New SynkLoader malware pushed in Microsoft Teams phishing campaign
2026-08-21T19:23:21Z•dcb777b50ecb5ef4d503e8d1bd388981e9c0ce1ed4cc644b7825eb5ccdb4f2f0
AWSAndroid malwareElementor ProEntra IDMLflowMicrosoft TeamsNetScalerRust crateTrueConf Serveractive exploitationcloud securitycredential theftcritical vulnerabilitiesdata breachinfostealermalwarephishingremote code executionsoftware supply chainzero-day
What happened
BleepingComputer security feed containing reports on active exploitation of critical vulnerabilities, phishing and malware campaigns, exposed AWS credentials, supply-chain compromise, and data breaches. Notable items include SynkLoader delivered through Microsoft Teams phishing, actively exploited TrueConf Server and MLflow flaws, a maximum-severity Entra ID vulnerability, critical Elementor Pro RCE, FTP-banner malware delivery, a poisoned Rust crate, and thousands of valid leaked AWS keys.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- dcb777b50ecb5ef4d503e8d1bd388981e9c0ce1ed4cc644b7825eb5ccdb4f2f0
- Enrichment time
- 2026-08-21T19:23:21Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.