Man gets 30 months for selling thousands of hacked DraftKings accounts

2026-04-17T07:23:26Zd750c81d777ec1e78087cc8e8eb4713bbb83525e61bc901e3c3b5234cb032004
active-exploitationai-voice-phishingathrcisco-webexcredential-theftdata-breachdraftkingsfraudhugging-faceicsmarimomcgraw-hillmicrosoft-defendernginxnkabuseoperational-technologypatchingprivilege-escalationredsunremote-code-executionvishingvulnerability-managementwater-treatmentzero-dayzion­siphon

What happened

A recent news batch highlights multiple high-risk active threats and large-scale breaches: attackers are exploiting recently leaked Windows zero-days (including a Microsoft Defender "RedSun" PoC that grants SYSTEM) and a critical Nginx UI auth bypass for unauthenticated full server takeover. Supply-hosting abuse and exploitation chains include a critical Marimo notebook flaw used to deploy NKAbuse from Hugging Face, and a new OT-focused ZionSiphon malware aimed at water treatment/desalination systems. Other notable items: Cisco Webex Services vulnerabilities requiring customer action, a large

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
d750c81d777ec1e78087cc8e8eb4713bbb83525e61bc901e3c3b5234cb032004
Enrichment time
2026-04-17T07:23:26Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.