Claude Fable relaunch disappoints users with nerfed performance

2026-07-03T01:23:27Zb763e5f383dfa67369e801c7f18f9170c523ec59af473b55e8e3e7766f37b423
CISAChocoPoCCisco Unified CMClickFixConsentFixFortiBleedHSININCLynx ransomwareMFA bypassMedtronicMicrosoft 365Microsoft SharePointOAuthOpera Paste ProtectShinyHuntersactive exploitationbrowser mitigationscredential theftdata breachincident responsepassword sprayingremote code executionsecurity patchingtrojanized PoC

What happened

Multiple high-risk incidents and active exploitation trends were reported: a Microsoft SharePoint RCE patched in May is now being actively exploited, and Cisco confirmed exploitation of a recently patched Unified Communications Manager flaw. Large-scale credential-theft and account takeover activity was observed — FortiBleed-stolen Fortinet credentials tied to INC/Lynx ransomware, an 81‑million-attempt password-spraying campaign against Microsoft 365, and fast OAuth-based MFA bypass techniques (ConsentFix/ClickFix) targeting Microsoft 365 tenants. Other notable events include a DHS HSIN breach

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
b763e5f383dfa67369e801c7f18f9170c523ec59af473b55e8e3e7766f37b423
Enrichment time
2026-07-03T01:23:27Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Claude Fable relaunch disappoints users with nerfed performance · Baitaphish