American utility firm Itron discloses breach of internal IT network

2026-04-27T01:23:33Zf398aebbc8bbdaaed5a7886321beb66b6b13e85cdf74c41265e483ab2b3a0078
cisco-firewallcredential-theftdata-breachdoraexfiltrationextortionfile-uploadlinuxlocal-privilege-escalationmalwaremicrosoft-teamsnpm-compromiseoperational-resiliencepackagekitpersistencephishingransomwaresecurity-patchsocial-engineeringsupply-chain-compromiseweb-exploitwordpress-pluginxss

What happened

Multiple active security incidents and exploited vulnerabilities were reported across enterprise and consumer environments: Itron and ADT disclosed unauthorized access/data-breaches tied to extortion threats; a new UNC6692 “Snow” malware campaign leverages Microsoft Teams social engineering to deliver a browser extension, tunneler and backdoor; Firestarter malware persists on Cisco ASA/FTD/Firepower devices despite patches; over 10,000 Zimbra servers are being actively targeted via an XSS flaw; a critical unauthenticated file‑upload vulnerability in the Breeze Cache WordPress plugin is under/𝗎

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
f398aebbc8bbdaaed5a7886321beb66b6b13e85cdf74c41265e483ab2b3a0078
Enrichment time
2026-04-27T01:23:33Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.