Of the tracked stories, 2 of 3 also mention Google, the most common co-covered peer. The 115-day window averages about 0.2 stories each week. The busiest single day carried 2. Coverage clusters in vulnerability, which accounts for 2 of those 3, with the remainder spread across 1 other category.
Figures are computed live from our source-verified story record
— see our methodology for how impact and
sentiment are derived.
What the coverage shows about Mandiant
Of the tracked stories, 2 of 3 also mention Google, the most common co-covered peer. The 115-day window averages about 0.2 stories each week. The busiest single day carried 2. Coverage clusters in vulnerability, which accounts for 2 of those 3, with the remainder spread across 1 other category. They are less corroborated than the beat average, carrying 2.7 original sources each against 3.1 for the same window. The 7.3 average consequence score is above the beat benchmark of 7 in the same window. This profile follows 3 Cybersecurity stories mentioning Mandiant across the period from February 18, 2026 to June 12, 2026.
Stories tracked
3
Per week
0.2
Sources per story
2.7
Computed from the 3 stories linked to this entity, with beat comparisons drawn from all 504 Cybersecurity stories published in the same date window. Shares are omitted below five stories and comparisons below a twenty-story baseline.
Coverage cohort
Appears alongside
Other entities that clear the same relevance threshold in stories also covering Mandiant. Shared-story counts are live from our verified record — not editorial picks.
Google and Mandiant confirm active exploitation of CVE-2026-35273, a critical unauthenticated RCE flaw in Oracle PeopleSoft. The ShinyHunters group compromised roughly 300 instances, with the higher education sector bearing 68% of the impact. Oracle has only released mitigations, leaving organizations exposed to data theft and extortion.
An active extortion campaign by ShinyHunters exploited a zero-day vulnerability in Oracle PeopleSoft, with Google notifying over 100 organizations—68% in higher education. The attackers used customized MeshCentral agents for C2, actions occurring before Oracle’s June 10 advisory. This highlights the growing threat of zero-day exploitation in widely used enterprise software and the education sector’s vulnerability.
A sophisticated Chinese cyberespionage group, tracked as UNC6201, has been exploiting a critical zero-day vulnerability in Dell RecoverPoint for Virtual Machines for nearly two years. The flaw, identified as CVE-2026-22769, allowed attackers to maintain long-term persistence and conduct stealthy malware campaigns against high-value targets.