WhatsApp introduces parent-managed accounts for pre-teens
2026-03-12T07:23:38Z•1bf71f953a74b82f60b859c81324bd9803c56c66cb35179b35a8545232f594f0
CISAandroid-malwarebeatbankerblackSantaedr-killerexploitationhandalairan-linkedmalwaremicrosoftn8nnpmpatchpatch-tuesdayphantomravenpluginrcesql-injectionsqlisupply-chainvulnerabilitywiperwordpresszero-dayzombie-zip
What happened
BleepingComputer roundup (Mar 10–11, 2026) covering multiple high-impact security developments: an unauthenticated SQL injection in Elementor’s Ally WordPress plugin affecting ~250k+ sites; an actively exploited n8n RCE prompting a CISA patch order; an Iran-linked Handala wiper attack that disrupted medtech giant Stryker; a new PhantomRaven npm supply-chain campaign exfiltrating developer data via dozens of malicious packages; discovery of the Zombie ZIP compression-evasion technique; a new BlackSanta EDR-killer targeting HR teams; BeatBanker Android malware masquerading as a Starlink app; Kad
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 1bf71f953a74b82f60b859c81324bd9803c56c66cb35179b35a8545232f594f0
- Enrichment time
- 2026-03-12T07:23:38Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.