Security Daily Digest — 2026-04-26
Google Releases Critical Chrome Updates to Patch Multiple Vulnerabilities — Google News Security (JP)
Google has released updates for Chrome, addressing 19 vulnerabilities, including critical ones that could impact over 3.5 billion users. The latest ChromeOS 147 update also fixes 71 vulnerabilities, some of which are classified as 'Critical'. These vulnerabilities, if exploited, could allow attackers to execute arbitrary code or bypass security restrictions. Security teams should prioritize patching to protect against potential exploitation.
CISA Adds Four Exploited Vulnerabilities to Known Exploited Vulnerabilities Catalog — The Hacker News
The Cybersecurity and Infrastructure Security Agency (CISA) has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, with a federal deadline set for May 2026 to address these flaws. These vulnerabilities are actively being exploited, posing significant risks to affected systems. Security teams should review and apply updates or mitigations to ensure compliance and protect against potential threats.
- Hackers Leverage Microsoft Teams to Breach Organizations Posing as IT Helpdesk Staff - CyberSecurityNews [Google News Security]
- Threat actor uses Microsoft Teams to deploy new “Snow” malware [BleepingComputer]
- Medtronic discloses cybersecurity breach in certain IT systems - MassDevice [Google News Security]
- Personal and Medical Records of 160,312 Americans Potentially Exposed After Major Data Breach Hits Healthcare Firm - The Daily Hodl [Google News Security]
- America's largest home security brand ADT confirms data breach linked to ShinyHunters group - Neowin [Google News Security]