US-sanctioned currency exchange says $15 million heist done by "unfriendly states"

2026-04-20T08:51:46Z72b722d4aa50abcb3a9f6bae1da2cd64e93968d77b40b2635fffc0405608752f
consumer-routerscredential-theftcritical-infrastructuredata-leakexploitation-in-the-wildgpu-rowhammeriosiotip-kvmmobile-exploitnation-statepost-quantumquantum-threatsupply-chainunauthenticated-accessvulnerability-disclosure

What happened

Ars Technica’s recent security coverage (Mar–Apr 2026) highlights a surge of high-impact, actively exploited threats: nation-state operations from Russia and Iran targeting consumer routers, critical infrastructure, and large-scale espionage; a mass iPhone exploit (DarkSword) in the wild; a Trivy supply‑chain compromise; new GPU Rowhammer variants (GDDRHammer/GeForge/GPUBreach) that can grant full machine control; vulnerabilities in internet‑exposed IP‑KVMs; and tools/bugs enabling unauthenticated admin access (OpenClaw, TotalRecall Reloaded). The feed also stresses systemic risks—self‑propag​

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
72b722d4aa50abcb3a9f6bae1da2cd64e93968d77b40b2635fffc0405608752f
Enrichment time
2026-04-20T08:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.