STRATQUAD
CYBER THREAT INTELLIGENCE BRIEF
Daily Brief · 22 August 2026 · 24h windowRISKCRITICAL
StratQuad CTI Daily Brief, 22 August 2026Compiled from 52 monitored sources · 876 articles reviewed
Today’s Briefing
CISA added CVE-2026-73570, an unauthenticated OS command injection in Zimbra Collaboration Suite, to the KEV catalogue based on evidence of active exploitation. CISA also catalogued CVE-2026-69836, a deserialization vulnerability in Microsoft Entra ID that permits remote code execution. Apollo Global Management disclosed a five-day intrusion in early July affecting cloud platforms and personal data, part of a broader wave of social engineering attacks on the financial sector.
Top Stories
- Apollo discloses data breach from ongoing wave of attacks hitting financial sector
- Medical records, SSNs, and bank details exposed in CareCloud data breach
- CISA Adds One Known Exploited Vulnerability to Catalog
- Johnson Controls Simplex Incident Manager
- Managing the cyber risk of agentic AI
Full brief available to subscribers
The complete operator brief — action items with patch deadlines, the vulnerability appendix and named actor activity — goes out by email each morning. Subscribe free to receive it.