logo

Arch Linux supply-chain worm, Velvet Ant backdoor, Gemini phishing-as-a-service

ID: 8ce8228e-3b32-5c91-8051-c1c0e514bbf5

STIX ID: report--8ce8228e-3b32-5c91-8051-c1c0e514bbf5

Feed Name: defend.network – Daily Threat Briefings

Threat Score
90/100

Date Published: 2026-06-13

Date Updated: 2026-06-13

...
...

Over 400 Arch Linux AUR packages were hijacked to distribute a Rust credential-stealer and an eBPF rootkit, a China-linked group dubbed 'Velvet Ant' secretly backdoored Linux authentication (PAM/OpenSSH) for nearly a decade, Google filed suit against a Gemini AI-powered smishing/phishing-as-a-service network, a 10-year phpBB authentication bypass was fixed, and Meta's AI support assistant was abused to reset high-profile Instagram accounts — immediate audits, credential revocation, patching, and integrity checks are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.