Microsoft OWA Exploit and Amgen Data Breach Signal Growing Cyber Threats
Security researchers have identified a new exploit chain, dubbed OWAReaper, that leverages a patched cross‑site scripting flaw (CVE‑2026‑42897) in Microsoft Outlook Web Access. The technique allows attackers, linked to the TA488 group, to install a persistent backdoor on OWA servers, maintaining access even after password changes or device resets. Microsoft reports the vulnerability has been abused since May 2026.
Separately, biotech giant Amgen disclosed a material cloud‑based data breach. Threat actors stole patient records and proprietary corporate information from the company’s cloud environment. The breach, attributed to the ShinyHunters group, does not appear to affect Amgen’s financial results, but investigations into the full scope are ongoing. Both incidents underscore the increasing sophistication of cyber‑attacks on enterprise and health‑care systems.
Entities: Amgen Inc. · Microsoft Corporation · Outlook Web Access · ShinyHunters · TA488