This month in security with Tony Anscombe – February 2026 edition

2026-03-04T20:41:47Z5366c222eadc7fa6e9008c60e214dff29b53c5fb857a08f2a2e5f06e7f91a742
CVE-2025-50165android-malwarecredential-stuffingdata-wiperdeepfake-voicedynowiperesetespionagegenailongnosedgoblinmobile-securitymuddywaterphishingpromptspyransomwaresandwormscamsthreat-reportvulnerabilitywindows-imaging-component

What happened

ESET’s WeLiveSecurity feed (Feb 2026) aggregates research and guidance covering: PromptSpy — the first known Android malware to incorporate generative AI into its execution flow; technical analysis and attribution of DynoWiper (data‑wiping malware) linked to Sandworm and a disruptive attack on Poland’s energy sector; a revisit of CVE-2025-50165 (critical Windows Imaging Component flaw); discovery of LongNosedGoblin APT activity targeting governments in Southeast Asia and Japan; a Pakistan-targeted Android spyware campaign using a fake dating app; and other operational intelligence and consumer

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
eset_welivesecurity
Record identifier
5366c222eadc7fa6e9008c60e214dff29b53c5fb857a08f2a2e5f06e7f91a742
Enrichment time
2026-03-04T20:41:47Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.