Cybersecurity briefing — 2026-04-27
A federal agency was compromised through Cisco firewalls, and patching alone did not clean it up.
CISA, NCSC warn Firestarter backdoor targeting Cisco ASA/FTD devices
Itron discloses cyberattack on corporate systems, no customer impact
TeamPCP Resumes Supply-Chain Attacks: Checkmarx KICS, Bitwarden CLI, xinference Compromised
PackageKit Auth Bypass Turns Local Users Root
ADT Breach Exposes Identity Data, Not Alarm Systems
UNC6692 Uses Teams Impersonation to Deploy SnowBelt Backdoor
Researchers uncover Fast16 sabotage malware predating Stuxnet
SilentGlass Targets a Neglected Monitor Attack Path
Marimo Zero-Day Turns AI Demo Hosting Into Malware Delivery
Marimo Advisory Details Enabled Exploits Within Hours
FortiClient EMS Hotfixes Leave Uncertainty for 8.0 Users
OpenSSH CVE-2026-35414 Comma Bug Enables Root Access
Immediate Remote Code Execution Risk in Ninja Forms File Uploads
Private Browsing Leaks a Stable Cross-Site Identifier
Cybersecurity briefing — 2026-04-27
A federal agency was compromised through Cisco firewalls, and patching alone did not clean it up.
CISA, NCSC warn Firestarter backdoor targeting Cisco ASA/FTD devices
Itron discloses cyberattack on corporate systems, no customer impact
TeamPCP Resumes Supply-Chain Attacks: Checkmarx KICS, Bitwarden CLI, xinference Compromised
PackageKit Auth Bypass Turns Local Users Root
ADT Breach Exposes Identity Data, Not Alarm Systems
UNC6692 Uses Teams Impersonation to Deploy SnowBelt Backdoor
Researchers uncover Fast16 sabotage malware predating Stuxnet
SilentGlass Targets a Neglected Monitor Attack Path
Marimo Zero-Day Turns AI Demo Hosting Into Malware Delivery
Marimo Advisory Details Enabled Exploits Within Hours
FortiClient EMS Hotfixes Leave Uncertainty for 8.0 Users
OpenSSH CVE-2026-35414 Comma Bug Enables Root Access
Immediate Remote Code Execution Risk in Ninja Forms File Uploads
Private Browsing Leaks a Stable Cross-Site Identifier