Malicious cloud customers can bring down the power grid
2026-07-20T19:23:58Z•4a3a47ce744de28c9f482c57f0b3e2439a0901294db5d493b08e7c98311b1eee
ai-securityandroid-bypasscalendar-based-c2china-espionagecisacloud-threatscredential-hygienecritical-infrastructuredata-breachfortisandboxgauwipergeminiinfostealerjailbreaksjoomlalegacyhivellm-misusemodel-poisoningpatch-managementrogueplanetsharepoint-exploitssocial-engineeringsupply-chainwiper-ransomwarezero-day
What happened
The Register roundup highlights a spike in high-impact security incidents and an expanding attack surface driven by both traditional exploits and AI misuse. Key stories: researchers warn that malicious cloud workloads could disrupt power grids; the HOLLOWGRAPH campaign uses Microsoft 365 calendar appointments as a stealthy C2/dropbox; FortiSandbox command-injection flaws drew a CISA patch order and active exploitation; multiple SharePoint bugs are being actively attacked; destructive GigaWiper combines multiple wipers/ransomware families; Microsoft patched a Defender zero-day (RoguePlanet) and
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- theregister_security
- Record identifier
- 4a3a47ce744de28c9f482c57f0b3e2439a0901294db5d493b08e7c98311b1eee
- Enrichment time
- 2026-07-20T19:23:58Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.