CISA added Microsoft SharePoint's deserialization bug and two FortiSandbox command-injection CVEs to KEV within hours of each other today. Separately, Socket confirmed the Shai-Hulud npm worm resurfaced to breach AI-music startup Suno, exposing source that shows the company stream-ripped tracks to train its models.
The pattern underneath is trust in the channel, not the code: UAT-11795 is trojanizing WebEx and Zoom installers to drop Starland RAT — the same TTP shape as this week's AsyncAPI and Laravel-Lang campaigns, just aimed at commercial software instead of a registry. ClickLock does the low-tech version, a copy-pasted Terminal one-liner that locks macOS users out of their own apps until they hand over a password, while PhantomEnigma turned 20+ hijacked Brazilian government sites into a malware channel and Daxin's kernel rootkit resurfaced in Taiwan after four years — both riding on infrastructure defenders don't expect to blocklist. On the disclosure side, Envoy Gateway and the MCP Python SDK maintainers each shipped same-day patched releases for their respective advisory batches, proof that fast turnaround from disclosure to fix still happens on infrastructure-tier software, even as ArcadeDB's own privilege-escalation fix got bypassed within the same release cycle it shipped in.
→ Operational priority for the night patch on-prem SharePoint and FortiSandbox ahead of the 2026-07-19 BOD 26-04 deadline, and rotate any CI/registry tokens that touch Suno-adjacent repos before assuming Shai-Hulud stopped at the leak.