Microsoft Plugs Nearly 1,000 Security Holes

2026-09-13T01:23:22Z•525119c600548dc1925770512e237fc8048849cd4aec9355c7a13fdf18ebb4d8
AT&T customer dataAWS GovCloudCISAIoT securityMicrosoft Patch TuesdaySnowflakeTeamPCPactively exploited vulnerabilitiesad fraudadtech trackingcloud securitycredential leakdark webdata breachdriver licensesextortionidentity theftmalwareprivacyresidential proxiessecrets exposuresmart TVssoftware supply chain attacksvulnerability management

What happened

KrebsOnSecurity reporting covers major cybersecurity developments in July–September 2026, including unusually large Microsoft security updates, active exploitation, software supply-chain attacks attributed to TeamPCP, the sale of more than 153 million driver-license scans, Snowflake-related data extortion, compromised streaming devices, residential proxy abuse, ad-tech tracking, and a CISA credential leak involving AWS GovCloud keys. The collection reflects significant risks across vulnerability management, identity theft, cloud data security, supply chains, IoT, and credential exposure.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
krebs_on_security
Record identifier
525119c600548dc1925770512e237fc8048849cd4aec9355c7a13fdf18ebb4d8
Enrichment time
2026-09-13T01:23:22Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.