Bg Shape
Image

Fortinet and Microsoft Critical Patches, ShinyHunters Targeted Intrusion, and France’s Digital Sovereignty Shift

Robert Kehoe
Chief Technology Officer
Published:
January 30, 2026

This week’s Cybersecurity Week in Review highlights a number of high-severity vulnerabilities, an unusually targeted ransomware intrusion, and an interesting move by the French government around digital sovereignty and resilience.

Critical Vulnerabilities: Fortinet and Microsoft

Two patching priorities stood out this week.

Fortinet disclosed a new vulnerability affecting the FortiCloud SSO plugin used with Fortinet firewalls. With a CVSS score of 9.8, this is a critical issue, and organisations using the plugin should upgrade to the latest patch as soon as possible. Where patching cannot be applied immediately, Fortinet has provided workarounds that should be implemented without delay.

Microsoft also released an out-of-band patch for the Microsoft Office suite. This CVE scored 7.8, still firmly high severity, and should be treated as a priority update.

ShinyHunters and a Targeted Attack on Match Group

On the ransomware side, ShinyHunters claimed a number of new victims linked to Match Group, the parent company behind major dating platforms including Tinder and OkCupid.

What makes this case notable is the apparent targeting involved. The group reportedly registered the domain matchinternal.com and used it to trick a contractor into leaking credentials, enabling access into the environment.

At the time of writing, Match Group has not confirmed the full scope of the breach, but reports suggest that personal data and user tracking information may have been exposed.

France Drops US Video Conferencing Platforms

A separate development this week came from France, where the government confirmed it is dropping several US-made video conferencing tools currently in use, including Microsoft Teams, Google Meet, and Zoom.

Instead, France is deploying an internally developed platform called Visio, with an emphasis in official communications on digital sovereignty and resilience. It is a move that reflects a broader European focus on control over critical digital infrastructure.

Cyber Resilience Act Webinar

Finally, a quick note: next week I’ll be hosting a LinkedIn Live session alongside a member of our GRC team, looking at the Cyber Resilience Act and what it means for organisations preparing for compliance and operational impact.

More on that soon, and we’ll be back again next week with the next Cybersecurity Week in Review.

Read Our Latest Blogs

Blog Image
VMware vCentre Backdoor, LiteLLM Supply Chain Attack & Azure Entra ID Targeted

China-backed APT exploits VMware vCentre, LiteLLM supply chain attack hits 2,500 pipelines, and Azure Entra ID targeted with stolen credentials.

Blog Image
Bringing OT Under Your SOC: Lessons from Real-World Attacks

US water utility hacks and a Polish CHP plant breach expose OT security's real gaps. A practical five-stage plan to bring OT under SOC monitoring.

Blog Image
JFrog Confirmed AI Attack, Minnesota Water Attack & Coca-Cola Refuse to Pay

JFrog patches the zero-day used in the Hugging Face breach, Coca-Cola's Fairlife hit by Anubis ransomware, and a coordinated attack knocks out Minnesota water systems.

Bg ShapeBg Shape
BLOGS & INSIGHTS

Fortinet and Microsoft Critical Patches, ShinyHunters Targeted Intrusion, and France’s Digital Sovereignty Shift

Vulnerabilities and Exposure
Threat Actors and Campaigns
Compliance and regulations
Robert Kehoe
Chief Technology Officer
January 30, 2026

This week’s Cybersecurity Week in Review highlights a number of high-severity vulnerabilities, an unusually targeted ransomware intrusion, and an interesting move by the French government around digital sovereignty and resilience.

Critical Vulnerabilities: Fortinet and Microsoft

Two patching priorities stood out this week.

Fortinet disclosed a new vulnerability affecting the FortiCloud SSO plugin used with Fortinet firewalls. With a CVSS score of 9.8, this is a critical issue, and organisations using the plugin should upgrade to the latest patch as soon as possible. Where patching cannot be applied immediately, Fortinet has provided workarounds that should be implemented without delay.

Microsoft also released an out-of-band patch for the Microsoft Office suite. This CVE scored 7.8, still firmly high severity, and should be treated as a priority update.

ShinyHunters and a Targeted Attack on Match Group

On the ransomware side, ShinyHunters claimed a number of new victims linked to Match Group, the parent company behind major dating platforms including Tinder and OkCupid.

What makes this case notable is the apparent targeting involved. The group reportedly registered the domain matchinternal.com and used it to trick a contractor into leaking credentials, enabling access into the environment.

At the time of writing, Match Group has not confirmed the full scope of the breach, but reports suggest that personal data and user tracking information may have been exposed.

France Drops US Video Conferencing Platforms

A separate development this week came from France, where the government confirmed it is dropping several US-made video conferencing tools currently in use, including Microsoft Teams, Google Meet, and Zoom.

Instead, France is deploying an internally developed platform called Visio, with an emphasis in official communications on digital sovereignty and resilience. It is a move that reflects a broader European focus on control over critical digital infrastructure.

Cyber Resilience Act Webinar

Finally, a quick note: next week I’ll be hosting a LinkedIn Live session alongside a member of our GRC team, looking at the Cyber Resilience Act and what it means for organisations preparing for compliance and operational impact.

More on that soon, and we’ll be back again next week with the next Cybersecurity Week in Review.

Robert Kehoe

Chief Technology Officer

Robert is CTO at Smarttech247, leading engineering strategy and delivery across cybersecurity products and services. With over 15 years’ experience in software and security, and CISSP certified, he has led large-scale cloud and security initiatives, including Cloud Protection for Salesforce. Robert focuses on measurable customer outcomes and building empowered, high-performing engineering teams.

Contents:

Ready to scale your security and compliance operations?

We protect your on-premise/cloud/OT environments - 24x7x365