Chinese hackers hijack auth flow, spy on isolated network for a decade
2026-06-13T19:23:30Z•11cc616a6daa544d7a608c20fd99141165c2fdfa64a1b2c285ad543cc6df7d3d
AURAnthropic-model-access-restrictionsBOD-26-04CISACVE-2026-35273IvantiKyushu-ElectricMaine-breach-portalNovo-NordiskShinyHunterTchaparch-linuxauth-bypassauthentication-hijackdata-breachfraudulent-disclosuresinfostealernation-statepeople-softpersistencephpBBrepository-compromiserootkitsupply-chainzero-day
What happened
A batch of high-impact security stories: Chinese threat actors hijacked a target's authentication stack and maintained persistent, full-admin visibility for a decade; Oracle warns of a critical PeopleSoft zero-day (CVE-2026-35273) actively exploited by ShinyHunter; CISA ordered federal agencies to urgently patch an actively exploited Ivanti Sentry flaw; over 400 Arch Linux AUR packages were found distributing a Linux rootkit and infostealer; a 10‑year phpBB authentication bypass was fixed; several large data incidents were disclosed (Novo Nordisk clinical-trial data, Kyushu Electric — 10.9M+客户
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 11cc616a6daa544d7a608c20fd99141165c2fdfa64a1b2c285ad543cc6df7d3d
- Enrichment time
- 2026-06-13T19:23:30Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.