Microsoft rolls out revamped Windows Insider Program

2026-04-26T13:23:26Z988db6f2efd1abb90d90e396437c33299b6af68d180d955c36210dee24e039db
ADTASABreeze CacheCisco FirepowerFTDFirestarterMicrosoft TeamsPack2TheRootPackageKitShinyHuntersSnowUNC6692WordPressXSSZimbrabackdoorbrowser extensiondata breachextortionfile upload vulnerability (RCE vector)local privilege escalationmalwarepersistencesocial engineeringtunneler

What happened

Collection of April 23–25, 2026 security news: a threat group (UNC6692) is using Microsoft Teams social engineering to deploy a new malware suite called “Snow” (browser extension, tunneler, backdoor); ADT confirmed a data breach after ShinyHunters extortion threats; Firestarter malware is persisting on Cisco ASA/FTD/Firepower devices despite updates; a local privilege escalation flaw dubbed Pack2TheRoot impacts PackageKit; over 10,000 Zimbra instances are being actively exploited via an XSS flaw; a critical file‑upload vulnerability in the Breeze Cache WordPress plugin is under active exploit;

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
988db6f2efd1abb90d90e396437c33299b6af68d180d955c36210dee24e039db
Enrichment time
2026-04-26T13:23:26Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.