logo

CISA Sounds the Alarm: State-Sponsored Hackers Weaponize New Windows and ScreenConnect Flaws

ID: 29e3272e-48e7-5210-8c0c-71d3855b647b

STIX ID: report--29e3272e-48e7-5210-8c0c-71d3855b647b

Feed Name: securityonline.info

Threat Score
88/100

Date Published: 2026-04-29

Date Updated: 2026-04-29

Author: Ddos

...
...

CISA added two actively exploited, high-risk vulnerabilities to its KEV catalog: CVE-2024-1708 (ConnectWise ScreenConnect path traversal) exploited by North Korea’s Kimsuky to deploy the polymorphic ToddlerShark malware, and CVE-2026-32202 (Windows Shell protection failure) abused by Russia’s APT28—often chained with MSHTML—prompting urgent patching/upgrades and a federal remediation directive.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.