Commercial cloud infrastructure is now a wartime target.
ID: a962f630-bf08-5dd2-8ffe-5f6e25a949cd
STIX ID: report--a962f630-bf08-5dd2-8ffe-5f6e25a949cd
Feed Name: The CyberWire
## Executive summary This briefing compiles multiple active and high-impact threats: nation-state-linked actors targeting cloud infrastructure and enterprises (IRGC/Handala and North Korean UNC1069), a short-lived but widespread supply-chain compromise of the axios npm package that dropped a cross-platform backdoor (WAVESHAPER.V2), a spyware campaign delivered via an unofficial WhatsApp iOS client affecting Italian users, and active exploitation of critical vulnerabilities in F5 BIG‑IP (reclassified RCE, CVE-2025-53521) and Citrix NetScaler (CVE-2026-3055); vendors and national cybersecurity agencies urge immediate investigation and patching.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
