RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

vulnerabilitycybersecurity

Adobe Reader zero-day exploited since December via weaponized PDFs

EXPMON founder Haifei Li disclosed an unpatched Adobe Reader vulnerability that attackers have been exploiting in the wild since at least December. The exploit

via BleepingComputer ·
vulnerabilityopen-source

AI-Assisted Research Surfaces 13-Year-Old RCE in Apache ActiveMQ Classic

A high-severity remote code execution flaw (CVE-2026-34197, CVSS 8.8) has been patched in Apache ActiveMQ Classic after sitting undetected for over a decade. Ho

via BleepingComputer ·
tech-culturepolicy

Artemis II Returned Stunning Moon Photos - But Robots Already Mapped It

NASA's Artemis II crew completed a crewed lunar flyby this week, the first in over 53 years, transmitting high-resolution imagery via a laser communications lin

via Ars Technica ·
cybersecuritymalware

Atomic Stealer Evades macOS ClickFix Protections via Script Editor Abuse

A new Atomic Stealer campaign bypasses macOS Tahoe's ClickFix terminal warnings by pivoting to Script Editor instead. Attackers drive victims to fake Apple-bran

via BleepingComputer ·
cybersecurityidentity

Bitcoin Depot loses 50.9 BTC after attackers pivot through corporate IT

Bitcoin Depot, operator of more than 25,000 crypto ATMs, disclosed in an SEC filing that intruders breached its corporate IT environment on March 23, 2026 and m

via BleepingComputer ·
cybersecuritysupply-chain

BPO Supply Chain Pivot: UNC6783 Tunnels Through Help Desks to Reach Enterprise Data

A newly tracked threat actor, UNC6783, is exploiting business process outsourcing providers as an entry point into high-value corporate targets across multiple

via BleepingComputer ·
malwarecloud

Chaos Botnet Evolves: New Variant Hits Misconfigured Cloud Servers With SOCKS5 Proxy

A new variant of the Chaos botnet malware has expanded its targeting to include misconfigured Linux cloud servers, a shift from its earlier focus on routers and

via The Hacker News ·
cybersecurityvulnerability

CISA Gives Federal Agencies Days to Patch Actively Exploited Ivanti EPMM RCE Flaw

A critical unauthenticated remote code execution vulnerability in Ivanti Endpoint Manager Mobile (CVE-2026-1340) has been under active exploitation since Januar

via BleepingComputer ·
aivulnerability

Claude Mythos surfaces thousands of zero-days in autonomous sweep

Anthropic's Claude Mythos, an autonomous vulnerability-discovery agent built on the Claude model family, has reportedly identified thousands of previously unkno

via The Hacker News ·
cybersecurityvulnerability

Fancy Bear hijacks 18,000 SOHO routers' DNS to steal Microsoft OAuth tokens

Russia's GRU-linked APT28 (Forest Blizzard) compromised more than 18,000 unsupported or unpatched Mikrotik and TP-Link SOHO routers at the peak of a December 20

via Krebs on Security ·
cybersecuritycloud

Full Sail University Adding IBM Cyber Defense Range to Campus

Full Sail University is launching an on-campus IBM Cyber Defense Range, built on AWS infrastructure and powered by Cloud Range's simulation platform. The facili

via Dark Reading ·
cybersecuritymalware

Germany IDs REvil/GandCrab kingpin 'UNKN' as 31-year-old Russian Daniil Shchukin

Germany's Federal Criminal Police (BKA) have publicly named Daniil Maksimovich Shchukin, a 31-year-old from Krasnodar, Russia, as the operator behind the handle

via Krebs on Security ·