Magento StyleSmuggler zero-day exploited to deploy Linux backdoor

2026-09-07T19:23:23Z2484e8b4b36f1a6cf167df19a3ac8c65deab2b3e84b3dbc09478e74626cf805d
CVE-2026-19490Adobe CommerceCitrix NetScalerClickFixConnectWise ScreenConnectLinux backdoorMFA bypassMagentoMicrosoft 365 phishingMikroTik RouterOSN-able N-centralRCEUnicode obfuscationactive exploitationblockchain malware deliverycredential theftdata breachphishing-as-a-servicesupply-chain breachzero-day

What happened

A BleepingComputer security-news feed reports multiple active or emerging threats, including exploitation of a Magento/Adobe Commerce zero-day to deploy a Linux backdoor, MFA-bypassing Microsoft 365 phishing, router and remote-management platform exploitation, ClickFix campaigns delivered through more than 5,400 compromised sites, and active targeting of Citrix NetScaler vulnerability CVE-2026-19490. The feed also covers major data breaches affecting Mathspace, Trezor customers, and potentially 153 million driver's licenses, along with phishing evasion using invisible Unicode characters.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
2484e8b4b36f1a6cf167df19a3ac8c65deab2b3e84b3dbc09478e74626cf805d
Enrichment time
2026-09-07T19:23:23Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.