Press "Enter" to skip to content

OSINT / CyberSec report 29.04.2026 00:08

1. Microsoft confirmed active exploitation of the Windows Shell spoofing vulnerability CVE 2026 32202 (The Hacker News).

2. A Chinese national linked to the Silk Typhoon threat group was extradited to the United States for cyberattacks against government agencies (The Hacker News).

3. French authorities arrested a 21 year old hacker known as HexDex for approximately 100 data breaches including the French Ministry of National Education (Bitdefender).

4. RansomHouse claimed a data breach affecting a major cybersecurity vendor, potentially Barracuda Networks (Reddit).

5. Microsoft patched a critical privilege escalation flaw in the Entra ID Agent ID Administrator role that allowed service principal takeover (The Hacker News).

6. Vercel disclosed a security incident involving unauthorized access to employee data following a compromise at Context.ai (Check Point).

7. A supply chain attack involving a compromised GitHub Actions workflow led to a malicious release of the elementary data package on PyPI (Reddit).

8. Robinhood experienced an account creation flaw that was abused by threat actors to send phishing emails to users (Bleeping Computer).

9. Kaspersky disclosed PhantomRPC, a new privilege escalation technique affecting all modern Windows versions (Reddit).

10. Mobile jammers caused widespread network disconnections and blocked emergency services for thousands of users in Toronto (Reddit).

11. Microsoft requested that iPhone users reauthenticate their credentials following a global Outlook service outage (Bleeping Computer).

12. The Federal Trade Commission reported that consumers lost 2.1 billion dollars to social media scams throughout 2025 (Reddit).

Be First to Comment

Leave a Reply

Your email address will not be published. Required fields are marked *