PTC warns of imminent threat from critical Windchill, FlexPLM RCE bug
2026-03-25T07:23:26Z•4bed29160fe1319f1a319909fdfe8b99351d6dd856be30365c91d166af8cfee3
FCCFlexPLMHackerOneInfinite CampusKubernetesLiteLLMMFANaviaPTCPyPIRCEShinyHunters`,`Yanluowang`,`ransomware`,`sentencing`,`Tycoon2FA`TeamPCPWindchillbackdoordata-breachfirefoxprivacyremote code executionrouterssupply-chainvpnvulnerabilitywiperzero-trust
What happened
Multiple high-impact security incidents and developments: PTC warned of an imminent critical remote code execution vulnerability in Windchill and FlexPLM that could be actively exploited; the TeamPCP group backdoored the popular LiteLLM PyPI package in a supply‑chain attack to steal credentials and tokens; and TeamPCP also deployed an Iran‑targeted wiper against Kubernetes clusters. Other notable items include the FCC banning new consumer routers made outside the U.S. over security concerns, Firefox adding a free 50GB/month built‑in VPN, Microsoft fixing Outlook sync issues, continuing data‑ex
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 4bed29160fe1319f1a319909fdfe8b99351d6dd856be30365c91d166af8cfee3
- Enrichment time
- 2026-03-25T07:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.