'Jewelbug' APT Balances State Espionage & Cryptocurrency Theft
2026-08-13T20:51:33Z•2da047baefb0e49d0578549b46ea9372a25beada78f37ea06839102768f1e2d5
CVE-2026-18577CVE-2026-62878AI-agentsAI-browsersAI-securityAPTFortinetICS-OTMFA-bypassMetabaseN-ableSalesforceServiceNowWindows-DNS-Serverauthentication-bypasscritical-infrastructurecryptocurrency-theftcyber-espionagedata-theftdevice-code-phishingphishingprompt-injectionransomwareremote-code-executionthreat-intelligencewater-systemszero-day
What happened
Dark Reading feed covering recent cybersecurity news, including state-sponsored and financially motivated threat activity, ransomware, critical infrastructure attacks, zero-days, authentication bypasses, AI-agent and AI-browser security flaws, data theft campaigns, phishing, and cloud or SaaS misconfigurations. Notable items include Windows DNS Server RCE CVE-2026-62878, N-able RMM authentication bypass CVE-2026-18577, a Metabase SQL zero-day without an assigned CVE, and attacks exploiting Fortinet flaws to bypass MFA.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- 2da047baefb0e49d0578549b46ea9372a25beada78f37ea06839102768f1e2d5
- Enrichment time
- 2026-08-13T20:51:33Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.