Microsoft rolls out revamped Windows Insider Program
2026-04-26T13:23:26Z•988db6f2efd1abb90d90e396437c33299b6af68d180d955c36210dee24e039db
ADTASABreeze CacheCisco FirepowerFTDFirestarterMicrosoft TeamsPack2TheRootPackageKitShinyHuntersSnowUNC6692WordPressXSSZimbrabackdoorbrowser extensiondata breachextortionfile upload vulnerability (RCE vector)local privilege escalationmalwarepersistencesocial engineeringtunneler
What happened
Collection of April 23–25, 2026 security news: a threat group (UNC6692) is using Microsoft Teams social engineering to deploy a new malware suite called “Snow” (browser extension, tunneler, backdoor); ADT confirmed a data breach after ShinyHunters extortion threats; Firestarter malware is persisting on Cisco ASA/FTD/Firepower devices despite updates; a local privilege escalation flaw dubbed Pack2TheRoot impacts PackageKit; over 10,000 Zimbra instances are being actively exploited via an XSS flaw; a critical file‑upload vulnerability in the Breeze Cache WordPress plugin is under active exploit;
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 988db6f2efd1abb90d90e396437c33299b6af68d180d955c36210dee24e039db
- Enrichment time
- 2026-04-26T13:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.