From Iran to Ukraine, everyone's trying to hack security cameras

2026-03-08T20:51:49Z94312c97b9847973a3ef28e12132382e0f96fb5478416632a422d93fd7967ad5
AirSnitchCISACastleloaderIoTIranian-state actorLLM deanonymizationLumma StealerMerkle Tree CertificateMicrosoft OfficeNotepad++Russian-state actor」「Moltbook","AI prompts","kids privacy","BonWi‑Ficryptocurrency theftdYdXencryption bypassexploited vulnerabilitiesiOSmalicious packagespassword managersprivacyquantum-proof HTTPSsecurity camerasserver compromisesupply chainzero-day

What happened

A collection of Ars Technica security stories covering widespread, active threats and systemic risks: state-linked campaigns targeting consumer security cameras and Office/iOS zero‑day exploits being actively used; supply‑chain compromises (Notepad++, malicious dYdX packages) and a resurgence of Lumma Stealer; a new Wi‑Fi AirSnitch bypass and concerns about expiring Secure Boot certificates; privacy risks from LLM deanonymization and an exposed kids’ AI chat portal; plus infrastructure worries (wiper malware against Poland’s grid), high‑profile law enforcement takedowns, and growing noise from

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
94312c97b9847973a3ef28e12132382e0f96fb5478416632a422d93fd7967ad5
Enrichment time
2026-03-08T20:51:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.