The Perimeter Site

The Desk · Threats · Breaches · Defenses

Your Medical Bill Just Came With a Side of Identity Theft

1,260,000.

The risk of public PLM servers

Cl0p has a predictable rhythm. They don't spend months crawling through a network if they can simply find a door that was left unlocked for the entire world to see. The current campaign targeting PTC Windchill and FlexPLM via unauthenticated remote code execution (RCE) is a textb

Over 30 Minnesota Water Utilities Hit in Coordinated OT Campaign

The call that pages you at 3am isn't about a leaked database. It's about someone else having control over the pumps in a municipal water system.

Who Is Watching Your Provider?

20.

Who Benefits from a Broken Vendor?

The numbers for the week are in, and they’re predictable. The technology sector remains at the top of the targeting table, claiming the #1 spot out of 12 sectors with 169 stories hitting the wire. In a world where every CISO claims to be "shifting left," the data suggests we've a

Arista VeloCloud Command Injection Hits CISA KEV With Three Day Patch Window

I spent my morning reviewing the CISA Known Exploited Vulnerabilities (KEV) catalogue, which is a delightful exercise in observing the friction between bureaucratic ambition and engineering reality. On 2026-07-27, the agency added CVE-2026-16812 to the list. The vulnerability aff

The Patch is Ready. The Deadline is Tomorrow.

I spend my Tuesday mornings reading changelogs. Most people find them tedious; I find them honest. A changelog doesn't use marketing adjectives. It tells you exactly which line of code was broken and who had to stay up until 4 a.m. to fix it.

The Audit is Passed. The Data is Gone.

The wire is currently obsessed with the "Compliance Floor." With 194 stories hitting this week on policy and regulation, the consensus is that we've finally reached the tipping point. The argument is simple: small businesses are too lazy or too distracted to secure themselves, so

The Security Suite is Installed. The Front Door is Open.

A Check Point zero-day on the CISA KEV list is the kind of thing that pages you at 3am. It's not a "potential" issue. It's a "someone is already in the management plane" issue.

The High Cost of Organic Downtime

Fairlife is currently discovering that it's remarkably easy to turn a $4 billion dairy operation into a very expensive collection of silent machinery.

Three Hundred Ninety Seven Data Breaches This Week Reveal Persistence of Legacy Credential Theft

The consensus on the wire this week is that we have reached the era of the autonomous breach. With 272 stories hitting the wire specifically regarding AI security, the narrative is neatly packaged: attackers are now using large language models to automate the reconnaissance phase

The targeting of industrial product lifecycles

Technology is still the loudest sector on the wire, with 290 stories hitting this week. Government follows at 141, and retail sits at 111. If you're looking at those numbers, you're seeing a volume game. But the most interesting movement isn't in the noise. It's in manufacturing.

The Patch is Available. The Breach is Happening.

The gap between a patch release and its deployment is where the most expensive mistakes of this decade are made. We treat patching as a maintenance task, a chore for the weekend window. It isn't. In the current environment, patching is a race against automated discovery. If a vul

Anubis Ransomware Steals 1TB of Data from Coca-Cola Dairy Unit Fairlife

Listen up. If you're currently staring at a spreadsheet of "critical assets" and wondering why your budget for egress filtering got slashed, look at Fairlife. The Anubis group just put them on the board, claiming they locked the servers and walked out the door with 1TB of data.

The reality of autonomous AI attacks

North of 400 data breaches this week. That is the number that pages you at 3am. Specifically, 486 stories hitting the wire. Most are the usual noise, but the volume is a grind. It's a war of attrition for anyone sitting in a SOC. You don't have time to wonder about the philosophy

Microsoft SharePoint CVE-2026-50522 Deserialization Flaw Triggers July 25 CISA Deadline

The deadline passed yesterday. For any federal agency in the United States still running an on-premises instance of Microsoft SharePoint, the window to comply with CISA’s latest mandate closed at the end of business on July 25.

Spirals Ransomware Completes Full Network Intrusion in Under 24 Hours

The technology sector has become a slaughterhouse. With 348 stories hitting the wire this week, it's the most targeted sector by a wide margin, nearly doubling the volume of the next most hit group, government. While today is relatively quiet, the cumulative data suggests we're s

Qilin Ransomware Exploits CVE-2026-0257 in Recent Wave of Attacks

Listen up. You're probably staring at your dashboard right now, watching the alerts tick up and wondering if you need to call the CISO. Before you do, take a breath and look at the blast radius. I don't care who the attacker is or what their manifesto says. I care about whether y

The OpenAI hack is not an AI problem

The current narrative on the wire is that we've entered a new era of vulnerability. The consensus suggests that the recent breach at OpenAI represents a fundamental shift in the threat model. The argument is that the "weights"—the massive arrays of numbers that define a model's i

The AI is Autonomous. The Target is Government.

The Thai Finance Ministry has been hit by an AI agent called Hermes. This is not a story about a clever hacker using a chatbot to write a more convincing email; it is a story about the removal of the human bottleneck. Hermes didn't just suggest a strategy; it automated the attack