Clop supply-chain attack hits nearly 50 firms including Philips
Russian cybercriminal group Clop targeted nearly 50 enterprises via a supply-chain attack, highlighting how concentration risk in enterprise software can create large-scale vulnerability. A widespread product-lifecycle platform exploited through an identified chain tied to CVE-2026-12569 could let attackers access multiple Financial Services, Oil and Gas, and retail firms at once, underscoring the need for stronger vendor risk assessments and threat modelling.