Google releases new privacy controls for activity history, personalization
2026-06-25T07:23:35Z•a1a3f72ada6f5612e85bb1d5ce9b572028fa914f03641295c410125a257d8865
AmadeyCISACVE-2026-20230CVE-2026-20245Cisco SD-WANCisco Unified CMEdgecutionKongTukeMisticStealCTata ElectronicsUbiquitiWindows KB5095093Xsolisbackdoorbrowser-extensiondata-breachinfostealermacOSnative-messagingphishingransomwareservice-desksocial-engineeringzero-day
What happened
A batch of security and privacy stories: Google rolled out new privacy controls for Search and Play; a DraftKings account hacker was sentenced; and multiple active exploitation incidents and breaches were reported. Mandiant detailed how attackers abused a Cisco SD‑WAN zero‑day (CVE-2026-20245) to create rogue root accounts, and Cisco Unified Communications Manager SSRF (CVE-2026-20230) is now exploited in the wild. A malicious Edge extension (“Edgecution”) abused Native Messaging to escape the browser sandbox and deploy a Python backdoor/ransomware; CISA warned of actively exploited, max‑score
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- a1a3f72ada6f5612e85bb1d5ce9b572028fa914f03641295c410125a257d8865
- Enrichment time
- 2026-06-25T07:23:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.