A newly revealed flaw in Microsoft Defender for Endpoint (CVE-2025-26684) allows local attackers to escalate privileges to SYSTEM level, gaining complete control of affected systems. Patched in May 2025, the vulnerability affects Linux versions prior to 101.25XXX and has a CVSS score of 6.7. Organizations must promptly apply updates to mitigate risks.

GitHub hit by a sophisticated malware campaign as ‘Banana Squad’ mimics popular repos
The repository names are identical to other repositories, indicating typo-squatting. These repositories also contain search keywords and emojis, signifying potential AI use. ReversingLabs warns developers