Police boast of hacking VPN where criminals "believed themselves to be safe"
2026-05-23T08:51:55Z•9caa8b7c33d5450da6dc58cf871d5ca1e488d60ddab52e9ffc4cb53fd031ab95
BitLockerBitwardenCISACanvas outageCheckmarxChromium exploitCopyFailDaemon ToolsGitHubLinux vulnerabilityTeamPCPUbuntu outageWindows 11credential leakeducation platform attack','ransomware','post-quantum cryptograpelement-dataend-to-end encryptionexploit code publicationlaw enforcement hackingmalicious npmopen-source malwaresupply-chain attackvpn compromisewhatsappzero-day
What happened
Ars Technica's security roundup (May 2026) catalogs a string of high-impact incidents and trends: law enforcement interception of a VPN used by criminals; large-scale supply-chain attacks (TeamPCP, backdoored Daemon Tools, malicious npm package element-data, targeted compromises hitting Checkmarx and Bitwarden); a public leak of sensitive CISA credentials on GitHub; Google publishing exploit code for Chromium; a zero-day that fully defeats default Windows 11 BitLocker protections; multiple severe Linux vulnerabilities (including CopyFail) and related Ubuntu infrastructure outages; a cyberassau
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- 9caa8b7c33d5450da6dc58cf871d5ca1e488d60ddab52e9ffc4cb53fd031ab95
- Enrichment time
- 2026-05-23T08:51:55Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.