Signal from the Grid

Industry News

A running log of the threat intelligence, breaches, and AI-security developments D2 tracks daily — the signal, filtered from the noise.

Updated every weekday morning
Jun 19 Friday
★ Top Read

Splunk Enterprise RCE Actively Exploited, First-Ever Splunk KEV Entry

A critical, unauthenticated remote-code-execution flaw in Splunk Enterprise is being exploited in the wild, with CISA giving federal agencies a three-day deadline to patch.

DragonForce Hides Ransomware Command-and-Control Inside Microsoft Teams
SocGholish Botnet Takedown Cleans Up 15,000 WordPress Sites
INC Ransomware-as-a-Service Matures Into a Top 2026 Threat
Non-Human and AI-Agent Identity Becomes the Hottest Security Market
CISA's BOD 26-04 Moves Federal Patching to Risk-Based Triage
View full brief →
Jun 18 Thursday
★ Top Read

Microsoft Defender Zero-Day "RoguePlanet" Weaponized

An unpatched Defender vulnerability with a public exploit hands attackers SYSTEM access on fully patched Windows machines — turning the security agent itself into the attack surface.

FortiBleed: 30,000+ Fortinet Firewalls Compromised via Credential Reuse
Mastra npm Ecosystem Backdoored Across 140+ Packages
JetBrains Marketplace Plugins Caught Stealing AI API Keys
Oracle's June Patch Update Fixes 245 Vulnerabilities
The AI Toolchain Is Becoming the New Supply Chain
Telling Agent Activity From Human Activity Remains Unsolved
View full brief →
Jun 17 Wednesday
★ Top Read

CISA's New Directive Cuts Federal Patch Deadlines to Three Days

A sweeping new CISA directive compresses federal patch deadlines to as little as three days, arriving the same week Fortinet and Cisco vulnerabilities are under active exploitation.

Fortinet FortiSandbox Hit by Active Exploitation
Cisco Catalyst SD-WAN Manager Flaw Added to CISA's Known-Exploited List
SprySOCKS Backdoor Expands to Windows
ClickFix Malware Loaders Continue to Spread
Rokarolla Android Trojan Targets 217 Banking and Crypto Apps
Cisco Rolls Out New SOC Automation Agents and DefenseClaw
The Agentic SOC Becomes the New Industry Standard
CISA's BOD 26-04 Supersedes Prior Federal Patch Directive
White House Issues New AI Innovation and Security Executive Order
FY2026 NDAA Drives New Defense Supply-Chain Cyber Rules
View full brief →