Berlin Data Heist Exposes Millions, Microsoft Fixes 966 Vulnerabilities
According to the latest LeakWatch report, the city of Berlin is dealing with the aftermath of a significant data theft from its administrative network. The hackers exfiltrated approximately 5.7 or 5.8 terabytes of data between August 7 and 12, although this figure has not been independently confirmed by the state.
Meanwhile, Microsoft released its September Patch Tuesday update, addressing 966 vulnerabilities across various products. This includes two actively exploited zero-day vulnerabilities that require a suitable local execution context to be triggered.
In other news, several high-profile software companies have fallen victim to security breaches. SAP published 19 new Security Notes, including CVE-2026-44756, which has a CVSS score of 10.0. JFrog Artifactory was also compromised due to a vulnerability in its default configurations.
Additionally, F5 BIG-IP APM users are at risk from the 'PoisonedRefresh' rootkit, which injects a webshell into running processes and memory. Android malware, Mantax Otax, combines espionage functions with ransomware elements, while APIS data exposure has compromised approximately 220.8 million records.