Anthropic is testing desktop-like Claude Cowork for mobile

2026-06-26T07:23:28Z530caaca0729aef64e6241bf6d0daf6f08005f369ebd562ebd230f43654d5320
AI-evasion malwareAmadeyBluekitCISACVE-2026-20245Cisco SD‑WANGaslightNative MessagingOperation EndgameSIM swappingShop app abuseStealCUbiquitiWindows 10 ESU extensionbrowser extensionbrowser-in-the-middlecallback phishingcrypto theftmacOS malwarephishingprivacy controlsransomware deploymentzero-day

What happened

Multiple security developments reported: Mandiant disclosed how attackers abused a Cisco SD‑WAN zero‑day (CVE‑2026‑20245) to create rogue root accounts, and CISA warned of actively exploited high‑severity Ubiquiti/serial‑to‑ethernet flaws. Threat actors continue evolving phishing and account takeover techniques — Shop order histories are being abused to push callback phishing, the Bluekit phishing kit added browser‑in‑the‑middle capabilities, and Polish authorities arrested a SIM‑swapping gang linked to millions in crypto theft. A malicious Edge extension ('Edgecution') used Native Messagingto

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
530caaca0729aef64e6241bf6d0daf6f08005f369ebd562ebd230f43654d5320
Enrichment time
2026-06-26T07:23:28Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.