This episode covers active exploitation of patched Apple screen sharing and GeoServer vulnerabilities, urging immediate updates. It highlights a recently exploited SAP Commerce Cloud remote code execution flaw, advising users to assume compromise. Finally, it details the Chaintrop supply chain worm, which evades detection by executing malicious code via IDE configuration files rather than standard npm scripts, compromising hundreds of packages.