Vercel Employee's AI Tool Access Led to Data Breach
2026-04-21T02:51:39Z•b783bbfa683906332309925953107da28d0f2ef1fec2d9e544a4c5f6e039b7b4
2FAAI-securityAPT28APT41AdobeBYOVDCVE-managementClickFixEDR-killerMicrosoftNISTOAuthOT-ICSWhatsAppdata-breachdevice-code-phishingmacOSnginxquantum-riskransomwaresecure-bootserial-to-IPsupply-chainzero-day
What happened
A roundup of mid-April 2026 cybersecurity reporting: stolen OAuth tokens and an employee AI-tool access vector led to a Vercel data breach; multiple actively exploited zero-days (including an Adobe Acrobat/Reader bug and Windows flaws) and a critical nginx MCP integration vulnerability were disclosed and patched; cloud-focused APT activity (APT41, APT28/Fancy Bear) is harvesting credentials and abusing supply-chain/typosquatting techniques; OT/ICS devices (serial-to-IP gateways, industrial controllers) and global adware campaigns expose large legacy attack surfaces; attackers are adopting new
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- b783bbfa683906332309925953107da28d0f2ef1fec2d9e544a4c5f6e039b7b4
- Enrichment time
- 2026-04-21T02:51:39Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.