Last week witnessed significant cybersecurity incidents affecting various companies and software. A breach at Salesloft, attributed to the group UNC6395, compromised Salesforce instances of several organizations, including Zscaler, Palo Alto Networks, PagerDuty, Tanium, SpyCloud, and Cloudflare, with the latter losing 104 API tokens. Meanwhile, a zero-day vulnerability in Sitecore solutions (CVE-2025-53690) was actively exploited, and a macOS flaw (CVE-2025-24204) was revealed, allowing unauthorized access to system memory despite security measures. Additionally, Google addressed over 100 Android vulnerabilities, including CVE-2025-48543 and CVE-2025-38352. The cybersecurity landscape also saw advancements with AI-driven tools like NetMoniAI for network monitoring and BruteForceAI for penetration testing. In parallel, LinkedIn tightened its verification processes to combat fake accounts, while SAP’s S/4HANA software faced exploitation risks. These developments highlight the ongoing challenges and innovations within the cybersecurity domain.
previous post

