Magento StyleSmuggler zero-day exploited to deploy Linux backdoor
2026-09-07T19:23:23Z•2484e8b4b36f1a6cf167df19a3ac8c65deab2b3e84b3dbc09478e74626cf805d
CVE-2026-19490Adobe CommerceCitrix NetScalerClickFixConnectWise ScreenConnectLinux backdoorMFA bypassMagentoMicrosoft 365 phishingMikroTik RouterOSN-able N-centralRCEUnicode obfuscationactive exploitationblockchain malware deliverycredential theftdata breachphishing-as-a-servicesupply-chain breachzero-day
What happened
A BleepingComputer security-news feed reports multiple active or emerging threats, including exploitation of a Magento/Adobe Commerce zero-day to deploy a Linux backdoor, MFA-bypassing Microsoft 365 phishing, router and remote-management platform exploitation, ClickFix campaigns delivered through more than 5,400 compromised sites, and active targeting of Citrix NetScaler vulnerability CVE-2026-19490. The feed also covers major data breaches affecting Mathspace, Trezor customers, and potentially 153 million driver's licenses, along with phishing evasion using invisible Unicode characters.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 2484e8b4b36f1a6cf167df19a3ac8c65deab2b3e84b3dbc09478e74626cf805d
- Enrichment time
- 2026-09-07T19:23:23Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.