Man gets 30 months for selling thousands of hacked DraftKings accounts
2026-04-17T07:23:26Z•d750c81d777ec1e78087cc8e8eb4713bbb83525e61bc901e3c3b5234cb032004
active-exploitationai-voice-phishingathrcisco-webexcredential-theftdata-breachdraftkingsfraudhugging-faceicsmarimomcgraw-hillmicrosoft-defendernginxnkabuseoperational-technologypatchingprivilege-escalationredsunremote-code-executionvishingvulnerability-managementwater-treatmentzero-dayzionsiphon
What happened
A recent news batch highlights multiple high-risk active threats and large-scale breaches: attackers are exploiting recently leaked Windows zero-days (including a Microsoft Defender "RedSun" PoC that grants SYSTEM) and a critical Nginx UI auth bypass for unauthenticated full server takeover. Supply-hosting abuse and exploitation chains include a critical Marimo notebook flaw used to deploy NKAbuse from Hugging Face, and a new OT-focused ZionSiphon malware aimed at water treatment/desalination systems. Other notable items: Cisco Webex Services vulnerabilities requiring customer action, a large
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- d750c81d777ec1e78087cc8e8eb4713bbb83525e61bc901e3c3b5234cb032004
- Enrichment time
- 2026-04-17T07:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.