Week 5 - 2026 Weekly Digest
26 Jan 2026 – 01 Feb 2026 • Published: 02 Feb 2026
Critical CVEs
CVE-2026-1281 — Unauthenticated Remote Code Execution via Code Injection CVSS 9.8A code injection vulnerability allows an unauthenticated attacker to achieve remote code execution, enabling access to sensitive data and modification of authentication settings.
CVE-2026-24858 — Authentication Bypass via FortiCloud SSO CVSS 9.8An authentication bypass (CWE-288) affecting multiple Fortinet products may allow an attacker with a FortiCloud account and a registered device to gain access to other devices registered to different accounts when FortiCloud SSO authentication is enabled.
CVE-2026-21509 — Zero-Day OLE Security Bypass CVSS 7.8A zero-day vulnerability allows an unauthorized attacker to bypass the local OLE (Object Linking and Embedding) security mechanism.
Top Security News
Microsoft to disable NTLM by default in future Windows releases NewsMicrosoft has announced that it will disable the NTLM authentication protocol by default in future versions of Windows.
Researchers Uncover Chrome Extensions Abusing Affiliate Links and Stealing ChatGPT Access NewsSome cybersecurity researchers have discovered malicious Google Chrome extensions capable of stealing data and harvesting authentication tokens for ChatGPT.
Hugging Face Abused to Deploy Android RAT NewsThe Hugging Face infrastructure was abused to distribute an Android Remote Access Trojan (RAT) that harvests credentials for widely used payment services.
Ransomware Activity
RSTRT RansomwareThe threat actor clop claims responsibility for a ransomware attack against the victim in the Food and Drink sector on January 25.
LC Publishing Group RansomwareThe threat actor safepay claims responsibility for a ransomware attack against the victim in the Technologies sector on January 24.



