FBI links Signal phishing attacks to Russian intelligence services

2026-03-21T13:23:27Zdbf923360159aa1e1be25a3d1459f6252458ac7e7af60e86ce812e138e9b7edb
CVE-2026-20131CVE-2026-21992apt28botnet-takedowncisaciscocsam-removal','microsoft','windows-update','kb5079473data-breachddoshandalaidentity-manageriot-botnetslazarusmagentonavianorth-koreaoperation-aliceoraclephishingpolyshellrussian-intelligencesecure-fmcsignalwhatsappzimbra

What happened

A Bleeping Computer roundup (19–20 Mar 2026) covering multiple high-impact security events: the FBI warns Russian intelligence-linked actors are phishing users of encrypted messengers (Signal/WhatsApp), compromising thousands of accounts; Oracle issued an out‑of‑band emergency patch for a critical unauthenticated RCE in Identity Manager/Web Services Manager (CVE-2026-21992); CISA ordered federal agencies to patch a maximum-severity Cisco Secure FMC vulnerability (CVE-2026-20131) by Mar 22. Other notable items include a new unauthenticated RCE dubbed “PolyShell” affecting Magento/Open Source &

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
dbf923360159aa1e1be25a3d1459f6252458ac7e7af60e86ce812e138e9b7edb
Enrichment time
2026-03-21T13:23:27Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.