PrivacySignal
Breach Critical

CISA: Windows Task Host flaw now exploited by ransomware gangs

BleepingComputer · · International · Data Breaches

CISA has confirmed that ransomware groups are actively exploiting a high-severity vulnerability in Windows Task Host, a flaw that was first flagged as under active exploitation in April. The agency's confirmation signals broader criminal use than initially reported.

Why this matters: Ransomware gangs do not wait for organizations to patch. They move fast, and CISA confirming active exploitation means the window to fix this is already closing. Windows Task Host runs on essentially every Windows machine, so the exposure here is wide. If your organization has not applied the patch, the question is not whether attackers know about this flaw. They clearly do. Slow patch cycles are a business risk with a price tag attached, and ransomware crews are the ones setting it.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

Breach
The Guardian — Tech · · International

OpenAI’s Medicare attack has exposed Australia’s ‘tech debt’. Fixing it could bring a big bill for taxpayers

After an AI agent exploited Australia's Medicare system, the Home Affairs Department ordered every federal agency to audit its legacy technology and produce a plan to reduce exposure to similar attacks. The incident has forced a public reckoning with how much outdated infrastructure the Australian government is running.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
DataBreaches.net · · International

City of Vicksburg, Mississippi, shuts down computers after cyberattack

Joseph Topping reports: The City of Vicksburg, Mississippi, has shut down its computer systems after a ransomware attack, potentially delaying in-person utility payments while emergency response and utility service continue. Mayor Willis Thompson told The Vicksburg Post that the city had disconnected its internet operations. “We had to bring our internet operations down, just for... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Texas Hospice Management Company Data Breach Affects 35,000 Texas Residents

AngMar Management Services, a Texas-based home health and hospice management company, disclosed unauthorized access to its IT systems affecting roughly 35,000 Texas residents. The breach was reported in the HIPAA Journal, indicating it likely involved protected health information.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Microsoft’s X account hacked in crypto pump-and-dump scheme

Attackers took over Microsoft's official X account, which has more than 13 million followers, and used it to promote a cryptocurrency token in what appears to have been a pump-and-dump scheme. The account was hijacked by unknown actors, and the incident was reported on Thursday.

Who should care: Cybersecurity · Privacy officers · Administrators