American utility firm Itron discloses breach of internal IT network
2026-04-27T01:23:33Z•f398aebbc8bbdaaed5a7886321beb66b6b13e85cdf74c41265e483ab2b3a0078
cisco-firewallcredential-theftdata-breachdoraexfiltrationextortionfile-uploadlinuxlocal-privilege-escalationmalwaremicrosoft-teamsnpm-compromiseoperational-resiliencepackagekitpersistencephishingransomwaresecurity-patchsocial-engineeringsupply-chain-compromiseweb-exploitwordpress-pluginxss
What happened
Multiple active security incidents and exploited vulnerabilities were reported across enterprise and consumer environments: Itron and ADT disclosed unauthorized access/data-breaches tied to extortion threats; a new UNC6692 “Snow” malware campaign leverages Microsoft Teams social engineering to deliver a browser extension, tunneler and backdoor; Firestarter malware persists on Cisco ASA/FTD/Firepower devices despite patches; over 10,000 Zimbra servers are being actively targeted via an XSS flaw; a critical unauthenticated file‑upload vulnerability in the Breeze Cache WordPress plugin is under/𝗎
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- f398aebbc8bbdaaed5a7886321beb66b6b13e85cdf74c41265e483ab2b3a0078
- Enrichment time
- 2026-04-27T01:23:33Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.