FBI links Signal phishing attacks to Russian intelligence services
2026-03-21T13:23:27Z•dbf923360159aa1e1be25a3d1459f6252458ac7e7af60e86ce812e138e9b7edb
CVE-2026-20131CVE-2026-21992apt28botnet-takedowncisaciscocsam-removal','microsoft','windows-update','kb5079473data-breachddoshandalaidentity-manageriot-botnetslazarusmagentonavianorth-koreaoperation-aliceoraclephishingpolyshellrussian-intelligencesecure-fmcsignalwhatsappzimbra
What happened
A Bleeping Computer roundup (19–20 Mar 2026) covering multiple high-impact security events: the FBI warns Russian intelligence-linked actors are phishing users of encrypted messengers (Signal/WhatsApp), compromising thousands of accounts; Oracle issued an out‑of‑band emergency patch for a critical unauthenticated RCE in Identity Manager/Web Services Manager (CVE-2026-21992); CISA ordered federal agencies to patch a maximum-severity Cisco Secure FMC vulnerability (CVE-2026-20131) by Mar 22. Other notable items include a new unauthenticated RCE dubbed “PolyShell” affecting Magento/Open Source &
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- dbf923360159aa1e1be25a3d1459f6252458ac7e7af60e86ce812e138e9b7edb
- Enrichment time
- 2026-03-21T13:23:27Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.