ADT confirms data breach after ShinyHunters leak threat

2026-04-25T13:23:33Z5dd759ab39475ca6c089086d7a93a199b5f5ce41e5692b4e56bafa6ad0597e73
ADTASABitwardenBreeze-CacheCheckmarxCiscoFTDFirepowerFirestarterKICS','supply-chain-breach'Pack2TheRootPackageKitShinyHuntersWordPressXSSZimbracredential-theftdata-breachextortionfile-uploadmalwarenpmpersistenceprivilege-escalationsupply-chain

What happened

Multiple active security incidents and vulnerabilities were reported: ADT confirmed a data breach after extortion threats from ShinyHunters; a new Firestarter malware campaign is persisting on Cisco Firepower/ASA/FTD devices despite updates; over 10,000 Zimbra servers are being actively exploited via an XSS flaw; and a critical Breeze Cache WordPress file‑upload vulnerability is under active exploitation. Other notable items include a Pack2TheRoot local privilege‑escalation flaw in PackageKit, a Bitwarden CLI npm package compromise that stole developer credentials, a Checkmarx KICS supply‑tool

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
5dd759ab39475ca6c089086d7a93a199b5f5ce41e5692b4e56bafa6ad0597e73
Enrichment time
2026-04-25T13:23:33Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.