A newly revealed flaw in Microsoft Defender for Endpoint (CVE-2025-26684) allows local attackers to escalate privileges to SYSTEM level, gaining complete control of affected systems. Patched in May 2025, the vulnerability affects Linux versions prior to 101.25XXX and has a CVSS score of 6.7. Organizations must promptly apply updates to mitigate risks.

Week in review: AiTM phishing kit used to hijack AWS accounts, year-long malware campaign targets HR – Help Net Security
Week in review: AiTM phishing kit used to hijack AWS accounts, year-long malware campaign targets HR Help Net Security


