Chinese hackers hijack auth flow, spy on isolated network for a decade

2026-06-13T19:23:30Z11cc616a6daa544d7a608c20fd99141165c2fdfa64a1b2c285ad543cc6df7d3d
AURAnthropic-model-access-restrictionsBOD-26-04CISACVE-2026-35273IvantiKyushu-ElectricMaine-breach-portalNovo-NordiskShinyHunterTchaparch-linuxauth-bypassauthentication-hijackdata-breachfraudulent-disclosuresinfostealernation-statepeople-softpersistencephpBBrepository-compromiserootkitsupply-chainzero-day

What happened

A batch of high-impact security stories: Chinese threat actors hijacked a target's authentication stack and maintained persistent, full-admin visibility for a decade; Oracle warns of a critical PeopleSoft zero-day (CVE-2026-35273) actively exploited by ShinyHunter; CISA ordered federal agencies to urgently patch an actively exploited Ivanti Sentry flaw; over 400 Arch Linux AUR packages were found distributing a Linux rootkit and infostealer; a 10‑year phpBB authentication bypass was fixed; several large data incidents were disclosed (Novo Nordisk clinical-trial data, Kyushu Electric — 10.9M+客户

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
11cc616a6daa544d7a608c20fd99141165c2fdfa64a1b2c285ad543cc6df7d3d
Enrichment time
2026-06-13T19:23:30Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Chinese hackers hijack auth flow, spy on isolated network for a decade · Baitaphish