Today’s Briefing
Microsoft published 196 security updates in today's Patch Tuesday release, the largest single-vendor flood in the signal window. Six critical-severity watchlist CVEs warrant attention: CVE-2026-9181 and CVE-2026-9182 in Esri ArcGIS Server (unauthenticated directory traversal and unrestricted file upload respectively), CVE-2026-13019 in Esri Portal for ArcGIS (unauthenticated API access), CVE-2026-33264 in Apache Airflow (arbitrary code execution via malicious DAG triggers), CVE-2026-15113 in Google Chrome on Android (use-after-free sandbox escape), and CVE-2026-47646 in Dynamics 365 Customer Voice (cross-site scripting). Google Threat Intelligence reports ShinyHunters actively exploiting Oracle PeopleSoft vulnerabilities to target the education sector.
Top Stories
Full brief available to subscribers
The complete operator brief — action items with patch deadlines, the vulnerability appendix and named actor activity — goes out by email each morning. Subscribe free to receive it.
Get the brief at 07:00, every weekday.
The day's UK security intelligence, read and ranked so you start informed: the stories that matter, the IOCs your SIEM needs, and the actions worth taking first.