Microsoft rolls out revamped Windows Insider Program

2026-04-26T07:23:26Z98ce51521297de72ffe9cd86525a133bdb42dbdd1d17c88e11268297832f6a4b
adtbackdoorbitwardenblackfile-extortion-groupivoragency?breeze-cachebrowser-extensioncheckmarxcisco-firepowerdata-breachfile-upload-vulnerabilityfirestarterlinux-privilege-escalationmicrosoft-teamsnpm-compromisepack2therootpackagekitpersistenceshinyhunterssnow-malwaresupply-chain-compromisetunnelerunc6692wordpressxsszimbra

What happened

Multiple active security incidents and high-risk vulnerabilities were reported: ongoing exploitation of a Zimbra XSS affecting over 10,000 instances; active attacks leveraging a critical file‑upload flaw in the Breeze Cache WordPress plugin; a local privilege‑escalation flaw dubbed Pack2TheRoot in PackageKit enabling root access; Firestarter malware persisting on Cisco ASA/FTD/Firepower devices despite patches; a new UNC6692 ‘Snow’ malware campaign using Microsoft Teams to deliver a browser extension, tunneler, and backdoor; supply‑chain compromises (Bitwarden CLI npm package and Checkmarx KIC

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
98ce51521297de72ffe9cd86525a133bdb42dbdd1d17c88e11268297832f6a4b
Enrichment time
2026-04-26T07:23:26Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.