STRATQUAD
CYBER THREAT INTELLIGENCE BRIEF
Daily Brief · 22 August 2026 · 24h windowRISKCRITICAL
StratQuad CTI Daily Brief, 22 August 2026

Compiled from 52 monitored sources · 876 articles reviewed

Today’s Briefing

CISA added CVE-2026-73570, an unauthenticated OS command injection in Zimbra Collaboration Suite, to the KEV catalogue based on evidence of active exploitation. CISA also catalogued CVE-2026-69836, a deserialization vulnerability in Microsoft Entra ID that permits remote code execution. Apollo Global Management disclosed a five-day intrusion in early July affecting cloud platforms and personal data, part of a broader wave of social engineering attacks on the financial sector.

Top Stories

  1. Apollo discloses data breach from ongoing wave of attacks hitting financial sector
  2. Medical records, SSNs, and bank details exposed in CareCloud data breach
  3. CISA Adds One Known Exploited Vulnerability to Catalog
  4. Johnson Controls Simplex Incident Manager
  5. Managing the cyber risk of agentic AI

Full brief available to subscribers

The complete operator brief — action items with patch deadlines, the vulnerability appendix and named actor activity — goes out by email each morning. Subscribe free to receive it.

All briefs