STRATQUAD
CYBER THREAT INTELLIGENCE BRIEF
Daily Brief · 17 July 2026 · 24h windowRISKCRITICAL
StratQuad CTI Daily Brief, 17 July 2026
Compiled from 52 monitored sources · 248 articles reviewed

Today’s Briefing

CISA added three vulnerabilities to the Known Exploited Vulnerabilities Catalog, two of them Fortinet FortiSandbox command injection flaws (CVE-2026-25089 and CVE-2026-39808) and one a Microsoft SharePoint deserialisation issue (CVE-2026-58644). Rapid7's MDR team disclosed two SonicWall SMA1000 zero-days under active exploitation (CVE-2026-15409 and CVE-2026-15410), both published by SonicWall on 14 July. Rockwell Automation issued an advisory for CVE-2026-9653 affecting 1756-EN2, 1756-EN3, and 1756-ENBT controllers, a denial of service vulnerability in versions at or below V12.001.

Top Stories

  1. Begun, the Patch Wars have
  2. CISA Adds Three Known Exploited Vulnerabilities to Catalog
  3. Rockwell Automation 1756-EN2, 1756-EN3, and 1756-ENBT
  4. Helping small businesses with free, hands-on cyber consultancy
  5. Rapid7 MDR Team Discovers New SonicWall SMA1000 Zero Days being Actively Exploited (CVE-2026-15409, CVE-2026-15410)

Full brief available to subscribers

The complete operator brief — action items with patch deadlines, the vulnerability appendix and named actor activity — goes out by email each morning. Subscribe free to receive it.

Get the brief at 07:00, every weekday.

The day's UK security intelligence, read and ranked so you start informed: the stories that matter, the IOCs your SIEM needs, and the actions worth taking first.

← All briefs