Latest spy power reauthorization bill leaves critics unimpressed

2026-04-24T20:51:44Zf467e8159cb62bf43fadafa3e3bd29aaf3af3c508dd1385c9dd1515e62c090b8
AI-assisted malwareCISAChina-linked APTsCisco FirestarterDragosOT/ICS malwareSS7/SIGTRAN (telecom signalling)Vercel breachZionSiphoncovert router networksfirewall persistencegeofence warrantsincident responsepatch-bypassprivacy/Section 702supply-chain compromisetelecom signalling vulnerabilitiesthird-party riskthreat intelligencewater-sector

What happened

Multiple high-impact security developments: a Vercel compromise has broadened, affecting more customers and third-party systems and increasing downstream supply-chain risk; US and UK agencies warn of “Firestarter” malware persisting on Cisco firewalls even after patches, including on a federal network (campaign dating back to at least Sept 2025); researchers mapped surveillance campaigns that exploit long‑known telecom signalling vulnerabilities to monitor operator infrastructure; allied agencies warn China-linked actors are building covert router-based networks; Dragos assesses the ZionSiphon

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
cyberscoop
Record identifier
f467e8159cb62bf43fadafa3e3bd29aaf3af3c508dd1385c9dd1515e62c090b8
Enrichment time
2026-04-24T20:51:44Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.