logo

Commercial cloud infrastructure is now a wartime target.

ID: a962f630-bf08-5dd2-8ffe-5f6e25a949cd

STIX ID: report--a962f630-bf08-5dd2-8ffe-5f6e25a949cd

Feed Name: The CyberWire

Threat Score
88/100

Date Published: 2026-04-04

Date Updated: 2026-04-23

...
...

## Executive summary This briefing compiles multiple active and high-impact threats: nation-state-linked actors targeting cloud infrastructure and enterprises (IRGC/Handala and North Korean UNC1069), a short-lived but widespread supply-chain compromise of the axios npm package that dropped a cross-platform backdoor (WAVESHAPER.V2), a spyware campaign delivered via an unofficial WhatsApp iOS client affecting Italian users, and active exploitation of critical vulnerabilities in F5 BIG‑IP (reclassified RCE, CVE-2025-53521) and Citrix NetScaler (CVE-2026-3055); vendors and national cybersecurity agencies urge immediate investigation and patching.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.