Show Notes - 2026-02-10
Stories Covered
Microsoft Patch Tuesday: 6 Actively Exploited Zero-Days (CISA KEV) [Critical Alerts]Highest severity zero-days (CVSS 8.8): [Critical Alerts]Additional zero-days (CVSS 7.8): [Critical Alerts]Lower severity zero-day (CVSS 6.2): [Critical Alerts]Two critical-rated vulnerabilities (CVSS 9.8): [Critical Alerts]Action: [Critical Alerts]Windows Update KBs: [Critical Alerts]Ivanti EPMM Zero-Day Exploitation Hits European Government Agencies [Critical Alerts]Action: [Critical Alerts]Warlock (Storm-2603) Ransomware Breaches SmarterTools via Unpatched SmarterMail [Ransomware & Extortion]Action: [Ransomware & Extortion]Reynolds Ransomware Embeds BYOVD Driver to Disable EDR [Ransomware & Extortion]Action: [Ransomware & Extortion]GitHub Copilot / IDE Command Injection via Prompt Injection [Vulnerability Disclosures]Action: [Vulnerability Disclosures]Adobe Patch Tuesday: 44 Vulnerabilities in Creative Apps [Vulnerability Disclosures]Action: [Vulnerability Disclosures]Microsoft Defender for Endpoint Linux RCE (CVE-2026-21537) [Vulnerability Disclosures]Action: [Vulnerability Disclosures]Windows Hyper-V Local Code Execution (CVE-2026-21248) [Vulnerability Disclosures]Action: [Vulnerability Disclosures]Secure Boot Certificates Expiring June 2026 [Windows / AD Security]Action: [Windows / AD Security]Microsoft 365 Admin Center Outage (North America) [Windows / AD Security]Action: [Windows / AD Security]Picus Red Report 2026: Ransomware Shifting to Stealth and Persistence [General Security News]Takeaway: [General Security News]CVEs Referenced
CVE-2025-52691, CVE-2025-68947, CVE-2026-1281, CVE-2026-1340, CVE-2026-21248, CVE-2026-21256, CVE-2026-21510, CVE-2026-21513, CVE-2026-21514, CVE-2026-21516, CVE-2026-21519, CVE-2026-21523, CVE-2026-21525, CVE-2026-21531, CVE-2026-21533, CVE-2026-21537, CVE-2026-23760, CVE-2026-24300, CVE-2026-24423