Two campaign items this period lack a primary vendor: SCC-CAM-2026-0081 documents Hive0163’s Interlock ransomware intrusion chain deploying an AI-generated PowerShell backdoor (Slopoly) via ClickFix social engineering against Windows environments in healthcare, education, and public sector — the highest priority-scored item in this rollup at 0.654 — and SCC-CAM-2026-0082 reports preliminary attribution of two Qatari government and private sector intrusions to China-nexus actors, sourced from a single T3 article and requiring corroboration from CISA or primary threat intelligence vendors before high-confidence operational decisions. Neither item has an associated CVE; response actions center on behavioral detection, hunting, and TTP-mapped control validation rather than patching.