
Pulse of the Public

This story was reported from 5 sources. We share the full citation list on request.
The US Department of Justice and FBI have seized key internet domains used by Chinese state-sponsored group QTFY to target sensitive U.S. infrastructure and government agencies. The operation rendered two major cyber-espionage platforms, QScan and QTRouter, completely inoperable.
Cybersecurity vendor SonicWall has issued urgent security updates after confirming that threat actors are actively exploiting two zero-day vulnerabilities in its enterprise Secure Mobile Access 1000 series VPN appliances.
Cybersecurity monitoring groups have warned that nearly 22,000 Microsoft Exchange servers exposed to the internet remain unpatched against a high-severity authentication bypass vulnerability. Authorities report that exploit code is active online, enabling unauthorized actors to hijack corporate mailboxes and access sensitive communications.
Security researchers and threat monitoring agencies have raised urgent alarms after attackers began actively exploiting chained vulnerabilities in PaperCut print management software. Cybersecurity authorities, including CISA, have added the flaws to their known exploited vulnerability lists, urging organizations to apply emergency patches immediately.