Webinar: From noise to signal - What threat actors are targeting next
2026-04-09T13:23:31Z•acc45b48edfd88f55e7386d930d7e74c05db8d655bbf0d369a37ee95166e85a6
ActiveMQAdobe AcrobatAtomic StealerBPO compromiseBitcoin DepotCISAClickFixEurailIvanti EPMMMagentoNinja FormsSVG stealerSaaS integratorSnowflake customers affectedUNC6783WordPressZendeskcredit card skimmercrypto theftdata breachmacOSremote code executionsupply chainweb skimmingzero-day
What happened
Multiple high-impact security incidents and vulnerabilities reported: attackers have been exploiting an Adobe Acrobat/Reader zero-day via malicious PDFs since at least December; CISA ordered federal agencies to patch an actively exploited critical Ivanti EPMM flaw; a 13-year-old RCE was found in Apache ActiveMQ Classic; and a critical file‑upload flaw in the Ninja Forms WordPress premium add-on is being exploited. Other notable events include a $3.665M cryptocurrency theft from Bitcoin Depot, a December data breach at Eurail affecting ~300,000 individuals, large-scale credit‑card skimming via
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- acc45b48edfd88f55e7386d930d7e74c05db8d655bbf0d369a37ee95166e85a6
- Enrichment time
- 2026-04-09T13:23:31Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.