Claude Fable relaunch disappoints users with nerfed performance
2026-07-03T01:23:27Z•b763e5f383dfa67369e801c7f18f9170c523ec59af473b55e8e3e7766f37b423
CISAChocoPoCCisco Unified CMClickFixConsentFixFortiBleedHSININCLynx ransomwareMFA bypassMedtronicMicrosoft 365Microsoft SharePointOAuthOpera Paste ProtectShinyHuntersactive exploitationbrowser mitigationscredential theftdata breachincident responsepassword sprayingremote code executionsecurity patchingtrojanized PoC
What happened
Multiple high-risk incidents and active exploitation trends were reported: a Microsoft SharePoint RCE patched in May is now being actively exploited, and Cisco confirmed exploitation of a recently patched Unified Communications Manager flaw. Large-scale credential-theft and account takeover activity was observed — FortiBleed-stolen Fortinet credentials tied to INC/Lynx ransomware, an 81‑million-attempt password-spraying campaign against Microsoft 365, and fast OAuth-based MFA bypass techniques (ConsentFix/ClickFix) targeting Microsoft 365 tenants. Other notable events include a DHS HSIN breach
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- b763e5f383dfa67369e801c7f18f9170c523ec59af473b55e8e3e7766f37b423
- Enrichment time
- 2026-07-03T01:23:27Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.