Google releases new privacy controls for activity history, personalization
2026-06-25T01:23:30Z•8d991ce8511a6f2dd15c7658fd967fdb25c4f3fd63e992f10e3c2510b19a6a22
amadeybackdoorciscoclickfixcve-2026-20230cve-2026-20245data-breachedge-extensioninfostealerkongtukelantronixmacosmisticnative-messagingoperation-endgameransomwareservice-desksocial-engineeringssrfstealctata-electronicsubiquitiwindows-updatexsoliszero-day
What happened
BleepingComputer items from 23–24 Jun 2026 describe multiple actively exploited vulnerabilities and notable incidents: Mandiant details how attackers abused a Cisco Catalyst SD‑WAN zero‑day (CVE-2026-20245) to create rogue root accounts; a high‑severity SSRF in Cisco Unified Communications Manager (CVE-2026-20230) is being exploited in the wild; CISA warns of active exploitation of critical Ubiquiti UniFi OS and Lantronix serial‑to‑ethernet flaws. A malicious Microsoft Edge extension (“Edgecution”) abused Native Messaging to escape the browser sandbox and deploy a Python backdoor/ransomware. A
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 8d991ce8511a6f2dd15c7658fd967fdb25c4f3fd63e992f10e3c2510b19a6a22
- Enrichment time
- 2026-06-25T01:23:30Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.