New AirSnitch attack bypasses Wi-Fi encryption in homes, offices, and enterprises

2026-03-04T19:42:31Z4b8e475e5890cfc25fb4a3de5c77c5bb389194b7e43145f386cae52cc275695c
active‑exploitairsnitchai‑threatscastleloadercertificate‑expirationcrypto‑theftdydxiot‑toykids‑privacylumma‑stealermalicious‑packagesmicrosoft‑officemoltbooknotepad++password‑managersphishingprompt‑viralityramp‑takedownrussian‑statesecure‑bootserver‑compromisesms‑sign‑insupply‑chainwifiwi‑fi‑encryption

What happened

A roundup of Ars Technica security stories (Jan–Feb 2026) highlighting multiple high-impact threats and incidents: a new “AirSnitch” technique that can bypass Wi‑Fi encryption across home, guest, and enterprise networks; server-side compromises undermining password-manager guarantees; resurgence of Lumma Stealer distributed via enticing lures and Castleloader; compromised Notepad++ updater and other supply‑chain attacks; malicious packages that emptied dYdX user wallets; an urgent Microsoft Office patch being actively exploited by Russian-state actors; Windows Secure Boot signing‑certificate/fl

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
4b8e475e5890cfc25fb4a3de5c77c5bb389194b7e43145f386cae52cc275695c
Enrichment time
2026-03-04T19:42:31Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.