US-sanctioned currency exchange says $15 million heist done by "unfriendly states"

2026-04-19T20:51:49Zb1c65a269a6ed3d82108c9d99c102187ba9f4e495fd62bbae821f3fc6dc4350d
ai-agentcredential-theftcritical-infrastructuredata-breachios-exploitiot-routersip-kvmnation-statenvidia-gpuopen-source-poisoningopenclawpost-quantum-cryptoquantum-threatquizlet-leakrowhammersupply-chaintrivywindows-privacy

What happened

Ars Technica security headlines (Mar–Apr 2026) describe a concentrated period of high-impact incidents and research: nation‑state operations (Russia, Iran) disrupting critical infrastructure, mass compromises of consumer routers and credential theft, a $15M heist attributed to foreign services, and large sensitive-data leaks. Significant supply‑chain attacks (Trivy compromise, self‑propagating poisoning of open‑source projects) and a widespread iPhone exploit were reported. New research reveals GPU Rowhammer variants that can gain full system control, exposed IP‑KVM vulnerabilities, and a tool

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
b1c65a269a6ed3d82108c9d99c102187ba9f4e495fd62bbae821f3fc6dc4350d
Enrichment time
2026-04-19T20:51:49Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · US-sanctioned currency exchange says $15 million heist done by "unfriendly states" · Baitaphish