A critical remote code execution vulnerability (CVE-2025–27364) in MITRE Caldera affects all versions prior to commit 35bc06e, allowing unauthenticated attackers to exploit dynamic compilation processes. Discovered by researcher Dawid Kulikowski, the flaw enables command execution via linker flag manipulation. Users are advised to update to v5.1.0, isolate servers, and audit instances for exploitation signs.

M&S issues update as crippling nationwide IT outage still ongoing – The Sun
Marks & Spencer (M&S) halted online orders in the UK and Ireland following a cyber attack, leading to a 5% drop in share price. Physical