US-sanctioned currency exchange says $15 million heist done by "unfriendly states"
2026-04-20T08:51:46Z•72b722d4aa50abcb3a9f6bae1da2cd64e93968d77b40b2635fffc0405608752f
consumer-routerscredential-theftcritical-infrastructuredata-leakexploitation-in-the-wildgpu-rowhammeriosiotip-kvmmobile-exploitnation-statepost-quantumquantum-threatsupply-chainunauthenticated-accessvulnerability-disclosure
What happened
Ars Technica’s recent security coverage (Mar–Apr 2026) highlights a surge of high-impact, actively exploited threats: nation-state operations from Russia and Iran targeting consumer routers, critical infrastructure, and large-scale espionage; a mass iPhone exploit (DarkSword) in the wild; a Trivy supply‑chain compromise; new GPU Rowhammer variants (GDDRHammer/GeForge/GPUBreach) that can grant full machine control; vulnerabilities in internet‑exposed IP‑KVMs; and tools/bugs enabling unauthenticated admin access (OpenClaw, TotalRecall Reloaded). The feed also stresses systemic risks—self‑propag
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- 72b722d4aa50abcb3a9f6bae1da2cd64e93968d77b40b2635fffc0405608752f
- Enrichment time
- 2026-04-20T08:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.