EU court adviser says banks must immediately refund phishing victims

2026-03-09T07:23:29Z8f58cd57c8cae0f71ffdacb28069036781939adcd4ad30c75686f874b153ff89
.arpaCISACastleRATClickFixCoruna-exploit-kitDonutLoaderInstallFixTriZettoVelvet Tempestadmin-account-creationai-abuse (search/assistant)data-breachgithub-malwarehealthcare-breachiOS-vulnerabilitiesipv6javascript-wormmalwarephishingphishing-evasionransomwarereverse-dnssocial-engineeringwikipedia-incidentwordpress-vulnerability

What happened

A collection of security reports covering active phishing and social-engineering campaigns, multiple malware and ransomware operations, large-scale data breaches, and exploitation of software and platform weaknesses. Notable items include abuse of .arpa/IPv6 reverse DNS to evade email defenses, Termite ransomware activity linked to Velvet Tempest using DonutLoader and CastleRAT, a 3.4M-patient data exposure at Cognizant TriZetto, CISA guidance to patch iOS flaws exploited by the Coruna exploit kit, active exploitation of a critical WordPress membership-plugin vulnerability to create admin back

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
8f58cd57c8cae0f71ffdacb28069036781939adcd4ad30c75686f874b153ff89
Enrichment time
2026-03-09T07:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · EU court adviser says banks must immediately refund phishing victims · Baitaphish