Microsoft's Coreutils for Windows, (Thu, Jun 4th)
2026-06-04T13:23:46Z•1756ac51cf63c01b868c7af19e4aac66dbdf5a73bf3e57e5322f2466e1695271
API-scanningGnuWin32NetSupport-RATRATSANS-ISCSOAPSVGYARA-Xcoreutilsmalicious-attachmentsmalware-distributionphishingscanningsecurity-newsswagger.jsonthreat-actorsyara
What happened
SANS ISC diary entries (early June 2026) covering multiple operational security topics: a note on using GnuWin32/CoreUtils for Windows; continued internet scanning for swagger.json and commentary on SOAP/web-service misuse; a new wave of phishing emails delivering SVG attachments (malicious image-based delivery); an unidentified RAT that drops NetSupport RAT (active malware distribution); and the YARA-X 1.17.0 release with performance improvements. Several daily Stormcast podcast entries are also listed. No specific CVEs are referenced, but active phishing and RAT distribution indicate ongoing
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- sans_isc_diary
- Record identifier
- 1756ac51cf63c01b868c7af19e4aac66dbdf5a73bf3e57e5322f2466e1695271
- Enrichment time
- 2026-06-04T13:23:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.