A high-severity vulnerability (CVE-2025-24043) in the SOS debugging extension allows remote code execution via improper cryptographic signature validation in .NET diagnostic packages. Attackers can exploit this flaw during debugging sessions, potentially compromising systems and executing arbitrary code. Microsoft has released patches, urging immediate updates for developers to mitigate cascading supply chain risks and secure development environments.

M&S issues update as crippling nationwide IT outage still ongoing – The Sun
Marks & Spencer (M&S) halted online orders in the UK and Ireland following a cyber attack, leading to a 5% drop in share price. Physical