Google Password Manager passkey hijacking; APT29 hotel Wi-Fi espionage; N-able RMM auth bypass exploited
ID: 78c5e5b4-fe19-572c-a8f2-f7c92697376c
STIX ID: report--78c5e5b4-fe19-572c-a8f2-f7c92697376c
Feed Name: defend.network
**Executive Summary:** This briefing reports multiple high‑severity active threats: malware techniques that can hijack Google Password Manager synced passkeys on Windows, a global hotel‑Wi‑Fi espionage campaign attributed to Russian APT29 targeting Microsoft 365 accounts, active in‑the‑wild exploitation of an N‑able N‑central authentication bypass (CVE‑2026‑18577) including a post‑patch bypass vector, and a supply‑chain campaign delivering a cross‑platform RAT via 18 malicious npm packages — defenders should prioritize patching, credential rotation, EDR/VPN enforcement, and supply‑chain/package controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
