Week 5 - 2026 Weekly Digest

26 Jan 2026 – 01 Feb 2026 • Published: 02 Feb 2026

CVE News Ransomware 8Bit Content Week 5 2026

Critical CVEs

CVE-2026-1281 — Unauthenticated Remote Code Execution via Code Injection CVSS 9.8

Ivanti Endpoint Manager Mobile

A code injection vulnerability allows an unauthenticated attacker to achieve remote code execution, enabling access to sensitive data and modification of authentication settings.

CVE-2026-24858 — Authentication Bypass via FortiCloud SSO CVSS 9.8

Fortinet FortiOS

An authentication bypass (CWE-288) affecting multiple Fortinet products may allow an attacker with a FortiCloud account and a registered device to gain access to other devices registered to different accounts when FortiCloud SSO authentication is enabled.

CVE-2026-21509 — Zero-Day OLE Security Bypass CVSS 7.8

Microsoft Office

A zero-day vulnerability allows an unauthorized attacker to bypass the local OLE (Object Linking and Embedding) security mechanism.

Top Security News

Microsoft to disable NTLM by default in future Windows releases News

Microsoft has announced that it will disable the NTLM authentication protocol by default in future versions of Windows.

Source: Bleeping Computer

Researchers Uncover Chrome Extensions Abusing Affiliate Links and Stealing ChatGPT Access News

Some cybersecurity researchers have discovered malicious Google Chrome extensions capable of stealing data and harvesting authentication tokens for ChatGPT.

Source: The Hacker News

Hugging Face Abused to Deploy Android RAT News

The Hugging Face infrastructure was abused to distribute an Android Remote Access Trojan (RAT) that harvests credentials for widely used payment services.

Source: Security Week

Ransomware Activity

RSTRT Ransomware

The threat actor clop claims responsibility for a ransomware attack against the victim in the Food and Drink sector on January 25.

LC Publishing Group Ransomware

The threat actor safepay claims responsibility for a ransomware attack against the victim in the Technologies sector on January 24.

What we shipped at 8BitSecurity