🚨 ShinyHunters is exploiting an Oracle PeopleSoft vulnerability (CVE-2026-35273) as part of an extortion campaign targeting higher education.
Read the full analysis, and get IOCs and remediation guidance to stay ahead of the threat: goo.gle/4e52jOz
⏪ ICYMI: Mandiant identified exploitation of a critical vulnerability in KnowledgeDeliver, a learning management system commonly used in Japan.
The vulnerability allows for unauthenticated remote code execution via ViewState deserialization.
Details: goo.gle/444QSjW
Join part two of the M-Trends 2026 virtual series on SecOps transformation.
Learn to evolve cyber defense functions, operationalize threat intelligence at scale, and proactively hunt.
✍️ Register: goo.gle/4v2olYn
ALT M-Trends 2026: Accelerating Response through SecOps Transformation
The AI era has rewritten the rules of cyber risk.
Today at Security Talks 2026, we're exploring Google AI Threat Defense, dark web intelligence, and AI agents for SecOps.
Join us at 11:00AM PDT (Americas): goo.gle/4xiKeUR
ALT Security Talks 2026: Agentic Defense in the AI Era
Join our Security Talks virtual event on June 10 🎉
We’re exploring Google AI Threat Defense, dark web intelligence, and Google SecOps AI agents.
Learn to anticipate threats and move from reactive to proactive, machine-speed defense.
RSVP:
goo.gle/4oie1ZR
📚 Our cutting-edge Practical Threat Hunting course is built by consultants and delivered by experts with decades of professional expertise.
Join us in-person in Dublin:
goo.gle/4ak6L9P
AI-driven attacks demand autonomous response.
Join Google Cloud Security Talks to see how Google AI Threat Defense helps you outpace AI-driven attacks, and how Google SecOps AI agents help strengthen your SOC.
Register: goo.gle/3Qpzi7a
🚨 UNC3753 is targeting US law firms using vishing and RMM tools for data extortion.
In instances linked to UNC3753, individuals posing as IT technicians attempted direct data theft using physical, in-person access.
Read more & get IOCs ➔ goo.gle/49HfT8g
ALT Seeking Counsel: Ongoing Targeted Campaign Against US Law Firms
🔓 Threat actors are using AI to bypass defenses.
Join Google Threat Intelligence Group analysts for a deep-dive into the AI-powered kill chain and the speed of modern attacks.
🔗: goo.gle/4o0v8ip
Gartner just released their first Gartner® Magic Quadrant™ for Cyberthreat Intelligence Technologies and Google Threat Intelligence was recognized as a Leader. → goo.gle/3RVNS6F
Hunting cross-compiled MIPS/ARM malware?
Use Google TI advanced searches to reveal edge threats.
Learn how to refine your searches with the Advanced searches documentation: goo.gle/3P79Xys#GoogleTIMonday
UNC6671, a threat actor operating under the "BlackFile" brand, leverages vishing and adversary-in-the-middle to bypass multi-factor authentication.
The group targets Microsoft 365 and Okta environments for programmatic data exfiltration.
🔗 goo.gle/4ujAUy4
Cybersecurity training hits different when it’s built from real-world incident response.
Mandiant Academy courses are grounded in real-time threat intel and adversary methodologies that our incident response teams see every day.
🎥 What to expect from June’s Fundamentals class:
AI isn’t just a tool for attackers; it’s a target.
Our latest report shows how adversaries use AI to build exploits and target AI infrastructure for initial access.
🔗 goo.gle/4djxILu
Melbourne cyber pros: Join us at Google Melbourne for Mandiant Community Night!
Explore a software engineering approach to threat detection (CD/CR) with our frontline experts to reduce alert toil.
Space is limited. RSVP by May 12: goo.gle/49k3eb4