs.Attackers utilize deceptive direct messages hiding malicious VBScript strings inside fake corporate documents; when executed, the scripts quietly deploy legitimate Remote Monitoring and Management (RMM) clients to achieve persistent backdoor control over targeted systems.



