PTC Windchill Vulnerability Exploited in Ransomware Campaign
2026-07-27T13:23:59Z•3b0d0b030d74bd6d9f01f5d4282dfa87240850c972af236a8b4728adb2171061
AI securityAnubis ransomwareMedusaHVNCMicrosoft 365PEAR ransomwarePTC WindchillSBOMcredential theftdata breachexploited vulnerabilityhealthcare datahidden Windows desktopmalware-as-a-servicemobile application securitypublic Wi-Fi gateway compromiseransomwareremote access trojanremote code executionunsafe deserialization
What happened
SecurityWeek RSS digest covering a critical, reportedly exploited PTC Windchill unsafe deserialization vulnerability enabling unauthenticated remote code execution; MedusaHVNC malware using hidden Windows desktops for covert persistence and remote access; attacks through compromised public Wi-Fi gateways to harvest Microsoft 365 credentials; and multiple ransomware-linked data breaches affecting millions. Other items discuss AI security initiatives, mobile-app SBOM analysis, cybersecurity funding, and AI vulnerability-testing benchmarks.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 3b0d0b030d74bd6d9f01f5d4282dfa87240850c972af236a8b4728adb2171061
- Enrichment time
- 2026-07-27T13:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.