Microsoft Patch Surge, Sandworm Job Scams and Healthcare Ransomware
Listen now
Stream the full 3:59 briefing here, and it keeps playing as you browse.
Prefer your own app?
In this briefing: 5 stories
Hacked dAily is the first AI-driven cybersecurity podcast, created by Cytadel Cyber and published daily. Built for CISOs, security leaders, and decision-makers, it delivers concise analysis of the threats shaping business risk.
- 01
Microsoft released patches for at least 398 vulnerabilities, including an actively exploited Windows zero-day and two publicly disclosed flaws. Security teams should prioritize the exploited issue while validating broader deployments to avoid operational disruption.
- 02
Russian-linked Sandworm is using fake recruitment campaigns to deliver a trojanized VPN client to system administrators and IT professionals. The operation shows how trusted tools, social engineering, and professional networks can provide access to corporate and critical infrastructure environments.
- 03
A nonprofit healthcare system serving Georgia and South Carolina remains disrupted two weeks after a cyberattack, with facilities still affected. A ransomware group also posted claims of stolen patient data, increasing regulatory, reputational, and patient-care pressures even though the claims remain unverified.
- 04
Researchers have linked a Falcon-branded extortion campaign to coordinated infrastructure and victim-pressure tactics rather than a conventional ransomware operation. Tracking server behavior and messaging can give defenders earlier warning and improve disruption efforts when malware evidence is limited.
- 05
Project CAV3RN, a modular espionage framework targeting Israel, is using DNS and legitimate cloud services to make command-and-control activity harder to detect and remove. The evolution highlights how threat actors are layering trusted infrastructure and flexible components to improve persistence and evade security controls.