Week in Cybersecurity: Proxy Botnet Disrupted, Office Zero-Day Patched, MongoDB Extortion Surges

This weekly cybersecurity digest flags a busy threat landscape: Google disrupted the IPIDEA residential proxy network, shrinking attackers’ exit nodes; Microsoft patched a critical Office zero-day (CVE-2026-21509) and Ivanti fixed EPMM flaws (CVE-2026-1281/1340); CERT Polska linked destructive attacks on wind/solar facilities to Static Tundra; new campaigns include Operation Bizarre Bazaar targeting exposed AI endpoints and a surge of MongoDB extortion against over 1,400 exposed databases; other notes cover Exfil Out&Look via Outlook add-ins, PyRAT’s cross‑platform capabilities, TA584’s evolving attack chain with Tsundere Bot and XWorm, and related cybercrime trends.
- ⚡ Weekly Recap: Proxy Botnet, Office Zero-Day, MongoDB Ransoms, AI Hijacks & New Threats The Hacker News
- Exclusive | Google Aims Knockout Blow at Chinese Company Linked to Massive Cyber Weapon The Wall Street Journal
- No Place Like Home Network: Disrupting the World's Largest Residential Proxy Network Google Cloud
- Google Disrupts IPIDEA — One of the World’s Largest Residential Proxy Networks The Hacker News
- Google Just Took Down One Of The Biggest Security Risks To Android Users bgr.com
Reading Insights
1
11
27 min
vs 28 min read
98%
5,402 → 89 words
Want the full story? Read the original article
Read on The Hacker News