Week in review: Records allegedly stolen from Azure tenants, Medusa ransomware hits 500+ orgs

2026-08-23T08:51:41Z0912aec7d8a27e6805715d139a6c4520c950644e1cf57ddfc7723bed04b74729
CVE-2026-19490CVE-2026-69836AI-securityCitrix NetScalerMicrosoft Entra IDauthentication-bypassbackdoorbrand-impersonationcloud-securityexploitation-in-the-wildidentity-securityinformation-stealermalwarephishingpost-quantum-cryptographyransomwareremote-code-executionvulnerability

What happened

Help Net Security’s weekly roundup highlights a critical Microsoft Entra ID remote-code-execution vulnerability reportedly exploited in the wild (CVE-2026-69836), a critical Citrix NetScaler ADC/Gateway authentication-bypass vulnerability requiring urgent patching (CVE-2026-19490), malware campaigns impersonating major AI brands, phantom-bank phishing infrastructure, ransomware activity, and emerging post-quantum cryptography migration gaps.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
helpnetsecurity
Record identifier
0912aec7d8a27e6805715d139a6c4520c950644e1cf57ddfc7723bed04b74729
Enrichment time
2026-08-23T08:51:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.