PTC Windchill Vulnerability Exploited in Ransomware Campaign

2026-07-27T13:23:59Z3b0d0b030d74bd6d9f01f5d4282dfa87240850c972af236a8b4728adb2171061
AI securityAnubis ransomwareMedusaHVNCMicrosoft 365PEAR ransomwarePTC WindchillSBOMcredential theftdata breachexploited vulnerabilityhealthcare datahidden Windows desktopmalware-as-a-servicemobile application securitypublic Wi-Fi gateway compromiseransomwareremote access trojanremote code executionunsafe deserialization

What happened

SecurityWeek RSS digest covering a critical, reportedly exploited PTC Windchill unsafe deserialization vulnerability enabling unauthenticated remote code execution; MedusaHVNC malware using hidden Windows desktops for covert persistence and remote access; attacks through compromised public Wi-Fi gateways to harvest Microsoft 365 credentials; and multiple ransomware-linked data breaches affecting millions. Other items discuss AI security initiatives, mobile-app SBOM analysis, cybersecurity funding, and AI vulnerability-testing benchmarks.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
3b0d0b030d74bd6d9f01f5d4282dfa87240850c972af236a8b4728adb2171061
Enrichment time
2026-07-27T13:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.