logo

ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New Stories

ID: 94b17d87-4b41-57c6-b3d0-69b4e36bda1a

STIX ID: report--94b17d87-4b41-57c6-b3d0-69b4e36bda1a

Feed Name: The Hacker News

Threat Score
80/100

Date Published: 2026-05-21

Date Updated: 2026-05-22

Author: [email protected] (The Hacker News)

...
...

Weekly cybersecurity roundup covering 30+ events: 47 zero-days disclosed at Pwn2Own Berlin; multiple active malware families and campaigns (Gunra ransomware, PureLogs infostealer, Banana RAT, Premium Deception SMS fraud, TamperedChef trojanized apps, OrBit rootkit); supply-chain compromises (npm art-template, typosquat Go module); critical vulnerabilities including Composer token leak (CVE-2026-45793) and HPLIP RCE (CVE-2026-8631); cloud/identity breaches and abuse (Storm-2949 abusing SSPR, CISA GovCloud credential leak); AI-assisted intrusion campaigns against Latin American governments and financial institutions; large-scale fraud and card dumps; and ongoing ICS/OT targeting by Sandworm — the report highlights active exploitation, broad impact across sectors, and evolving attacker TTPs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.