Microsoft rolls out revamped Windows Insider Program
2026-04-26T07:23:26Z•98ce51521297de72ffe9cd86525a133bdb42dbdd1d17c88e11268297832f6a4b
adtbackdoorbitwardenblackfile-extortion-groupivoragency?breeze-cachebrowser-extensioncheckmarxcisco-firepowerdata-breachfile-upload-vulnerabilityfirestarterlinux-privilege-escalationmicrosoft-teamsnpm-compromisepack2therootpackagekitpersistenceshinyhunterssnow-malwaresupply-chain-compromisetunnelerunc6692wordpressxsszimbra
What happened
Multiple active security incidents and high-risk vulnerabilities were reported: ongoing exploitation of a Zimbra XSS affecting over 10,000 instances; active attacks leveraging a critical file‑upload flaw in the Breeze Cache WordPress plugin; a local privilege‑escalation flaw dubbed Pack2TheRoot in PackageKit enabling root access; Firestarter malware persisting on Cisco ASA/FTD/Firepower devices despite patches; a new UNC6692 ‘Snow’ malware campaign using Microsoft Teams to deliver a browser extension, tunneler, and backdoor; supply‑chain compromises (Bitwarden CLI npm package and Checkmarx KIC
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 98ce51521297de72ffe9cd86525a133bdb42dbdd1d17c88e11268297832f6a4b
- Enrichment time
- 2026-04-26T07:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.