This month in security with Tony Anscombe – February 2026 edition
2026-03-04T20:41:47Z•5366c222eadc7fa6e9008c60e214dff29b53c5fb857a08f2a2e5f06e7f91a742
CVE-2025-50165android-malwarecredential-stuffingdata-wiperdeepfake-voicedynowiperesetespionagegenailongnosedgoblinmobile-securitymuddywaterphishingpromptspyransomwaresandwormscamsthreat-reportvulnerabilitywindows-imaging-component
What happened
ESET’s WeLiveSecurity feed (Feb 2026) aggregates research and guidance covering: PromptSpy — the first known Android malware to incorporate generative AI into its execution flow; technical analysis and attribution of DynoWiper (data‑wiping malware) linked to Sandworm and a disruptive attack on Poland’s energy sector; a revisit of CVE-2025-50165 (critical Windows Imaging Component flaw); discovery of LongNosedGoblin APT activity targeting governments in Southeast Asia and Japan; a Pakistan-targeted Android spyware campaign using a fake dating app; and other operational intelligence and consumer
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- eset_welivesecurity
- Record identifier
- 5366c222eadc7fa6e9008c60e214dff29b53c5fb857a08f2a2e5f06e7f91a742
- Enrichment time
- 2026-03-04T20:41:47Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.