Anthropic is testing desktop-like Claude Cowork for mobile
2026-06-26T07:23:28Z•530caaca0729aef64e6241bf6d0daf6f08005f369ebd562ebd230f43654d5320
AI-evasion malwareAmadeyBluekitCISACVE-2026-20245Cisco SD‑WANGaslightNative MessagingOperation EndgameSIM swappingShop app abuseStealCUbiquitiWindows 10 ESU extensionbrowser extensionbrowser-in-the-middlecallback phishingcrypto theftmacOS malwarephishingprivacy controlsransomware deploymentzero-day
What happened
Multiple security developments reported: Mandiant disclosed how attackers abused a Cisco SD‑WAN zero‑day (CVE‑2026‑20245) to create rogue root accounts, and CISA warned of actively exploited high‑severity Ubiquiti/serial‑to‑ethernet flaws. Threat actors continue evolving phishing and account takeover techniques — Shop order histories are being abused to push callback phishing, the Bluekit phishing kit added browser‑in‑the‑middle capabilities, and Polish authorities arrested a SIM‑swapping gang linked to millions in crypto theft. A malicious Edge extension ('Edgecution') used Native Messagingto
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 530caaca0729aef64e6241bf6d0daf6f08005f369ebd562ebd230f43654d5320
- Enrichment time
- 2026-06-26T07:23:28Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.