Microsoft's Coreutils for Windows, (Thu, Jun 4th)

2026-06-05T01:23:49Z77372581e6295279f7c635a38ea10873f21825f0ba0fbc8325283ef989c3b0f0
Coreutils for WindowsGnuWin32NetSupport RATRATSOAPSVGYARA-Xmalwarephishingpodcastscanningswagger.jsonthreat-intel

What happened

SANS ISC diary entries (early June 2026) report multiple operational security observations: a new wave of phishing emails delivering SVG attachments (image-only delivery, no body URLs) used to deliver malicious content; continued automated scans looking for swagger.json and other web-service exposure (SOAP-related issues noted); an unidentified Remote Access Trojan observed dropping NetSupport RAT; a note about GnuWin32 CoreUtils for Windows; and a YARA‑X 1.17.0 release (performance improvements and one bugfix). Several daily 'ISC Stormcast' podcast entries are also listed. No specific CVE(s)/

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
sans_isc_diary
Record identifier
77372581e6295279f7c635a38ea10873f21825f0ba0fbc8325283ef989c3b0f0
Enrichment time
2026-06-05T01:23:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.