Anthropic is testing desktop-like Claude Cowork for mobile

2026-06-26T13:23:29Z427216f6001c1f3fd4a0301bd7e5958a87fda1464447a3b3c7c9e7759ed5c957
AI evasionAmadeyCISACisco SD-WANEdge extensionNative MessagingOperation EndgamePirloTVSIM swappingSIM‑swapStealCUbiquitibackdoorbrowser-in-the-middlecryptocurrency theftdomain seizuresincident responselaw enforcement actions','windows 10 esu','privacy controls','gdmacOSmalwarephishingphishing kitprompt injectionransomwarezero-day

What happened

Feed roundup: multiple active threats and law-enforcement actions. Highlights include Mandiant analysis of a Cisco SD‑WAN zero‑day (CVE-2026-20245) used in attacks to create rogue root accounts; CISA warnings about actively exploited Ubiquiti UniFi OS and Lantronix serial-to-Ethernet server vulnerabilities; a malicious Edge extension (‘Edgecution’) abusing Native Messaging to escape the browser and deploy a Python backdoor/ransomware; a new macOS malware (“Gaslight”) that hides prompt-injection strings and fake errors to evade AI-assisted analysis; Bluekit phishing kit adding browser-in-the‑m­

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
427216f6001c1f3fd4a0301bd7e5958a87fda1464447a3b3c7c9e7759ed5c957
Enrichment time
2026-06-26T13:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.