Washington Pulled the Plug on Anthropic ‘s Fable 5 and Mythos 5 models. The Rest of the World Is Watching.

2026-06-13T20:51:45Ze429626fcacd97c5c5b8534d864a1b11528750c1b327925aef7f1326b4a79cea
actively-exploitedbitlocker-bypasscisadata-exfiltrationexposed-iotfortinetfortisandboxgreatxmlhandalaivanti-sentryknown-exploited-vulnerabilitiesmalware-as-a-serviceonyxc2open-camerasoracle-peoplesoftpatching-urgentshinyhunterswater-utility-breachzero-day

What happened

Multiple high-impact incidents and actively exploited vulnerabilities were reported: CISA added Oracle PeopleSoft RCE (CVE-2026-35273, CVSS 9.8) and Ivanti Sentry RCE (CVE-2026-10520, CVSS 10.0) to its Known Exploited Vulnerabilities catalog; ShinyHunters used the PeopleSoft zero-day to breach 100+ organizations; attackers rapidly exploited Ivanti Sentry gateways shortly after patches and CISA urged emergency patching. Fortinet patched a critical FortiSandbox command-injection flaw (CVE-2026-25089, CVSS 9.8). Other notable threats include OnyxC2 (MaaS stealer targeting 210+ apps), an Iran‑link

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
e429626fcacd97c5c5b8534d864a1b11528750c1b327925aef7f1326b4a79cea
Enrichment time
2026-06-13T20:51:45Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.